Mechia Cham Email & Phone Number
Who is Mechia Cham? Overview
A concise factual answer block for searchers comparing this professional profile.
Mechia Cham is listed as US Navy at US Navy, a with 200157 employees, based in Laurel, Maryland, United States. AeroLeads shows a matched LinkedIn profile for Mechia Cham.
Mechia Cham previously worked as Information Security Specialist at Trutek Solutions Llc and Information Security Specialist at Trutek Solutions Llc. Mechia Cham holds Associate'S Degree, Registered Nursing/Registered Nurse from International University Bamenda.
Email format at US Navy
This section adds company-level context without repeating Mechia Cham's masked contact details.
Review company-level records connected to Mechia Cham before choosing the right outreach path.
About Mechia Cham
Seasoned Information Security Professional with extensive experience in Cyber Security, Cloud Security, and Information Technology. Skilled in supporting the Information Systems Development Security Life Cycle (SDLC) and the NIST Risk Management Framework (RMF) process. Expert in executing all six phases of the RMF, from Categorization to Continuous Monitoring. Proficient in cloud security, identity and access management, monitoring and governance, application delivery, and data protection. Experienced in developing and reviewing security documentation including SSP, SAR, SAP, CMP, CP, IRP, SCRTM, POA&M, SOPs, and other policies and procedures.
Mechia Cham's current company
Company context helps verify the profile and gives searchers a useful next step.
Mechia Cham work experience
A career timeline built from the work history available for this profile.
Information Security Specialist
• Ensured disaster recovery capabilities aligned with RTO and RPO requirements based on Business Impact Analyses (BIA).• Developed, reviewed, and maintained ATO documents for client’s information system to such as, System Security Plans, Software & Hardware Inventory, System Design Document, Control Implementation Matrix, Inheritance, other Security Assessment and Authorization artifacts for ATO packages.• Provide support for Continuous Monitoring activities for Information Systems, including review of systems and applications security vulnerabilities reports from tools such as Nessus, Veracode, and STIG compliance to design and develop remediation plans.• Develop key security Documentations (SSP, SAP, SAR, RA, ISCP, and IRP) and Artifacts for systems undergoing the A&A process utilizing organizational templates.• Investigated and remediated security events as an active member of the incident response team.• Provided Assessment and Authorization (A&A) support for new systems undergoing initial authorization to operate (ATO) process and existing systems undergoing continuous monitoring (CONMON).• Performed annual review and updates of Security documentation and policy such as System Security Plan (SSP), Contingency Plan (CP), Incidence Response (IR), Configuration Management Plan (CMP), Risk Assessment Report (RAR), SOPs, Policies, and other security documents as required.
Information Security Specialist
• Ensured disaster recovery capabilities aligned with RTO and RPO requirements based on Business Impact Analyses (BIA).• Developed, reviewed, and maintained ATO documents for client’s information system to such as, System Security Plans, Software & Hardware Inventory, System Design Document, Control Implementation Matrix, Inheritance, other Security Assessment and Authorization artifacts for ATO packages.• Provide support for Continuous Monitoring activities for Information Systems, including review of systems and applications security vulnerabilities reports from tools such as Nessus, Veracode, and STIG compliance to design and develop remediation plans.• Develop key security Documentations (SSP, SAP, SAR, RA, ISCP, and IRP) and Artifacts for systems undergoing the A&A process utilizing organizational templates.• Investigated and remediated security events as an active member of the incident response team.• Provided Assessment and Authorization (A&A) support for new systems undergoing initial authorization to operate (ATO) process and existing systems undergoing continuous monitoring (CONMON).• Performed annual review and updates of Security documentation and policy such as System Security Plan (SSP), Contingency Plan (CP), Incidence Response (IR), Configuration Management Plan (CMP), Risk Assessment Report (RAR), SOPs, Policies, and other security documents as required.
