Craig Durham

Craig Durham Email and Phone Number

Senior Information Security Engineer with expertise in network security @ ICEYE US
Craig Durham's Location
Anaheim, California, United States, United States
Craig Durham's Contact Details
About Craig Durham

Senior Information Security EngineerAccess Management - Cyber Threat Intelligence – IT Operations ManagementStrategic Planning & AnalysisInformation Systems Endpoint DetectionSecurity ControlsRisk Assessment & MitigationTesting MethodologiesTest Plan DesignNIST 800-53 FISMANIST 800-171 DFARSCross-Team Collaboration Technically sophisticated and accomplished professional with extensive experience leading cyber security and network intelligence operations for the protection of computer networks and information.Adept at implementing new procedures and technologies to strengthen security posture, enhance operational efficiency, and control costs. Demonstrated success in developing security standards, assessing/mitigating potential risk, and analyzing complex information.Analytical planner deft at analyzing and isolating business challenges, as well as devising solutions to resolve issues.Articulate communicator, skilled in building and strengthening relationships across functions to drive cohesive, strategic operations.

Craig Durham's Current Company Details
ICEYE US

Iceye Us

View
Senior Information Security Engineer with expertise in network security
Craig Durham Work Experience Details
  • Iceye Us
    Cyber Security Specialist
    Iceye Us Sep 2024 - Present
    Irvine, Ca, Us
  • Insight Global - Uc Office Of The President
    Senior Information Security Engineer
    Insight Global - Uc Office Of The President May 2023 - Apr 2024
    Responsible for security operations to assist with incident response, endpoint protection, reading of alerts, and will be the primary point of contact to work directly with the customer on regular project meetings, trainings, etc. assist not only with building out a security system and protocols but also work with end users and customers, implement business projects, write documentation, create dashboards, and translate technical concepts into clear business focused language. the point contact running with creating reports to present to the client, provide end-user security training, provide expedited support and response to clients, assist with vendor risk assessments, and work with other teams to implement project goals. Partner closely with teams across the company and focus on systemic security improvements and risk reduction.• Ability to read alerts and provide incident response activities as well as perform additional Security Operations duties.• Experience with basic security skills to support and participate in operational security responsibilities like security reviews and consulting, external research/bug-bounty triage, incident response, risk management and remediation.• Conduct assessments to identify current and new attack vectors against Figma products and services and develop technical solutions to help mitigate security vulnerabilities.
  • Pyramid Consulting, Inc
    Senior Informaton Security Engineer
    Pyramid Consulting, Inc Nov 2022 - May 2023
    Worldwide, Us
    Pyramid Consulting – Centene CorporationSenior Information Security EngineerResponsibilitiesThe Senior Security Engineer is a key member of a team of security experts providing security platform management and operations expertise to protect the Centene Corporation Enterprise. The team manages network security on-prem. The Senior Security Engineer’s role is to provide operational security solutions that would enable the success of IT and business initiatives. This role will interact with business customers, auditors, third parties, vendors, as well as IT groups across the company. Responsibilities will include managing initiatives and providing technical expertise.Essential Functions• Authenticated and authorized vulnerability scanning of a hybrid enterprise across a variety of technologies and environments to determine high risk vulnerabilities to business assets.• Investigate, recommend, evaluate, deploy and integrate security tools and techniques to improve our ability to protect corporate assets and infrastructure.• Participated in technical risk assessments and security exposure analyses of systems, networks and business applications.• Keep up to date on new Cyber Security trends and threats. Advise on issues and recommend proactive measures.• Assist in defining and implementing Information Security technologies and/or processes required into corporate frameworks.• Interact with internal and external clients on security requirements, identify security processes and develops strategies/solutions to security issues while maintaining tight security discipline.• Develop test plan and implement rigorous testing prior to rollout of new systems into the production environment.• Regularly interacts with senior management and peers in other departments for purposes of gaining cooperation, exchanging technical information, and presenting project plans and reports.
  • First American Title
    Senior Information Security Engineer
    First American Title Jan 2021 - Nov 2022
    Santa Ana, Ca, Us
