Andrew K.

Andrew K. Email and Phone Number

Cybersecurity @ Google
Lake Mary, FL, US
Andrew K.'s Location
Lake Mary, Florida, United States, United States
About Andrew K.

Information Security advisory professional with several years of experience in the government and public services sector with a focus on governance, risk and compliance.

Andrew K.'s Current Company Details
Google

Google

View
Cybersecurity
Lake Mary, FL, US
Website:
goo.gle/3DLEokh
Employees:
315106
Andrew K. Work Experience Details
  • Google
    Cybersecurity
    Google
    Lake Mary, Fl, Us
  • Deloitte
    Team Lead - Cyber
    Deloitte Aug 2022 - Present
    Worldwide, Oo
    • Provided cyber resiliency and remediation services to the U.S. Department of Navy, Chief Information Officer (CIO). Assist CIO and the Logistics (LOG) systems for systems audits, including creating audit-ready IT control policies and procedures, developing remediation plans for audit findings, and providing insight to clients as they work toimprove their readiness.• Designed, documented, and implemented policies and procedures regarding access controls, interface controls, and complimentary userentity controls (CUECs).• Provided cyber resiliency and remediation services to the Naval Facilities Engineering Command (NAVFAC), U.S. Navy. Assist NAVFAC in preparing for systems audits, including creating audit-ready IT control policies and procedures, developing remediation plans for audit findings, and providing insight to clients as they work toimprove their readiness.• Created and managed the execution of corrective action plans (CAPs) and Plan of Action and Milestones (POA&Ms) to remediate identified IT control deficiencies.• Identified gaps and provided recommendations for revising/developing formalized IT control policies and procedures for cloud operatingenvironments.• Assisted NAVFAC in the preparation and execution of walkthroughs and PBC requests in response to internal and external audit testing efforts.• Designed, documented, and implemented policies and procedures regarding access controls, interface controls, and complimentary user entity controls (CUECs) for Navy Enterprise Systems.• Led risk assessment implementation over Department of Navy’s Enterprise information systems and identified key risks and deficiencies.• Provided systems audit readiness and remediation effort services to the U.S. Navy.• Provide remediation and quality assurance effort services to the U.S Navy, including design, implementation, and testing of cloud-based Enterprise IT Controls in accordance with FISCAM, NIST 800-53, and DON IT Standard Controls.
  • U.S. Department Of Energy (Doe)
    Information Technology Auditor
    U.S. Department Of Energy (Doe) Oct 2020 - Aug 2022
    Washington, Dc, Us
    • Managed a 4-person team to perform numerous security control assessments of DOE systems operating in highly sensitive environments against NIST 800 series technical, physical, and administrative controls.• Supervised and mentored newly onboarded auditors on career progression and navigating audit lifecycle.• Performed risk-based audit work in accordance with GAGAS and FISCAM methodology.• Performed audit work as part of yearly FISMA projects across multiple program offices.• Identified numerous, high-risk, areas of importance to national security for inclusion in annual audit plan.• Led statistical analysis on vulnerability assessment and scanning results generated by Tenable Nessus across over 200,000 scanned IP addresses.• Validated remediation of POAM’s through review of implementation and documentation within System Security Plans and other authorization package items.• Led the analysis and investigation of packet captures of network traffic utilizing Wireshark.• Performed analysis of firewall rulesets for firewalls operating across numerous environments.• Led analysis of over 10,000 recorded incidents occurring over a 2-year period utilizing Splunk.• Developed and issues recommendations on technical, physical, and administrative control implementations based on assessment findings.
  • United States Department Of Defense
    Information Technology Auditor
    United States Department Of Defense Nov 2018 - Oct 2020
    Washington, Dc, Us
    • Performed control assessments of Air Force systems across a range of operating environments at multiples bases.• Developed and led the execution of local audit programs containing detailed steps to identify and support conditions, causes, and effects for supervisor approval prior to audit application.• Identified Data Breach involving highly sensitive PII exposure across the Air Force, impacting nearly 50,000 personnel, resulting in an operational report sent to CSAF and the Office of the Joint Chiefs.• Managed a team of auditors to evaluate large caseloads of data for PII evaluations.• Collaborated with Directorate level personnel to lead in the creation of enterprise-wide audits focusing on cyber risks to the Air Force.• Provided supervisors with well-developed audit needs prioritized based on Air Force high priority areas, potential mission impact, and compliance issues.• Performed validation of audit recommendations by conducting interviews and collecting evidence of corrective action implementation.• Designed social engineering/phishing campaigns utilizing tools within Kali Linux.

Andrew K. Skills

Cisa Auditing Security Incident Response Public Speaking Generally Accepted Accounting Principles Cybersecurity Powerpivot Cyber Physical Systems Incident Response Enterprise Risk Management Interest Rate Risk Management Forecasting Commodity Risk Management Wireshark Kali Linux Tableau Interest Rate Derivatives Data Cleaning Data Visualization Internal Audits Microsoft Access Options Strategies Community Outreach Customer Service Iso 27001 Python Machine Learning Volunteer Management Nist 800 53

Andrew K. Education Details

  • Georgia Institute Of Technology
    Georgia Institute Of Technology
    Cybersecurity
  • University Of Central Florida
    University Of Central Florida
    Accounting And Statistics

Frequently Asked Questions about Andrew K.

What company does Andrew K. work for?

Andrew K. works for Google

What is Andrew K.'s role at the current company?

Andrew K.'s current role is Cybersecurity.

What schools did Andrew K. attend?

Andrew K. attended Georgia Institute Of Technology, University Of Central Florida.

What skills is Andrew K. known for?

Andrew K. has skills like Cisa, Auditing, Security Incident Response, Public Speaking, Generally Accepted Accounting Principles, Cybersecurity, Powerpivot, Cyber Physical Systems, Incident Response, Enterprise Risk Management, Interest Rate Risk Management, Forecasting.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.