Cyber Security Analyst
CurrentSpearheaded vulnerability scans, leading to a 30% improvement in system compliance rates.· Managed the configuration and operation of Nessus Manager, optimizing security acrossenterprise systems.· Conducted DISA STIGs analysis and SCAP scanning to ensure Army compliance with DoDstandards.· Collaborated with internal teams to resolve scanner software issues and analyzed scan outputsto drive security enhancements.Situation: Required to ensure the security compliance of DoD networks and systems.Task: Perform Assessment & Authorization (A&A) to maintain Authorization to Operate (ATO) and Authorization to Connect (ATC).Action:• Compiled security documentation and conducted network audits to identify compliance gaps.• Executed risk and vulnerability assessments on engineered networks, ensuring alignment with NMCI Enterprise standards.• Developed and maintained documentation for new systems and coordinated with engineering teams to resolve security issues.• Analyzed automated scans and prepared Risk Management Framework (RMF) packages using eMASS.• Created Plans of Action & Milestones (POA&Ms) to track compliance and report to leadership.Result: Successfully maintained ATO and ATC for multiple systems, contributing to improved cybersecurity posture and compliance with DoD standards.