Bryan Cassity
Details
Computer Information Systems/Information Security and Network Administration
University of Denver
2001 : 2005
Bachelor of Science (BS)
Business/Information Systems
University of Phoenix-Colorado Campus
1997 : 2000
2022 : Present
AgroLiquid
Information Security Specialist
Short fused NIST SP 800-53 based authorization package development for a large University research project. Output was package for interim approval to operate.
2022 : 2023
The Judge Group
Cybersecurity Consultant
Designed and implemented pragmatic and effective security programs aligned with client business needs, including a broad array of security projects and activities covering vulnerability managment, risk assessment, supplier risk, training, phishing simulation, process design, governance, and compliance.
2021 : 2022
Pratum
Information Security Consultant
Assess information security risk on assigned projects throughout the development life cycle. Assessments include evaluating security controls and processes, interviewing subject matter experts, and facilitating a risk based approach to the protection of information and assets. Work with project teams using control frameworks to develop information security requirements, assess the application of security controls in project designs, and determine and examine evidence artifacts showing security controls in project solutions. Assist with development and tracking of remediation plans and risk remediation efforts. Perform information security reviews of vendor solutions and product offerings to determine compliance with established policies and standards.
2015 : 2021
Western Union
Information Security Manager
Provided accreditation and authorization support for a large, distributed, enterprise management system. This included the interpretation and application of government customer information system security regulations in a diverse and fast paced operating environment. Researched and drafted security test plans and reports for custom applications. Conducted security testing, both manual and automated, on custom web applications.
2013 : 2015
Clarus Group
Federal Security Specialist
Skills
Agile Methodologies, Analytical Skills, Business Continuity, CISSP, Cloud Computing, Communication, Compliance Regulations, Computer Hardware, Continuous Process Improvement, Critical Thinking, CSSLP, Cybersecurity, Information Security, Information Security Awareness, Information Security Management, Information Technology, IT Governance, IT GRC, ITIL, IT Management, IT Risk Management, IT Security Assessments, IT Security Policies & Procedures, IT Service Management, Management, Network Security, NIST, People Management, Phishing, Privacy Regulations, Problem Solving, Program Management, Qualitative Analysis, Qualitative Research, Reporting Metrics, Risk Management, Security, Security Audits, Security Awareness, Security Management, Small and Medium-Sized Enterprises (SME), Strategic Planning, Supplier Risk Management, System Administration, Third-Party Vendor Management, Third Party Risk Management (TPRM), Vulnerability Assessment, Vulnerability Management, Vulnerability Scanning, Computer Security, Server Administration, Microsoft Exchange, Troubleshooting, Servers, Networking, Technical Support, Information Assurance, Software Documentation, C&A, Security Clearance, Encryption, DoD, Security Operations, Intrusion Detection, FISMA, Incident Response, DIACAP, CompTIA Security
About
Experienced Cyber Security and Governance, Risk, and Compliance professional with a track record of building security and compliance programs from the ground up. Strongly biased toward action and always looking for the way ahead.