Uduak M Moffatt
Cyber Security Specialist @Weresoft Technologies Consulting
Signup · Get unlimited contacts
WORK HISTORY
Cyber Security Specialist @Weresoft Technologies Consulting
Participated in client status meetings and submitted weekly/monthly status reports. • Reviewed and approved the IS Security Control Assessment Procedures, Security Assessment Plan SAP), System Security Plan (SSP), and Security Control Traceability Matrix (SCTM).• Conducted follow up meetings to assist ISSOs and System Owners to close POA & M items.• Created a Plan of Action and Milestones (POA & M) for vulnerabilities identified through the assessment and security scans.• Created Security Assessment Reports, security assessment plans, and other documents per NIST 800 guidelines. • Performed assessment on information systems based on the Risk Management Framework (RMF).• Performed Information Security Continuous monitoring (ISCM), in compliance with NIST SP 800-53 controls within the Risk Management, Framework (NIST SP 800-37).• Worked with a team to assess Security Controls using (RTM), test cases and all weakness noted are reported in the SAR report.• Supported activities for Assessment and Authorization (A&A) of new systems and Information Security. • Utilized Risk Management Framework processes in the routing of an ATO.
EDUCATION
University of Maryland Global Campus
Master's degree
ABOUT UDUAK M MOFFATT
With 6+ years of experience in information security, I am a solution-focused cybersecurity professional leveraging skill sets and talents in assessing vulnerabilities and identifying and managing risks and security threats to protect business and user information and strengthen IT and Security infrastructures and firewalls. Highly motivated Information Security Professional with 6+ years’ experience and have in-depth knowledge in Risk Management Framework (RMF), System Development Life Cycle (SDLC), Security Control Assessment using NIST SP 800-53, 800-53A, 800-171, 800-171A, and Vulnerability management using NIST SP 800 series, FIPS, ISO 27001 series and applicable standards. I also created and reviewed assessment documents such as SAP, SRTM, SAR, POAM along with the complete A&A package, to make sure they are in compliance with Agency standards. Strong communications skills, detail-oriented, and an ability to provide information security support for various information systems. IT Audit Experience for Information Technology General Controls, Applications Controls, IT Infrastructure Controls, HIPAA, PCIDSS, SOC- Report Audit projects, Amazon Web Services, Microsoft Azure. RMF, A&A, C&A, FIPS, Nessus, web inspect, Xacta, Microsoft office, NIST Special Publications (NIST SP) Series, Security Categorization, Continuous Monitoring, System Security Plan (SSP), Security Assessment Reporting(SAR), Plan of Action & Milestones (POAM), Security Assessment & Accreditation (SA & A), Technical controls, operational, Administrative controls, Preventive controls. Technical Skills include: Programming Language: Python | HTML5 | CSS | XML | SQL | PHP | PowerShellCybersecurity Tools: RMF | A&A | C&A | FIPS | Nessus | Web Inspect | Xacta | Microsoft Office | NIST Special Publications Series | Wireshark | Splunk | Nmap | Metasploit | Linux Tool Cloud Services: Amazon Web Services (AWS)| AzureAutomation Tools: DevOps | Ansible | Jenkins Software: Jira | GitHub | Docker | Confluence | KubernetesFunctional: Security Control | Ethical Hacking | Penetration Testing | Security Compliance | Containerization | EMASS | Web Server | Proxy Server | Network Configurations | Load Balancing | MDE Tools | Data Loss Prevention Technology | Access Data Tools | White Paper | Framework | System Development Life Cycle (SDLC)| NIST SP 800-53, 800-53AMy passion for cybersecurity and information security stems from my interest in protecting networks, devices, and data from unlawful access or illegal use and guaranteeing confidentiality. integrity, and availability of information.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.