Chuck McGann
Details
2017 : Present
EC-Council
EC-Council Certified Chief Information Security Officer (C|CISO) Master Instructor - Contractor
Provide SME on Risk And Vulnerability Management for commercial and government clients. Training venues include customer site, Learning Tree Education centers and remote on-line instructor led education courses.
2017 :
Learning Tree International
Instructor
Provide support for contract efforts regarding Cybersecurity dependent business environments. Cybersecurity policy, processes, and procedures related to mission success are a strong suit.
2022 :
Aligned Technology Group
Senior Security Advisor
I launched my consulting group in early 2017 to deliver Cyber Security expertise, insight and support to large commercial enterprises under pressure to meet the year-end deadline for the NIST SP800-171 compliance requirement for handling Controlled Unclassified Information (CUI).
Failure to meet the NIST SP800-171 compliance deadline can have significant financial and contractual impacts for government contractors.
I successfully provide SME leadership and direction for NIST SP800-171 compliance in the following areas :
► Developing Policies
► Process and Procedures for Incident Response
► Audit & Accountability
► Multi-Factor Authentication Solutions
► Collaboration on Configuration Management
► Media Protection
► Existing Security Capability Review
► Gap Analysis and COTS Product Reviews for Potential Implementation
In addition, I am often retained to deliver SME support in pursuit of multi-million dollar contracts via Government Agency Security Program RFPs. Activities include proposal team review support, overall program compliance assessments to agency needs, and current tool-set evaluations with gap analysis support for a large-scale environment with a heterogeneous infrastructure meeting NIST requirements.
As a featured speaker at national and global Cyber Security conferences, I am typically invited to provide insights on pressing issues facing the Cybersecurity community. One of the hottest topics this year is How to Prepare For and Meet the NIST SP800-171 Compliance Requirements Before the 2017 Deadline.
2017 :
McGann Consulting Group
Cyber Security Consultant | Gap Analysis, NIST SP800-171 Compliance SME, Large-Scale Environments
The U.S. Government Advisory Council (USGAC) is a dedicated forum of 20 information security thought leaders who continuously discuss challenges faced by cyber security professionals. They also propose solutions on how best to evolve (ISC)2 resources, education and certification programs to help meet those challenges. The Council reviews policy and/or initiatives that improve the professionalism and cybersecurity expertise of the government workforce.
I was originally nominated by sitting Board Members to join the Board due to my expertise in securing large scale infrastructures against cyber threats and attacks. In 2012 I was elected to serve as co-chair of the Government Advisory Board.
When I left federal service in 2014 I was asked to continue as a board member based on my previous contributions and areas of expertise. Today I contribute to the organization by :
► Delivering specific advice and guidance on skills needed to ensure a technically adapt and experienced cybersecurity support resources and vendors where appropriate.
► Creating non-binding recommendations to the senior executive staff of (ISC)2 on how to support continued improvement of professional certification programs offered to the government cybersecurity workforce.
► Supporting the cybersecurity profession through Whitepapers, conference presentations, opinion pieces and interviews extolling the values of education, certification, technical expertise and leadership.
2009 : 2019
(ISC)²
U.S. Government Advisory Council Member & Former Co-Chair Government Advisory Board on CyberSecurity
About
I deliver Cyber Security expertise, insight and support to Federal Agencies & Large Commercial Enterprises under pressure to address increasing cybersecurity threats and challenges, with a current focus on SME leadership and direction for NIST compliance.
My functional expertise in compliance includes: SOX compliance strategies, Firewall policy strategies and guidelines, hardening standards, metrics/reporting, Identity/Access Management and CA/PKI operations and support.
SPECIALTIES:
Cybersecurity Strategist, Security Solutions Architect, Risk Management Framework, Incident Response, Information Assurance, CISSP, CISM, IAM, Incident Response Team Creation, Incident Response Operations, Cyber Intrusion Prevention, Cyber Intrusion Detection, Cybersecurity Tools, CISO Management, Endpoint Protection, Security Awareness, PCI, PCI/DSS, Data Loss Prevention, FedRAMP, Security Analytics.