Andrew C. Roswal
*** ***** ****** ***** ( Madison, Alabama 35757 256-***-****
Email: *******@*****.***
[pic]
Profile
Strong technical skills balanced with strengths in communication, teamwork,
and leadership. Strong skills in troubleshooting and analysis developed
through practical experience. Acknowledged as being a team leader and
effective decision maker. Security clearance is currently active.
Security Clearances
TS/SCI Security Clearance (May 2008)
Top Secret Security Clearance (November 2007)
Secret Security Clearance (December 2005)
Certifications & Vendor Coursework
EC-Council Certified Ethical Hacker Version 6 (C EH, CEH) (December 2010)
FITSI Federal IT Security Professional - Operator (FITSP-O) (September
2010)
(ISC)2 Certified Information Systems Security Professional (CISSP) (January
2010)
American Red Cross CPR/AED & First Aid Certified (2008)
Certified American Red Cross Instructor for CPR/AED & First Aid (2007)
HP OpenView Network Node Manager for Operators Certification (August 2007)
IBM pSeries POWER4 Logical Partitioning (LPAR) for AIX 5L (August 2006)
IBM AIX 5L System Administration II: Problem Determination (July 2006)
IBM AIX 5L System Administration I: System Administration (June 2006)
Professional Memberships
Information Systems Security Association (ISSA) - North Alabama Chapter
American Society for Industrial Securty (ASIS) International - North
Alabama Chapter
Information Systems Audit and Control Association (ISACA) - Birmingham
Chapter
Open Web Application Security Project (OWASP) Member - Huntsville Chapter
InfraGard Program - Huntsville Chapter
Technical Experience
o ( Windows
o ( Mac OS
o ( IBM AIX
o ( UNIX / Linux
o ( Red Hat EL
o ( SUN Solaris
o ( LAN/WAN
o ( TCP/IP
o ( Cisco LAN/WAN
( Nortel LAN
( 802.11b/g Wireless
( HP Openview
( Microsoft Vizio
( Microsoft Office
( Adobe Photoshop
( MySQL
( Oracle
( Backtrack
( Metasploit
( Snort
( Aircrack
( OSSEC
( Nmap
Software Development:
o ( C / C++
o ( JAVA
o ( Visual Basic
o ( Object Oriented Programming
o ( UNIX Script Programming
o
o
o
Experience
QinetiQ North America August 2009 to Present
RIMFIRE Information Assurance Manager / System Administrator
Huntsville, Alabama
Provided system and network support for the Reliability Improvement through
Failure Identification and Reporting (RIMFIRE) system. Responsibilities
included the configuration and maintenance of the hardware and software, as
well as the security evaluation and configuration of the RIMFIRE system.
o Interfaced with customers.
o Provided responses for contract proposals in regards to information
assurance and security.
o Planned and implemented penetration testing activities against the
system.
o Provide guidance to RIMFIRE management and developmental efforts in
accordance to the implementation, configuration, and documentation of
DoD IA controls on all RIMFIRE systems (Development/Production).
o Managed RIMFIRE DIACAP implementation (IAM/IASO).
o Insured all RIMFIRE systems are configured and maintained IAW all
applicable Department of Defense (DoD) regulations.
o Maintained all RIMFIRE Configuration Management (CM) in accordance
with DIACAP requirements.
o Insured that all backup procedures and policies are being followed,
and performed periodic system testing/recovery to verify backups.
o Managed system performance and resource utilization monitoring, and
suggested implementation of upgrades, as needed.
o Implemented security controls for all RIMFIRE systems.
o Insured proper installation of applications on RIMFIRE systems (i.e.
web server, database, etc.) in accordance with DoD regulations.
o Conducted continual audits of implementation and configuration in
accordance with DoD regulations.
o Analyzed security controls (system verification test, system
penetration test, etc.) in accordance with DoD regulations and
reported results.
o Interfaced with RIMFIRE DBA to assist in the implementation of
database security controls and database configuration changes
(installation of database upgrades, tools, etc.).
o Interfaced with RIMFIRE Development Team to assist in direction of
application development to meeting security requirements, and assure
security configuration of applicable deployment applications (i.e. web
server secure configuration).
Northrop Grumman Information Systems 2008 to August
2009
GFC/C System Security Engineer
Huntsville, Alabama
Provided support to the GFC/C Product Teams, the GFC/C Prime Contractor,
and the Missile Defense Agency in the areas of Information Assurance,
Security Engineering, and Program Protection.
o Interfaced with both internal and external customers.
o Coordinated responses to technical questions and issues.
o Assisted in identifying, evaluating, and certifying security features,
safeguards, and countermeasures in the GFC/C system.
o Reviewed, consulted, and recommended implementation of security
requirements specified in the GMD Capabilities Document.
o Developed required security plans and manuals and documents' security
relevant portions of development and sustainment plans, training
plans, and system test plans.
o Participated in vulnerability assessments, risk management, and
incident detection and prevention analysis.
o Inputted to the development and implementation of security awareness
training to GFC/C program staff.
o Conducted security assessments of GFC/C components and facilities at
deployed/development sites.
o Planned and assisted in the GFC/C system controls validation testing
effort.
o Worked with the Prime Contractor and Product Teams to assess, address,
and mitigate CVT findings.
o Assisted GFC/C teams with interpretation of the GMD Security
Classification Guide.
