Profiles search
Clayton Truelove
Information Security Compliance Team Manager
Melbourne, FL, United States
Details
Experience:
Clayton currently manages a team of information security engineers handling auditing, risk assessment, and documentation to satisfy governmental and regulatory compliance.
2021 : Present
L3Harris Technologies
Information Security Compliance Team Manager
Manage vulnerability scanning of enterprise network made up of thousands of remote sites
Work with device and network experts to develop remediation plans and support patching efforts
Track and present remediation efforts to management and FISMA audit teams
Review and audit security system to ensure compliance with FISMA and NIST 800-53 recommendations
Support SOC by providing expert guidance on ArcSight architecture, configuration, monitoring, and use case development
2020 : 2021
L3Harris Technologies
Senior Audit & Compliance Engineer
Develop, manage, and maintain ArcSight content and managed security services.
2015 : 2020
DXC Technology
Senior SIEM Content Developer
ArcSight Content
• Developed FlexConnectors, Rules, Filters, Reports, Query Viewers, ActiveChannels, and Dashboards, and other content as needed for security monitoring
SOA Security
• Configured and managed XML Firewalls to secure SOAP services and JMS data flows (Received Certificate of Recognition)
• Provided training to other team members on SOAP/JMS components and how to secure them
Custom Tools--Developed many custom scripts and utilities across the program to include :
• Database web application framework to house multiple security team databases for tracking information such as users, accounts, applications, network devices, incidents and cases, on-going projects, and manage settings for various other custom tools
• Automated Cisco router and switch configuration validation utility
• Cisco ASA and McAfee Firewall Enterprise configuration backups
• Network IDS health monitoring
• UNIX server file integrity monitoring; remote management of local user accounts
• LDAP account management interface
FISMA Compliance
• Assisted in the collection, compilation, and maintenance of documentation to demonstrate program compliance with FISMA following the NIST 800-53 guidelines under FIPS 200
General Technical Skills
• ArcSight Security Information Enterprise Manager
• Bourne Shell, Perl, and Python scripting languages
• Django Python Web framework
• Red Hat and Sun Solaris operating systems
• MySQL and Access database systems
• C, C++, and Java programming languages
• Cisco IOS
2008 : 2015
Harris Corporation
Security Tools Engineer
Security Supervisors are responsible for distributing incoming tasks to Security Analysts, second-level analysis of security events or network security troubleshooting, generating reports for SOC management, as well as all normal Security Analyst tasks including monitoring network security events, monitoring IDS signatures, hardening new or replaced network equipment, and managing the addition or removal of access for program users.
• Formed and led an ArcSight working group designed to manage and maintain ArcSight content
• Developed software to automate some security hardening tasks for Cisco network devices, reducing the time required to complete and greatly reducing the margin of human error involved
• Implemented a database to track such network issues as connectivity errors and improper configurations to monitor their resolution
2007 : 2007
Harris Corporation
Security Supervisor
2021 : Present
L3Harris Technologies
Information Security Compliance Team Manager
Manage vulnerability scanning of enterprise network made up of thousands of remote sites
Work with device and network experts to develop remediation plans and support patching efforts
Track and present remediation efforts to management and FISMA audit teams
Review and audit security system to ensure compliance with FISMA and NIST 800-53 recommendations
Support SOC by providing expert guidance on ArcSight architecture, configuration, monitoring, and use case development
2020 : 2021
L3Harris Technologies
Senior Audit & Compliance Engineer
Develop, manage, and maintain ArcSight content and managed security services.
2015 : 2020
DXC Technology
Senior SIEM Content Developer
ArcSight Content
• Developed FlexConnectors, Rules, Filters, Reports, Query Viewers, ActiveChannels, and Dashboards, and other content as needed for security monitoring
SOA Security
• Configured and managed XML Firewalls to secure SOAP services and JMS data flows (Received Certificate of Recognition)
• Provided training to other team members on SOAP/JMS components and how to secure them
Custom Tools--Developed many custom scripts and utilities across the program to include :
• Database web application framework to house multiple security team databases for tracking information such as users, accounts, applications, network devices, incidents and cases, on-going projects, and manage settings for various other custom tools
• Automated Cisco router and switch configuration validation utility
• Cisco ASA and McAfee Firewall Enterprise configuration backups
• Network IDS health monitoring
• UNIX server file integrity monitoring; remote management of local user accounts
• LDAP account management interface
FISMA Compliance
• Assisted in the collection, compilation, and maintenance of documentation to demonstrate program compliance with FISMA following the NIST 800-53 guidelines under FIPS 200
General Technical Skills
• ArcSight Security Information Enterprise Manager
• Bourne Shell, Perl, and Python scripting languages
• Django Python Web framework
• Red Hat and Sun Solaris operating systems
• MySQL and Access database systems
• C, C++, and Java programming languages
• Cisco IOS
2008 : 2015
Harris Corporation
Security Tools Engineer
Security Supervisors are responsible for distributing incoming tasks to Security Analysts, second-level analysis of security events or network security troubleshooting, generating reports for SOC management, as well as all normal Security Analyst tasks including monitoring network security events, monitoring IDS signatures, hardening new or replaced network equipment, and managing the addition or removal of access for program users.
• Formed and led an ArcSight working group designed to manage and maintain ArcSight content
• Developed software to automate some security hardening tasks for Cisco network devices, reducing the time required to complete and greatly reducing the margin of human error involved
• Implemented a database to track such network issues as connectivity errors and improper configurations to monitor their resolution
2007 : 2007
Harris Corporation
Security Supervisor
Company:
L3Harris Technologies