Information System Security Officer
Washington, Dc, Us
Managed computer operations per federal, Department of Defense (DoD), healthcare, and local policies. Provided input on InfoSec requirements and modified InfoSec program to meet changing requirements. Conducted user cyber security training. Identified, responded to, and reported on possible security violations. Ensured compliance with security guidelines and supervised mitigation measures when vulnerabilities were discovered. Conducted compliance audits for InfoSec inspections and verified privacy and HIPAA requirements were met.Highlights:*Awarded for maintaining security controls on healthcare systems (AHLTA, Essentris, and CHCS) and workstations at a military hospital with more than 450 systems and 1,000 users across seven locations. *Recognized and awarded for performance during successful DoD Cyber Security Readiness Inspection. Maintained 87 system administrator records, tracked 275 system vulnerability alerts, and revised 23 standard operating procedures (SOP).*Recognized and awarded for performance during Computer Network Defense Service Provider inspection; ensured compliance in 20 areas of information security, security management, and continuity of operations, resulting in the third consecutive score of 100%.*Developed and instituted Insider Threat program, monitoring and auditing two network enclaves for both outside and inside threats and vulnerabilities.*Trained two Insider Threat Coordinators on expected tasks to support InfoSec operations, including user account auditing, software patching spot checks, log review, and creation of required reports.*Strengthened the organization through maintaining an IT inventory for military hospital and six branch clinics, tracking more than 3.1K items valued at over $3.7M, recycled 786 items worth $400K, and eliminated a five-year administrative backlog of 1K hard drives, saving more than $100K in disposal fees.