Darrin Creamer, CISM
Details
MUFG Union Bank, N.A.
Cybersecurity Assessment & Remediation AVP
ISSM responsible for supporting vendor and assigned ISSM efforts to develop RMF Packages through a full accreditation assessment and achieve Authorization to Operate. Coordinate workflow, activity, and documentation necessary to achieve accreditation. Coordinate with stakeholders, certification authorities, program managers, vendors, etc., necessary to properly identify, document, mitigate, and manage risks. Identify, develop, and incorporate common artifacts for accreditation packages, e.g., system architecture and boundaries, hardware and software inventories, POA&Ms, data flows, and other necessary system, network, and application documentation. Utilize vulnerability scanning and assessment tools necessary to identify and document compliance.
2019 : 2022
Elbit Systems of America
Information Systems Security Manager
Alternate ISSM responsible for supporting vendor and assigned ISSM efforts to develop RMF Packages through a full accreditation assessment and achieve Authorization to Operate. Support and coordinate workflow, activity, and documentation necessary to achieve accreditation. Coordinate with stakeholders, certification authorities, program managers, vendors, etc., necessary to properly identify, document, mitigate, and manage risks. Identify, develop, and incorporate common artifacts for accreditation packages, e.g., system architecture and boundaries, hardware and software inventories, POA&Ms, data flows, and other necessary system, network, and application documentation. Utilize vulnerability scanning and assessment tools necessary to identify and document compliance.
2019 : 2019
Raytheon Space and Airborne Systems
Alternate Information Systems Security Manager
RMF Specialist responsible for supporting vendor and assigned ISSM efforts to develop RMF Packages through a full accreditation assessment and achieve Authorization to Operate. Support and coordinate workflow, activity, and documentation necessary to achieve accreditation. Coordinate with stakeholders, certification authorities, program managers, vendors, etc., necessary to properly identify, document, mitigate, and manage risks. Identify, develop, and incorporate common artifacts for accreditation packages, e.g., system architecture and boundaries, hardware and software inventories, POA&Ms, data flows, and other necessary system, network, and application documentation. Utilize vulnerability scanning and assessment tools necessary to identify and document compliance.
2018 : 2019
Sentar Inc.
Risk Management Framework (RMF) SME
System Security Analyst overseeing day-to-day information system security operations including hardware and software implementations. Technical administration of IS in accordance with internal and customer security requirements, primarily Risk Management Framework. Work independently as well as with the team of analysts. Follow procedures to protect computer assets by establishing and enforcing system access controls; maintaining disaster preparedness and regular auditing of Information Systems. Conduct user training and ensure users have proper need to know and clearance for information before providing access to the information system. Verify system backups are working by periodically restoring partial backups. Experience with national security information system related security requirements to include NISPOM (NIST 800 Series), DIACAP, Certification and Authorization Process and the Risk Management Framework Process (ICD 503).
• Documents compliance actions within the approved automated compliance tracking system or develops a plan of actions and milestones (POA&M) with the Information Systems Security Manager (ISSM) to address non-compliance in the allotted timeframe
• Ensures configuration management (CM) for security-relevant IS software, hardware, and firmware is maintained and documented in accordance with baseline
• Ensures records are maintained for workstations, software, servers, routers, firewalls, network switches, telephony equipment, etc. throughout the information system's life cycle
• Participates in internal/external security audits/inspections; performs risk assessments
• Assists in conduct of investigations of computer security violations and incidents, reporting as necessary to both the Facility Security Officer and Senior Program Managers
• Implement and enforce Information Security Policies and Procedures together with ISSM and PSR
2018 : 2018
Lockeed Martin Space
Systems Security Analyst Sr
About
Self-motivated, results driven,, IT Security Manager with over eight years of relevant experience, related proficiency and a background in technical execution. Ability to manage multiple projects and tasks at any given moment. Demonstrated history of successful administration and effective issue resolution, while providing high-quality reporting to management as well as facilitating efficient operations. Highlighted leadership qualities and the ability to work with and manage individuals from varying backgrounds, while promoting team values. Served as a Noncommissioned Officer in the U.S. Army for over 12 years. In-depth knowledge and solid experience working with complex, cross-platform systems. Extensive experience in the direction of incident and problem management of IT applications. Successfully developed, coordinated, and maintained world class customer service tactics, customer relations and communication strategies through superior service. Played key role in maintaining the required level of service and customer satisfaction, and proactively identified future improvement opportunities.