Nicholas Smith
Cybersecurity Analyst
614-***-**** ********.*****.****@*****.*** linkedin.com/in/nicholas-smith-9a067062 Core Expertise
Software Vulnerability Analysis CVSS Scoring CVE Tracking and Mitigation Data Analytics Threat Intelligence Network Traffic Analysis ServiceNow IPS/IDS SIEM Cross-Team Collaboration Security Compliance NIST Risk Analysis and Mitigation Experience
July 2020 - November 2024
Cisco Systems, Inc, - PSIRT Incident Manager
Demonstrated continued success in identifying, tracking and reporting the risk from vulnerabilities in Cisco and third-party software to achieve secure products and top-tier protection for Cisco and customers. Categorized software vulnerabilities by severity and risk while customizing search strings to mitigate vulnerable versions of software for compliance. Controlled final approval of closing/junking minor software vulnerabilities.
● Mitigated the impact and risk of vulnerabilities in multiple Cisco software products based on results from a third-party researcher by partnering with Cisco business units and the researcher to publish and update a Security Advisory for customers regarding the required software upgrade version.
● Inherited and eliminated a backlog of junked defects from multiple Cisco business units which required ensuring zero security risks from defects and defining a standardized evaluation and response process for business units. January 2017 - June 2020
Cisco Systems, Inc, - Team Lead, IPS Signature Team Equipped four direct reports with the leadership and direction needed for the success of daily activities while generating $1.4B+ in revenue for Cisco. Oversaw all aspects of lab infrastructure for creating and testing IPS signature update packages to verify security and stability.
● Selected as the Team Lead of the IPS Signature Team as the product was transitioning to end-of-life and ensured the timely release of updates to keep major product customers safe during the transition to next-gen products.
● Resolved an inherited backlog of issues despite a reduced team size by prioritizing high visibility issues to deliver software updates to the customer and maintain customer confidence in Cisco security products.
2
January 2006 - December 2016
Cisco Systems, Inc, - IPS Signature Developer
Created IPS signatures for paid update services while gathering and distributing software vulnerability information in collaboration with PSIRT, Talos teams, and NDA third parties. January 2003 - December 2005
Cybertrust - Cybersecurity Analyst
Gathered intelligence for software vulnerability analysis, authored and published cybersecurity alerts for customers to alert them to trending software vulnerabilities.
Education
Southern Illinois University at Edwardsville - BS, Political Science Certifications
Google Analytics Professional Certificate, AWS Cloud Practitioner, CISSP, TruSecure ICSA Certified Security Associate, Checkpoint Certified Security Administrator, EdX 6.00x Introduction to Computer Science and Programming, Checkpoint VPN-1/Firewall-1 Management I/II Skills and Technologies
AI Training, Automation, AWS, Bash Scripting, Breakingpoint, C, Capture The Flag, CVE tracking and mitigation, Cyber Kill Chain, Fiddler, git, Governance and Compliance, Hex Editors, Incident Response, IPS/IDS, Linux cli, Microsoft Office, MITRE, Multi-Factor Authentication, Netcat, Network Traffic Analysis, NIST, Pisces, PKI, Python, R Code, Risk Assessment, ServiceNow, SharePoint, SIEM, SQL, Tableau, Tcpdump, Tcpreplay, Tcprewrite, Team Coordination and Leadership, Technical Training, Technical Writing, Web Penetration Testing, Wireshark Work Examples:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-multi-vuln
-finesse-qp6gbUO2
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-opendns- pulse-dos-Dd8L3sZq
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sni-data-e xfil-mFgzXqLN
https://kaggle.com/writeups/nixmyth/cwe-trends