Daniel G.
Details
College of Information Sciences and Technology
Penn State University
2014 : 2018
-Red Team Exercises
-Network penetration tests
-Vulnerability Scanning
-Web application security assessments
-Physical penetration tests of client physical access controls
-Social engineering via email phishing and phone vishing campaigns
2020 : Present
Core BTS
Senior Information Security Consultant
Provided effective solutions to clients' information security challenges. Advised public sector organizations on emerging threats and industry trends.
Responsibilities :
-Conducted vulnerability scans and presented remediation strategies
-Communicated highly technical information to executive and technical audiences
-Advised clients on developing security threats and attack methods
-Assessed organizational risk posture according to information standards (NIST 800-53, FISMA, FedRAMP, & FIPS)
-Supported business development efforts by developing and reviewing project proposals
-Served as technical point of contact for client requests and concerns
2018 : 2020
Grant Thornton LLP
Senior Associate - Risk Advisory
-Contributed to research and development projects for public sector organizations focused on security and cyber security
-Identified technical solutions for project requirements relating to database management and data analysis
-Supported application development project with quality assurance and user experience reviews
2017 : 2018
Penn State Applied Research Lab
Research Assistant
-Identified vulnerabilities and threats to the organization using a diverse set of tools
-Supported efforts to make organization compliant with NIST 800-53 and Critical Infrastructure Protection (CIP) Standards
-Documented and communicated industry trends and best practices to senior leadership
-Supported implementation of security awareness training program
-Facilitated major review of organization security posture
2015 : 2016
Duquesne Light Company
Information Security Analyst
Skills
Analytics, Computer Security, Critical Infrastructure Protection, Group Presentations, Group Work, Information Assurance, Information Security, Information Technology, Intelligence Analysis, Intrusion Detection, Java, Leadership, MySQL, Network Security, NIST, Penetration Testing, Physical Security, Public Speaking, Security, Security Audits, SQLite, Vulnerability Assessment, NoSQL
About
Information security professional with over 7 years experience supporting the public, private and academic sectors. Extensive experience performing technical vulnerability scans, penetration tests, red team exercises, and IT audits. Known for exceptional adaptability and technical expertise. (CEH, CompTIA Security+, eJPT)
Specific Domain Expertise:
- Microsoft Active Directory security
- Office 365 and related cloud security
- Threat Emulation
- Email security
- Radio Frequency Identification (RFID) Technology
Extensive Experience Conducting Following:
- Red Team Assessments
- Penetration Test
- Social Engineering assessments
- Physical penetration tests
- Web Application Security Testing