Accomplished IT Information Security Analyst with over 8 years of experience specializing in Risk Management Framework (RMF), Systems Development Life Cycle (SDLC), and comprehensive vulnerability management. Proven track record in conducting thorough security controls assessments and implementing effective risk management strategies to mitigate potential threats. Expertise in both direct and remote analysis, complemented by strong critical thinking and communication skills, facilitates collaboration across teams. Thrives in dynamic environments where precision and efficiency are paramount, ensuring data integrity and a robust security posture.
Overview
9
9
years of professional experience
1
1
Certification
Work History
Information Security Analyst
Interior Business Center
01.2023 - Current
Responsible for the development, implementation, and maintenance of assigned systems security plans and related documentation for each supported network system.
Experience in interfacing with project managers, information system owners, stakeholders via team calls delivering high level summary on Information system progress and status reports.
Develop, review, and maintain security authorization documentation, including SSPP, SAR, ensuring security control baselines (low/moderate/high impact per FIPS 199 & FIPS 200) are correctly implemented.
Provide high level executive summary updates on the continuous monitoring of assigned systems security posture to the Authorization Official (AO) during monthly and quarterly briefings.
Maintained up-to-date knowledge of emerging threats, providing proactive solutions for potential vulnerabilities.
Actively engaged across functional Teams to enhance process improvement tasks on integrated systems using a virtualized dashboard tool, Kanban
Conducted security audits to identify vulnerabilities
Key Accomplishment:
Collaborated with stakeholders to manage third-party risk and ensure vendor compliance with security requirements
Designed and enforced information security policies, reducing risk exposure, and enhancing the organization’s security posture.
Reduced security incidents by 40% through the design and delivery of targeted awareness programs, fostering a proactive culture of compliance across all department
Analyzed network traffic and system logs to detect malicious activities.
Information Security Analyst
Panthergon IT & Cybersecurity Solutions (PITCSS)
02.2017 - 01.2023
Provided security expertise and guidance in support of security assessment
Reviewed authorization documentation for completeness and accuracy for compliance
Executed, examine, interview and test procedures in accordance with NIST SP 800-53A, Revision 4
Authored recommendations associated with findings on how to improve the customers security posture in accordance with NIST controls
Updated and reviewed A&A Packages to include Core Docs, Policy & Procedures, Operations and maintenance artifacts, SSP, SAR, FIPS 200, FIPS 199, POA&M, BIA, PTA, PIA and more
Created customized reports for stakeholders detailing key metrics related to IT security performance, fostering transparency and accountability
Key Accomplishment:
Administered and monitored firewalls, intrusion detection systems and anti-virus software to detect risks.
Evaluated new IT security technologies to strengthen IT security infrastructure, maintaining cutting-edge protection against threats
Updated, reviewed and aligned SSPP to the requirements in NIST 800-53 Rev.4, so that assessments can be made against the actual requirements and not ambiguous statements
Manage vulnerabilities with the aid of Nessus vulnerability scanners to detect potential risks on a single or multiple assets across the enterprise network
Independently reviewed complex security analysis of existing systems for compliance with security requirements
Education
Bachelor of Business Administration (BBA) - Computer information system and analysis design
Howard University
Washington, DC
05.2002
Skills
Assessment and Authorization
Risk Assessment & Management
IT Governance & Compliance
Data Privacy & Security
Process Improvement
Project management and support
Vulnerability assessment & Management
Cloud security
Affiliations
ISACA, Member
Certification
CISA - Certified Information Systems Auditor, ISACA 12/2025
Languages
English
Full Professional
Timeline
Information Security Analyst
Interior Business Center
01.2023 - Current
Information Security Analyst
Panthergon IT & Cybersecurity Solutions (PITCSS)
02.2017 - 01.2023
Bachelor of Business Administration (BBA) - Computer information system and analysis design