Bryan Blank
AeroLeads people directory · profile

Bryan Blank Email & Phone Number

Senior Cybersecurity Cloud Engineer at U.S. Department of State
Location: Waterford, Virginia, United States 11 work roles 1 school
LinkedIn matched
✓ Verified August 2026 3 data sources Profile completeness 86%

Contact Signals

LinkedIn Profile matched
3 free lookups remaining · No credit card
Current company
Role
Senior Cybersecurity Cloud Engineer
Location
Waterford, Virginia, United States
Company size

Who is Bryan Blank? Overview

A concise factual answer block for searchers comparing this professional profile.

Quick answer

Bryan Blank is listed as Senior Cybersecurity Cloud Engineer at U.S. Department of State, a with 26935 employees, based in Waterford, Virginia, United States. AeroLeads shows a matched LinkedIn profile for Bryan Blank.

Bryan Blank previously worked as Senior Cybersecurity Engineer at Dc Government and Senior Information Security Consultant at Novavax. Bryan Blank holds B.S., Biology from Shepherd University.

Company email context

Email format at U.S. Department of State

This section adds company-level context without repeating Bryan Blank's masked contact details.

U.S. Department of State

Review company-level records connected to Bryan Blank before choosing the right outreach path.

Profile bio

About Bryan Blank

Executive leader with over 20 years of experience steering organizations towards cybersecurity frameworks, architecting information security programs, fortifying critical IT infrastructures, and implementing cutting-edge technologies. I have led cybersecurity initiatives and executed enterprise-wide security strategies that improved the security posture for private and public sector customers. I drove Dev/Sec/Ops collaboration to configure WAFs with layered defenses, using Microsoft Azure Government (MAG) and third-party solutions.With strong information security acumen, I specialize in engineering and applying secure cloud environments, designing security measures for cloud infrastructures, enhancing system integrity, and protecting big data assets. My advanced expertise lies in cloud security best practices, deploying scalable solutions, and staying ahead of emerging threats.Areas of Expertise:Information Security Program Implementation, Cloud Design and Architecture, Systems and Applications Penetration Testing, Threat Modeling and Hunting (Red Team / Purple Team), Ethical Hacking, IT Governance and Compliance, Incident Response and Management, Managed Security Services Provider (MSSP), SDLC, Cradle-To-Grave Security Management, Cybersecurity Policy Development, Threat Intelligence and Analysis, Security Awareness and Training, Budgeting, Vendor Management, Security Audits and Assessments, Security Impact Analysis (SIA) and Business Impact Analysis (BIA), Security Testing and Evaluation (STE)Industry Experience:IT Services and IT Consulting

Current workplace

Bryan Blank's current company

Company context helps verify the profile and gives searchers a useful next step.

U.S. Department of State
U.S. Department Of State
Senior Cybersecurity Cloud Engineer
washington, district of columbia, united states
Website
Employees
26935
AeroLeads page
11 roles · 23 years

Bryan Blank work experience

A career timeline built from the work history available for this profile.

Senior Cybersecurity Cloud Engineer

Current

Spearhead audit defense efforts for the development and integration of the new system's ATO, during a DoS security assessment. Lead the SecOps team in handling all security and operations tasks. Support the completion of Penetration Tests by engaging in remediation activities. Function as the Alternate Information System Security Officer (AISSO) to administer Continuous Monitoring activities and report, according to Department requirements. Devise the architectural framework and system security design, tailoring configurations to align with requirements of MAG.● Managed web application security within MAG while overseeing the life-cycle management of Public Key Infrastructure (PKI) certificates, across all environments.● Implemented data flow of all application data through WAFs in managing virtual services, servers, content rules, website translations, header request rewrites, redirects, and application policies for each container.● Designed secure remote access architecture, leveraging third-party network firewalls Cloud Virtual Desktop Interfaces with multi-factor authentication to safeguard critical systems.● Employed vulnerability management solutions by incorporating Tenable Nessus, Acunetix, and Fortify to address security weaknesses.● Orchestrated audit log management through Azure Sentinel and Log Analytics for native and third-party solutions, encompassing multiple cloud environments.● Support configuration management practices in ServiceNow to maintain integrity of system configurations.● Developed and built second Geo-managed cloud data center architecture (primary processing site) managing configuration of services, dataflows, and applications.

Mar 2016 - Present

Senior Cybersecurity Engineer

Gathered and integrated cybersecurity processes from the DC Government to map against mandated security controls, in collaboration with OCFO and OCIO entities. Aligned IRS security requirements and NIST SP 800-53 Revision 4 standards maintaining FISMA 2014 compliance.Executed a multi-year contract by performing the Modernized Integrated Tax System (MITS) Penetration Test. Led the assessment of OCIO General Support System Disaster Recovery (DR) readiness while providing strategic counsel to the DC Government CIO and AISO on data center relocation options, including co-location and cloud migration for DR remediation. Coordinated planning, needs analysis, data center capacity review, critical systems analysis, and Cloud Service Provider migration.● Directed the security assessment of the Modernized Integrated Tax System (MITS) to evaluate application and IT infrastructure hosted by a third-party contractor, across multiple geographical regions.● Executed an Interim Security Assessment to inform application operational determinations in delivering an Interim Provisional Security Assessment Report, as per the DC Government, NIST SP 800-53, and IRS Pub 1075 guidelines.● Led a penetration test team for both external and internal assessments of network and web/mobile applications.