    • Contributed to the daily operational aspects of the Information Security Team, primarily from a technical implementation perspective.• Lead Engineer on Project to introduce new Firewall Management Application to Environment. This includes manage the point of concentp process to deployment of new tool. Work with Vendors as needed. Create all documentation for new tool. Provide training to staff as needed.• Performed quarterly Firewall Rules review and clean-up • Performed periodic vulnerability testing and assisting in remediation efforts.• Setup Endpoint Data Loss Prevention for safeguarding sensitive data information and maintained compliance.• Created and update technical procedures as needed.• Assisted with break/fix of tools and automation that are owned by the Information Security Team.• Cyber-attacks identification, monitoring, implementation of cyber-attacks prevention, and alerts security controls.• Worked with internal and external customers on a variety of issues, from a simple security review of a mundane and routine ask, to a complex deep dive into a new feature implementation in O365, Azure, or AWS.• Assisted in planning the company’s cybersecurity risk management framework, laws, and policies.• Balances operational work (approximately 70% of the day) to help meet team SLAs, and project work (approximately 30% of the day) to meet assigned team deliverables.• Developed technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks.
  • Alignment Healthcare
    Senior Information Security Engineer
    Alignment Healthcare Jul 2020 - Jan 2021
    Orange, Ca, Us
    Reporting to the Director of IT Security Compliance, primary lead on Vulnerability management systems includes performing technical tasks on systems owned and managed by the team. This includes primary lead on Rapid7 – InsightVM, Thycotic – Secret Server, Crowdstrike – Falcon, KnowBe4, and Varonis. Responsibilities• Contributes to the daily operational aspects of the Information Security Team, primarily from a technical implementation perspective.• Assists with break/fix of tools and automation that are owned by the Information Security Team.• Works with internal and external customers on a variety of issues, from a simple security review of a mundane and routine ask, to a complex deep dive into a new feature implementation in O365, Azure, or AWS.• Balances operational work (approximately 70% of the day) to help meet team SLAs, and project work (approximately 30% of the day) to meet assigned team deliverables.• Contributes to the design, implementation, and documentation of new security tools.• Use appropriate tools and applications to manage and support Vulnerability Management and Privilege Access Management (PAM) process.• Collaborates with other internal information technology teams (networking, cloud, traditional architecture, developers, and data scientists) to support internal and external systems.• Utilizes scripting and DevOps to provide automation and orchestration between:• information security tools, such as the SIEM (InsightVM);• endpoint protection (CrowdStrike Falcon);• vulnerability scanners (Rapid7, Nessus, etc.);• patch management (Avanti.);• other applications;• OS’ (Windows, MacOS, Linux, iOS, Android);• cloud platforms (AWS, Azure); and• IAM platforms (Active Directory, Okta, Auth0, PingIdentity, SAML, OIDC).• Clearly documents designed automation and system relationships.
  • Opus Bank
    Security Analyst
    Opus Bank Apr 2019 - Jul 2020
    Irvine, California, Us
    Reporting to the FVP of IT Security and Compliance, supporting daily IT Security operations includes performing technical tasks on systems owned and managed by the team. The IT Security Analyst will support and maintain the Bank’s information technology security environment as well as work with vendors and internal staff to identify and troubleshoot security issues. The analyst will provide first & second level security monitoring and analysis and address information security alerts and events.Responsibilities• Monitor server logs, firewall logs, intrusion detection logs, and network traffic for anomalous and suspicious activity.• Interpret activity and make recommendations for resolution and/or prevention.• Make recommendations to improve the security posture of the organization through the implementation of new technology or through modification of existing configurations.• Manage and maintain security systems and their corresponding or associated software, including intrusion detection systems, Network Access Control, Antivirus, Web Application Firewall, and SIEM.• Keep current with emerging security issues, trends, and tools.• Assist with Security Awareness activities including employee awareness training and internal phishing campaigns,• Assist with vulnerability management program including internal and external penetration tests, vulnerability scanning, and vulnerability remediation efforts.• Assist with gathering IT security metrics to measure the effectiveness of the security program.
  • Northrop Grumman Corporation
    Cyber Security Analyst
    Northrop Grumman Corporation Apr 2015 - Mar 2019
    Falls Church, Va, Us
    provide technical leadership and vision in developing and performing security controls risk assessments of programs, environments, applications, and assets throughout the company. Select, configure and maintain applications and devices to support vulnerability scanning, penetration testing, and other technical testing of security controls. Review security related regulations and controls such as DoD 8500 Series, NIST 800-53, OSSTMM, and others to determine how to leverage within Northrop Grumman. Participate in tiger teams as a risk subject matter expert to ensure risk is considered in recommendations to senior leadership.
  • Northrop Grumman Corporation
    Senior Information Security Engineer - Sscp, Security+
    Northrop Grumman Corporation Aug 2003 - Apr 2015
    Falls Church, Va, Us
    Provide support to all Northrop Grumman Enterprise Point of Presence (EPOP) firewall rule base elements for internal and external customers at all locations, with focus on fulfilling their requirements for firewall updates. Requirements include analysis, evaluation and documentation of customer requirements and providing a standard EPOP firewall rule base infrastructure. Perform Enterprise Security Services responsibilities to oversee the management of the NGC Enterprise firewalls per approved NGC Policies, Procedures and Work Instructions. Primary responsibilities include development and support of the EPOP firewalls for NGC and providing assistance, guidance and recommendations for network design reviews and audit support. Good technical background and troubleshooting skills are required in the above-described areas with broader technical skills a bonus. This position also includes a high degree of direct customer interface that requires good interpersonal, communication and diplomacy skills.
