Steven Jeffries
Chesapeake, Virginia, *****
Email: ******.*.********@******.** Cell: 757-***-****
Certified Information Systems Security Professional (Since 2007) Current DoD Top Secret Security Clearance
Experience
2020 – Present DLH Corporation Norfolk, Virginia
Risk Management Framework Subject Matter Expert
• Work closely with the PM, ISSM, and ISSE as a resource to guide them through the RMF process.
• Utilize eMASS daily to assist and advise the ISSE teams and determine package status.
• Ensure all assigned RMF packages are fully prepared for Validation.
• Develop security policies meeting requirements of security control assessment procedures.
• Maintain current knowledge of all applicable policies, procedures, guidance, and tools.
• When required, coordinate with PM, ISSM, ISSO, ISSE, and Package Submitting Officer.
• Provide expertise on all current security tools and train ISSE personnel in their proper use.
• Ensure proper adherence to DoD, Navy, NIST SP800 series and industry best practices.
• Responsible for enhancing the overall quality of assigned RMF packages.
• Assist system architects and developers in the design and implementation of secure solutions.
• Engage in continuous monitoring and Annual Security Review processes. 2019 –2020 TEKsystems Portsmouth, Virginia
Information Systems Security Engineer
• Supported Norfolk Naval Shipyard (NNSY) Cybersecurity / Information Assurance Division.
• Developed security policies in support of RMF accreditation efforts.
• Conducted research and interviews with key stakeholders in support of RMF package development. 2018 – 2019 Simventions Virginia Beach, Virginia
Cyber Security Engineer / SME
• Conducted ACAS and STIG analysis of lab and shipboard systems including patching and updating.
• Reviewed security controls, testing data, RMF artifacts, and developed policy documentation. 2014 – 2018 Reliant Technologies Norfolk, Virginia Senior Security Engineer
• Supported information systems security engineering, accreditation, and analysis initiatives.
• Served as a voting member of Configuration Control Board representing Security Engineering. 2004 – 2014 Booz Allen Hamilton Norfolk, Virginia
Senior Lead Technologist
• Cybersecurity projects included network security, risk analysis, A&A, cross domain, RMF, training.
• Navy - Fleet Forces, NAO, Naval Special Warfare Command projects among others
• Air Force - Electronic Systems Command, Air Combat Command projects. Education and Training
• DISA Assured Compliance Assessment Solution (ACAS) – 32 Hour Course
• DISA Risk Management Framework for Implementors and Assessors – 40 Hour Course 2014 – 2020 Capitol Technology University Laurel, Maryland Doctor of Science - Cybersecurity
2012– 2014 Norwich University Northfield, Vermont
Master of Science – Information Assurance
2006– 2012 Harvard University Extension School Cambridge, Massachusetts Bachelors – Social Sciences