Mark Hornbeck
*************@*****.***
ExecuƟve Summary
VersaƟle network cybersecurity professional skilled in digital archiving, policies and procedures, security operaƟons, system redundancy implementaƟon, SCADA networks, Splunk and SIEM configuraƟon and deployments, idenƟty access management (IAM), systems analysis, escalaƟng and resolving issues, reviewing source code, defense in depth, designing and implemenƟng security soluƟons, and many other skills.
Professional Experience
Industrial Cybersecurity Analyst
Probusecur LLC
December 2023 to Present
Deployment of soŌware and devices in support of water/wastewater systems, manufacturing, and non- profit organizaƟons. Conduct forensics invesƟgaƟons on MicrosoŌ and Linux systems using EnCase and FTK
OT Cybersecurity and SCADA Systems Analyst
Duke Energy
March 2021 to June 2023
Led risk assessment, asset management, cybersecurity assessment efforts for oil and gas SCADA systems. UƟlized SOAR design to improve security posture. Coordinated with mulƟple departments to upgrade and implement the SCADA (ICS system), using SOAR and SIEM, to comply with NIST, FERC, and TSA requirements, for the natural gas business unit.
Threat hunƟng, defense in depth, forensic invesƟgaƟons, security controls, incident response, security analysis, penetraƟon tesƟng, idenƟty and access management (IAM), effecƟve implementaƟon of policy in systems and personnel.
Provided support of ICS networks, manage and maintain converged plaƞorms, virtualizaƟon, networks, security plaƞorms and various other OT/IoT technologies, provide support of ICS networks, manage and maintain converged plaƞorms, virtualizaƟon, networks, security plaƞorms and various other OT/IoT technologies.
Cybersecurity assessment - Risk and asset management with adherence to defined IT policy mandates. Splunk - Splunk and SIEM deployments in a SCADA oil and gas configuraƟon with respect to the security operaƟons center. UƟlized SOAR applicaƟons and management of asset idenƟficaƟon and classificaƟon. Compliance - Point of contact between NERC and TSA in implemenƟng compliance requests. Deployment of a simulated SCADA system for all situaƟons. Configured RTU, PLC, NGC and other OT devices in a real Ɵme system including display building. Implemented AcƟve Directory policies, scripts, and third party integraƟons, and customized templates. Industrial Cybersecurity Analyst
Probusecur LLC
June 2020 to April 2021
Deployment of soŌware and devices in support of water/wastewater systems, manufacturing, and non- profit organizaƟons.
Systems Analyst 2
ABB TotalFlow
January 2017 to April 2020
Manage networks, intrusion detecƟon, and prevenƟon systems; plan, implement and upgrade network security systems; analyze, recommend, implement and maintain system tools and countermeasures; test network device security and assess risks, conducƟng internal and external security audits; analyze network security breaches to determine root cause; test device security and assess risks in digital oil fields to ensure integrity of criƟcal oil field systems; define, implement and maintain corporate security policies; lead security awareness training to ensure execuƟon of best pracƟces; provide escalated customer support for complex IT issues, maintaining quality assurance documentaƟon to solve and uphold cybersecurity. Responsible for SSDLC, improvements to implement SOAR, risk assessment/miƟgaƟon, business conƟnuity, troubleshooƟng and compliance. Configured RTU, PLC, NGC and other OT devices in a real Ɵme system including display building Implemented AcƟve Directory policies, scripts, and third party integraƟons, and customized templates Implemented Cisco UCS Blade both at employer manufacturing site and customer sites SoŌware Test Support Technician
ABB TotalFlow
January 2012 to January 2017
Developed and maintained test environment for cloud infrastructure tesƟng; Administered and performed verificaƟon tesƟng of PC boards and other electronic assemblies; calculated and recorded data to ensure tesƟng integrity; provided technical support to customers both internal and external, while tesƟng principles within SoŌware Engineering. Technical Support Level 2
ABB TotalFlow
January 2010 to January 2012
Developed service procedures, policies, and standards; analyzed staƟsƟcs and compiled management level reports; performed troubleshooƟng and problem resoluƟon of customers internet security issues; mentored and coached internal IT professionals and customer service agents. SCADA Systems Analyst
ABB TotalFlow
June 2005 to January 2010
Designed and improved SCADA control systems; provided technical assistance for the design, selecƟon, installaƟon, configuraƟon, operaƟon, maintenance, and troubleshooƟng of all system elements using robust project management principles; maintained and enhanced complex automaƟon system plaƞorms, providing support for system soŌware specific to oil and gas producƟon related data collecƟon, alarming, and data presentaƟon; performed trend analysis of incoming data paƩerns from field devices to idenƟfy anomalies; partnered with support team to determine acƟon plan and risk miƟgaƟon for proacƟve problem resoluƟon
Maintain SoŌware ConfiguraƟon and Programming overseeing the enƟre life cycle of criƟcal systems, safety protocols, and hardware equipment.
