Post Job Free

Resume

Sign in

Director Information Security/Cybersecurity/Infrastructure

Location:
Shortsville, NY
Salary:
140000.00
Posted:
April 12, 2023

Contact this candidate

Resume:

Summary of Qualifications: Security Clearance: Current Secret

Eligible: Top Secret SCI/SSBI

United States Air Force retired, thirty years of experience with computer hardware and software. Fifteen plus years experience information assurance, information systems security, configuration management, vulnerability assessment, incident response, networking protocols, certification and accreditation, information systems auditing. Experience with a multitude of commercial and open source forensic software, well versed in forensics methodology, chain of custody, best evidence, data recovery operations. Experienced in basic programming and scripting disciplines. Information Assurance / System Security Professional.

Professional Experience:

January 2019 – March 2023

Director Information Security, Creation Technologies, Newark, NY

Multifunctional role responsible for Corporate Information Security program operations, Facility Security Officer/Information System Security Manager for Classified programs, Corporate ITAR Official, and COMSEC account manager. As the Director of Information Security, I am responsible for the development and implementation of a robust information security program to ensure compliance with NIST 800-171 directives and DoD Cybersecurity Maturity Model Certification regulations. Compliance with directives will guarantee integrity, availability, confidentiality of corporate information systems ensuring the protection of customer and government data. Responsible for development and publication of corporate information security policy and procedures. Provides direct oversight in the development and execution of corporate and classified Cybersecurity Education and Training Program. Leads all security assessments and incident response in both corporate and classified environments.

Works directly with managed IT Security Provider Security Operations Center to ensure continuous monitoring and security of corporate network.

Assist with developing and establishing strategic and long-range goals and direction for the Network Security area of IT Operations

Manage and operate the corporate incident management program and drive continuous improvement and maturity

Direct department staff including hiring, performance management and career development to ensure alignment with defined goals

Assist Infrastructure and Application Development teams to ensure proper security controls are implemented across technology initiatives

Ensure all services and or applications supported are consistently performing as intended this includes coordinating upgrades and or improvements

July 2010 – December 2018

Information Systems Security Manager, Harris Corporation, Rochester, NY

Create, lead, manage and direct all Information Systems security related policies, procedures and/or requirements. Provides management and oversight to team of Information Systems Security Officers (ISSO) for ensured Government Information System Security Compliance. Directs Information Systems Security Engineer (ISSE) operating system hardening to meet US Government regulations for ensured security compliance and vulnerability remediation. Leads Information Security incident responders, directs investigations, cleanup, and compliance reporting. Directs coordination of system maintenance, security patch management, and anti-malware/anti-virus updates through scheduled vulnerability assessment inspections and auditing programs. Manages testing and research of new hardening configuration guidelines as delineated by US Government to determine impact on existing information systems for to increased system security, efficiency, and accuracy. Ensures mandated government compliance by communicating, interpreting and coordinating education and training for all Harris employees on the U.S. Government’s Information Systems (SIPRNET, DoD, CI, GWAN, etc.) security related policies, procedures and/or requirements (i.e. NISPOM, NISPOM Sup, ICD 503, NIST 800-53, etc.). Serves as a Security Advisor/Consultant in the area of Information Systems security to the Senior Security Manager, Harris Space and Intelligence Systems/Communication Systems. Coordinate with Security Education and Training personnel to insure employees have an effective Information Systems Security Education and Training Program. Responsible for effective communications regarding Information Systems security by interfacing with or acting as the liaison with our external customers or Harris internal organizations. Write security plans for certification and accreditation of new information systems in support of new business and maintain and update current certifications and accreditations such that approvals to operate are continuous and do not lapse, thereby causing a disruption in business and a financial impact to Harris. Ensure configuration management for security-relevant IS software, hardware, and firmware is maintained and documented by performing vulnerability scanning. (Retina, Nessus, SCAP).

October 2007 – June 2010

Senior Information Systems Security Officer, Exelis Geospatial Systems (SSD), Rochester, NY

Responsible for computer policy implementation, accreditation and certification of GS’s Information Systems processing U.S. government classified information for Geospatial Systems Rochester. Administrate and enforce policies and procedures implementing Government and Company security requirements with regards to information systems. Ensure compliance with DCID 6/3, NISPOM Chapter 8, Trade, & Export Regulations. Implement & administer the corporate compliance program, including the timely reporting of all incidents required thru the Ethics & Compliance Organization. Responsible for the day-to-day oversight of computing systems, ensuring they are operated, maintained, and disposed of in accordance with the applicable security plan and corporate policies and procedures. Conduct periodic audits to ensure continuing compliance with applicable security plans. Confirm and document users have appropriate clearance/access(es)/authorization/need-to-know prior to processing requests for establishing of user accounts on classified systems. Conduct initial and refresher computer security briefings as required.

