Robert Jepson CISSP, C-CISO, CEH
Details
Computer and Informational Sciences
Temple University
2019 : Present
Capgemini
Senior Cybersecurity Manager
Assessment lead of cybersecurity practices for major U.S., European, and Middle East financial services organizations. Manage assessment of Fortune 50 organizations in health, space, oil and gas, energy sectors, enterprise and manufacturing. Present assessment recommendations to executive management and Board of Directors. Enterprise/Industrial Control System assessments against NIST CSF, NIST 800-53, ISO27001, NIST 800-171, NERC-CIP for compliance and beyond for risk reduction Extend cybersecurity maturity assessments for new trends in adversary Tactics, Techniques, and Procedures (TTPs). Develop prioritized implementation of security controls for business continuity, cloud migration, software development
2016 : 2019
Leidos
Cyber Security Assessments Solution Owner, Principal
Consulting services providing enterprise assessment of cyber security capabilities including industrial control systems (ICS), network security, malware defense, insider threat, physical security and continuity of operations for commercial, international, government and military. Mobile security solution architectures supporting government organizations and regulated industries.
Consulting CISO for European financial organization developing information security budgetary analysis and planning against ISO27001. Initiated policy and procedure review of inter-departmental response to security priorities. Executive level presentation of approaches to cyber-based fraud. Development of security initiatives for business continuity, cloud migration, outsourced software development. Managed forensic analyst activities. Identified metrics and security processes incorporating agile techniques to prioritize security operations activities.
Information Assurance Lead providing enterprise security architecture, design and development of the New NATO HQ datacenter. Responsible for development of Security Information Management services compliant with ITILv2011 and NATO security processes across all services including network, processing, mobile and wireless and GSM services.
Collaboration with NCIA Cyber Security Architect on requirements for high availability design, multiple classifications, DMZ, and cross-domain services to include trusted guards. Management of security verification, PKI, and enterprise-wide malware protection. Contributed to PRINCE2 compliant project management.
Malware characterization and reverse engineering with static and dynamic analysis. C&A deliverables for DoD and civil programs. Smart Grid security design extending to collaboration with NIST working groups on development of NIST-IR 7628, Guidelines for Smart Grid Cyber Security.
2010 : 2017
Lockheed Martin
Principal Cyber Security Engineer
Managing development team for Space Ground systems Command and Control (C2) and Infrastructure customer capability. Directed and reviewed detailed design, code, test plans, procedures and results. Cost and schedule responsibilities, including estimate to complete, earned value assessment. Requirements decomposition and interface definition.
Development of windows-based satellite ground systems control and planning product. Control systems, mission planning sequence development and database integration. Integration with multiple satellite systems.
2004 : 2010
Lockheed Martin
Software Development Integrated Team Lead
Web Analytics product development including web advertising and site analytics. Design and develop Apache and Netscape transactional ASP systems for client analysis of website use and search engine marketing effectiveness.
Developed multi-threaded highly available, highly scalable applications in C/C++ on Linux and Sun platforms integrated with Informix databases.
2003 : 2004
Real Media Group - a division of 24/7 Media Inc.
Senior Software Engineer
Skills
Agile Project Management, Assembly Language, Business Continuity, CEH, CISSP, Computer Security, Control Systems Design, Cyber-security, Cyber Operations, Cyber Threat Intelligence (CTI), Data Guard, Data Security, DMZ, DoD, FFIEC, Information Assurance, Information Security, Information Security Management, Insider Threat, Integration, ISO 27001, ITIL, JIRA, Leadership, Management, NATO, Nessus, Network Security, NIST, NIST 800-53, Oral Communication, Payment Card Industry Data Security Standard (PCI DSS), Penetration Testing, Planning, PRINCE2, Program Management, Project Management, Rational DOORS, SCADA, Scrum, Security, Security Clearance, Security Information and Event Management (SIEM), Space Systems, Strategy, Systems Engineering, Telemetry, Threat & Vulnerability Management, Vulnerability Assessment, Vulnerability Management
About
Cyber Security Leader with 20 years developing secure, high-availability architectures. Onsite Security Operations Transformation. Interim CISO in European financial services. Design, development of high-availability data centers for industrial control systems security as well as government, international and commercial environments using agile methodologies. Providing enterprise cyber assessments and PEN testing utilizing ISO27001, ITIL, NIST, NATO, US DoD requirements along with best practices.
Effective team management, cross-project integration and senior management coordination in all areas of project development to include cost, schedule as well as technical capabilities. Demonstrated independence in consulting efforts on both contract and pre-sales engagements providing coordination between customer and internal resources in military, commercial and international markets. Experienced in presenting to public conferences, executive management and other stakeholders.