![Stephon Skipper](https://jobicy.com/react/themes/app/images/avatar.jpg)
Stephon Skipper

# Information Security Analyst

Actively looking · Member since 13 Sep 2023 [Message](https://jobicy.com/dashboard-page.md)

ShareLocationUnited StatesDesired salaryfrom 28 USD/hourlyWork preferenceFull TimeExperience levelNot set
* [Overview](#overview)
* [Portfolio 0](#portfolio)
* [Services 0](#services)

## About

Professional summaryA highly qualified multi-disciplined Infоrmatiоn Security Expert, with Assоciate Degree in Cyber Security, who helps
the оrganizatiоn by undertaking tasks pertaining tо the prоtectiоn оf cоmputers and infоrmatiоn systems frоm
pоtential cyber-attacks. My expertise includes but is nоt limited to engineering and implementing security measures
fоr cоmpany’s data, identifying and defining infоrmatiоn security requirements, designing security architecture,
cоnfiguring and trоubleshооting issues pertaining tо infrastructure devices, developing new security tооls, infоrming cоmpany about security incidents, and investigating security breaches.

## Skills

4 capabilities[Active Directory](https://jobicy.com/talent/active-directory.md)[AWS](https://jobicy.com/talent/aws.md)[Jira](https://jobicy.com/talent/jira.md)[Linux](https://jobicy.com/talent/linux.md)

## Experience

Career history

### Security Analyst · Gunnison Consulting Group

Oct 2022 – Feb 2023Conduct manual security vulnerability assessments for Administrative Office of US Courts (AO)
• Scheduled Security Assessment Test Plans to be completed on assigned host/appliance within different branch
of AO to be completed within scheduled time frame
• Prepare vulnerability reports for AO with suggestions for remediation and explanation of findings
• Performed analysis involving OWASP Top 10 Vulnerability Assessment of various internet-facing web
applications and Web services
• Executed daily vulnerability assessments, threat assessment, mitigation, and reporting activities
• Actively searched for potential security issues and security gaps that are beyond the ability of detection by any
security scanner tool
• Conducted penetration tests on systems and applications using automated and manual techniques with tools
such as Core Impact, Metasploit, Burpsuite, Kali Linux, Acunetix, Nmap, and many other open-source tools as
needed
• Manually inspect HTTP requests/headers/responses using Burp Suite as Proxy
• Identify weaknesses in controls that can be used in attack/exploit by manually conducting security assessment
checks

### Help Desk Analyst · MicroHealth LLC

Apr 2021 – Oct 2022Review Cyber Security Maturity Model Certification documentation and cross reference NIST SP 800-171
policies and procedures to ensure controls are implemented in our environment
• Act as first response in Endpoint Detection and Response Triaging alerts in Microsoft Defender and Wazuh
• Perform vulnerability scans using Nessus – forward results to appropriate teams with vulnerability
recommendations
• Virtual Desktop Infrastructure: Managed and performed process that built over 25 virtual servers in less than 6
months
• Monitor and analyze network traffic for intrusion or malicious behavior utilizing IronVue
• Assist with Fortinet Firewall rule creation, modification, and system deployment
• Create, modify, manage user accounts for several Linux servers

## Education

Learning history

### College of Southern Maryland

08/21 – 8/24Cyber Security

This professional hasn’t added portfolio projects yet.

This professional hasn’t listed any services yet.