Information Assurance Engineer
CurrentDEC 2019 TO PRESENT Supporting DHA/ DoD Healthcare Management System Modernization • Coordinated with DHA and managed Leidos team for deployment of Tanium in Military Health System Genesis/EHR) systems .• Developed and redefined detailed vulnerability scan procedures across a full-stack environment consisting of physical & virtual servers, applications, databases, and peripherals, which supports more than 9.5 million DoD beneficiaries and approximately 205,000 Military Health System personnel globally.• Performed vulnerability scans using Assured Compliance Assessment Solution (ACAS).• Performed compliance scans using ACAS and Naval Information Warfare Center SCC tool.AUG 2012 TO DEC 2019 Supported Navy Personnel Command • Developed and redefined detailed vulnerability scan procedures across a full-stack environment consisting of physical & virtual servers, applications, databases, and peripherals, which supports over 425K active and reserve personnel in the US Navy.• Performed vulnerability scans using various information security tools: ACAS/Nessus, SCAP. • Secured a split OS Environment (UNIX and Windows) and ensured continuous compliance with FISMA, NIST, and DoD requirements as a certified HBSS Administrator.• Provided leadership timely and accurate security metrics which were instrumental in risk assessment & mitigation planning.• Demonstrated proficiency utilizing command line scripting & SPLUNK to review event and application logs. Expertise allowed optimized and rapid parsing through 2+ TB of data for event correlation of malicious activities.• Coordinated immediate remediation efforts in support of critical cyber security events. Direct contributions were recognized by leadership and allowed organization to thwart the effectiveness of an Advanced Persistent Threat (APT) which impacted the entire DoD.• As team lead, we gathered and compiled information for completing Risk Management Framework (RMF) Authority To Operate ATO accreditation.