November 2003 – September 2007

USAF, Chief Computer Forensics Investigator, National Reconnaissance Office, Chantilly, VA

Directs/conducts computer forensic investigations identifying misuse and compromise of classified/unclassified government network computer systems critical to national intelligence collection programs. Sole manager for over $1.3 million in forensics lab assets, responsible for planning, purchasing, instillation, and equipment inventory. Performs hardware procurement technical reviews, system configuration management, and equipment maintenance on numerous hardware platforms. Researches, tests and evaluates forensics software considered for deployment. Maintains judicial chain of evidence, prepares reports and briefs results of forensics investigations. Advises Network Operations Center on possible network compromises and intrusions.

October 2001 – November 2003

USAF, Non Commissioned Officer In Charge Computer Support Element, 532 Training Squadron, Vandenberg AFB, CA.

Responsible for efficient management of computer support requirements for 110-person training squadron. Automated data processing equipment custodian, managed squadron account valued at over $1.2 million. Lead Network Systems Administrator, monitored access, usage, and password security (COMPUSEC). Authorized purchasing of new system software and performed software installation. Provided initial user Information Assurance Awareness Program training. Ensured network integrity by performing hardware and software configurations to certify system before connecting to base network.

Oct 98- USAF, Air Education Training Command Technical Instructor, 532 Training Squadron, Vandenberg AFB, CA.

Oct 01 Electronics Laboratory, Minuteman III and Peacekeeper weapon systems. Lead technical instructor for Electronics Laboratory training advanced course curriculum to career airman. Additionally trained Minuteman III/Peacekeeper weapon systems theory and maintenance practices to first term airman in support of US Air Force Space Commands nuclear deterrent force.

Feb 96- USAF, Electronics Laboratory Inspector/Evaluator, 576 Flight Test Squadron, Vandenberg AFB, CA.

Oct 98 Minuteman III and Peacekeeper weapon systems. Performed quarterly evaluations and prepared reports to assess the technical proficiency of Electronics Laboratory personnel. Conducted quarterly inspections on electronic equipment for operational serviceability. Initiated and reviewed newly submitted technical procedures for accuracy and cost-effectiveness.

Jul 94- USAF, Electronics Laboratory Instructor/Team Chief, 30th Maintenance Squadron, Vandenberg AFB, CA.

Feb 96 Trained Electronics Laboratory personnel checkout, troubleshooting, repair and servicing of electronic support equipment for remote Minuteman III/Peacekeeper test launch facilities in support of the Air Force Follow On Test and Evaluation program. Developed and maintained Electronics Laboratory lesson plans.

Sep 93- USAF, Electronics Laboratory Team Chief, 394th Field Missile Maintenance Squadron, Vandenberg AFB, CA.

Jul 94 Performed checkout, troubleshooting, repair and servicing of electronic support equipment for remote Minuteman III/Peacekeeper test launch facilities in support of the Air Force Follow On Test and Evaluation program.

Oct 89- USAF, Electronics Laboratory Team Chief, 90th Strategic Missile Wing, F.E. Warren AFB, WY.

Sep 93 Performed in shop checkout, troubleshooting, repair, and servicing of electronic support equipment for 200 remote Minuteman III/Peacekeeper launch facilities and 20 remote launch control facilities.

Jan 86- USAF, EMT Missile Maintenance Peacekeeper Team Chief, 90th Missile Maintenance Squadron, F.E. Warren AFB, WY.

Oct 89 Performed checkout, troubleshooting, repair and servicing of electronic support equipment for 50 remote Peacekeeper launch facilities and 5 remote launch control facilities.

EDUCATION:

American Military University, Charles Town, WV

BS in Information Systems Security, currently enrolled

Community College of the Air Force, Maxwell AFB, AL

AAS in Electronics Systems Technology, July 99

Community College of the Air Force, Maxwell AFB, AL

Occupational Instructor, March 01

Management Training:

SNCO Professional Enhancement Seminar, Bolling AFB, Washington DC, July 2005

NCO Academy, Goodfellow AFB, TX, May 01

NCO Academy Correspondence Course, March 95

NCO Prep Course, John L Levitow winner, November 88

Specialized/Technical Training:

GIAC Security Leadership -GSLC, August 2020

EC-Council Certified Network Defense Architect, March 2017

CompTIA Security+ Certified Security Engineer, June 2013

EC-Council Certified Ethical Hacker (CEH), February 2013

Certified Information Systems Security Professional (CISSP), June 2009

CompTIA A+ Certified Professional IT Technician, June 2008



Contact this candidate