Eric A. Brockman
Experienced Cyber Security & Information Assurance Professional Advisor!
- Role
- Sr Cyber Risk Advisor at Centers for Medicare & Medicaid Services
- Location
- Baltimore, MD, US
- LinkedIn followers
- 500 followers
About Eric A. Brockman
Accomplished subject matter expert in the realm of cybersecurity, security thought-leadership, and Assessment and Authorization (A&A) process, supporting information security Governance principles, developing and implementing defense-in-depth strategies, NIST Risk Management Framework (RMF), Security Operations, Technology Acquisition, NIST Cyber Security Framework (CSF); offering over 25 years of progressive experience successfully facilitating the improvement of Government agency security posture, and advising stakeholders on industry security best practices, and selecting information technology solutions that fit within agency mission, vision and budget.
Experience
Sr Cyber Risk Advisor
Centers for Medicare & Medicaid Services
Jan 2020 — Present · Woodlawn, MD, US
Evaluate, maintain, and communicate the risk posture of each FISMA system to executive leadership and make risk-based recommendations to the AO.• Act as the subject matter expert in all areas of the RMF. • Support the stakeholders in ensuring that all requirements specified by the ARS and the procedures and standards of the RMH are implemented and enforced; serve as an active participant in the system development life cycle (SDLC)/ Technical Review Board (TRB); provide requirements; and recommend design tradeoffs considering security, functionality, and cost.• Ensure information security and privacy testing is performed throughout the SDLC as appropriate and results are considered during the development phase of the SDLC.• Monitor system security posture by reviewing all proposed information security and privacy artifacts to provide recommendations to the ISSO. • Provide guidance to stakeholders on required actions, potential strategies, and best practices for closure of identified weaknesses. • Serve as the authority to approve selected system configuration deviations from the required baselineFor each FISMA system or collection of PII/PHI, I coordinate with the Data Guardian, Information System Owner (ISO), Business Owner, and ISSO to:1. Identify the types of information processed2. Assign the appropriate security categorizations to the information systems3. Ensure that the client has the legal authority, either under a statute or an executive order, to conduct activities involving the collection, use, and disclosure of PII/PHI4. Determine the privacy impacts and manage information security and privacy risk
Education
University of Maryland Baltimore County
Pursuing Masters in Cyber Security, Cyber Security
Elizabeth City State University
Bachelor of Science (BS), Mathematics and Computer Science
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.