|
|
Title: |
Senior Security Specialist Extraordinaire
|
Location: |
US-Ohio
|
Work History: |
Science Applications International Corporation (SAIC), Beavercreek OH
Information Security Engineer June 06 Present
Provides information security (INFOSEC) engineering, certification and accreditation and analysis for Defense Logistics Agency.
Performs and analysis of planned and operational system security architectures.
Ensuring secure design and developing and reviewing security requirements and specifications; developing security policies, procedures and plans.
DoD 8500 Controls analysis
Conducting Certification and Accreditation (C&A) activities.
Serves as lead for security test and evaluation team activities to include, Retina scanning, Gold Disk, SRR Unix scripts.
ManTech Security and Mission Assurance
Security Manager June 04 June 06
Responsible for oversight and support the overall security related activities related to multi-level secure architecture to include overall threat/risk assessment, and audit compliance activities.
Mapping complex multilevel security processes, identifying and testing manual and systemic controls and evaluate the relevance of key controls with mitigating significant risks.
Applied COBIT's security baseline principles to bring legacy systems into compliance.
Created transition plan from DCID 6/3 to JAFAN 6/3 for PL2 and PL3 systems.
Created plan to implement SenSage enterprise audit compliance tool.
Worked with National Security Agency (NSA) to determine certification, test, and evaluation (CT&E) criteria for F/A-22 modernization of the Air Vehicle (AV).
Prepared policies and procedures for downgrading and declassification of data and electronic media.
Sinclair Community College, Dayton OH 2002-Present
Part Time Instructor, Computer Information Systems department
Instructed courses in the following:
o CompTIA Security +
o Web Server Security & Maintenance
Developed the following courses
o Web Server Security & Maintenance
Haverstick Consulting
Senior Security Consultant Nov 18, 98 Jun 10, 04
Lead the planning and execution for security tasks to ensure the business objective of the project is in compliance with the proper regulatory requirements to include NIST special publications and NIST FIPS 199.
Performed architecture specific analysis for interoperability connection compliance (Firewall Port Exception requirements).
Provide system security architecture development and documentation to include, site test plans, threat/vulnerability/risk assessments, security and awareness.
Develop and prepare plans for Disaster Recover (DRP) as input to DITSCAP. Prepare supplemental technical papers including technical solutions and security requirements.
Developed plans and guidelines for Windows 2000, Oracle 9i, and Solaris scripts to mitigate vulnerabilities found using DISA STIG/SRR reviews.
Performed security assessments for Windows 2000, Oracle 9i, and Solaris to mitigate vulnerabilities found using DISA STIG/SRR reviews.
Senior Network Engineer
Analytical Systems Engineering Corp. 1996 1998
Solely responsible for the design and implementation of an ATM network to include multiple sites. Current project value around 2 million dollars.
Conducts feasibility studies, analyzes the infrastructure, and calculates circuit requirements for network infrastructure.
Recent research project completed for a remote access solution for WPAFB using 56K technology.
Determines network cost schedules, installation, and design schedules.
Documented CISCO router configuration.
Determined Barrier Reef requirements for firewall placement with a remote access project.
Senior Network Engineer
Computer Sciences Corp., Dayton OH 1994-1996
Member of a team responsible for the design and implementation of a Windows NT network to include multiple sites.
Determines network cost schedules, installation, and design schedules.
Responsible for the administration and day-to-day upgrades for a Novell 4.1 network.
Performed basic CISCO router configuration.
Member of a team responsible for the design and implementation of a Windows NT network to include multiple sites.
Determines network cost schedules, installation, and design schedules.
Responsible for the administration and day-to-day upgrades for a Novell 4.1 network.
Performed basic CISCO router configuration.
Network Engineer/Instructor
BlueChip Computers, Kettering OH 1992 1994
Solely responsible for the design and implementation of an Ethernet networks to include multiple sites.
Conducts feasibility studies, analyzes the infrastructure, and calculates circuit requirements for network infrastructure.
Determines network cost schedules, installation, and design schedules.
Taught classes in introduction to networking, Novell NetWare 3.1x, 4.1x administration, advanced administration, and installation and configuration.
Network Support Engineer
LOGTEC, Fairborn OH 1991- 1992
Taught classes in introduction to networking, Windows 3.1, Microsoft Mail 3.0, Microsoft Word, and Excel.
Developed customized courseware for NCR Corporation.
Network Support Analyst
Frontier Engineering Inc, Fairborn OH 1989- 1991
As a Network Support Analyst provided ongoing support as Novell Administrator for a 100-user NetWare 2.15 network.
Provided ongoing software and hardware support for NetWare, Lotus 1-2-3, and Word Star.
National Tag Company, Fairborn OH 1988-1989
Network Support/Programmer
Installed and maintained Magna Desktop Publishing Software.
Provided necessary project management support for to implementation of a printing project.
Developed and programmed an order entry system for a turn key solution using FoxBASE and dBase3+ programming
Wrote a series of front-end menus for a turnkey system using dBase 3+ and FoxBASE language.
Valcom Learning Center, Dayton OH 1987-1988
Instructor
Taught classes WordPerfect, and Enable software, and Introduction to computers.
PROFESSIONAL PUBLICATIONS:
Greater Dayton IT Alliance, Technology First, November 2006 issue
Locking down your home wireless network
PROFESSIONAL ORGANIZATIONS:
ISACA, Information Systems Auditing & Control Association
ISC2, International Information Systems Security Certification Consortium
ISSA, Information Security Systems Association
IIA, The Institute of Internal Auditors
|
Skills: |
Information Security, IT Audit controls, Web server security, Project Mnagement.
Operating Systems
Windows, Active Ditrectory, Unix
HARDWARE:
PCs, Sun, HP, Dell, Compaq, VAX, DEC, Gateway, servers, routers, ATM/Ethernet switches, and indirect experience with all types of hardware components
|
Education: |
TECHNICAL TRAINING:
National Security Agency INFOSEC Assessment Methodology (IAM) 2003 (24 hours)
COBIT audit & Control Objectives ISACA (24 hours)
IBM Tivoli Business Partner Training, June 2000 (40 hours)
XYLAN ATM Switch Training, October 1998 (40 hours)
Novell Instructor Training, Herndon Virginia, February 19991 (40 hours)
DITSCAP Certification & Accreditation training XACTA Oct 2002(40 hours)
Business Recovery and Business Continuity Training, IT Alliance 2002 (24 hours)
EDUCATION:
Master of Science IT (Research - Wireless Security), East Carolina University May 2002
Bachelor of Science Business, Park College Dec 1994
Associates of Science in Business, Sinclair Community College Dec 1987
|
Endorsements
|
 |
Patriicia has received 4 endorsements.
|
Patriicia has endorsed 1 Member.
|
|
|
| |
Rank |
Title |
Location |
Status |
Actions |
|
9.944 |
Junior Systems Administrator |
US-Hawaii |
 |
Details
|
|
|
9.935 |
I.T.PMP. MAC and PC Systems Administrator / Technical support |
US-New York-New York City |
 |
Details
|
|
|
|
|
4.785 |
IT - technical trainer/instructor/writer |
US-California |
 |
Details
|
|
|
|
|
Public Messages
|
 |
| From |
Date |
Message |
No public messages. |
|
|