Profiles search
Details
Education:
Bachelor in Business Administration
Experience:
Career LabCorp Corporation
IT Security Assessor part-time August 2023-present
Responsible for conducting Security Control Assessment (SCA) over security and access management on Federal client systems based on National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 Revision 4 and NIST SP 800-53A Revision 4.
• Create Security Assessments Plans (SAP), Reports (SAR), and Plans of Action and Milestones (POA&Ms) to identify system findings or weaknesses and track mitigation.
• Performs A&A documentation reviews and communicates threats, vulnerabilities, and risk information to stakeholders.
• Conducted compliance and vulnerability assessments using Nessus and Splunk.
• Prioritize findings based on risk and document detailed corrective and remediation plans or actions. Develop recommendations to mitigate cyber risk threats and support implementation.
• Conduct review of general computer control (GCCs), cybersecurity reviews, and audits as identified on the internal audit plan.
• Analyzes vulnerability scans, interprets risks, and employs manual checks to validate vulnerability data
LabCorp Corporation Cyber Security Analyst part-time Nov 2019- 2021
•Assess, design, implement, automate, and document security processes and solutions leveraging Amazon Web Service (AWS) and other third parties.
•Develop Security Policies and ensure Security Compliance for Cloud implementations.
•Analyzed and updated System Security Plan (SSP), Risk Assessment (RA), Privacy Impact
Assessment (PIA), System Security Test and Evaluation (ST&E) and the Plan of Action and Milestones (POA&M)
•Prepare security-related controls, documentation, policies, standards, baselines, and guidelines that comply with w/FISMA/FedRAMP criteria based on information gained in interviews.
•Review software systems to assess & document compliance w/FISMA/FedRAMP criteria.
IT Security Assessor part-time August 2023-present
Responsible for conducting Security Control Assessment (SCA) over security and access management on Federal client systems based on National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 Revision 4 and NIST SP 800-53A Revision 4.
• Create Security Assessments Plans (SAP), Reports (SAR), and Plans of Action and Milestones (POA&Ms) to identify system findings or weaknesses and track mitigation.
• Performs A&A documentation reviews and communicates threats, vulnerabilities, and risk information to stakeholders.
• Conducted compliance and vulnerability assessments using Nessus and Splunk.
• Prioritize findings based on risk and document detailed corrective and remediation plans or actions. Develop recommendations to mitigate cyber risk threats and support implementation.
• Conduct review of general computer control (GCCs), cybersecurity reviews, and audits as identified on the internal audit plan.
• Analyzes vulnerability scans, interprets risks, and employs manual checks to validate vulnerability data
LabCorp Corporation Cyber Security Analyst part-time Nov 2019- 2021
•Assess, design, implement, automate, and document security processes and solutions leveraging Amazon Web Service (AWS) and other third parties.
•Develop Security Policies and ensure Security Compliance for Cloud implementations.
•Analyzed and updated System Security Plan (SSP), Risk Assessment (RA), Privacy Impact
Assessment (PIA), System Security Test and Evaluation (ST&E) and the Plan of Action and Milestones (POA&M)
•Prepare security-related controls, documentation, policies, standards, baselines, and guidelines that comply with w/FISMA/FedRAMP criteria based on information gained in interviews.
•Review software systems to assess & document compliance w/FISMA/FedRAMP criteria.
Company:
LabCorp Corporation
Years of Experience:
3
Spoken Language:
English
About
Responsible for conducting Security Control Assessment (SCA) over security and access management on Federal client systems based on National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 Revision 5 and NIST SP 800-53A Revision 5.