Senior Information Security Consultant

Oversaw the annual IT Security Assessment for enterprise systems and applications across multiple sites. Assumed responsibilities, including documentation review, technical implementation and architecture review, and IT configuration review, specifically focusing on Access Control (Identification & Authentication), Auditing, and Data Encryption.● Conducted discovery and vulnerability scans for internal domain and web applications, using Tenable Nessus Manager and Burp Suite Pro.● Evaluated the design of traditional networks and AWS Virtual Private Clouds (VPCs) for four distinct business units (separate companies). ● Utilized HIPAA, HHS, ISO 27001, and NIST standards and guidance as input for penetration test reports.

Senior Information Technology Security Consultant

Led the annual IT Security Assessment for enterprise systems and applications, encompassing on-premises data center and cloud architecture, aligned with NIST SP 800-171 standards. Delivered Security Assessment Reports (SAR) and provided overview of security posture and actionable insights. Performed malware assessments, as per NIST requirements, for defense against potential cybersecurity threats

May 2019 - Jan 2024

Senior Information Technology Security Consultant

Developed Information Request List and Project Schedule via SmartSheet, briefing the planned approach to AT&T TNet ISSO, ISSM, and security staff. Initiated the assessment to review security policies, procedures, and support plans. Provided High Baseline security assessment services for AT&T ISSM and ISSO in support of the Triennial Security Assessment and Authorization for TNet. Notable actions include:● Created SAP/ROE and evaluated documented controls within the SAP through onsite and telephone interviews, testing, and continuous monitoring artifact reviews over four months. Performed internal and external penetration testing of in scope network.● Assessed physical and environmental controls at the TNet AT&T Global Customer Support Center Data Center in Charlotte, NC to deliver a separate assessment report to Treasury and AT&T ISSMs and ISSO.● Drafted and submitted an updated RTM for all security controls assessment, incorporating DHS Reference Architectural Controls, Treasury mandates, and NIST guidance.● Led a penetration test team for both external and internal assessments of network and web/mobile applications.

May 2015 - Oct 2019

Senior Information Technology Security Consultant

Performed initial security assessment for commercial third-party mortgage servicer by merging vulnerability and configuration scanning. Oversaw the secure design of an AWS VPC and implemented security tools, including vulnerability management, in compliance with FedRAMP. Delivered Security Engineering support as part of the ISSO role for an OPM contractor system, incorporating:● FISMA accreditation management, Incident Response support, Threat & Log Management tool deployment and management, Vulnerability assessment and analysis, and AWS security engineering assessment and remediation.

Jun 2016 - Apr 2017

Chief Information Security Officer / Senior Cybersecurity Consultant

Managed the security of all IT operations infrastructure, including the Cyber Incident Response Team (CIRT), log analysis, incident response, threat analysis, and risk management. Carried out penetration testing for a large non-profit organization, spanning 14 sites across North America, South America, Africa, Asia, and Europe.● Served as the Certification and Accreditation Project Manager to provide direct support to the DOD customer:o Established and managed projects adhering to DOD DIACAP and NIST requirements. Offered guidance to the Chief Information Security Officer (CISO) to harden (DISA STIGS), role-based access, and application security.● Led the successful authorizations for 25 systems for a DOD government customer within a 12-month timeframe:o Conducted vulnerability scans on all systems using government-required tools, including eEye Digital Security’s Retina Network Security Scanner and DISA STIGs

Dec 2011 - Oct 2014

Global Ciso

Ppc

Mclean, Va

• Responsible for implementing and managing the AEA Global Information Security Program• Manage and update all IS Policies and Procedures in support of the AEA Global Information Security Program• Responsible for managing the security of all IT infrastructure within the AEA N.A. and European operations.• Responsible for managing all IS accreditations to include ISO 27001, HMG InfoSec Standards, FISMA, and other regulatory compliance which includes adherence to:o ISO Security Elements/NIST 800-53 security controlsManagement/Operational/Technical controls• Responsible for performing continuous monitoring for all Information Security systems and infrastructure to include:o Design and implementation of enterprise security architectures for AEA N.A. and European operationso Security solutions (both infrastructure and application) including the design, configuration, development, testing and deployment of security-related technologies such as Anti-Virus, IDS/IPS, DLP, and Network Access Controlo Automated scanning of all system infrastructure servers and network deviceso IS configuration management and control of all IT systems• Manage personnel who support IS accreditation tasks and projects.• Responsible for performing Risk Management including managing remediation for all risks identified as part of Continuous Monitoring and accreditation efforts.• Responsible for managing and implementing the security alerts and advisories program, system auditing, personnel security, and physical/environmental security of the AEA N.A. facilities.• Responsible for managing the Business Continuity/Disaster Recovery plans and implementation throughout the enterprise.• Provide executive summary and dashboard IS risk management reviews to the AEA Global CIO and AEA Executive Team.• Responsible for the PPC Facility Clearance, Personnel Clearances (Government Agencies), and Security Requirements and Education in accordance with NISPOM and DoE requirements.

