Cyber Security Specialist (3D0X3) — GS-11, Full-Time at 173rd Fighter Wing Communications Flight (2013-12 – Present)
Serve as the Wing's sole Information System Security Manager (ISSM) since Dec 2013, overseeing security policy, compliance, and risk management for both classified (SIPR) and unclassified (NIPR) networks across the 173FW. Designated as the primary COMSEC Officer Accounts Manager (KOAM) since 2015, managing the 173FW COMSEC program including key accountability, material control, and compliance with NSA and Air Force COMSEC directives.
- Served as Technical Lead on a Joint ANG and NG team during a DHS Pen-Test simulation, successfully compromising the target network and completing the red team mission (Jan 2020).
- Led 173FW CSART instruction program, teaching OCO and DCO TTPs to 12+ Communications Squadron personnel (Mar 2019).
- Became a voting board member and analyst for Oregon's first NG Cyber Incident Response Team (Aug 2018).
- Personally detected and eliminated 23 attack vectors and remediated 14 pieces of malicious software during Cyber Shield Red v Blue (Feb 2019).
- Intercepted and quarantined five virus incidents at 173FW, preventing data loss across critical mission systems (Jan 2018).
- Detected and eliminated a BotNet virus threatening 15+ C-17 Electronic Flight Bags while assigned to the 379th ECS, preventing disclosure of classified information (Aug 2017).
- Detected a certificate violation on the 173FW network and executed proper incident handling with zero loss to assets or data (Dec 2013).
- Served as 1 of 3 Vulnerability Management Team Leads at the 379th ECS, managing TCNO, STIG, and CVE compliance for 4,000+ clients, 300 servers, and 30+ PMOs — contributing to a positive CCRI inspection (Jul 2017).
- Completed RMF package for 173FW NIPR Circuit covering 900 workstations, 20 servers, and 9 PMOs, enabling continued operations (Jun 2016).
- Completed RMF package for 173FW SIPR Circuit covering 30+ workstations, 4 servers, and 7 PMOs (Dec 2016).
- Coordinated and completed 900+ RMF controls for the Wing's NIPR/SIPR Enclave, accrediting networks to meet DoD regulations (Mar 2017).
- Identified and remediated multiple Juniper vulnerabilities within the 173FW WLAN Network (Jun 2015).
- Implemented fix action for RedHat Linux Nessus Scanner to correctly scan the SIPR enclave, resolving a 7-month deficiency (Sep 2017).
- Conducted 173FW CSART initial assessment with Lane County, OR — identifying key city/county infrastructure to reduce the attack surface for systems serving 380,000+ civilians (Oct 2019).
- Managed Change Manager role at the 379th ECS CCB, coordinating 600+ network changes to NIPR/SIPR enclaves (Jun 2017).
- Processed 200+ firewall, Bluecoat, and write-waiver requests for 10,000+ personnel in compliance with AF and DoD policy (May 2017).
- Managed and approved 125 TEMPEST packages securing the AOR (Jul 2017).
- Successfully managed the AF Network Authorization Program, securely authorizing over 1,000 Wing personnel with recurring validations and inspections.
- Spearheaded installation and security of geographically separated recruiting networks across Oregon (Apr 2014).
- Facilitated the Kingsley Field BAN Modification process, overhauling 4 ITNs and dozens of switches to expand capacity (Sep 2014).
Network Control Center Specialist at 173rd Fighter Wing Communications Flight (2017 – 2021)
- Monitored and managed network infrastructure for managed service provider clients, ensuring uptime and rapid incident resolution.
- Responded to alerts and service tickets across multiple client environments, triaging and escalating issues as needed.
- Performed routine network health checks, patch management coordination, and configuration reviews for client systems.
- Collaborated with senior engineers to troubleshoot connectivity, hardware, and software issues across diverse client networks.
- Maintained documentation of client environments, change logs, and incident reports in accordance with MSP service standards.
Cybersecurity Consultant — Part-Time Contractor at Always OnIT (2021 – 2022)
Concurrent with 173FW position.
- Conducted remote vulnerability assessments for small and medium-sized businesses under the MSP's client portfolio, identifying and prioritizing security gaps.
- Provided actionable cybersecurity recommendations and remediation guidance tailored to each client's environment and risk tolerance.
- Advised business owners and stakeholders on security best practices, policy improvements, and risk management strategies.
- Delivered findings through clear written reports and verbal briefings, translating technical vulnerabilities into business-impact language for non-technical audiences.