Cyber Security Experience

  • Information systems compliance standards including: NIST Special Publications 800-30, 800-37, 800-53, 800-61, 800-126; DoD DIACAP, DISA Security Technical Implementation Guides (STIGs), Risk Management Framework (RMF), and ISO-27001. Extensive experience scanning information systems with software tools such as: Tenable Security Center and Nessus, SCAP scanner, OpenVas, Acuetix, and Nmap.
  • Audit Analyst and perform the following during a system assessment:
    • Vulnerability scans review
    • Vulnerability and configuration analysis
    • Categorize vulnerabilities and assign/parse/map them to their respective controls for deficiency reporting
    • Review system configurations and perform a configuration assessment
    • Vulnerability instance count in the environment as well as a vulnerability count per asset.