NETSEREABE TAYE (NT)
Washington, D.C.
301-***-**** **********@*****.*** www.linkedin.com/in/netsereabetaye
CRITICAL INFRASTRUCTURE SECURITY ENGINEER
OT / ICS • CYBERSECURITY • RISK MANAGEMENT
Cybersecurity Engineer with 10+ years of experience in cybersecurity engineering, risk management, and secure system operations, including hands-on experience supporting Facility Related Control Systems (FRCS) and operational environments that deliver mission-critical services. Brings 4+ years of direct experience applying NIST Risk Management Framework (SP 800-37/53) in FISMA-regulated environments and performing security control assessments, vulnerability management, and continuous monitoring.
Proven ability to collaborate with engineers, system owners, ISSOs, and government stakeholders to design and implement cybersecurity controls that protect operational technology while preserving system availability, safety, and reliability. Experienced in translating federal cybersecurity standards into practical, actionable guidance aligned with NIST SP 800-82, NIST Cybersecurity Framework (CSF), EPA, and CISA guidance, strengthening resilience across critical infrastructure environments.
CORE COMPETENCIES
Critical Infrastructure & OT/ICS Security
Operational Technology (OT) & Industrial Control Systems (ICS)
Facility Related Control Systems (FRCS)
SCADA Security Concepts
Secure IT/OT Network Architecture & Segmentation
Continuous Monitoring for Operational Systems
Incident Response & Continuity of Operations (COOP)
Cyber Risk Assessments for Mission-Critical Systems
Governance, Risk & Compliance (GRC)
NIST RMF (SP 800-37, 800-53, 800-30, 800-61)
NIST SP 800-82 (ICS Security)
NIST Cybersecurity Framework (CSF)
FISMA, FedRAMP
POA&M, SSP, SAR, SAP, CP Documentation
Vulnerability & Risk Management
Security Operations & Monitoring
SIEM: Splunk, IBM QRadar, Azure Sentinel
Log Monitoring & Event Correlation
IDS / IPS (HIDS & NIDS)
Incident Detection, Analysis & Remediation
Cloud, Infrastructure & Network Security
AWS & Azure Security Architecture
Identity & Access Management (IAM, RBAC, Azure AD, SailPoint)
Network Security (Firewalls, DMZ, Segmentation)
Encryption, Key Management, Secure Data Transfer
Disaster Recovery & Business Continuity
TECHNICAL SKILLS & TOOLS
Vulnerability & Assessment Tools
Tenable Nessus / ACAS, Qualys, Rapid7, Nmap, Wireshark, Carbon Black
SIEM & Monitoring
Splunk, IBM QRadar, Azure Monitor, Log Analytics, Sentinel, ManageEngine
Operating Systems & Platforms
Windows Server, RHEL 6 & 7, Microsoft 365 Security & Compliance
Cloud & Automation
AWS (EC2, S3, ELB, RDS, CloudFormation)
Azure (VMs, Networking, AKS, Security Center)
PowerShell, CI/CD & Infrastructure Automation
PROFESSIONAL EXPERIENCE
Bemanda Tech – Washington, D.C.
Cybersecurity Engineer Cloud & Operational Systems Security
2022 – Present
Serve as a Cybersecurity Specialist supporting live operational environments, including Facility Related Control Systems (FRCS) supporting mission-critical services.
Protect FRCS assets, networks, and data by applying NIST RMF principles across the system lifecycle in accordance with FISMA and agency security requirements.
Conduct security control assessments, vulnerability scans, and cyber risk analysis for systems supporting operational and facility environments.
Collaborate closely with facility engineers, system owners, ISSOs, and IT teams to ensure cybersecurity controls are implemented without disrupting operational continuity.
Support incident preparedness, response, and recovery, including log analysis, SIEM event correlation, root-cause analysis, and remediation planning.
Maintain and update SSPs, SARs, POA&Ms, change documentation, and continuous monitoring artifacts.
Provide cybersecurity guidance, documentation, and training to technical and non-technical stakeholders.
U Street Parking (USP) Inc – Washington, D.C.
AWS Cloud Architect & IT Specialist
2021 – 2022
Designed and implemented secure network architectures, segmentation, and access controls supporting operational systems.
Led vulnerability remediation and risk reduction initiatives improving system security posture.
Implemented centralized logging, monitoring, and governance controls supporting operational resilience.
Provided technical consultation to leadership and system stakeholders on cybersecurity risk mitigation.
HSN – St. Petersburg, FL
Azure Cloud Solutions Architect
2019 – 2020
Engineered secure Azure solutions aligned with enterprise and compliance requirements.
Implemented Azure Security Center, Sentinel, Policy, Key Vault, and RBAC.
Strengthened disaster recovery and continuity-of-operations capabilities.
Mullen Libraries – Washington, D.C.
IT Systems Coordinator
2000 – 2014
Managed enterprise IT systems supporting 1,000+ users and supervised 60 staff.
Designed and implemented early secure cloud architectures and enterprise migrations.
Implemented IAM controls and protected enterprise data assets.
EDUCATION
MS, Cloud Computing Architecture — University of Maryland Global Campus
MS, Project Management (MSPM) — The Catholic University of America
BA, Information Technology — The Catholic University of America
CERTIFICATIONS
CompTIA Cybersecurity+ (2025)
Cisco Certified Network Associate (CCNA)
Junior Full Stack Java Developer — Generation USA
SharePoint Development Certification
Health IT Certification