Nicholas Boffoli
Details
Information Technology
Mount Saint Mary College
2014 : 2018
• Performs tasks and procedures to support NERC/ CIP program
• Supports identity and access management and vulnerability management systems
• Performs vulnerability scans, creating remediation action plans and driving those plans to completion
• Active vulnerability assessments, security assessments and system patching
• Develops and executes cybersecurity awareness campaigns and cybersecurity risk assessments
• Conducts annual penetration testing and incident response tabletop exercises
• In the event of an actual cyber security incident, supports the response including investigation, documentation, and remediation
Performs other duties as assigned to support the organization's Cybersecurity mission.
• Supports storm/emergency restoration efforts
2022 : Present
Central Hudson
Systems Analyst of OT Cybersecurity
2021 :
Central Hudson
Associate Systems Analyst of OT Cyber Security
2019 : 2021
Central Hudson
Assistant Systems Analyst
2018 : 2019
Central Hudson
Junior Systems Analyst
2017 : 2018
Central Hudson
EMS/DMS/Networking Strategies Intern
Skills
Active Directory, AutoCAD, Automation, Catalyst Switches, Communication, Compliance automation, Computer Security, Database Design, Firewalls, Identity and Access Management (IAM), Leadership, Linux, Microsoft Excel, Microsoft Office, Microsoft Operating Systems, Microsoft Outlook, Microsoft PowerPoint, Microsoft Word, Nerc CIP Audit, NERC CIP Compliance, Network Design, Networking, Network Security, Physical Access Control, Problem Solving, SCADA, Security, Security Information and Event Management (SIEM), System Implementations, Teamwork, Technical Project Management, Tenable Nessus, Time Management, Troubleshooting, Unix, Visio, Visual Basic, Vulnerability Assessment, Vulnerability Management, Web Development, Wide Area Network (WAN) Deployment
About
As an Operational Technology (OT) Cybersecurity Analyst, I have spent the last several years honing my skills in protecting critical infrastructure and operational technology systems from cyber threats. My experience within the utility business is where I have designed and implemented security programs that are aligned with industry standards and regulations.
My technical experience includes conducting risk assessments, vulnerability assessments, on OT systems, as well as developing and implementing security policies and procedures. I have also worked closely with cross-functional teams to ensure compliance with regulatory frameworks such as NERC-CIP and NIST Cybersecurity Framework.
Looking to expand my horizons and take on new challenges. My goal is to leverage my technical skills and industry knowledge to lead and mentor teams of cybersecurity professionals and drive organizational strategies that effectively manage risks and protect critical infrastructure.