Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Pierre Mason

Arlington

Summary

Information Systems Security Officer with hands-on experience in the NIST Risk Management Framework. Specializes in leading A&A activities, developing comprehensive SSPs and POA&Ms, and conducting security assessments to achieve timely ATOs. Demonstrates strong analytical skills in evaluating security controls and ensuring compliance with federal policies.

Overview

6
6
years of professional experience
1
1
Certification

Work History

Information System Security Officer

KFORCE
Washington
12.2023 - 10.2025
  • Led A&A activities for NIST High Impact systems, including development and maintenance of System Security Plans (SSP), POA&Ms, Security Assessment Reports (SAR), and supporting documentation to achieve and maintain Authority to Operate (ATO).
  • Conducted formal security assessments of information systems, evaluated control effectiveness against NIST 800-53 standards, documented findings, and provided risk-based recommendations to leadership.
  • Performed vulnerability scanning with ACAS/Nessus, prioritized remediation efforts, tracked progress in POA&Ms, and produced executive-level summaries.
  • Created and maintained Splunk dashboards and alerts for continuous monitoring, log analysis, and incident response support.
  • Hardened Windows and Linux systems using STIG benchmarks and security configuration tools, significantly reducing the attack surface.

Information System Security Officer

Leidos
Washington
07.2023 - 12.2023
  • Managed RMF documentation and risk assessments for multiple federal systems, including creation of SSPs, POA&Ms, and implementation statements in Xacta to support timely ATO packages.
  • Executed security control assessments using NIST 800-53 guidelines, validated technical controls on Windows and Linux platforms, and prepared evidence for annual assessments and audits.
  • Conducted ACAS vulnerability scans, applied STIGs, performed system audits, and managed monthly patching cycles to maintain compliance and security posture.
  • Developed and submitted monthly compliance reports for privileged users while supporting broader security management, access control, configuration management, and contingency planning activities.

ISSE

Accenture
Columbia
10.2022 - 06.2023
  • Developed System Security Plans and conducted vulnerability testing using Nessus for multiple networks.
  • Performed STIG compliance checks, ACAS scanning, and patching using SCCM and Linux tools while supporting RMF processes.
  • Monitored systems with Splunk and ensured secure handling of sensitive media and configuration management.

ISSO

ClearWaters IT
Bethesda
11.2021 - 09.2022
  • Built and maintained RMF processes, created Splunk dashboards for real-time threat monitoring, and implemented ACAS for automated vulnerability scanning.
  • Managed ATO processes for multiple systems in eMASS, conducted NIST compliance assessments, and validated Windows/Linux controls against 800-53 requirements.
  • Identified control gaps, recommended corrective actions, and supported continuous monitoring to strengthen overall security posture.

Sr. Service Desk Technician

GDIT
Arlington
06.2019 - 11.2021
  • Provided Tier 2/3 technical support and resolved hardware/software issues while ensuring NIST 800-53 compliance during workstation upgrades and deployments.
  • Managed user account provisioning/deprovisioning in Active Directory and handled IT asset inventory.

Education

Bachelor of Science - Information Technology

Western Governor’s University

Master of Science - Cybersecurity & Information Assurance

Western Governor’s University

Skills

  • A&A / RMF: SSP
  • SAR
  • POA&M
  • ATO packages
  • NIST 800-37
  • NIST 800-53
  • Continuous monitoring
  • Risk assessments
  • Xacta
  • EMASS
  • Vulnerability Management: ACAS/Nessus
  • STIGs
  • SCAP
  • Remediation tracking
  • Splunk (SIEM & dashboards)
  • STIG Viewer
  • SCCM
  • Incident response
  • Systems hardening (Windows/Linux)
  • Security control evaluation

Certification

  • CASP+
  • Security+
  • Pentest+
  • PMP
  • AWS Solutions Architect

Timeline

Information System Security Officer

KFORCE
12.2023 - 10.2025

Information System Security Officer

Leidos
07.2023 - 12.2023

ISSE

Accenture
10.2022 - 06.2023

ISSO

ClearWaters IT
11.2021 - 09.2022

Sr. Service Desk Technician

GDIT
06.2019 - 11.2021

Bachelor of Science - Information Technology

Western Governor’s University

Master of Science - Cybersecurity & Information Assurance

Western Governor’s University
Pierre Mason