Cyber Security Engineer
CurrentManage authorization lifecycle of numerous DoD national security information systems by developing and maintaining system security plans, assessing control implementations, and continuously monitoring controls. Act as subject matter expert for NIST 800-53 controls in support of third-party system control validation testing. Synergize with internal and external teams to achieve cybersecurity goals.• Successfully co-led effort to achieve program-wide compliance to CUI identification and marking requirements in accordance with DoDI 5200.48, DFARS 252.204-7012, and NIST 800-171.• Steered federally required training sessions live to entire program comprising of 1200 employees for CUI transition.• Coordinated with various business areas to ensure NIST 800-171 compliance, as well as aid in flowing down requirements to suppliers.• Executed regular table-top training exercises for incident response and contingency planning (leveraging NIST 800-61 and 800-34, respectively).• Created and updated both program and system-specific policies on defined frequencies, as well as develop additional documents such as Standard Operating Procedures.• Maintained numerous systems’ Plan of Action & Milestones to track vulnerability mitigation efforts and control implementations.• Lead recurring meetings with government customer to coordinate cybersecurity requirements and system authorization needs with internal team.• Tracked system access by conducting relevant cybersecurity trainings and maintaining current inventory of user certifications as required by FISMA and DoD 8570.01-m.