Profiles search
Bill Violette
Cybersecurity & Information Technology Professional
Adamstown, MD, United States
Details
Experience:
2021 : Present
Sodexo
Lead Information Security Analyst
Manager, Technical Lead for ISSO, SCS, and SCA contractors and subcontractors within the HHS Enterprise Security Services (ESS).
ESS Security Consultant Services (SCS) analyst for development of ATO package documentation for on-premise systems, and FedRAMP-accredited Cloud Service Provider systems.
ESS SCA Analyst, and SCA Technical Vulnerability Tester (continued in role from below after contract change to eGlobalTech).
Conduct security control assessments (SCA), following guidelines in NIST SP 800-30, SP 800-37, SP 800-53R4, of HHS and ESS customer GSS, Systems, Major Applications, and Cloud-hosted XaaS migrations.
Review of HHS Information Security & Privacy Policy (IS2P), and HHS OS Information Security Policy & HHS OS Procedures.
Review and development of HHS/OS and ESS customer information system security architectures, component inventories, and ATO documentation (SSP, Control Implementations, CMP, CP/CPTest, IRP, RA, BIA, FIPS199, etc).
Conduct and analyze host, network, cloud, and web-based application security vulnerability scanning and testing with Tenable Nessus, Fortify WebInspect, Burp Suite Professional, Nipper Studio, Wireshark, Nmap, Fiddler, and other assorted scanning tools.
Conduct physical security assessments of data center environments, and review/assessment of FedRAMP documentation for cloud environments.
2018 : 2021
eGlobalTech (eGT)
Cybersecurity SME & Technical Lead
SCA Team Lead, SCA Analyst, and SCA Technical Tester
Conduct security control assessments (SCA) following guidelines in NIST SP 800-37 and NIST SP 800-53R4 of HHS and customer GSS environments, Systems, Applications, and Cloud-hosted XaaS migrations.
Conduct and analyze host, network, cloud, and web-based application security vulnerability scanning and testing with Tenable Nessus, Fortify WebInspect, Burp Suite Professional, Nipper Studio, Wireshark, Fiddler, and other assorted scanning tools..
Review of information system and security architecture, component inventory, and ATO documentation.
Conduct physical security assessments of data center environments, and review FedRAMP documentation for cloud environments.
Test, review, and advise on RSA Archer implementation at HHS.
2016 : 2018
Blue Canopy Group, LLC
Cyber Security SME & Technical Lead
Provides technical/management leadership on major C&A tasks and technology assignments. Establishes goals and plans that meet A&A project objectives. Responsible for supporting the junior engineers with various challenges. Implement cybersecurity assessments, vulnerability and penetration testing.
2015 : 2016
Summit Technologies, LLC
Cybersecurity Technical Lead
Hewlett Packard Enterprise Services
*Development & Technical Team Lead, USAccess/HSPD12 Program*
-Review, prioritization, assignment of software development tasks
-Change, configuration and release frameworks management and code promotion
-Build, configuration of Virtualization (vSphere) environment, VMs (Windows/Linux), and virtual appliances
-Build, configuration of F5 devices and capabilities (APM/LTM)
-Support for SAN storage, Juniper firewalls, and various other network components.
-Configuration of HP C7000 Chassis/Blade Environment
-Development, planning of architecture for build/migration to Virtual Private Cloud
-Facilitator, advocate for moving to agille development, DevOPS, and overall business process improvements
-Sales and Management support for RFQ proposals
-Delivery of status and technical presentations to customer and management
-Support for WebInspect, IP360, Nessus security scans, assessment and remediation
*Solution & Enterprise Architect, USPS ITO*
-USPS pursuit, solution and cost model development
-High level and detailed requirements gathering and elucidation for alignment and management of requirements and assumptions
-Create solution design for proposals, working with geographically distributed SMEs for integration and build/support costs.
-Presentation of solution design and cost models for Leadership approval.
-Specified hardware (HP) to meet solution/operational requirements, along with hardware cost quoting
-Review of business processes for alignment with technical solution implementations.
*Information Solution Architect, Federal/S&L Consulting*
-Architect, design and delivery of custom solutions and integrations for project, program, and/or operational scope
-Assist Sales and Management with solution opportunity approval and review of services offerings
-Performed qualification reviews and technical interviews of HPES position candidates
2010 : 2015
Hewlett-Packard
Information Solutions Architect
Sodexo
Lead Information Security Analyst
Manager, Technical Lead for ISSO, SCS, and SCA contractors and subcontractors within the HHS Enterprise Security Services (ESS).