Security Compliance Analyst
Provided analytical support for cybersecurity commitments by participating in customer risk assessments and mapping internal policies and controls to customer requirements. Collaborated with analysts from external organizations to investigate security events. Analyzed and documented adherence to security standards including SOC 2, HIPAA Security Rule, HITRUST, and NIST 800-171. Worked with various internal stakeholders to ensure software and data implementations were aligned with internal security policies and customer security requirements. Audited data access, appropriate use of software, and cybersecurity training compliance. Performed comprehensive risk assessments for new and existing applications, identifying potential security vulnerabilities and threats. Utilized Archer to assess and document the inherent risk associated with applications, ensuring a thorough understanding of potential impacts. Conducted risk assessments focused on online fraud authentication processes, identifying vulnerabilities in authentication mechanisms. Prioritized and remediated vulnerabilities based on risk severity and potential impact.
Security Control Assessor
• Reviewed security artifacts such as System Security Plan (SSP), Contingency Plan (CP), Configuration Management Plan (CMP), Incidence Response Plan (IRP), Hardware/Software inventories, screenshots of systems configurations, policies and procedures, Standard Operation Procedures (SOP) to support information assessment and control implementations.• Ensured artifacts are properly completed, accurately reflect the system.• Performed Security Control Assessment as part of ongoing assessment using NIST SP 800-53A to assess the adequacy of management, operational privacy, and technical security controls implemented. Testing the security controls to make sure that the controls have been implemented correctly, functioning as intended, and producing the desired outcome.• Provided ongoing gap analysis of current policies, practices, and procedures as they relate to established guidelines outlined by NIST, OMB, FISMA, and FEDRAMP.• Assisted in maturing the security compliance program, including ongoing operational requirements• Developed policies related to security frameworks such as ISO 27001, NIST 800-53, HIPAA/HITECH, or PCI DSS.• Developed, reviewed, and updated Security Assessment Plan (SAP), Security Control Test Plan, Security Control Requirement Traceability Matrix (SCRTM), and Documentation Request List (DRL) for approval prior to the start of assessment.• Examined organizational policies, standards and procedures and provided advice on their adequacy, accuracy, and compliance following NIST standard guidelines.
Colleagues at US Navy
Other employees you can reach at navy.com. View company contacts for 200157 employees →
Tobin Dougherty
Colleague at Us NavyMetro Jacksonville, United States
View →
DW
Daren Whigham
Colleague at Us NavyNorfolk, Virginia, United States
View →
MF
Michelle Fitzgerald, P.E.
Colleague at Us NavyWashington, District Of Columbia, United States
View →
GJ
George Juarez
Colleague at Us NavyDallas-Fort Worth Metroplex, United States
View →
PS
Paul Stevermer
Colleague at Us NavyKansas City, Missouri, United States
View →
JP
Jim Park
Colleague at Us NavyDedham, Massachusetts, United States
View →
AW
Alex Wytaske
Colleague at Us NavyGuam
View →
MS
Maisha Sellers
Colleague at Us NavyLas Vegas, Nevada, United States
View →
JC
James Cowan
Colleague at Us NavyOak Harbor, Washington, United States
View →
RM
Romeo Medrano
Colleague at Us NavyNew Caney, Texas, United States
View →
Mechia Cham education
Frequently asked questions about Mechia Cham
Quick answers generated from the profile data available on this page.
What company does Mechia Cham work for?
Mechia Cham works for US Navy.
What is Mechia Cham's role at US Navy?
Mechia Cham is listed as US Navy at US Navy.
Where is Mechia Cham based?
Mechia Cham is based in Laurel, Maryland, United States while working with US Navy.
What companies has Mechia Cham worked for?
Mechia Cham has worked for Us Navy, Trutek Solutions Llc, Curative Computers, and The Judge Group.
Who are Mechia Cham's colleagues at US Navy?
Mechia Cham's colleagues at US Navy include Tobin Dougherty, Daren Whigham, Michelle Fitzgerald, P.E., George Juarez, and Paul Stevermer.
How can I contact Mechia Cham?
You can use AeroLeads to view verified contact signals for Mechia Cham at US Navy, including work email, phone, and LinkedIn data when available.
What schools did Mechia Cham attend?
Mechia Cham holds Associate'S Degree, Registered Nursing/Registered Nurse from International University Bamenda.
Search by job title, company, industry, location, and seniority. Export verified B2B contact data when you need it.
Start free trial