Megan Benoit, Cissp

Megan Benoit, Cissp Email and Phone Number

Lead Security Engineer @ Nebraska Medicine
Omaha, NE, US
Megan Benoit, Cissp's Location
Omaha, Nebraska, United States, United States
Megan Benoit, Cissp's Contact Details

Megan Benoit, Cissp work email

Megan Benoit, Cissp personal email

n/a
About Megan Benoit, Cissp

I am an experienced information security engineer and architect, with significant experience in evaluating, deploying, and maintaining a wide variety of security systems, developing incident response procedures and leading IR teams, evaluating network architecture and infrastructure for risk and working with stakeholders to reduce risk, vulnerability management and working with teams across the organization on remediation, and information security policy/requirement documentation and supporting external and internal audits. I am a CISSP with proven ability to connect to people at all organizational levels to achieve security and organizational goals.I have experience configuring and using Qradar SIEM, Microsoft Defender for Endpoint/Cloud/Cloud Apps/Identity, Office 365, Azure Active Directory, Cisco Secure Endpoint (AMP), Cisco Umbrella, Mobile Device Management, Check Point and Palo Alto Firewalls, ProofPoint, Qualys, Rapid7 InsightVM and Appspider, Bluecoat, Security Onion, Qualys, DLP, WAF, Vulnerability Scanning, and much more.Kernelcon Speaker - 2020, 2022, 2023, 2024RSA Conference USA Speaker - 2022, 2024

