Kevin Johnson, CISM
Details
The Beckage Firm
Chief Information Security Officer
2021 : 2022
National Western Life
Director Information Security
During this period, I functioned as the Information Technology Security Manager and member of the Project Management Office (PMO) for the IRS, performing the duties : Conducted analysis on various vulnerability scans on over 100 servers, tracked vulnerability findings for remediation and false positives, represented the system during FISMA audits and cyber directives, created and managed Plan of Action and Milestones (POAMs), developed and implemented security processes, and updated system security documentation to ensure compliance. As a member of the PMO, I assessed system processes for improvement, coordinated with team members to identify and overcome challenges, and ensured that proper documentation was completed and updated. Additionally, I implemented measures to manage and track contractor system access, resource use, and roles/responsibilities for the project.
2017 : 2021
Internal Revenue Service
Information Technology Security Manager
During this period, I worked as a System Analyst for the U.S. Navy, Commander Navy Installations Command. In this role, I provided oversight for technical and performance quality assurance, Information Assurance compliance, policy, and contract oversight of the Enterprise Military Housing (eMH) web-based application utilized jointly by all DoD services with more than 400 locations, over 700,000 occupants, and 2 million yearly logins while being supported 24/7. As such, I was responsible for the overall system security, compliance, and documentation in correlation with USN, NIST, and DISA publications. Additionally, I established future hardware and software considerations to the System Manager based on technical security needs and budgetary limitations. I also managed the software development life cycle and provide approvals for application releases and updates, maintaining tight deadlines and a stable application. Lastly, I managed contractor team leads for hosting, information assurance, and database teams consisting of various Information Technology experts, providing guidance and leadership to ensure project milestones remained on track and were met.
2014 : 2017
US Navy
System Analyst/PMO
While still in the Air Force, I worked as the Work Group Manager for the 11th Security Forces Group computer information systems section, previously occupied by a GS-12. I set long and short term future plans and strategies to strengthen these programs which included proper documentation, reporting, and finding solutions to vulnerabilities, incidents, problems, and threats of information systems. I also managed and provided non-classified and secret communications support for the organization, involving more than 850 personnel, including senior leadership and customers with technical and non-technical knowledge while maintaining a positive customer service relationship. As such, I was responsible for the installation, maintenance, accountability, and troubleshooting of communication equipment worth over $1.5 million in support of day-to- day operations, special events and emergency situations. I supervised and trained a team of Information Technology Specialists and provided guidance and leadership to ensure day to day operations are accomplished and needs were met.
2012 : 2014
United States Air Force
Work Group Manager
About
A highly organized, high-energy executive that simply gets things done. I excel at effective communication, taking pride in my ability to communicate with executive teams and board members making critical business decisions to the analyst tasked with keeping us all safe. Creating an inclusive security culture and providing organizations the tools they need to not only function but thrive in today's complex security environment is my passion. We are all one team and should function as such!
With almost 20 years of information security experience, I currently serve as the Chief Information Security Officer (CISO) at The Beckage Firm. I have extensive experience in IT security, including:
- Operations
- Vulnerability management
- Continuous monitoring
- Incident response
- Governance
- Compliance
- Auditing
- Automation
- Data Management
- DevSecOps
- Asset Management
- Vendor Management
- Remote / On-Prem environments
- Long- and short-term strategic planning
- Risk Management
Certifications Acquired:
Certified Information Security Manager (CISM)
Comptia Advanced Security Practitioner (CASP)
Certified Associate in Project Management (CAPM)
Security+