Nicholas McCoy
Details
Information Technology
Virginia Tech
BS
Virginia Tech
1994 : 1999
Hypori
Senior Manager, Cybersecurity Operations
• Built and Manage team of twelve Cyber Security Analysts and Engineers supporting a 24x7x365 security environment
• Perform, analyze and implement security measures for vulnerabilities (Nessus), compliance configurations (STIG/SCESM scans) and software applications (Fortinet WebInspect).
• Analyze and harden a cloud-first infrastructure in AWS including IAM, Security Groups, NACLs, EC2, S3 bucket policies, Guard Duty, CloudTrail, CloudWatch, VPCs, Lambda functions.
• Manage backlog utilizing Jira and Confluence for collaboration utilizing daily scrums and two-week sprints
2021 : 2022
Peraton
SOC Team Lead (Dept. of Education)
• Achieved Authorization To Operate (ATO) for Navy eMASS package for 3 years
• Manage Cyber Security Analyst team to process multiple RMF packages for the Navy
• Support DevOps following an Agile lifecycle including Configuration Management reviews for security impact analysis to facilitate operations and maintain a Navy-Accredited environment
• Containerization security planning and deployment via Kubernetes
• Create and maintain all documentation required for authentication including Control Plans and SOPs such as Access Control, COOP, Disaster Recovery, Incident Response
• Perform scanning utilizing ACAS, Vulnerator, eMASSter, RMF, STIG and PCI compliance
2019 : 2021
Northrop Grumman Mission Systems, Inc.
Cyber Security Lead (Navy)
• AWS instance builds in EC2, S3 buckets, Elasticsearch, IAM, CloudTrail, CloudWatch and VPCs
• Container deployment and management via Docker
• Deploy Hunt and Incident Response systems in AWS including Splunk, SNORT and BRO on hardened CentOS AMIs
• Automation via Python scripts for hardening of operating systems
2015 : 2019
Northrop Grumman
Research and Development Lead (Corporate NG)
• Manage team of fifteen Cyber Security Engineers in three locations including Boulder Labs, Buckley AFB and Schriever AFB
• Follow RMF guidelines to provide Risk Assessments for the Air Force customer including FIPS 199, 800-53 and 800-30 NIST documents as part of eMASS Assessment and Authorizations
• Deploy ACAS systems for vulnerability scanning of customer network assessments
• Utilize Security Center and Nessus to manage scan policies, plugins, scan zones and repositories
2018 : 2019
Northrop Grumman
Cyber IPT Lead (Air Force)
Skills
Active Directory, CCNA, DHCP, Disaster Recovery, DNS, Firewalls, IIS, Microsoft Certified Professional, Microsoft Exchange, Microsoft SQL Server, Network Administration, SCCM, Security+, Servers, Technical Support, Troubleshooting, VMware, VMware Infrastructure, microsoft excel, finance, microsoft office, financial analysis, Management, budgets, valuation, market research, financial modeling, budgeting, strategy, due diligence
About
I have over 20 years of IT, Cyber and Program Management experience. I began my career in varied technical and systems administration roles. I have progressed into primarily lead technical roles and have focused my efforts on CyberSecurity in the past decade. I am excited about emerging security technologies including Threat Hunting and Zero Trust. I have an extensive background in RMF and have been integral in achieving multiple ATO's for various Federal Agencies.