Results-driven Information Security professional with over 16 years of distinguished experience specializing in cybersecurity frameworks and standards, including Risk Management Framework (RMF), NIST Special Publication 800-53 / 800-171, PCI-DSS, DevSecOps, Cloud Security, Security Compliance, and Vulnerability Management. Possesses a versatile portfolio of Cyber and Cloud security certifications, closely aligned with DoD 8570 IAT/IAM Level III and IASAE Level II requirements. Adept at identifying vulnerabilities, recommending mitigation strategies, and implementing robust, enterprise-grade security solutions to safeguard critical digital assets. Demonstrates a consistent track record of effectively communicating cybersecurity risks and vulnerabilities to diverse stakeholders, fostering a culture of security awareness and cross-functional collaboration.
- Certified Information Security Manager - CISM (222009165)
- Certified Information Systems Auditor - CISA (221910145)
- Certified in Risk and Information Systems Control - CRISC (232271918)
- CompTIA CASP+ ce - (COMP001020766148)
- CompTIA Security+ ce - (COMP001020766148)
- AWS Certified Security Speciality (AWS00575226)
- AWS Certified Solutions Architect - Associate (AWS00575226)
- AWS Certified Developer - Associate (AWS00575226)
- Microsoft Certified: Azure Security Engineer Associate (669A8A-A7N6F4)
-
Conducting Nessus Vulnerability Scan Results Analysis
-
Security Control Testing (AC-11) Using FedRAMP Template (Determine-if Levels)
-
SonarQube Integration with Jenkins CICD Pipeline
-
Conducting NIST 800-53 Rev4 to Rev5 Control GAP Analysis
- By email [email protected]
- On LinkedIn