Past Performance
Defense Information Systems Agency (DISA), Fort Meade, MD Prime Contractors: TASC & Alion Science
Contract#: JPN 35095-6
Period of Performance: Sep 2012- Apr 2015
- Supported new JITC initiative to standup new Cyber Test & Evaluation (T&E) network to assess the health of DoD Cyber readiness
- Created Visio diagrams and PowerPoint presentations to assist the government customer in briefing Joint Information Environment and Cyber T&E initiatives
- Conducted site visits at multiple testing facilities; DoD Cyber Range, Joint Information Operations Range (JIOR), and National Cyber Range (NCR)
- Provided network architecture depictions of operationally realistic, closed environment test labs for high-level testing of the DoD Information Network (DoDIN)
- Immersed in high-level Joint Information Environment (JIE) activities; provided subject matter expertise to our government customer
- Involved in the early development/procurement of the Joint Regional Security Stacks (JRSS) initiative between DISA/Army/Air Force
- Created Interconnectivity Security Agreements between DoD IA Range & DISA; applied STIGs to network devices at the Ft. Meade Labs
Defense Intelligence Agency (DIA)
Prime Contractor: Basic Commerce & Industries, Contract#: BCI-1207
Period of Performance: July 2011- Sept 2014
- Provide assistance with understanding and implementing security documents and policies o STIGs, DoD 8500.2, AR 25, etc.
- Ensure computer workstations are configured to limit vulnerabilities o Scan computers with Gold Disk, Linux SRRs, Retina
- Troubleshoot and Remediate vulnerabilities
- Assist in the scanning and remediation of other network equipment
- Assist in design and execution of security of Network components o Assist, scan, and remediate security issues in the other equipment
- Assist in documenting/reporting vulnerabilities
- Document tasks completed/unable to be completed
- Assist in documentation
- Remediation, justification of vulnerabilities
- C&A packages
- Boundary and network drawings
- Assist in completing POA&M if required
- Overall – Provide considerate, professional security consulting and labor as required.
- Performed risk analysis on the Peace Corps’ domestic network and wrote a risk assessment based on findings
- Performed Security Test & Evaluation on the Peace Corps Enterprise network
- Briefed Peace Corps IT leadership on findings and recommendations
- Performed Retina and SCAP scanning assessments on the Peace Corps’ Enterprise Network
- Performed SCAP scans against the USGCB/FDCC/STIG baseline
- Assisted prime contractor to complete a deliverable of 30 Continuous Monitoring packages severely behind in schedule
- Assessed NIST 800-53 rev. 3 controls
- Performed Privacy Impact Assessments and Risk Assessments
- Assessed HP WebInspect scans as well as Foundscan output
- Created POA&Ms for each system
- Responsible for C&A activities for 6 MSC IT Systems
- Ensured C&A mandates and guidance followed in accordance with DoD DIACAP Instruction 8510.01, Department of the Navy (DON) DIACAP Handbook, MSC Instruction (COMSCINST) 5239.3A and Secretary of the Navy (SECNAV) Instruction 5239.3B
- Executed all steps necessary for preparation of DIACAP packages necessary to obtain Authority to Operate (ATO) letters from the Designated Approval Authority (DAA)
- Created all C&A documentation including the System Identification Profile (SIP), DIACAP Implementation Plan (DIP), DIACAP Scorecard, IT Security POA&M, post accreditation documentation, and other security documents as required by the Navy’s Operational Designated Approving Authority (ODAA)
- Ensured all software applications registered in Dept. of Navy Application & Database Management System (DADMS)
- Managed 30 personnel located at West Bethesda and Philadelphia; ensured contract requirements met
- Led technical projects; balance staff workloads; resolved personnel conflicts
- Primary COMSEC responsible officer; managed keymat material & ensured all crypto equipment maintained according to Electronic Key Management System standards
- Responsible for “excellent” rating for NSWCCD COMSEC inspection
- Managed classified network equipment (TACLANES)
- Responsible for DIACAP packages; conducted DISA Gold Disk scans on desktop clients and servers
- Ensured remediation of highs/mediums/lows were resolved on Windows servers (2003,2008) and desktops (XP, Vista, W2K)
- Performed eEye Retina scanning; ensured network free of all high/medium vulnerabilities
- Procured $5M of IT equipment/software purchases through Solutions for Enterprise Wide Procurement (SEWP) and Integrated Logistics Support Management Information System (ILSMIS)
- Provided metrics/statistics and plan of action and milestones (POA&M) for submission to NAVSEA
- Provided Standard Operating Procedure (SOP) documents for network processes; Active Directory, Retina Scanning, Anti-Virus updates, and Gold Disk
Peace Corps HQ, 1111 20th Street, NW Wash, DC
Prime Contractor: ITility, LLC., Contract#: PC-GSS-092012
Period of Performance: July 2012- Sept 2012
Federal Aviation Administration (Aviation Safety Branch)
Prime Contractor: CPSI, Inc., Contract#: CPSI-7672
Period of Performance: Jun 2012- Sept 2012
Military Sealift Command (MSC), Washington Navy Yard
Prime Contractor: X-Feds, Inc. Contract#: SOL-026
Period of Performance: Jan 2012- Sept 2012
Naval Surface Warfare Center Carderock Division, W. Bethesda, Md.
Prime Contractor: McKean Defense Group, Contract #: MDG-105-2007
Period of Performance: Jun 2007- Apr 2010