Post Job Free
Sign in

Top Secret SOC & Network Operations Veteran

Location:
Columbia, SC
Posted:
June 25, 2026

Contact this candidate

Resume:

David Ngowi

Columbia, SC 240-***-**** *********@****.*** linkedin.com/in/davidngowi

PROFESSIONAL SUMMARY

Security+ certified cybersecurity and IT support professional with Top Secret clearance eligibility, military leadership, and hands-on SOC lab experience. Proficient in security monitoring, authentication investigations, vulnerability assessments, and enterprise IT operations. Experienced in analyzing Windows security events, correlating authentication activity in Splunk SIEM, investigating suspicious PowerShell execution, and maintaining secure Windows environments in dynamic settings. Skilled in alert triage, log analysis, Active Directory administration, network traffic analysis, and incident escalation using Splunk, Wireshark, Nmap, Kali Linux, and PowerShell. Committed to supporting SOC operations, incident response, and enterprise defensive security for government, defense, and commercial organizations.

EDUCATION AND CERTIFICATIONS

• Bachelor of Science, Computer & Information Systems ECPI University GPA: 3.61 2025

• CompTIA CySA+ 2025

• CompTIA Security+ 2024

CORE TECHNICAL SKILLS

Systems & Environments

• Windows and Linux operating systems

• System configuration, performance optimization,

and secure setup

Networking Fundamentals

• TCP/IP, DNS, DHCP

• LAN/Wi-Fi troubleshooting and secure connectivity practices

Cybersecurity Foundations

• CompTIA Security+, CompTIA CySA+ certified

• Authentication, authorization, and threat detection System Troubleshooting

• Diagnostics for hardware, software, and access

related issues

• OS installation, configuration, and performance tuning

• Secure device setup and connectivity troubleshooting System Troubleshooting

• Diagnostics for hardware, software, and access

related issues

• OS installation, configuration, and performance tuning

• Secure device setup and connectivity troubleshooting TOOLS

Splunk SIEM Wireshark Nmap Kali Linux VMware Virtual Box PROFESSIONAL EXPERIENCE

IT Support Technician – Lutheran Homes of South Carolina (internship) Columbia, SC May 2025 – Jun 2025

• Delivered frontline technical support to healthcare staff by troubleshooting Windows systems, printers, Microsoft 365 applications, and network connectivity issues

• Facilitated user onboarding by managing account setup, password resets, workstation configuration, and secure access requests

• Resolved user technical issues through ticket-based workflows, ensuring accurate documentation, escalation tracking, operational continuity, and prompt resolution

• Assisted with Windows administration and Active Directory account management, including password resets, account troubleshooting, user access, and authentication issue resolution

• Escalated complex technical and security incidents to senior IT personnel for resolution Infantryman (11B) – United States Army 2013 – 2022

• Led teams in high-risk environments, ensuring accountability for personnel, communications, equipment, and sensitive materials

• Applied risk management principles to safeguard personnel, assets, and mission-critical operations in high- pressure situations

D. Ngowi page 1 of 2

• Ensured strict compliance with operational security standards and accountability procedures for sensitive equipment and classified materials

• Coordinated mission-critical activities that required rapid decision-making, procedural discipline, and secure communications in dynamic environments

• Trained and mentored junior personnel in operational readiness, accountability, risk mitigation, and mission assurance procedures

FEATURED SECURITY OPERATIONS PROJECT

• Security Operations Center (SOC) Investigation Lab developed a virtual SOC environment with Splunk SIEM, Kali Linux, and Windows virtual machines to simulate enterprise security monitoring

• Configured centralized Windows log collection and continuously monitored authentication activity, PowerShell execution, and endpoint behavior for suspicious indicators

• Investigated repeated failed authentication attempts and suspicious PowerShell activity using Windows Event IDs 4625 and 4688

• Correlated authentication and process execution logs in Splunk dashboards to identify simulated brute-force attempts and unauthorized execution

• Reviewed suspicious authentication activity, analyzed related security events, and escalated unusual account behavior for further review

• Recommended remediation measures such as account lockout policies, password enforcement, restricted PowerShell usage, minimizing administrative access, and implementing least-privilege controls ADDITIONAL TECHNICAL EXPERIENCE

• Performed vulnerability assessments and service discovery scans with Nmap on Windows and Linux lab systems

• Used Wireshark to analyze DNS, SMB, HTTP, and authentication traffic to identify suspicious communication patterns

• Set up Active Directory lab environments to manage users, support authentication, and enforce least-privilege access control

• Configured Linux virtual machines and applied security hardening measures such as permission management and service configuration

• Used Bash and Linux command-line utilities to support administration and troubleshooting D. Ngowi page 2 of 2



Contact this candidate