Post Job Free

Resume

Sign in

ISSO

Location:
Houston, TX
Posted:
June 28, 2023

Contact this candidate

Resume:

Obinna Nnah

adxyl9@r.postjobfree.com 323-***-****

Houston, Texas 77056

Willing To Relocate.

EDUCATION AND TECHNICAL SKILLS

COPPIN STATE UNIVERSITY, Baltimore, MD

Bachelor of Science in Information Technology

UNIVERSITY OF MARYLAND GLOBAL CAMPUS

Masters in Cybersecurity Technology, 3.83 GPA

Cyber Security Technology Graduate Certificate, 9+ years of relevant IT experience - (Remedy Ticketing, Dameware, Windows 10 environment training, hardware repair, HEAT ticketing), Experience with Active Directory,

, Windows Server 2012/2016, experience with VDI (VMware), Network Support, LAN, Active Directory, Microsoft Windows Server, Software Troubleshooting, Operating Systems, System Administration, Virtualization, DHCP, TCP/IP, Remote Access Software, WAN,Windows PowerShell, Microsoft Azure, AWS, Linux/Unix, SAP, ServiceNow and Information Security. Certifications and Licenses

● CompTIA Security+

October 2020 to October 2023

● ACTIVE SECRET CLEARANCE - May 2021

● ACTIVE TOP SECRET CLEARANCE - April 2022

WORK EXPERIENCE

Raytheon Technologies - ISSO (Sr. Information Systems Security Officer) 2501 W. University Drive. Mckinney, Texas 75071

11/2020- Present - Full Time - 40+ Hours a week

TOP SECRET CLEARANCE

● Maintain appropriate disaster recovery technologies and procedures, including systems backups, replication and recovery testing. Maintain and Enforce security policies and controls by following defined procedures and standards. Participate in roadmap implementation plans for technology environment, including data, applications, servers, network, storage, compute platforms, and related infrastructure.

● Work with quality and compliance controls and Audit groups to facilitate strong controls around user/system access; Proactively Interact with senior management to discuss and explain issues affecting users; Prepare and present proposals related to projects that will improve functionality and support;

● Create solutions that align enterprise security architecture frameworks and standards (e.g. SABSA, NIST 800-53, ISO 27002) with overall business and security strategy.

● Perform vulnerability and secure configuration testing; research common and emerging threats and perform remediation activities across enterprise systems.

● Ensure systems availability, reliability and integrity by monitoring, maintaining and improving related system aspects (patching, alerting, monitoring, access review, security testing, upgrades).

● Engage effectively with Technology Team, functional experts, or other key personnel to ensure proactive awareness and comprehensive reporting on potential or discovered cybersecurity risks, improvements and/or incidents.

● Research and evaluate current and emerging threats and technologies and stay abreast of new technologies and solutions that will help increase security, productivity, innovation, and business capabilities.

● Taking proactive security measures, assessing risks, and responding to security breaches. Monitor networks, databases, and computer systems and create a risk management plan for IT systems. Perform security updates and build firewalls and other security features. Managing software licensing, updates, scanning and patching.

Naval Sea Systems Command (DoD)– Contracted through Kroswise– System Admin 1999 Fourth St, Norco, CA 92860

12/2017– 11/2020– Full time – 40+ Hours a week

SECRET CLEARANCE

● Upgrade and manage hardware and software.

● Research upcoming products, service protocols, and standards in support of systems software procurement and development efforts.

● Install and configure local area networks (LANs), wide area networks (WANs), and network segments and servers, such as file servers, VPN gateways, and intrusion detection systems.

● Ensure an uninterrupted internet connection and manage mail servers for sending and receiving emails and file servers for saving and managing data.

● Oversee system performance and report generation.

● Manage user accounts, credentials, permissions, access rights, storage allocations, and active directory administration.

● Providing analysis of impacts to key stakeholders;

● Configuring vulnerability assessment tools, including the integration of feedback from IT owners to reduce false positives;

● Analyzing identified vulnerabilities, along with identifying remediation techniques;

● Compiling vulnerability data and reports for both technical and executive audiences;

● Identifying dependencies and timelines required to address vulnerabilities, including system patching, deployment of specialized controls, code or infrastructure changes, and changes in build engineering processes;

● Reporting remediation of vulnerabilities by coordinating agreed-upon action plans and timelines with responsible technology partners and support teams;

● Reviewing and reporting changes to patching policies, procedures, standards, and audit work programs in a continuous improvement model;

● Performing vulnerability and ad-hoc scanning with Qualys;

● Researched, Tested and Implemented Qulays to ServiceNow VR connection;

● Build ServiceNow reports based on open and patched vulnerabilities;

● Investigation Qualys reopened vulnerability status

● Creating SOPs around different processes;

● Utilizing Qualys dashboards to create views on internal and external facing vulnerabilities;

● Operate SCAP Compliance Scans

The People Concern – Santa Monica, CA - Cyber Information Assurance Analyst 12/2014 – 12/2017– Full time – 40+ Hours a week

● Perform assessments of systems and networks within the networking environment or enclave and identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations such as compliance audits and active evaluations such as vulnerability assessments.

● Establishes strict program control processes to ensure mitigation of risks and supports obtaining certification and accreditation of systems. Includes support of process, analysis, coordination, security certification test, security documentation, as well as investigations, software research, hardware introduction and release, emerging technology research inspections and periodic audits.

● Assist in the implementation of the required government policy (i.e., NISPOM, JSIG, RMF), make recommendations on process tailoring, participate in and document process activities.

● Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards.

● Support the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results and preparation of required reports.

● Document the results of Certification and Accreditation activities and technical or coordination activity and prepare the system Security Plans and update the Plan of Actions and Milestones POA&M.



Contact this candidate