Mark Anthony Shifflett, Jr
Sterling, VA *****
Personal: 434-***-****
****.*********@*****.***
EXPERIENCE HIGHLIGHTS
. 8 years of IT experience with 4 years of Information Security
experience
. Managed and deployed RSA Archer GRC platform and Tripwire
Configuration Compliance Manager, Tripwire Security Intelligence Hub,
and Tripwire IP360 at the Federal Deposit Insurance Corporation (FDIC)
. Designed SharePoint automation system to supplement Fish and
Wildlife's (Department of Interior) acquisitions process using OOTB
and third-party features and technologies
. Managed and deployed security solutions in a small corporate
environment
. Secret security clearance
TECHNICAL EXPERTISE
Applicable Training: RSA Archer Basic and Advanced Administration
Operating Systems: MS Windows, Microsoft Server 2003 and 2008 R2, RHEL
Server Technologies: MS Exchange, MS IIS Server, MS OCS 2007, Apache,
OpenSSH, Server 2008 Root CA, DNS, and DHCP
Other Software: Tripwire (nCircle) CCM, SIH, and IP360, RSA Archer GRC
platform, BMC Remedy, SysInternals, CaptureBAT,
Cuckoo, Malware Analyser, PDF Stream Dumper
Web Development: MS SharePoint 2007 and 2010, MS Designer 2007 and 2010,
jQuery (within SharePoint)
Other Training: Tripwire Compliance and Configuration Administration
Tripwire SIH Administration
PROFESSIONAL EXPERIENCE
Blue Canopy Group, LLC September 2012 - Present
Consultant
Reston, VA, 703-***-****
Federal Contractor
Federal Deposit Insurance Corporation (FDIC)
. Deployed RSA Archer GRC platform in a multi-domain production and
lab environments, installation included LDAP synchronization, data
feed to pull active users into Contacts application, data feed to
pull AD workstations into Computer application, SSO
. Developed application and solution changes in the RSA Archer
Security Operations Management solution
. Worked with SIEM teams in order to facilitate Archer integration
with Splunk and Arcsight
. Deployed Tripwire Configuration Compliance Manager and Suite360
Intelligence Hub within three environments
. Developed security guides based on DISA STIGS, USBCG, and CIS
policies
. Documented SOPs for deploying and maintaining relevant applications
. Took part in creation of white papers and contract proposals
. Managed multiple virtual machines within a lab environment using
VMware vSphere
. Performed benchmarking against SQL servers using the TPC-C standard
Blue Glacier Management Group July 2010 - August 2012
Network Administrator I
Secret Clearance
Fairfax, VA, 703-***-****
. Maintained the company's network infrastructure, including Active
Directory and Group Policy Objects. Was placed second in charge of
security at company HQ
. Deployed and monitored various security solutions, such as Untangle
and OSSIM
. Developed tools to increase business productivity using SharePoint
2007
. Provided incident response for any suspected attacks or malware
infections
Federal Contractor
Division of Contracting and Facilities Management March 2011 - August
2012
US Fish and Wildlife Service
Department of the Interior
. Provided support to the Fish and Wildlife Service in their
SharePoint 2007 and 2010 development
. Created sites to enhance business process and provide a streamlined
acquisitions process
. Utilized OOTB features of SharePoint 2007 and 2010, in addition to
CSS, JavaScript, jQuery, and MS Access, to create sites which
greatly helped business productivity
. Sites were created in 2007 and had to be migrated to 2010 prior to
contract end
Federal Contractor June 2012 - July 2012
Federal Network Security
National Cyber Security Division
Department of Homeland Security
. Provided support and consulting to the Federal Network Security
branch's SharePoint development team
GE Healthcare Worldwide August 2011
. Performed system configuration (based on the Security Technical
Implementation Guide [STIG]) on VMware ESX and Microsoft Server in
order for the client to gain DoD security compliance for their
healthcare product
Information Technology, Information Sharing and Analysis Center
July 2010 - August 2012
Cyber Analyst
. Reported to the Technical Program Manager to manage aspects of
analytics, collaborative analysis, and internal and external
outreach and communications
. Provided support on the technical aspects in producing daily,
weekly, and out of band analytical products to inform membership of
a diverse range of cybersecurity and threat related topics
. Performed regular malware analysis and provided results to
membership and government partners, including US-CERT
. Facilitated regularly phone conferences with membership
. During regular conferences, presented information to member
companies based on current events and other items of interest. Some
items presented include: demonstration of various attacks (such as
SQL injection, ARP poisoning, man-in-the-middle, session hijacking,
etc) and techniques to prevent such attacks, and slideshows on
current news items, such as SOPA and IPv6 migration techniques.
Sought speakers, with expertise throughout the IT industry, to come
and speak with membership.
Army Test and Evaluation Command (ATEC)
Department of the Army June 2008
- July 2010
Occupational Series 2299 - YP-01-00
Secret Clearance
Alexandria, VA, 703-***-****
. Managed Command's intranet web presence (SharePoint 2007)
. Created web-based applications and supported Intranet migration
. Managed business processes to increase productivity
. Involved in deployment of Office Communication Server 2007 and
follow-up briefing to the Deputy Chief of Staff in Information
Management and ATEC's Technical Director
. Deployed SharePoint/MOSS and supported collaboration
. Created assessment based on documentation of an user's potential IT
security risks
. Improved workflows and business processes using SharePoint and
InfoPath
. Involved in deployment of Windows Vista across ATEC, a pilot
program for the Department of Army IT upgrades
. Took part in program to adopt single sign-on methodology across
ATEC.
Slugg & Associates, PLC October
2006 - June 2008
IT Support
Burke, VA, 703-***-****
. Ordered property title searches, processed title insurance, and
assisted legal team on administrative tasks
. Solely deployed and maintained company's Microsoft Server 2003
infrastructure, including Active Directory and Group Policy
. Functioned as sole support element for Microsoft clients for
approximately 15 users
EDUCATION
George Mason University - 2010 - Fairfax, VA 22030
Degree: Bachelor of Science in Information Technology, Concentration:
Information Security
Relevant Coursework:
Applied IT Programming - Java
Multimedia and Web Design
Northern Virginia Community College - 2008 - Annandale, VA 22003
Degree: Associate in Information Technology - Cum Laude