Cybersecurity Resume
Professional Summary

Cybersecurity Engineer and Systems Administrator with 9+ years of progressive IT experience spanning security operations, incident response, digital forensics, vulnerability management, penetration testing, Microsoft 365 administration, cloud infrastructure, and enterprise systems support. Experienced supporting commercial and government environments, including EPA-related systems and state/local government infrastructure. Hands-on experience investigating phishing, suspicious executables, remote-access activity, endpoint indicators, and email security incidents. Skilled with Microsoft Defender, Nessus, Splunk, Wazuh, Autopsy, FTK, Burp Suite, Metasploit, Cobalt Strike, Sliver, and Mythic, with strong knowledge of Active Directory, Group Policy, Azure, AWS, NIST controls, and DISA STIG-aligned hardening.

Core Technical Competencies
Security Operations

Incident Response, Threat Hunting, IOC Analysis, EDR, Email Security, Phishing Investigation, Vulnerability Management, Security Monitoring, NIST, DISA STIG

Offensive Security

Network & Web Penetration Testing, Active Directory Assessments, Vulnerability Exploitation, Adversary Simulation, Red Team Operations, Privilege Escalation

Digital Forensics

Autopsy, FTK, Disk Images, Browser/Outlook Artifacts, Windows Prefetch, Persistence Analysis, SHA-256 Hashing, Timeline Reconstruction

Microsoft / Cloud

Microsoft 365, Entra ID, Active Directory, Group Policy, Microsoft Defender, Windows Server, Azure, AWS

Security Tools

Nessus, Splunk, Wazuh, Wireshark, Burp Suite, Metasploit, Cobalt Strike, Sliver, Mythic

Professional Experience

Cybersecurity Engineer / Systems Administrator

Global Science & Technology (GST/GTSC) — Chantilly, VA
February 2025 – Present
  • Perform security monitoring, incident investigation, vulnerability analysis, endpoint security reviews, and remediation across enterprise and government environments.
  • Investigate phishing, suspicious email activity, malicious executables, ScreenConnect/remote-access activity, and potentially compromised endpoints; analyze IOCs, endpoint telemetry, user activity, persistence, and network indicators.
  • Support incident response from alert triage through investigation, containment recommendations, remediation, and technical documentation.
  • Conduct vulnerability assessments and remediation using Nessus; prioritize findings based on severity, exposure, affected systems, and operational risk.
  • Harden Windows systems using Active Directory Group Policy and security configurations aligned with NIST and DISA STIG guidance.
  • Conduct forensic investigations using Autopsy and FTK to analyze disk images, browser artifacts, Outlook cache data, Windows Prefetch, file-system metadata, persistence mechanisms, and system timelines.
  • Generate and document SHA-256 hashes, correlate forensic evidence across endpoint and email activity, and produce structured incident-response findings.
  • Administer Active Directory accounts, groups, permissions, security policies, onboarding/offboarding, identity access, and enterprise permissions.
  • Support Microsoft 365, Entra ID, Microsoft Defender, Windows endpoints, authentication, endpoint configuration, and enterprise collaboration services.
  • Support EPA-related federal environments involving system monitoring, cybersecurity operations, compliance activities, and infrastructure administration.
  • Deploy and maintain infrastructure supporting West Virginia county government organizations and document security, system, and remediation activities.

Systems Administrator

Nova Marketing Inc — Manassas, VA
April 2020 – December 2024
  • Administered and supported Windows workstations, servers, network devices, applications, and business technology infrastructure.
  • Provided remote and onsite support; installed, configured, upgraded, maintained, and troubleshot desktops, servers, peripherals, and network equipment.
  • Designed and implemented SMB network solutions including IP addressing, switching, routing, wireless connectivity, and related infrastructure.
  • Managed user accounts, permissions, workstation configurations, backup systems, recovery operations, patching, software deployment, and system maintenance.
  • Resolved escalated hardware, software, authentication, connectivity, and network issues while minimizing business disruption and maintaining technical documentation.

Computer & Networking System Technician

Yakshna Solutions, Inc. (YSI) — Herndon, VA
July 2017 – March 2020
  • Monitored and troubleshot computer systems, network infrastructure, applications, hardware, and security-related issues.
  • Managed organizational backup and restore operations and participated in investigations involving security incidents and suspicious system behavior.
  • Performed manual and automated testing of electronic filing applications and recommended corrective actions for technical findings.
  • Managed network systems, workstation configurations, access-control technologies, onboarding/offboarding, user permissions, and technology inventory.
  • Provided remote and onsite technical support and documented incidents, resolutions, and configuration changes.

Cable Technician

WCC-Cable — COX Communications Contractor — Herndon, VA
December 2015 – June 2017
  • Installed and repaired telecommunications services for residential and commercial customers, including coaxial cable, Cat5 Ethernet, RJ45, RJ11, modems, routers, and related equipment.
  • Diagnosed signal, connectivity, cabling, and equipment issues; tested and calibrated devices to ensure reliable service.
  • Maintained tools and inventory, assisted junior technicians, educated customers, and documented installations and repairs.
Technical Skills
Security Microsoft Defender, Nessus, Splunk, Wazuh, vulnerability management, threat hunting, IOC analysis, incident response, endpoint security, phishing investigation, security hardening
Offensive Security Burp Suite, Metasploit, Cobalt Strike, Sliver, Mythic, penetration testing, Active Directory security assessments, vulnerability exploitation, adversary simulation
Forensics Autopsy, FTK, disk-image analysis, Windows/browser/Outlook artifacts, Prefetch analysis, persistence analysis, timeline reconstruction, SHA-256 hashing
Platforms Microsoft 365, Entra ID, Active Directory, Group Policy, Windows Server, Windows 10/11, Linux, macOS, Azure, AWS
Networking TCP/IP, DNS, DHCP, VPN, Ethernet, switching, routing, Wi-Fi, network troubleshooting, backup and recovery