Brooklyn Mesia
Security Engineering
*************@*****.*** • 208-***-****
LinkedIn • Boise, ID
Technical Proficiencies
Software/Platforms:
Microsoft Office 365 Defender, LT Spice, Splunk, PowerBI, Tenable, Trend Micro, Azure, Elastic Search, Linux, Red Hat Advanced Cluster Security
Programming Languages:
Python
Certifications:
CompTIA Security+, CompTIA Network+, CCSP, Dragos Platform Certified User
Career Experience
JR Simplot, Boise, ID Apr 2020 – Present
Security Engineer
Perform investigations on broad spectrum of event types via SIEM and all applicable investigative tooling.
Engage in emergency incident response, including ICS security, SIEM alerted events, phishing, phishing, and end-user suspicious behaviour.
Act as subject matter expert (SME) on OT IDS Platform and coach local technicians on functionality and usability. Compile data from various sources and prepare consumable reports for all levels of technical understanding.
Deploy SSL Decrypt policy for global critical industrial sites.
Examine and implement secure hybrid cloud technology to secure containers and infrastructure. Create technical documentation for plant security standards and procedures, as well as other information security initiatives.
Implement OT and IT security initiatives according to Essential 8, NIST CSF and CIS controls along with documentation the policy and standards with them
Successfully travelled to industrial facilities to execute security initiatives, identify facility needs, and establish strong professional relationships with local technicians/engineers as liaison between operations and corporate IT teams.
Facilitated automation of IAM controls and addressed permissive access through identity access management.
Developed IDS solution for 33 sites in less than one year and reported vulnerability data to C-suite management.
Generated secure coding solution for diverse global teams and delivered active projects.
Identified and disabled 1300 unused service accounts.
Enhanced monitoring of OT traffic in manufacturing, mining, and chemical environments by co-operating with local site teams on network architecture and data collection placement.
Optimised understanding of ICS environments to lead maintenance and segmentation efforts in internal ICS infrastructure (Level 0-2).
Deployed secure code scanning tool for more than 15 projects in two months.
Related Experience
Boise State, ID
Information Security Teaching Faculty
Facilitated classroom discussions on variety of information security topics, such as NIST CSF, CIS controls, and HIPPA
Assisted students to devise NIST CSF plan for theoretical enterprise environments.
Assessed students’ performance through direct feedback and one-on-one support.
Developed core competencies in cyber operations coursework.
Education & Certifications
Master of Electrical Engineering (May 2023)
Boise State University, ID
Certificate of Cyber Resilience
Bachelor of Electrical Engineering (May 2021)
Boise State University, ID
Certificate of Cyber Operations
Bachelor’s degree in Computer Science/Information Security/ Information Technology/Cyber Security or related technical discipline
5+ years of IT security or cyber security experience
Hands-on experience with, Tenable’s product suite, and GitLab preferred
Basic understanding of DevSecOps processes and tools
Basic understanding of FedRAMP and CMMC
Familiarity with DoD Cyber Security Standards
NIST 800-37 (RMF)
NIST 800-53 Rev. 5
NIST 800-160 Vol. 1 Develop and implement security technologies, standards, processes, and guidelines for the enterprise
Follow standards in accordance with company policies and regulations (ISO 27001, PCI, SOC, etc.)
Understands the trade-offs required to manage the different levels of risk tolerance and risk exposure across the organization
Bring your ideas forward, evaluating how to optimize the tools we’re using and exploring technologies that could continue to enhance our security posture and ensure solutions scalability
Collaborate and consult with peers, colleagues, and managers to resolve issues and achieve goals
Assist/perform deployment/ maintenance and tuning of security systems such as firewalls, IPS/IDS, SIEM, EDR, WAF, threat and vulnerability management tools to reduce false positives and deliver actionable reporting
Prepare Security status reports and findings to stakeholders and senior management
Design / Review system configurations to ensure that they are secure, role appropriate, and consistent throughout the organization
Handle cyber incidents, project deployments and customer escalations complying with standards, regulations, policies, procedures, and work instructions
Keep abreast of and gain expertise in the evolving technology and understand how new technologies could be applied to our security environment