Cyber Security Experience
- Information systems compliance standards including: NIST Special Publications 800-30, 800-37, 800-53, 800-61, 800-126; DoD DIACAP, DISA Security Technical Implementation Guides (STIGs), Risk Management Framework (RMF), and ISO-27001. Extensive experience scanning information systems with software tools such as: Tenable Security Center and Nessus, SCAP scanner, OpenVas, Acuetix, and Nmap.
- Audit Analyst and perform the following during a system assessment:
- Vulnerability scans review
- Vulnerability and configuration analysis
- Categorize vulnerabilities and assign/parse/map them to their respective controls for deficiency reporting
- Review system configurations and perform a configuration assessment
- Vulnerability instance count in the environment as well as a vulnerability count per asset.