Cybersecurity Lead at Definitive Innovative Solutions (2026-06 – Present)
- Orchestrate enterprise wide remediation efforts
- Develop, manage, and track Plans of Action & Milestones (POA&M) within JCAM to remediate identified security weaknesses
- Perform vulnerability management, analysis, triage, and remediation tracking
- Collaboration with system owners, developers, and stakeholders to implement security best practices
- Monitor security tools (Splunk, Tanium, Qualys, MS Defender) and respond to identified threats and incidents
- Prepare weekly and monthly status/metric reporting to brief CIO and ACIO
Cybersecurity Analyst at Universal Consulting Services (2017-07 – 2026-05)
- Develop and maintain documentation for program Risk Management Framework (RMF) accreditation and continuous monitoring for Assessment & Authorization (A&A) purposes
- Implementation of security controls, policy compliance, and security policies in accordance with NIST SP 800-53 guidelines
- Monitor Cyber Directives and Information Assurance Vulnerability Alerts (IAVA)
- Analyze system security scans from the Assured Compliance Assessment Services (ACAS) system to maintain security posture
- Implement Security Technical Implementation Guides (STIG) to program applications and systems
- Maintain program package and artifacts within the Navy Enterprise Mission Assurance Support Service (eMASS)
- Create and maintain program Plans of Action and Milestones (POA&M)
- Perform Authorization to Operate (ATO) and Annual Security Review (ASR) activities for the program adhering to NIST guidelines and the Navy RMF Process Guide
Application System Administrator at DirectViz Solutions (DVS) (2016-01 – 2017-07)
- Provide analysis and solutions for findings reported by Nessus scan results
- Remediate vulnerability findings for DISA systems worldwide for both NIPR and SIPR systems (Windows 10/Server 2008 R2/Server 2012 R2, Solaris 10)
- Perform testing and develop implementation documentation for patches, applications, server upgrades, and additional application functionality
- Develop procedures, policy, and documentation to launch the Tier III help desk
- Track and provide updates to all Tier III Remedy tickets
Systems Security Engineer & Penetration Tester at DirectViz Solutions (DVS) (2014-11 – 2015-12)
- Prepare security assessment package recommending system for or against authorization to operate using the RMF
- Perform scanning and vulnerability analysis for systems being assessed
- Application level penetration testing adhering to approved Rules of Engagement (RoE) and engagement windows coordinated with the Network Operations Center (NOC)/Security Operations Center (SOC); developing post engagement test reports
- Perform risk management assessment and analysis
- Develop security documentation and standard operating procedures
Corporate Systems Administrator/Proposal Analyst at DirectViz Solutions (DVS) (2014-05 – 2014-11)
- Maintained DVS corporate IT infrastructure managing firewalls, mobile security, security patching, and systems administration
- Deployment and configuration of physical and virtual servers (Windows 2012 R2)
- Environment maintenance (Software/hardware upgrading, patching)
- Administer corporate Active Directory and group policies
- Deploy and administer corporate Sharepoint and Exchange services
- Analyze government-issued solicitations to create proposal outlines and/or requirements matrices
- Perform compliance check for proposals to ensure responsiveness