  • Itt Technical University
    Adjunct Professor
    Itt Technical University Aug 2011 - Jun 2015
    ESSENTIAL DUTIES AND RESPONSIBILITIES1. Teach all assigned classes, adhering to the policies and practices set by WCO2. Plan for instructional activities to include, but not limited to, lecture, class discussion, demonstration labs, and projects3. Handle classroom routines which include but not limited to the following:a. Actively engage students in weekly discussionsb. Provide a classroom environment conducive to learningc. Administer rules consistently and fairlyd. Establish and maintain classroom controle. Evaluate and return tests, labs and homework in a timely manner4. Use appropriate assessment tools shall be used that includes but are not limited to the following:a. Select, develop and use informal and formal techniques or instruments to measure student learning, modifying teaching strategies if needed. b. Maintain accurate records of grades and student communications.c. Submit all paperwork in a timely manner.5. Identify and assess students who are in need of additional instruction or tutoring to successfully complete the course objectives and provide additional instruction and/or guide students to tutoring resources if needed6. Maintain expertise and technical competence in applicable field of study. If credentialed or certified, maintain all certifications and satisfy all requirements of the professional development plan.7. Attend all meetings, ceremonies and official functions as specified by the Program Director or Dean8. Adhere to published company guidelines in all matters9. Performs any other duties, as assigned.
  • Everest College
    Online Adjunct Professor
    Everest College Jan 2011 - Apr 2015
    ESSENTIAL DUTIES AND RESPONSIBILITIES1. Teach all assigned classes, adhering to the policies and practices set by WCO2. Plan for instructional activities to include, but not limited to, lecture, class discussion, demonstration labs, and projects3. Handle classroom routines which include but not limited to the following:a. Actively engage students in weekly discussionsb. Provide a classroom environment conducive to learningc. Administer rules consistently and fairlyd. Establish and maintain classroom controle. Evaluate and return tests, labs and homework in a timely manner4. Use appropriate assessment tools shall be used that includes but are not limited to the following:a. Select, develop and use informal and formal techniques or instruments to measure student learning, modifying teaching strategies if needed. b. Maintain accurate records of grades and student communications.c. Submit all paperwork in a timely manner.5. Identify and assess students who are in need of additional instruction or tutoring to successfully complete the course objectives and provide additional instruction and/or guide students to tutoring resources if needed6. Maintain expertise and technical competence in applicable field of study. If credentialed or certified, maintain all certifications and satisfy all requirements of the professional development plan.7. Attend all meetings, ceremonies and official functions as specified by the Program Director or Dean8. Adhere to published company guidelines in all matters9. Performs any other duties, as assigned.
  • Northrop Gumman
    Senior Network Infrastructure Engineer
    Northrop Gumman Mar 2004 - Aug 2010
    Provide Network Engineering support to all Northrop Grumman operating elements and external customers at all locations in fulfilling their requirements for designing Widearea (WANs), Local area (LANs) and Metropolitan area networks (MANs). Analyze, evaluate and document customer requirements to provide a standard network infrastructure. Develop cost analysis, design packages, bill of materials, project schedules and design reviews for all assigned projects. Provide network documentation (CN's, Network Diagrams, SnowCat updates, Cisco Equipment database) on all assigned projects and 3rd level network troubleshooting and restoration where needed and when applicable. (Provide Network Engineerig support to customers for all firewall/networking support
  • Northrop Gumman
    Senior Network Engineer
    Northrop Gumman Mar 2003 - Mar 2004
    Develop, implement, and maintain voice and data communications systems involving voice and data communications network hardware and software technology that are cost effective, reliable, secure, and meet business requirements. Define, analyze and evaluate business requirements, identify appropriate technical solutions, coordinate people and activities, manage people, costs and/or budgets, and vendors, solicit other technical requirements and impacts, and provide project management. Perform systems design, testing, prototyping, and performance analysis. Create systems and processes using various computer programming languages and tools. Develop and implement documentation, training, and process instructions. Maintain data integrity and systems security. Enhance technical, customer service, and business skills. Provide team leadership, peer training, and other assistance as needed.
  • Commercial Programming Systems
    Network Consultant
    Commercial Programming Systems Apr 2002 - Nov 2002
    Los Angeles, Ca, Us
  • Southwestern Bell Corporation
    Pre-Sales Network Engineer
    Southwestern Bell Corporation Mar 2000 - Nov 2001
