Profiles search
Shariar Mohaimeen, CCSK
Senior Information Security Compliance Analyst at Google
Houston, TX, United States
Details
Experience:
2022 : Present
Google
Senior Information Security Compliance Analyst
2021 : 2022
Mandiant
GRC, Sr. Information Security Compliance Analyst
2020 : 2022
FireEye, Inc.
Sr. Information Security Compliance Analyst
• FedRAMP (Cloud) and FISMA Assessments
• Developed, planned, executed, and compiled Security Assessment Plans (SAP), Risk Exposure Table (RET), Security Assessment Reports (SAR), and Plan of Actions and Milestones (POA&M) as part of assessment activities.
• Performed control testing of customer environments (both cloud and on-premises) against FedRAMP, NIST 800-53A Rev. 4, NIST 800-171, and other frameworks (NIST or otherwise) to determine the customer’s compliance posture.
• FedRAMP and DoD SRG (Cloud) and FISMA Advisory
• Assisted in conducting on-site interviews to gather information on the in-scope environment and advising customers on implementing appropriate controls to meet FedRAMP, DoD SRG, and FISMA requirements.
• Assisted in creating the System Security Plan, Policies, Procedures, and various plans (i.e., Contingency Plan, Incident Response Plan, etc.) to meet the applicable NIST, FedRAMP, and DoD SRG standards.
2017 : 2020
Coalfire
IT Security Consultant at Coalfire Systems, Inc.
• Developed Assessment and Authorization packages for Cloud Service Providers (CSPs) clients.
• Assisted with developing Security Assessment Plans (SAPs) and Security Assessment Report (SAR) based on System Security Plan (SSP).
• Assisted with developing SSP in accordance with FedRAMP and FISMA guidelines.
• Scheduled, coordinated and performed onsite security assessments based on the National Institute of Standards and Technology (NIST) 800-53A Rev. 4.
• Completed multiple FedRAMP readiness activities for CSP customers that included performing physical assessment and walkthrough of data centers, interviewing and gathering information necessary to develop SSP, as well as other artifacts required by FedRAMP.
• Completed multiple FISMA assessments and advisory engagements for information systems.
2014 : 2020
Coalfire Systems, Inc.
Associate IT Security Consultant
Senior Information Security Compliance Analyst
2021 : 2022
Mandiant
GRC, Sr. Information Security Compliance Analyst
2020 : 2022
FireEye, Inc.
Sr. Information Security Compliance Analyst
• FedRAMP (Cloud) and FISMA Assessments
• Developed, planned, executed, and compiled Security Assessment Plans (SAP), Risk Exposure Table (RET), Security Assessment Reports (SAR), and Plan of Actions and Milestones (POA&M) as part of assessment activities.
• Performed control testing of customer environments (both cloud and on-premises) against FedRAMP, NIST 800-53A Rev. 4, NIST 800-171, and other frameworks (NIST or otherwise) to determine the customer’s compliance posture.
• FedRAMP and DoD SRG (Cloud) and FISMA Advisory
• Assisted in conducting on-site interviews to gather information on the in-scope environment and advising customers on implementing appropriate controls to meet FedRAMP, DoD SRG, and FISMA requirements.
• Assisted in creating the System Security Plan, Policies, Procedures, and various plans (i.e., Contingency Plan, Incident Response Plan, etc.) to meet the applicable NIST, FedRAMP, and DoD SRG standards.
2017 : 2020
Coalfire
IT Security Consultant at Coalfire Systems, Inc.
• Developed Assessment and Authorization packages for Cloud Service Providers (CSPs) clients.
• Assisted with developing Security Assessment Plans (SAPs) and Security Assessment Report (SAR) based on System Security Plan (SSP).
• Assisted with developing SSP in accordance with FedRAMP and FISMA guidelines.
• Scheduled, coordinated and performed onsite security assessments based on the National Institute of Standards and Technology (NIST) 800-53A Rev. 4.
• Completed multiple FedRAMP readiness activities for CSP customers that included performing physical assessment and walkthrough of data centers, interviewing and gathering information necessary to develop SSP, as well as other artifacts required by FedRAMP.
• Completed multiple FISMA assessments and advisory engagements for information systems.
2014 : 2020
Coalfire Systems, Inc.
Associate IT Security Consultant
Company:
Google
Spoken Language:
Bengali, English
About
• Knowledge of federal government information assurance programs under NIST, FIPS and other
Federal laws, regulations, and policies
• Knowledge of Federal Information Security Management Act (FISMA) & Federal Risk and
Authorization Management Program (FedRAMP)
• Over 6 years of Military service
• Professional / Diligent / Results-oriented