Ryan Gaston, CISSP
Details
Cybersecurity and Leadership
University of Washington Tacoma
2015 : 2016
Bachelor’s Degree
Military Intelligence, General
American Military University
2010 : 2015
Amazon
Information Security Specialist
2017 : 2020
REI
Lead Information Security Engineer
Staff level position providing coordination and cybersecurity augmentation for Joint Task Forces responding in support of State emergencies and contingency operations.
2016 : 2018
Washington Army National Guard
Cybersecurity and Intelligence Adviser
Designs, develops, and recommends integrated security solutions for multiple systems/projects. Responsible for creating and maintaining certification and accreditation documentation. Ensures system security measures comply with multiple regulatory requirements (e.g. NISPOM, JAFAN, DCID/ICD 503, DoD RMF), and accurately assesses the impact of modifications, changes, and vulnerabilities for each system where needed. Conducts reviews and technical inspections to identify and mitigate potential security weaknesses, and ensure that all security features applied to a system are implemented and functional. Also creates and maintains all information assurance documentation (e.g. SSPs, Security Profiles, approvals, etc.) for assigned areas.
2016 : 2017
Raytheon
Information Assurance Cyber Specialist II
Provided a comprehensive review of ITD’s existing threat analysis process using the NIST Cyber Security Framework. The analysis provided a comparison of ITD’s threat analysis process versus overall best security practices. By comparing best practices to actual practices, the assessment shed light on areas where the threat analysis process could be more efficient and effective.
2016 : 2016
City of Tacoma
Contractor, Information Technology Department Threat Analyst
Skills
Access Control Management, Analyst Briefings, Cascading Style Sheets (CSS), Crime Prevention Through Environmental Design, Cyber-security, Cybercrime Investigation, Cybercrime Investigations, Digital Forensics, Django, EnCase, Evidence Collection, Force Protection, Full-Stack Development, HTML, Incident Response, Information Security, Interrogation Techniques, Investigations, JavaScript, Kinesics, Kismet, Maltego, Metasploit, Nessus, Network Security, Penetration Testing, Policy Development, Process Analysis, Process Improvement, Program Development, Program Management, Python (Programming Language), Security Incident Response, Snort, Surveillance, Technical Writing, Threat & Vulnerability Management, Threat Analysis, Threat Intelligence, Vue.js, Vulnerability Assessment, Vulnerability Scanning, Web Application Security, Wireshark
About
Cybersecurity Risk Engineer with 11 years of proven experience in various security roles. Extensive knowledge in integrating technology controls for data protection, implementing classified information and material security frameworks, conducting threat modeling, security testing applications, and writing security assessments. Possess a comprehensive background in managing and developing programs, threat intelligence analysis, and building in security by design to mitigate threats. Recipient of multiple awards for outstanding performance and professionalism. Career supported by a Master’s Degree in Cyber Security and Leadership and a Bachelor’s Degree in Intelligence Studies.