Robert Barns, MSISA, CISSP
Details
Computer and Information Systems Security/Information Assurance
Norwich University
2017 : 2019
Bachelor's Degree
Information Technology
Rochester Institute of Technology
2011 : 2014
Associate's degree
Web Design
Genesee Community College
2009 : 2011
Regents Diploma
General
Westmoreland High School
1995 : 2009
Oversees the efforts of security staff to design, develop, engineer and implement solutions to security requirements
A working knowledge of several of the following areas is required :
Understanding of business security practices and procedures
Knowledge of current security tools available
Hardware/software security implementation
Knowledge of communication protocols (IP Stack etc.)
Encryption Techniques / tools
Conducts, supports, and oversees authorized penetration testing on an enterprise level
Performs in depth risk analysis to measure the effectiveness of controls against known vulnerabilities
Works directly with stakeholders to manage risks and vulnerabilities
Performs technical (evaluation of technology) and non-technical (evaluation of people and operations) impact/risk and vulnerability assessments of relevant technology focus areas
Identify systemic security issues based on the analysis of vulnerability and configuration data.
Makes recommendations regarding the selection of cost-effective security controls to mitigate risk
Ensure remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.;
Provide clear updates to management on vulnerabilities; Investigate, document, and report on status and emerging
Maintain up-to-date vulnerability profiles, including respective detection and countermeasures.
2022 : Present
NTT DATA Services
Information Security Specialist Advisor Sr
Drives the on-going development of the information security architecture and is responsible for ensuring the confidentiality, integrity and availability of the company’s information assets. Consults with IT management and teams to verify that appropriate security controls are in place across all Seneca Gaming Corporation infrastructure, platforms, systems, and applications. The engineer acts as an escalation resource specific to the support and maintenance of all SGC information security systems and hardware to ensure maximum protection of SGC’s assets. Directly develops enterprise information security policies. Conducts internal penetration testing, security assessments and forensic examinations as necessary. All duties are to be performed within the guidelines of the Seneca Gaming Corporation’s policies and procedures, Internal Control Standards and objectives.
2019 : 2022
Seneca Resorts & Casinos
Information Security and Assurance Manager
The Cyber Transport Specialist is a subject matter expert and will serve as a communications technician supporting 24/7 operations of critical real-time USAF/ANG mission operations. The Cyber Transport Specialist will leverage a solid understanding of network technologies, protocols, and standards required to integrate and sustain airborne and terrestrial information transport systems. The Cyber Transport Specialist shall also focus on sustainment of the network and telecommunication infrastructure, distribution media, cryptographic equipment and associated devices. The Cyber Transport Specialist will employ skills required to identify, recon, and exploit vulnerabilities within a network environment to achieve desired effects. Support includes but is not limited to the communications and network systems architecture, video distribution and long-haul communications system, and enhancement support for the RPA-SOC (Remotely Piloted Aircraft - Squadron Operations Center) enterprise environment.
2018 : 2019
Air Force Special Operations Command
Cyber Transport Specialist, CTR
Responsible for the installation, maintenance and modification of Local Area Network (LAN) cable systems implemented with coaxial, copper (Category 5,6), and fiber optic cabling. Determines requirements of and performs work on copper, coax, and fiber optic cable in underground and buried cable systems through the use of installation project drawings (CISR), task lists, task instructions, and technical orders and manuals. Experienced in installing underground cable and temporally bonding cable. Processes Base Civil Engineer (BCE) work requests through the use of installation project drawings to ensure technical standards, specifications, and engineering directives. Effectively isolates, diagnoses, and determines cause of signal deterioration in optical and electrical cable. Locates, detects and repairs coax cables as well as identifies copper conductors and optic fibers in working and non-working cables. Uses multimeters, electrical time-domain reflectometers, optical power meters, conductors, identification equipment, and cable locators. Uses various splicing tools such as the VS-3 hand tool, MA-6 applicators kit and the 710 and MS2 modular splicing machines. Maintains safe and appropriate use of splicing equipment to include optical fusion and mechanical splicing machines. Performs and assists in performing preventative maintenance, installation, removal and troubleshooting on UHF, VHF, and microwave antenna communication.
2017 : 2018
United States Air Force
Wire Communicatoin Cable Splicer (WG-10)
Conducts cyber security risk assessment in accordance with the IAW NIST SP 800-27A Risk Management Framework and ensures cyber architecture is in accordance with Department of Defense Architecture Framework. Advises System Owners of continuing risk management and security posture changes. Coordinates with internal and external agencies to conduct vulnerability assessments and assists in conducting Business Impact Study as it pertains to cyberspace. Provides input in translating Business objectives and priorities into Continuity of Operations and Disaster Recovery. Obtains Executive buy-in to the Protection Needs to all cyber related hardware, firmware, and Operating Systems. Documents, compiles, and establishes accreditation and certification processes and results.
2017 : 2017
United States Air Force
Cybersecurity Solution Specialist
Skills
Backtrack, Benefit Cost Analysis, Cisco IOS, Compliance, Computer Security, Cybersecurity, Databases, Digital Photography, Information Assurance, Information Security, Information Security Management, Information Technology, IT Governance, IT Management, IT Risk Management, Java, JavaScript, Leadership, Linux, Management, Microsoft Office, MySQL, Network Administration, Network Architecture, Network Design, Networking, Network Security, NIST 800-53, OS X, Process Improvement, Programming, Psychology, Putty, Python, Risk Assessment, Risk Management, Security Awareness, Security Clearance, Security Engineering, Strategic Planning, System Administration, Team Building, Team Leadership, User Interface Design, Vendor Management, Vulnerability Assessment, Web Design, Windows, Windows Server, Wireshark, Windows 7, Dreamweaver, HTML, PHP, CSS, Minitab, Photoshop, Fireworks, HTML/XML, JGrasp, Computer Building, Statistics, Nikon, Weight Training, Cognitive Psychology, Microsoft Excel, Microsoft Word, PowerPoint
About
I live, eat, breathe, and dream of all aspects of Information Security. I strive to remain up-to-date on today's threat landscape, extrapolate and translate for the business, so stakeholders can be informed of how the landscape is shifting today, tomorrow, and the future. I currently hold the ISC2 CISSP, CISCO CCENT and CompTia Security+ certifications, my specialties include: NIST and FIPS standards (such as the NIST-53A Security Controls in Federal Systems and NIST 800-37 Risk Management Framework), SD-WAN, Cisco Umbrella (DNS Security & Secure Web Gateway). IDS/IPS, HIPS, Firewalls (ASA), Cisco Firepower, APT hunting, MITRE ATT&CK, SIEM toolsets, Risk Based Decision approach, Defense-in-depth, PKI, Active Directory, Security Architecture to include physical and virtual network segmentation, server hardening, CIS Controls, SCADA controls, WAN Architecture, Cloud security and many more.