Megan Benoit, Cissp's Current Company Details
Nebraska Medicine

Nebraska Medicine

View
Lead Security Engineer
Omaha, NE, US
Employees:
17
Megan Benoit, Cissp Work Experience Details
  • Nebraska Medicine
    Lead Security Engineer
    Nebraska Medicine
    Omaha, Ne, Us
  • Fullsteam
    Principal Security Engineer
    Fullsteam Aug 2024 - Present
    Auburn, Alabama, Us
  • Nebraska Furniture Mart
    Senior Network Security Engineer
    Nebraska Furniture Mart Jan 2019 - Aug 2024
    Omaha, Ne, Us
    * Primary duties include ensuring security systems (SIEM, IDS, EDR, email security, etc) are working optimally, serving as the senior incident response coordinator, working with teams across the enterprise to identify and reduce security risk and promote compliance with industry standards, deploying new tools and technologies, and providing technical leadership in promoting security awareness and compliance across the organization* Responsible for developing and maintaining secure configuration standards and developing and documenting incident response procedures and runbooks for alerts from different platforms, including Microsoft Defender platforms and internal intrusion detection. Additionally providing training and guidance to junior team members on threat detection and response.* Implemented a vulnerability management program - worked with stakeholders to develop VM policy and standards, deployed scanners, coordinated credentialed scanning, and developed processes for documenting and tracking the remediation of vulnerabilities. Additionally coordinated external penetration testing for PCI audits and other external security assessments, evaluated vulnerability findings, and coordinated with internal teams on remediation efforts.* Deployed a SIEM – evaluated competing products, deployed Qradar and Qflow, integrated logs from a large variety of security sources including custom internal sources, customized and tuned rule logic for offenses and alerts, and created queries to support investigation and troubleshooting of our environments.
  • Td Ameritrade
    Senior Security Engineer
    Td Ameritrade May 2018 - Jan 2019
    Omaha, Ne, Us
    * As a member of TDA’s Security Engineering team, I focused on working with stakeholders identify risk and secure their O365 and Slack deployments, performing a proof-of-concept and evaluation of Vulnerability Management/Policy Compliance tools, evaluating CASB solutions, and creating a platform for standardizing security hardware and software deployment documentation and training teammates on using it
  • Blue Cross And Blue Shield Of Nebraska
    Data Security Analyst Iii
    Blue Cross And Blue Shield Of Nebraska Sep 2014 - Apr 2018
    Omaha, Ne, Us
    * Built an incident response program and served as senior incident response lead, deployed advanced endpoint protection technologies and developed incident response procedures, deployed a SIEM, identified gaps in BCBSNE’s network and system architecture and worked with stakeholders to reduce risk, coordinated external penetration testing and audit, and supported the daily operations, maintenance, and troubleshooting of BCBSNE’s entire security infrastructure (firewalls, proxy/SSL interception, SIEM, DLP, email security, endpoint detection and response, and vulnerability scanning) * Planned and implemented the migration of the web content filter from Bluecoat to Check Point - this involved multiple teams and reworking our outbound traffic flow entirely. Designed the new architecture, performed POCs of multiple solutions and wrote a white paper with recommendations, deployed new firewalls to support the additional workload and SSL interception, migrated and tested rulesets, and performed cutovers gradually to minimize risk and user disruption.* Additional responsibilities included evaluating proposed infrastructure changes for security concerns and collaborating with other teams on risk mitigation, maintaining security policies and procedures, working with teams across the organization to ensure compliance with security policies (including HIPAA compliance), assisting with penetration testing and internal threat hunting, training junior team members, and troubleshooting outages and other operational issues
  • Racetrac Petroleum
    Network Security Engineer
    Racetrac Petroleum Sep 2012 - Jun 2014
    Atlanta, Georgia, Us
    * As RaceTrac’s first Security Engineer, I was responsible for partnering with internal teams to perform risk and gap analysis to assist RaceTrac with quantifying and prioritizing risk across the organization, this included defining security requirements and policies and working with stakeholders to make sure that they were in compliance * Monitored security devices for intrusions and anomalous behavior and created procedures for handling incidents while leading the incident response team* Performed vulnerability scans and analysis and worked with software and networking/infrastructure teams on remediation plans, as well as coordinating external penetration testing and PCI audits* Additional duties included providing user education and awareness training, evaluating new and existing technologies and recommending items for purchase as well as managing vendor relationships, and assisting with audits and achieving and maintaining PCI compliance as well as compliance with other standards
  • Information Innovators, Inc.
    Senior Information Assurance Engineer
    Information Innovators, Inc. Feb 2010 - Sep 2012
    Us
    Network Security Admin II December 2011 – September 2012Served as a Senior IA technical and subject matter expert (SME) in security and systems administration for the Defense Contract Management Agency (DCMA), primarily responsible for hardening servers and workstations according to DISA STIGS, managing and maintaining networking and security equipment, performing vulnerability scan analysis and remediation, monitoring security systems for intrusions and anomalous behavior, providing domain administration and host-based security support, and external audit support Security Systems Engineer - Team Lead February 2010 – December 2011As the Information Assurance/Computer Network Defense Team Lead for the DCMA Network Operations and Security Center (NOSC), I was responsible for coordinating threat response with USCYBERCOM and other DoD components, developing and implementing incident response policies and procedures, leading the incident response process, providing root cause analysis post-incident, performing maintenance on security systems (firewalls, IDS, host-based security, data loss prevention devices, and anti-virus), vulnerability compliance scanning and remediation, performing internal penetration testing and reporting, and forensic analysis
  • Alere Health
    Information Assurance Engineer
    Alere Health Jan 2007 - Jan 2010
    * Responsible for defining, implementing, and maintaining Information Security policies and performing day to day security operations, including implementing firewall, proxy server, web content filter, and intrusion prevention system changes, providing risk analysis in partnership with other internal teams, maintaining the enterprise’s configuration compliance manager, investigating policy violations and security incidents and providing root cause analysis, and assisting with and performing security audits related to HIPAA and SOX
  • The Truth About Cars
    Staff Writer
    The Truth About Cars 2007 - 2008
  • Lockheed Martin
    Information Assurance Engineer
    Lockheed Martin Sep 2002 - Jul 2006
    Bethesda, Md, Us
    Information Assurance EngineerDecember 2005 – July 2006• Served as the chief security engineer for the Integrated Strategic Planning and Analysis Network Architecture and Integration team• Created and maintained security accreditation documentation, performed risk analysis, evaluated security requirements for test and integration, and performed system test and evaluationInformation Assurance Engineer October 2005 – December 2005• Responsible for implementing the STIG for Unix/Linux systemsInformation Assurance Engineer September 2004 – September 2005• Performed network defense engineering on USSTRATCOM’s Network Defense Team (STRAT-ND), an NSA-certified CND-SP• Duties included engaging in network security analysis, detecting and responding to intrusion attempts, providing threat and vulnerability analysis and assessments, completing daily and weekly reports, detecting and preventing computer viruses, performing security audits, modifying firewall and perimeter router policies, forensic analysis, and responding to and assisting in the handling of security incidents and investigationsInformation Operations Engineer October 2003 – August 2004• Certified in Rapid Response Cyber Forensics (RRCF) - a 40 hour training course designed to create practitioners with experience in digital evidence collection and analysis, forensic procedures, and live response. Assisted in teaching basic RRCF course upon completion of certification. • Duties included providing up-to-date security technology information to JFHQ-IO staff, assisting in the computer network defense planning processLead Security EngineerSeptember 2002 – September 2003• Served as Lead Security Engineer for the Command and Control Modernization (C2M) group• Prepared, delivered, and maintained security documentation for new and existing systems, as well as gathering requirements for new acquisitions
  • Lockheed Martin
    Information Assurance Intern/Co-Op
    Lockheed Martin May 2002 - Sep 2002
    Bethesda, Md, Us
    • Prepared and presented an assessment analyzing current USSTRATCOM Information Assurance (IA) policies• Assisted in the rewiring and re-configuration of the Systems Integration Lab, as well as documenting the system architecture and topology and assisting with the creation of certification and accreditation documentation
  • Ameritrade Holding Corporation
    Infosec Intern
    Ameritrade Holding Corporation May 2000 - Aug 2001
    Us
    • Responsible for examining the Intrusion Detection System and firewall logs and reporting any suspicious activity, performing audits, and doing vulnerability assessments and white papers
  • Woodmen Of The World
    Microprogramming Intern
    Woodmen Of The World Jun 1999 - Dec 1999
    Omaha, Ne, Us
    • Performed maintenance on the company’s propriety insurance software system (MS-DOS, Visual Basic, and COBOL).