2009 - Jan 2012

Principal Consultant

Mclean, Va

United States Department of Justice /Victim Notification System (VNS) • Serve as Information System Security Officer (ISSO) for the Victim Notification System (VNS) and Victim Information System (VIS). The ISSO responsibilities include:o Serve as the principal advisor to the authorizing official, System Owner (SO), and CISO on all matters involving the security of the information system.o Coordinate and advise the SO with respect to any changes to the system and perform security impact analysis (SIA) and security considerations specific to life-cycle managementUnited States Department of Education / Budget Formulation & Execution Line of Business (BFELoB) Technical Program Support Performed assessment of OMB MAX Community system and major applications in support of FISMA accreditation. • Senior and Technical Lead for penetration testing of an infrastructure system in order to examine the effectiveness of the security controls in place and identify management, operational, and technical vulnerabilities.• Produced Penetration Test Report and provided briefing of all results to Senior Management team.

2008 - 2009 ~1 yr

Sr. Analyst

Ppc

Mclean, Va

United States Patent and Trademark Office (USPTO) / Office of the Chief Information Officer, Information Technology Security Management Group (ITSMG) Certification and Accreditation (C&A) Program Support • Provided Senior Security Engineering support for the USPTO Network (PTONet III) task.• Served as Program Manager responsible for managing the IT Security and Certification and Accreditation program support for all USPTO ITSMG task orders including management and direct oversight of System Development Life Cycle (SDLC) and C&A activities. • Served as Information System Security Officer (ISSO) for the Patent File Wrapper (PFW) system. • Managed a staff of 25 security consultants and project managers including sub-contractor personnel.Managed Security Services Provider (MSSP) - Department of Education• Project Manager and Principal Security Consultant for the management of a Managed Security Services program in support of the Department of Education Office of the Chief Information Officer. • Responsible for leading a team in the development and implementation of the following consultant services as part of the MSSP:o Penetration Testingo Antivirus infrastructure effectiveness assessmentso External connectivity assessmentso Firewall management analysiso Security architecture independent verification and validation (IV&V)o Incident response notificationo Auditing and compliancy reviewso Security compliance tools analysiso Business continuity/disaster recovery plan establishment

2006 - 2007 ~1 yr

Director Of Information Security

Reston, Va

• Successfully managed the Certification and Accreditation of all Enterprise Systems in accordance with the National Institute of Standards and Technology (NIST) 800 series for government clients• Managed successful third-party security audits for commercial clients • Created a Configuration Control Board (CCB), supporting CCB policies, Configuration Management (CM) plan and serve as chairperson on the CCB• Performed information security audits to measure compliance to standards as well as the level of vulnerability and protection throughout the enterprise• Served as Contingency Plan Coordinator• Provided Senior Management reports on Information Security issues related to project status, security breaches and incidents, and relevant metrics

2004 - 2006 ~2 yrs
Team & coworkers

Colleagues at U.S. Department of State

Other employees you can reach at state.gov. View company contacts for 26935 employees →

1 education record

Bryan Blank education

FAQ

Frequently asked questions about Bryan Blank

Quick answers generated from the profile data available on this page.

What company does Bryan Blank work for?

Bryan Blank works for U.S. Department of State.

What is Bryan Blank's role at U.S. Department of State?

Bryan Blank is listed as Senior Cybersecurity Cloud Engineer at U.S. Department of State.

Where is Bryan Blank based?

Bryan Blank is based in Waterford, Virginia, United States while working with U.S. Department of State.

What companies has Bryan Blank worked for?

Bryan Blank has worked for U.S. Department Of State, Dc Government, Novavax, Avalonbay Communities, and At&T.

Who are Bryan Blank's colleagues at U.S. Department of State?

Bryan Blank's colleagues at U.S. Department of State include Teresita Bernales, Taylor Mauck, Tiffany Brown-Louis, Chief Dr. Lance Jones Sr, and Kevin Fedyk.

How can I contact Bryan Blank?

You can use AeroLeads to view verified contact signals for Bryan Blank at U.S. Department of State, including work email, phone, and LinkedIn data when available.

What schools did Bryan Blank attend?

Bryan Blank holds B.S., Biology from Shepherd University.

Find 750M verified contacts

Search by job title, company, industry, location, and seniority. Export verified B2B contact data when you need it.

People with similar names

Check these profiles if this is not the Bryan Blank you were looking for.

View similar profiles