Northrop Grumman Mission Systems 2006 to 2008
GFC/C System Engineer
System Administrator / Resident Engineer
Fort Greely, Alaska
Provided system and network support for operational, test, and training GMD
(Ground-based Missile Defense) systems. Responsibilities included the
configuration and maintenance of the GFC/C (GMD Fire Control and
Communication) hardware and software.
o Responsible for the loading and configuring of application software
for the GFC/C system.
o Maintained the GFC/C system through troubleshooting and problem
resolution.
o Administered backups and restorations of system data.
o Configured and maintained IBM p690 eServers, Sun Microsystems
servers/workstations, Linux workstations, tape libraries, and Cisco
network devices.
o Completed both corrective and preventative maintenance.
o Cross-trained into the IDT (In-Flight Interceptor Communication System
Data Terminal) Maintainer position. Responsible for the configuration
and maintenance of the IDT software and hardware.
o Cross-trained into the CNE (Communication Node Equipment) Maintainer
position. Responsible for configuring and maintaining CNE network
equipment.
o Cross-trained into the GST (GMD System Trainer) Operator position.
Responsible for interfacing with military crews to coordinate training
sessions. Responsible for configuring scenarios with TEx (Test
Exerciser) software. Responsible for configuring, launching, and
analyzing the GST software.
o Cross-trained into the NSM (Network System Manager) position.
Responsible for monitoring network hardware with HP Openview
application.
o Supported 24/7 operations through on-call support.
Northrop Grumman Mission Systems 2005 to 2006
GFC/C System Engineer
Subject Matter Expert
Fort Greely, Alaska
Provided subject matter expertise and supported crew training on the GFC/C
system to the military console operators. Interacted with military console
operators on a regular basis.
o Evaluated and analyzed the GFC/C systems and network status in real-
time in accordance with mission requirements.
o Provided initial troubleshooting to all operational problems,
implemented anomaly response plans, and implemented approved
solutions.
o Performed operations testing and supported readiness requirements.
o Provided product support to military console operators for GFC/C
system issues.
o Issued commands, directives, and other instructions as required within
specified times during system integration and checkout activities.
o Supported 24/7 operations through shift scheduling.
Northrop Grumman Mission Systems September 2004
to 2005
GFC/C System Engineer
Computer System Operator Lead
Fort Greely, Alaska
Launched, configured, and analyzed GFC (GMD Fire Control), ESI (External
System Interface), and network software used to interface with other
missile defense assets. Responsibilities included providing leadership and
guidance to other CSO's (Computer System Operators).
o Developed training material for the CSO position. Responsible for the
training of CSO's.
o Developed work schedules to support 24/7 operations.
o Developed checklists and procedures to support the CSO position.
o Evaluated element status and configuration in real-time to support
system readiness.
o Performed time sensitive recovery actions, as well as troubleshooting
of errors and anomalies by analyzing GFC log files to sustain
operations.
o Monitored real-time software execution and provided immediate
troubleshooting and analysis for GFC/C (GMD Fire Control and
Communications) system.
o Supported security and program procedures, and reinforced use and
documentation of checklists to sustain organizational accountability.
o Supported 24/7 operations through shift scheduling.
S & V Sports 2002 to 2004
Shop Manager / Head of IT and Web Development
Huntsville, Alabama
Responsible for installation and maintenance of store computer system,
managing store employees, maintaining inventory, and customer service.
Also responsible for design, implementation, and maintenance of a full e-
commerce web site.
Education
Colorado State University
Master of Computer Science
Currently Completing
University of Alabama in Huntsville
Bachelors of Science (double major in Computer Science and Mathematics)
Diploma Awarded in 2003
References
Mr. Dean Hutson, RIMFIRE Project Manager, QinetiQ North America, 890
Explorer Blvd, Huntsville, AL 35806, 256-***-****, dean.hutson@qinetiq-
na.com
Mr. Howard Fry, System Engineering Manager, Northrop Grumman Information
Systems,
213 Wynn Drive, Huntsville, AL 35805, 256-***-****, ******.***@***.***
Mr. Brian Doody, Operations Manager, Northrop Grumman Information Systems,
Fort Greely, AK 99731, 907-***-****, *****.*****@***.***