Contingency Planning Cyber Security Supervisor
Washington D.C. Metro Area
Managed a team of cybersecurity professionals in communicating and enforcing security policies, procedures and safeguards for VA systems and facilities, based upon NIST standards. Led efforts to analyze and advise on the risk and remediation of security issues. Initiated, coordinated and tracked the patching and remediation of security weaknesses as discovered, via POA&M.• Performed system security analyses to ensure systems met guidelines under the NIST and VA-6500 publications. Examined NIST 800-53 in comparison to security and privacy controls for Federal Information Systems• Managed artifacts in GRC Tool - RiskVision (Privacy Impact Assessment (PIA), Standard Operating Procedures (SOP), System Security Plan (SSP), Interconnection Security Agreement/Memorandum of Understanding (ISA/MOU), Incident Response Plan (IRP), Risk Assessment (RA), Disaster Recovery Plan (DRP), Information System Contingency Plan (ISCP), Configuration Management Plan (CMP), and POA&M)• Executed analysis within the RMF and Security Assessment Framework (SAF), to address the security concerns of information systems. Coordinated with Enterprise Project Management Office (EPMO) team to provide update on technical test requirements• Managed evaluations of evidence to determine whether security controls comply with organizational policies. Investigated system discrepancies, mitigated risk and failures, and collaborated with the client to resolve issues• Led meetings to discuss various implementation methods, providing stakeholders with daily and weekly reports