Post Job Free

Resume

Sign in

Cybersecurity Engineering Risk Management

Location:
Colorado Springs, CO
Salary:
120000
Posted:
July 20, 2023

Contact this candidate

Resume:

Andrew Jacobberger

**** *********** ****

Colorado Springs, CO. 80918

720-***-****

adyfcp@r.postjobfree.com

PROFESSIONAL SUMMARY

Detail-Oriented Cybersecurity Engineering Professional with 5 - 6 years of experience in the field. Audited Lockheed Martin’s Global Positioning System (GPS) Program in use by the United States Space Force (USSF) while employed with Science Applications International Corporation (SAIC). Provided Independent Verification and Validation (IV&V) services for the Missile Defense Agency (MDA) while employed with Serco Group. Gained experience working with Cybersecurity tools including STIG Viewer, eMASS, ACAS, HBSS, and NMAP. Became familiar with DISA Security Test Implementation Guides (STIGs), Risk Management Framework (RMF), NIST 800-53, and LogRhythm. Acquired a Linux certificate, eMASS certificate, ACAS certificate, Windows OS Security certificate, and NMAP certificate while on the job.

EDUCATION AND CERTIFICATIONS

(Master of Science) M.S. in Cyber Security, May 6, 2019. Maryville University of St. Louis.

(Bachelor of Science) B.S. in Information Systems, May 15, 2012. University of Colorado at Colorado Springs (UCCS).

Department of Defense (DOD), Secret clearance, November 6, 2019.

CompTIA Secure Infrastructure Specialist (CSIS) (A+ CE, Network+ CE, and Security+ CE).

Cisco 200-301: CCNA (Cisco Certified Network Associate).

ECCOUNCIL Certified Ethical Hacker (C EH).

ECCOUNCIL Certified Network Defense Architect (CNDA).

ITIL v3 Foundation.

Windows Operating System Security, Linux Operating System Security, The Complete Nmap Ethical Hacking Course: Network Security, eMASS, and ACAS certificates were obtained while at Serco Inc.

CORE COMPETENCIES

.

SIEM Tools: LogRhythm, Splunk.

Cybersecurity Assessment Tools: SCAP, RHEL, ACAS, eMASS, NMAP, POAMs, Security Operations Center, STIG Viewer, DISA STIGs, Network Architecture, CNSSI 1253, NIST 800-53, and Risk Management Framework (RMF).

Cisco Systems: Access Connectivity, Architectures and Services, Assurance and Automation, Connectivity, Core Routing, High Availability and Fast Convergence, IP, IP Services, Network Access, Network Fundamentals, Programmability, Security Fundamentals.

Ticketing Systems: Remedy and ServiceNow.

Scripting Languages: Acquired a Linux certificate on job. Have a working knowledge of Python.

WORK EXPERIENCE

JACOBS

March 2023 - Present

Senior ISSO – NISSC II –

Perform security analysis of operational and development environments, threats, vulnerabilities, and internal interfaces to define and assess compliance with accepted industry and government standards.

Support the Assessment and Authorization (A&A) processes under NIST Risk Management Framework (RMF) for new and existing information systems.

Utilize the Enterprise Mission Assurance Support Service (eMASS) features and capabilities to successfully submit packages for approval.

Facilitates the development of Memorandums of Understanding (MOU), Interconnection Security Agreements (ISA), Security Impact Analysis (SIA), Plan of Actions and Milestones (POAM), and support Continuous Monitoring (CONMON).

Coordinates configuration management of assigned systems; auditing systems to ensure security posture integrity.

Support assessments and test/analysis data to document the state of compliance with security requirements.

Conduct risk assessments and investigations, implement appropriate risk mitigations, and lead all aspects of incident response activities.

Conducts periodic hardware/software inventory assessments.

Collaborate with the appropriate government customers, suppliers, and company personnel to implement protective mechanisms and to ensure understanding of and compliance with cybersecurity requirements.

SERCO INC.

May 2022 – March 2023

Cybersecurity Engineer IV -

Provided solutions for statutory and DoD requirements for Independent Verification and Validation (IV&V) of the Missile Defense Agency (MDA) on Schriever SFB. Provided IV&V for the MDA’s Weapon Systems, Business Systems, Research, Development, Test, and Evaluation (RDT&E) environments and Defense Industrial Base (DIB) partners. Evaluated networks, IT components, and weapon systems for compliance with published DoD guidance and adherence to the Risk Management Framework (RMF). Performed Cybersecurity Risk Assessment activities per DoD and NIST guidance. Interfaced with Information System Security Manager and Officers (ISSM/ISSO) to review Systems Security Plans (SSPs), Risk Assessment Reports (RARs), eMASS Authorization packages, and Plans of Actions and Milestones (POA&Ms). Generated Security Assessment Plans (SAP) and articulated cybersecurity assessment findings in technical and non-technical ways to customers.

SAIC

September 2019 – May 2022

Cybersecurity Engineer – Support the Global Positioning Systems (GPS) Enterprise in defining, capturing, and maintaining the cybersecurity engineering technical, schedule, and cost risk data throughout the system lifecycle as well as developing risk mitigation courses of action and assessing risk impacts and proposed changes. Support enterprise and system-level cybersecurity engineering and integration functions required to successfully deliver GPS capabilities and services. Ensure effective cybersecurity engineering requirements integration across space, control (ground), user segments, hardware and software, and all other aspects of systems and organizations within the GPS Enterprise. Ensure the application of appropriate cybersecurity engineering principles to meet technical requirements and trace requirements to system and test specifications.

Apply cybersecurity knowledge to interpret and advise on systems engineering specifications, requirements, and technical data.

Field Services Technician – Responded to technical service hardware requests and break/fix incidents for the United States Space Force (USSF). Supported Dell, HP, and other notebook, desktops, and monitors. Resolved end user questions or problems in the areas of functionality and technical troubleshooting. Took responsibility for additional follow-up as required to ensure service was fully restored. Ensured a high level of customer satisfaction through the service delivery transaction.

CENTURYLINK

February 2016 – September 2019

Information Security Engineer II – Facilitated the Ingress/Egress (Network) implementations for Managed DDOS Mitigation and Threat Intelligence Products. Managed and resolved customer fault, service outage, and impairment events. Monitored, triaged, and responded to DDOS alerts/events in Splunk SIEM. Performed basic to moderate network changes on Alcatel and Juniper routers for the Managed Security Environment.

Customer Solutions Design Engineer (CSDE) – Attended conference calls with Customers, Sales Engineers, and Technical Design Engineers. Verified the information on customer's Managed DDOS Service orders were correct and accurate. Provisioned and activated Managed DDOS Services for customers on Alcatel and Juniper routers. Gained experience with Radware Defense Pros (On-Premise DDOS Protection) and Arbor Peak flow SP (Network Traffic Monitoring platform) as we made network changes for always-on and on demand DDOS solutions. Escalated tickets to the GSOC (Global Security Operations Center) for issues that needed further assistance.

SAIC

September 2014 – February 2016

Helpdesk Specialist – Achieved a first call resolve of 95% on a consistent basis on calls that came in. Provided Tier 1 computer help desk support via telephone for United States Army Reserve Command (USARC). Temporarily removed computers from being quarantined so users could login to the systems again. Documented over 60 help desk tickets and ensured timely resolution.



Contact this candidate