Megan Benoit, Cissp Skills

Vulnerability Assessment Information Security Network Security Firewalls Penetration Testing Information Assurance Integration Ips Computer Security Intrusion Detection System Administration Security Audits Ids Business Continuity Security Architecture Design Network Architecture Computer Forensics Dns Networking Servers Incident Response Network Administration Vulnerability Scanning Network Forensics Firewall Administration Security Policy Development Hardening Stig Content Filtering Vpn Mcafee Technical Documentation Antivirus Mcafee Epo

Megan Benoit, Cissp Education Details

  • University Of Nebraska At Omaha
    University Of Nebraska At Omaha
    Computer Science
  • Georgia Institute Of Technology
    Georgia Institute Of Technology

Frequently Asked Questions about Megan Benoit, Cissp

What company does Megan Benoit, Cissp work for?

Megan Benoit, Cissp works for Nebraska Medicine

What is Megan Benoit, Cissp's role at the current company?

Megan Benoit, Cissp's current role is Lead Security Engineer.

What is Megan Benoit, Cissp's email address?

Megan Benoit, Cissp's email address is me****@****eek.net

What schools did Megan Benoit, Cissp attend?

Megan Benoit, Cissp attended University Of Nebraska At Omaha, Georgia Institute Of Technology.

What skills is Megan Benoit, Cissp known for?

Megan Benoit, Cissp has skills like Vulnerability Assessment, Information Security, Network Security, Firewalls, Penetration Testing, Information Assurance, Integration, Ips, Computer Security, Intrusion Detection, System Administration, Security Audits.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.