    Southwestern Bell is the second largest telecommunication company in the United States. Provided Pre-Sales technical support for customers of Southwestern Bell.Design, verify, and provide detailed engineering solutions for solving the physical infrastructure and WAN/LAN networking infrastructure business needs for customers. Ensure the integrity, of a design, internetworking, configuration implementation, and operational perspective, for any network system proposal that is presented to a customer. Responsible for writing scope of work, bill of materials, and configuration guide for installation of equipment.Projects: AHF-Ducommun:Designed AVVID solution for the headquarters office and three remote branches offices and 400 users. The solution for this project consisted of Cisco 3640 and Cisco 7006 routers, Cisco 6000 and Cisco 4000 switches. Call Manager, VG200 voice gateways. Developed installation and configuration plan for project.
  • Science Application International Corporation
    Senior Network Engineer
    Science Application International Corporation Sep 1996 - Mar 2000
    SAIC is a technology engineering corporation specializing government contracts;Provided onsite technical support and management of LAN/WAN for U.S. Air Force Contract.Responsible for research, integration, and maintenance of the WAN connectivity for the U.S. Air Force. Set guidelines for WAN connectivity for remote sites. Diagnose and troubleshoot problems. Design, install, implement and maintain LAN/WAN solutions for clients, this includes e-mail, back-up, DHCP, and WAN monitoring software. Research and recommended future growth of WAN. Supported a frame-relay network with thirteen sites utilizing Cisco 2600 series, Cisco 3600 series, and Cisco 7500 series routers. Implemented and configured EIGRP as the WAN routing protocols. Develop and implement security policies for the WAN. Project Manager for a team of five computer support specialists.Performed network administration, which included Windows NT 4.0 and Unix servers, workstations and MS Exchange (Up to 400 users). Managed projects and contacts with vendors as needed. This included services and personnel on an as needed basis. Create inventory database using MS ACCESS to track all LAN/WAN and desktop equipment. Use General Network Sniffer monitoring software to manage, maintain and troubleshoot WAN/LAN. Install, configure and utilize Concord Net health network trend software to determine future growth of LAN/WAN. Use Cisco Works and Net Spy software to monitor network and provide configuration changes as needed to routers. Create reports of Network traffic, problems and solutions, application usage, and make recommendations for upgrades, patches, or new services as needed. Used the following applications and tools in performance of duties: Access, NT Server, NT Tools & Utilities, Software Installation & Upgrade, SQL, Windows NT. Microsoft Internet Information Server (IIS), Microsoft Access, Microsoft SQL Server, and Visio.
  • Computer Science Corporation
    Network Engineer
    Computer Science Corporation May 1995 - Sep 1996
    Computer Science Corporation is an international IT solutions and integration corporation.As Network Engineer provided LAN Administration and Management for Hughes Corporate Headquarters.Responsible for research, integration, and maintenance of the LAN, WAN connectivity, e-mail, and Internet connections for environment consisting of 40 Netware Servers and over 2500 users. Set guidelines for network connectivity and data storage on the network. Develop standard desktop image for PCs and used ghost software to automate upgrade of desktop software Administer cc:Mail. Lead team of three Network engineers and seven desktop support specialist. Managed Novell network, Network administrations, e-mail administration. Set guidelines and policies for network support and Configuration.
  • Turner Broadcasting
    Network Manager
    Turner Broadcasting Oct 1993 - Apr 1995
    Atlanta, Georgia, Us
    Responsible for research, integration, and maintenance of the TBS LAN, WAN connectivity, e-mail, and Internet connections. Develop hardware and software standards. Interact with VARs as needed. Set guidelines for network connectivity and data storage on the network. Migrated users from Quickmail to cc:Mail. Implemented asynchronous communication for mobile users to access cc:Mail. Implemented a switched Ethernet network at the Hanna-Barbera site utilizing Cisco catalyst ether switches. Installed an SMTP gateway for connectivity between cc:Mail and Banyan Vines mail. Configured and installed OS/2 routers for mail connectivity within the west coast region of TBS. Instituted server based anti-virus software. Upgraded Novell servers form 3.11 to 3.12. Configured and installed TCP/IP software on both MAC and PC platforms. Installed Netscape on Macs and PCs for Internet connectivity.
  • The Capital Group
    Technical Support
    The Capital Group Sep 1992 - Oct 1993
    Accra, Gh
    Installed and configured microcomputer LAN system using Netware. Provided phone and on-site technical support for large financial institution. Maintained and administrated Netware and AppleTalk networks. Assisted Legal staff in procurement of hardware, software and new services.
  • Braun Engineering
    Network Administrator
    Braun Engineering 1991 - 1992
    Implement, Maintain and Support Novell Netware LAN for the Company.
  • Capital Group
    It Consultant
    Capital Group 1991 - 1992
    Los Angeles, Ca, Us
  • S. Systems Corp
    Technical Support
    S. Systems Corp Aug 1988 - Jan 1991
  • S. Systems Corp
    Network Administrator
    S. Systems Corp 1988 - 1991
    Implement and Support 3+ Open LAN for customer.
  • U.S. Air Force
    Airman
    U.S. Air Force 1981 - 1985
    Aircrew Life Support System Specialist