ESS Security Consultant Services (SCS) analyst for development of ATO package documentation for on-premise systems, and FedRAMP-accredited Cloud Service Provider systems.
ESS SCA Analyst, and SCA Technical Vulnerability Tester (continued in role from below after contract change to eGlobalTech).
Conduct security control assessments (SCA), following guidelines in NIST SP 800-30, SP 800-37, SP 800-53R4, of HHS and ESS customer GSS, Systems, Major Applications, and Cloud-hosted XaaS migrations.
Review of HHS Information Security & Privacy Policy (IS2P), and HHS OS Information Security Policy & HHS OS Procedures.
Review and development of HHS/OS and ESS customer information system security architectures, component inventories, and ATO documentation (SSP, Control Implementations, CMP, CP/CPTest, IRP, RA, BIA, FIPS199, etc).
Conduct and analyze host, network, cloud, and web-based application security vulnerability scanning and testing with Tenable Nessus, Fortify WebInspect, Burp Suite Professional, Nipper Studio, Wireshark, Nmap, Fiddler, and other assorted scanning tools.
Conduct physical security assessments of data center environments, and review/assessment of FedRAMP documentation for cloud environments.
2018 : 2021
eGlobalTech (eGT)
Cybersecurity SME & Technical Lead
SCA Team Lead, SCA Analyst, and SCA Technical Tester
Conduct security control assessments (SCA) following guidelines in NIST SP 800-37 and NIST SP 800-53R4 of HHS and customer GSS environments, Systems, Applications, and Cloud-hosted XaaS migrations.
Conduct and analyze host, network, cloud, and web-based application security vulnerability scanning and testing with Tenable Nessus, Fortify WebInspect, Burp Suite Professional, Nipper Studio, Wireshark, Fiddler, and other assorted scanning tools..
Review of information system and security architecture, component inventory, and ATO documentation.
Conduct physical security assessments of data center environments, and review FedRAMP documentation for cloud environments.
Test, review, and advise on RSA Archer implementation at HHS.
2016 : 2018
Blue Canopy Group, LLC
Cyber Security SME & Technical Lead
Provides technical/management leadership on major C&A tasks and technology assignments. Establishes goals and plans that meet A&A project objectives. Responsible for supporting the junior engineers with various challenges. Implement cybersecurity assessments, vulnerability and penetration testing.
2015 : 2016
Summit Technologies, LLC
Cybersecurity Technical Lead
Hewlett Packard Enterprise Services
*Development & Technical Team Lead, USAccess/HSPD12 Program*
-Review, prioritization, assignment of software development tasks
-Change, configuration and release frameworks management and code promotion
-Build, configuration of Virtualization (vSphere) environment, VMs (Windows/Linux), and virtual appliances
-Build, configuration of F5 devices and capabilities (APM/LTM)
-Support for SAN storage, Juniper firewalls, and various other network components.
-Configuration of HP C7000 Chassis/Blade Environment
-Development, planning of architecture for build/migration to Virtual Private Cloud
-Facilitator, advocate for moving to agille development, DevOPS, and overall business process improvements
-Sales and Management support for RFQ proposals
-Delivery of status and technical presentations to customer and management
-Support for WebInspect, IP360, Nessus security scans, assessment and remediation
*Solution & Enterprise Architect, USPS ITO*
-USPS pursuit, solution and cost model development
-High level and detailed requirements gathering and elucidation for alignment and management of requirements and assumptions
-Create solution design for proposals, working with geographically distributed SMEs for integration and build/support costs.
-Presentation of solution design and cost models for Leadership approval.
-Specified hardware (HP) to meet solution/operational requirements, along with hardware cost quoting
-Review of business processes for alignment with technical solution implementations.
*Information Solution Architect, Federal/S&L Consulting*
-Architect, design and delivery of custom solutions and integrations for project, program, and/or operational scope
-Assist Sales and Management with solution opportunity approval and review of services offerings
-Performed qualification reviews and technical interviews of HPES position candidates
2010 : 2015
Hewlett-Packard
Information Solutions Architect
Company:
Sodexo
About
Highly experienced information technology professional, consultant, and solution architect. Provides architecture, design, project management, presentation, and implementation for a wide array of IT solutions. Excellent oral and written communication skills, and has developed and delivered high-quality documentation, presentations, and training for complex IT implementations. Adaptable to numerous roles and leverages a strong, tenacious desire to acquire new technology, concepts, business, and client requirements in order to deliver effective solutions and results within each unique customer environment and situation.