overview
- PCI DSS, GDPR, HIPAA
- Virtualization: VMWare Fusion/Workstation, VirtualBox
- Security: Nessus, NMAP, OWASP, DevOps, WireShark, OpenSSL, CyberChef
- Web Servers: Apache, NGINX
- Databases: MySQL, MariaDB, Microsoft SQL
- Networking: LAN/WAN, DNS, DHCP, TCP/IP, Active Directory, VLANs, IPsec, SSL, VPN
- Programming/Scripting: Python, PowerShell, BASH
- Frameworks: NIST 800-53 R5, NIST CSF, NIST Privacy Framework
- PROJECT EXPEREINCE
- Compliance and Security Analysis
- Conducted thorough analysis and presented detailed findings to upper management on compliance and security controls for an online retailer
- Utilized expertise in PCI DSS, the NIST Privacy Framework, and the seven domains of IT
- Documentation and Policy Development
- Developed extensive documentation on data backup, data retention, IAM, password management, patch
- Leveraged the NIST 800-53 framework
- Network Setup and Access Management
- Established a new system and structure for a migrating law firm
- Created a network topology, evaluated pricing and quality of assets, configured initial network setup and access management, documented procedures for IT staff, and delivered presentations to upper management throughout the process
- Coursework and Learning Experiences
- Networking Technologies
- Gained knowledge in network architecture, protocols, and Internet design
- Implemented network communication methods and analyzed network performance
- Introduction to Information Security
- Studied concepts of network security, encryption, and security policies
- Applied principles of risk management and incident response to business policies and technology
- Project and Portfolio II: Information Technology
- Extended existing projects using system scripting, application servers, and storage systems
- Designed, installed, and configured a web- and database-server system with scripting automation and network storage
- Project and Portfolio III: Information Technology
- Applied knowledge of enterprise authentication, network security, and risk assessment to secure
- Documented and validated system architecture based on industry best practices