Executed seamless rouƟne system addiƟons and modificaƟons, demonstraƟng proficiency in troubleshooƟng communicaƟon issues and ensuring uninterrupted system funcƟonality. Facilitated collaboraƟon across diverse teams, including automaƟon, measurements, engineering, producƟon, and operaƟons, fostering a culture of cross-funcƟonal synergy. Engineered cuƫng-edge programs and systems for real-Ɵme SCADA (ICS systems) aligning with ISO standards and exceeding contractual obligaƟons.
ProacƟvely engaged stakeholders, providing transparent updates on applicaƟon and system development, and ensuring alignment with user requirements. Applied a dynamic skill set to solve intricate problems, providing specialized guidance to department members and business assets.
Experience with LAN and WAN design, implementaƟon and troubleshooƟng for switches, routers, firewalls, and various other network equipment (OT). Performed various kind of design, implementaƟon of MS Office with MS Window server in designing, ImplementaƟon and troubleshooƟng in OT
Conducted forensics invesƟgaƟons on MicrosoŌ, Linux, and UNIX systems using EnCase and FTK Skills
Defense in Depth InformaƟon Security Security Analysis Ethical Hacking/Threat HunƟng InformaƟon Assurance & IT Audit Systems AdministraƟon Forensics InvesƟgaƟons Network Architecture Enterprise Security Cisco Switches PenetraƟon TesƟng Intrusion PrevenƟon SCADA Architecture Design Digital Archives Disaster Recovery Intrusion DetecƟon Systems Advanced Network TroubleshooƟng Cybersecurity Networking IT Infrastructure Risk Assessment
System Security High Availability Standards
System Design Hardware SelecƟon Firewalls
Network Appliances Standards Compliance Policy GeneraƟon Vulnerability Assessment Security controls Incident Response Customer CommunicaƟons MulƟ-discipline CommunicaƟons DedicaƟon Dependability Best PracƟces Process Improvement
IdenƟty and Access Management IAM Policy ImplementaƟon Secure VirtualizaƟon in Windows Secure VirtualizaƟon in Linux Secure Network Design Efficient Network Design Interfacing With Standards Bodies Interfacing With Vendors Cisco Firewalls Server OperaƟng Systems Server Hardware Switching and VLAN Design WAN in OT SIEM
SoŌware SelecƟon Hardware Device SelecƟon Cost OpƟmizaƟon Infrastructure ProtecƟon InformaƟon ProtecƟon SSDIC Regulatory PracƟces and Laws Privacy Standards NIST 800 53 ISO 27001 ISO 22301 ISO 27031
COBIT FISMA Linux OperaƟng Systems
Red Hat Linux Fedora Linux Unix OperaƟng Systems
MicrosoŌ CerƟfied Professional MicrosoŌ MOSS CerƟficaƟon CompTIA A+CerƟficaƟon Display building RTU configuraƟon Real Ɵme system exp. AcƟve Directory Hardware MicrosoŌ Suite
VMWare Building templates Cisco routers
EducaƟon
Master of Science in Cybersecurity
Friends University, Wichita, KS
Friends University, Wichita, Kansas