Overview
Work History
Skills
Certification
Clearance
Timeline
Generic

Thomas Langley

Colorado Springs,Colorado

Overview

1
1
Certification
9
9
years of professional experience

Work History

Information System Security Officer

Tyto Athene
10.2023 - Current
  • Developed and enforced security policies to protect sensitive information assets.
  • Conducted regular risk assessments to identify vulnerabilities in information systems.
  • Implemented incident response protocols to address potential security breaches efficiently.
  • Led training sessions to enhance staff awareness of cybersecurity best practices.
  • Performed forensic investigations following incidents to identify root causes, assess damage, and recommend appropriate mitigations or improvements in processes or tools.
  • Oversaw the deployment of security technologies, ensuring optimal performance and protection levels.
  • Collaborated with IT teams to integrate security best practices into system development and operations.

Network Monitoring Analyst (Mid-Level)

Valdez International Corporation
11.2022 - Current
  • Performed routine, scheduled hardware and software checks on core services and document results in Remedy ticket and the Master Station Log (MSL)
  • Work with the Senior Lead to communicate the status, risk, and impact of emerging problem areas and report findings to Incident and Problem Management teams.
  • Investigate out-of-normal operational performance to determine need for escalation.
  • Create After-Action Reports as needed
  • Provide guidance and training on policies, procedures and lessons learned to other team members.
  • Collect and document all available data on potential and actual problem areas in order to support rapid hand-off to problem management, event, or incident response teams.
  • Installed mission essential programs and software onto remote SIPRNET servers.

Cyber Sustainment Technician

US Department Of Defense
11.2021 - 10.2022
  • Interacted with users to repair, replace, program and maintain all switches, VOIP telephony, software, hardware configurations, and communication networking equipment ensuring proper system operation.
  • Upgraded, monitored, and maintained endpoint user machines for continous operations at the 561st .
  • Provided 24/7 on-call support for computer issues and network outages.
  • Local subject matter expert on SIPRnet and 2 other classified networks.
  • Supported both SIPRNET and NIPRNET operations.
  • Applied diagnostic, corrective, and recovery techniques to integrated information systems.

Defensive Cyber Operator

US Department Of Defense
10.2017 - 11.2021
  • Identified cyber incidents, anomalies, and mission impacts; closely monitored IDS logs and reported findings to management for corrective technical actions and planning efforts; supported new analysts on how to review SIEM alerts, generating SIEM dashboards, and investigate anomalous logs.
  • Operating SolarWinds, monitored critical network infrastructure while investigating unofficial downtime; cooperated with several teams on enabling network infrastructure with agile response; relayed findings to management detailing actions performed.
  • Collaborated with senior management to develop a cyber-operations plan for several mission systems, performed a complex assessment on the critical infrastructure of each mission system; created measures to ensure security of each critical piece of infrastructure; correlated findings to cyber security kill chain and presented complex findings to senior executives in a clear and understanding presentation.
  • Using eMASS, identified and answered NIST SP 800-53 Rev 4 and 8510 controls to ensure Risk Management Framework (RMF) compliance; reviewed documentation provided by Subject Matter Experts to investigate proper compliance; Authority to Operate (ATO) generated and approved by senior management.
  • Initiated vulnerability scans to detect all levels of vulnerabilities on an enterprise-wide network consisting of hundreds of critical vulnerabilities; reported findings to Vulnerability Management Team to remediate and patch critical vulnerabilities on dozens of endpoint machines.
  • Experienced Defensive Cyber Operator with 3+ years of experience in FISMA regulations, cybersecurity operations, and incident response
  • Experiance NIST SP 80-060 projects, ensuring compliance with NIST guidelines

Skills

  • IDS/IPS – Snort Suricata Bro
  • SIEM – LogRhythm ELK Stack Kibana
  • SolarWinds
  • PCAP – WireShark TCPDump
  • Linux – GUI Command Line
  • Scanning – Tenable Nessus ACAS
  • NIST SP 800-37 RMF
  • Windows 7 Windows 10
  • HBSS
  • EMass
  • FISMA Guidance
  • RMF Process

Certification

Comptia Security+ | August 2017

Clearance

TS/SCI

Timeline

Information System Security Officer

Tyto Athene
10.2023 - Current

Network Monitoring Analyst (Mid-Level)

Valdez International Corporation
11.2022 - Current

Cyber Sustainment Technician

US Department Of Defense
11.2021 - 10.2022

Defensive Cyber Operator

US Department Of Defense
10.2017 - 11.2021
Thomas Langley