Craig Durham Skills

Routers Switches Vpn Tcp/ip Dns Wan Ospf Frame Relay Ethernet Network Administration Dhcp Firewalls Cisco Troubleshooting Hardware Eigrp Visio Ip Snmp System Architecture Ldap Fddi Css Hdlc Modeling Performance Analysis Cost Analysis Engineering Fast Ethernet Content Management T1 Dsl Network Security Security Network Engineering Lan/wan Network Design Computer Hardware Wireless Network Architecture Checkpoint Cisco Technologies Lan Wan Software Installation Integration Voip Computer Security Linux Software Documentation Information Security

Craig Durham Education Details

  • Colorado Technical University
    Colorado Technical University
    Information Security
  • Colorado Technical University
    Colorado Technical University
    Information Technology Management
  • University Of Phoenix
    University Of Phoenix
    Information Technology

Frequently Asked Questions about Craig Durham

What company does Craig Durham work for?

Craig Durham works for Iceye Us

What is Craig Durham's role at the current company?

Craig Durham's current role is Senior Information Security Engineer with expertise in network security.

What is Craig Durham's email address?

Craig Durham's email address is cd****@****ank.com

What is Craig Durham's direct phone number?

Craig Durham's direct phone number is 131053*****

What schools did Craig Durham attend?

Craig Durham attended Colorado Technical University, Colorado Technical University, University Of Phoenix.

What are some of Craig Durham's interests?

Craig Durham has interest in Science And Technology, Environment, Children, Education.

What skills is Craig Durham known for?

Craig Durham has skills like Routers, Switches, Vpn, Tcp/ip, Dns, Wan, Ospf, Frame Relay, Ethernet, Network Administration, Dhcp, Firewalls.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.