Vulnerability management and GRC professional with 8+ years of experience in regulated enterprise environments. Administers Tenable.sc and Nessus across 55K+ IPs and 25K+ agents, leading agent deployments and credentialed scanning across segmented zones. Builds risk‑based prioritization, SLA tracking and compliance reporting aligned with RMF, NIST SP 800‑53/171 and CMMC, empowering remediation decisions and audit readiness. Collaborates with stakeholders to reduce overdue vulnerabilities, maintain repository health, and support continuous improvement of security posture.
Overview
8
8
years of professional experience
4
4
years of post-secondary education
3
3
Certificates
Work History
Senior Systems Engineer, Cybersecurity
Infosys Public Services Inc.
Newport News , VA
07.2022 - 04.2023
Standardized DFARS, FISMA, NIST 800-53 and NIST 800-171 practices across federal clients, improving compliance consistency and readiness.
Centralized vulnerability tracking in Archer eGRC, delivering monthly executive risk metrics that improved remediation prioritization and decision making.
Coordinated secure integration of more than 10 client operations during new security implementations, ensuring continuity and zero security incidents during transitions.
Monitored emerging threats and compliance mandates, updating vulnerability management procedures within 48 to 72 hours to enhance response readiness.
Facilitated cross-functional collaboration among 5–8 departments to align remediation priorities and reduce resolution cycle time for program deliverables.
Administer Tenable Security Center enterprise vulnerability platform managing 55,000+ licensed IPs and 25,000+ Nessus Agents across three organizational divisions; maintain multiple Nessus Managers and distributed scanners across internal, DMZ, CUI enclave, and development zones.
Led enterprise transition from network-based to agent-based vulnerability assessment, orchestrating phased deployment of 20,000+ agents over 8 weeks, achieving
Manage PKI integration and TLS/SSL certificate validation across Tenable.sc, Nessus Managers, and distributed scanners maintaining secure communications; serve as SSH Credential Administrator enabling credentialed scanning across multi-site Windows and Linux infrastructure aligned with organizational security policies.
Design and maintain multiple performance-optimized repositories for vulnerability assessment, compliance audits, and agent-based results, enforcing a
Configure and maintain multi-platform network segmentation for scan zones (internal, DMZ, CUI enclave, development), coordinating firewall rules and ACLs with NOC and security teams; ensure reliable scanner and agent communications across distributed infrastructure supporting mission-critical vulnerability assessment operations.
Expanded vulnerability assessment coverage from 27K to 63K assets by onboarding new network segments and optimizing Tenable.sc scanning policies.
Enforced remediation workflows and scan validation, increasing remediation rate toward 98% and reducing overdue vulnerabilities.
Investigated and resolved scan failures by addressing policy, credential, and network issues, improving scan completeness and data quality.
Developed documentation and trained administrators, standardizing scanning procedures and improving onboarding efficiency.
Supported CMMC Level 2 readiness and RMF alignment efforts by mapping vulnerability management processes to NIST SP 800-53 and 800-171 control requirements.
Successfully managed vulnerability assessments and remediation efforts for 75,000 devices across 10+ nationwide sites at NNS.
Achieved a remarkable 98% monthly remediation rate by the end of 2020, a substantial improvement from the previous 70%.
Implemented effective strategies, resulting in an 87% reduction of overdue vulnerabilities by the end of 2020 while reducing Mean Time to Respond/Remediate (MTTR) from 14.5 to 5.58 days.
Streamlined processes and reduced administrator time for remediation from 3.4 to 1.02 hours per week, significantly enhancing MTTR.
Maintained a comprehensive internal knowledge management system for vulnerability and compliance, which elevated NNS' vulnerability management education and training initiatives.
Recognized with the NNS Excellence in Action award in 2018 for outstanding contributions to the field of cybersecurity vulnerability management.
Provided client support on system operation and troubleshooting.
Education
Master of Science - Cyber Operations
ECPI University
Virginia Beach, VA
08.2019 - 05.2021
Bachelor of Science - Network And Cyber Security
ECPI University
Virginia Beach, VA
06.2015 - 06.2017
Skills
Tenablesc
Certification
CompTIA Security+
Work Availability
monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse
Quote
"The greatest glory in living lies not in never falling, but in rising every time we fall."
Sr. PLM Applications Analyst – Principal Consultant at INFOSYS Public ServicesSr. PLM Applications Analyst – Principal Consultant at INFOSYS Public Services