Summary
Overview
Work History
Education
Skills
Accomplishments
Certification
Affiliations
Timeline
Generic
Ben Harris

Ben Harris

Sterling

Summary

Highly skilled cybersecurity professional with a decade of experience conducting risk assessments and implementing effective mitigations to ensure compliance with various frameworks. Successfully handled fraud investigations and served as a dedicated security practitioner. Played a pivotal role in securing networks and enhancing overall security posture for clients in private, commercial, and federal sectors. Expertise spans diverse industries such as healthcare, finance, critical infrastructure, and technology. Proficient in compliance frameworks including NIST 800-53, NIST CSF, ISO 27001, HITRUST, HIPAA, and CIS. Specializes in Governance Risk and Compliance (GRC), Information Security, Risk Assessment, Risk Management, Business Impact Analysis, and Cyber program maturity.

Overview

7
7
years of professional experience
1
1
Certification

Work History

Cyber Security Consultant (Strategy & Risk Management Team)

OPTIV Security Inc
03.2021 - Current

Providing tailored solutions to fit small, medium, and large-scale organization’s business and security strategy needs. Partnering with multiple organizations across every major industry to deliver strategic expertise, value, and effort. Our goal is to establish strong relationships and trust with customers as well as understand customer’s business environments and requirements

  • Collaborated with cross-functional teams to develop and maintained enterprise-level cybersecurity policies, SOPs, and workflows to bring organizations into regulatory compliance
  • Improved clients’ overall resiliency through Business Continuity planning (BCP) and performing Business Impact Analysis (BIA)
  • Prevented financial loss while conducting analysis on fraudulent activities and investigations as part of a global operations team
  • Performed gap & maturity assessments against NIST 800-53, NIST CSF, ISO 27001, and other best practice security frameworks
  • Improved client cybersecurity posture through tailored risk assessments and mitigation strategies.

Cyber Security Consultant (Cyber Team)

SeKON Enterprises, Inc.
01.2020 - 08.2020

Provided large-scale risk management solutions for programs in support of clients including the Center for Disease Control (CDC), Centers for Medicare and Medicaid Services (CMS), Defense Health Agency (DHA), and National Institutes of Health (NIH)

  • In partnership with these Healthcare services and industry leaders, my goal was to develop and deploy scalable risk management strategies to optimize the delivery of a secure and modernized EHRM with minimal disruption to the federal healthcare community
  • Perform overall security audits of IT systems, environments, and organizations Security Assessments Plans as well as Concepts of Operations
  • Research & report of existing or new enterprise risks, cybersecurity best practices, and updates to compliance frameworks (i.e HIPAA, GDPR, NIST 800, ISO 27001)
  • Collaborate remotely via Teams meetings or teleconferences to present threat analysis reports and risk mitigation efforts
  • Served as a key point of contact for clients and internal stakeholders, providing expert guidance on all aspects of cybersecurity risk management.

Senior Consultant (Cyber Security Division)

Booz Allen Hamilton
05.2018 - 09.2019

As a cyber security consultant for Booz Allen we are committed to providing our clients with the best cyber defense to meet the needs of their business and IT systems. Also assisting in the movement of DoD IT systems from past compliance methodologies to the newly improved Risk Management Framework, implementing FedRAMP Cloud Security (AWS services), conducting various trainings on Risk Acceptance, collaborating with team members and shareholders, Implementation of policies, standards, laws, and regulations (i.e

NIST SP 800, FIPS 199, CNSSI, Privacy Act, ISO 27001), into the various phases of SDLC.

  • Identifying solutions that better suit customer needs as well as interpreting the more complex business pain points for better client understanding
  • Delivered high-quality solutions for clients through comprehensive research and analysis of industry trends.
  • Maintaining excellent operational security posture of enterprise-level networks and systems was the highest priority
  • Presented findings and recommendations to executive-level stakeholders, effectively communicating key insights and action plans.
  • Evaluated clients' needs and created plan of action to provide solutions.
  • Collaborating with Engineers, Project Management teams, and other Cyber teams to discuss attacks and assess organization risks

Education

Bachelor of Science - Computer Science

FERRUM COLLEGE
Ferrum, Virginia
05.2012

Information Technology Analyst/operator -

US Army Cyber Center of Excellence
Fort Gordon, GA
04.2014

Skills

  • Compliance Assessment
  • Fraud and Threat Investigation Skills
  • Risk Mitigation Strategies
  • Cloud Security Compliance
  • Governance Risk and Compliance (GRC) & Third-Party Risk Management
  • Log Analysis Expertise
  • Privacy regulations
  • Threat intelligence
  • NIST frameworks
  • Information security
  • ISO 27001 compliance

Accomplishments

  • Successfully implemented a risk assessment framework that improved compliance by a notable margin.
  • Collaborated with teams to improved a vendor risk management program which could be adopted across multiple departments.
  • Documented and resolved risks which led to decreases in risk scores.
  • Achieved ISO 27001 readiness by completing plans of action and milestones with accuracy and efficiency.
  • Collaborated with multiple teams in the development of effective Business Impact Analysis.

Certification

  • (ISC)2 CISSP
  • LogicGate Risk Cloud Technical Architect

Affiliations

  • ISACA

Timeline

Cyber Security Consultant (Strategy & Risk Management Team)

OPTIV Security Inc
03.2021 - Current

Cyber Security Consultant (Cyber Team)

SeKON Enterprises, Inc.
01.2020 - 08.2020

Senior Consultant (Cyber Security Division)

Booz Allen Hamilton
05.2018 - 09.2019

Bachelor of Science - Computer Science

FERRUM COLLEGE

Information Technology Analyst/operator -

US Army Cyber Center of Excellence
Ben Harris