Profiles search
Suzanne Peroustianis
Information Security Engineer at Cloud Lake Technology
Belle View, VA, United States
Details
Education:
George Mason University
1996 : 2002
1996 : 2002
Experience:
2018 : Present
Cloud Lake Technology
Information Security Engineer
Serves as the Bureau of International Information Programs (IIP) Office of Digital’s Phase I security analyst, producing all security documentation to ensure compliance with all Federal, FedRAMP and DoS regulations for the AWS cloud system Mission Website Platform; responsible for all contingency planning, testing and continuous monitoring activities, including risk analysis and POA&M remediation. Serves as the Phase II Auditor of the CMS system; responsible for all POA&M updates/closures and auditing validation of continuous monitoring activities. Responsible for coordination with ISSO and IA, presenting updates on NIST 800-53 and FedRAMP, coordinating with team leads and ensuring projects comply with all Federal and DoS regulations; researching issues and providing solutions to client in alignment with all applicable laws and regulations.
2014 : 2018
Sevatec, Inc.
Information Security Analyst
Responsible for Assessment and Authorization (A&A) efforts for the Dept of State International Information Program's (IIP) Content Management Systems Office. Works with CMS team, ISSO and IA on the offices systems providing reporting to IA and management; ensuring POA&Ms are monitored and closed in a timely manner; updating iMATRIX system; writing systems A&A documentation such as SCF, eRA, SSP, CP, etc… and ensuring documentation is complete and up to date. Ensures all annual tests, including Contingency Planning is tested and maintained.
Served as the assessor for the Content Management System program; performing NIST and DoS IA related auditing tasks, documentation and reporting.
Performed Planned Change Comparative Analyses, Notification of Change Memo’s and retirement of applications, reporting all changes to ISSO and IA.
Monitored iMATRIX asset listing to ensure accurate reporting.
Provided cloud computing FedRAMP specific requirements for SalesForce program.
Lead all assessment and authorization (A&A) effort for the Administrative and Management Systems (AMS) task for Dept of State (Dos) CA/CST bureau and has successfully obtained ATOs on two moderate level systems with minimal findings. Worked with AMS team and ISSO on both systems providing reporting to ISSO and management; ensures POA&M’s are kept to a minimum and are closely monitored and closed in a timely manner. Ensuring all annual tests, including Contingency Planning is tested and maintained. Works with ISSO to update all A&A related documentation such as SSP, SCF, PIA, eRA, CP, etc… Ensuring all documentation is kept up to date and all changes reported to ISSO. Provided reporting to ISSO and management. Ensuring all documentation is kept up to date and all changes reported to ISSO. Serving as point of contact for all team members and Information Systems Security Officer (ISSO) to ensure security compliancy and Department of State (DoS) requirements are met.
2010 : 2014
Creative Information Technology, Inc.
Security Analyst
Lead testing endeavors, most recently the CA/CST Windows 7/IE8/Office 2010 testing endeavor for AMS team which included procurement of required H/W and S/W, testing of applications, meetings, preparing documents and reporting findings relating to programs, and policies. As well as analysis and valuation of hardware and software application and compatibility. Served as AMS asset manager in charge of all Government Funded Equipment (GFE) assigned to the AMS task, including procurement, returns, CEPO and auditing/reconciliation of teams GFE. Leads all phases of AMS GFE, including preparing documents and reporting on required resources, both H/W and S/W as well as reporting on and ensuring adherence to CA/CST and CA/EXs requirements, policies and procedures. Researched team requirements and CA/CST baseline approvals and writes justifications and procurement requests which are organized and provided to PM and GTO. Once required approvals obtained, organizes materials in accordance with CA/CST standards for continuation of approval process, follows process end to end. Ensures all AMS GFE is accounted for and provides accounting to CA/CST as well as CA/EX. Led CITI/DoS 2011 GFE Audit ensuring all CA requirements met and documentation provided. Continued participation in the annual audits conducted by CA/EX. Participated in special projects and studies affecting the requirements for DoS telecommunications, such as recent coordination efforts with network teams to ensure stability of team’s network infrastructure. Served as central communications POC to AMS—providing interface between team and all other groups. Provided Project Manager (PM) and Government Task Officer (GTO) with regular status reports and any/all issues that require escalation.
2009 : 2010
Creative Information Technology, Inc.
Project Technical Coordinator
Serves as security POC to ensure all DoS and DS security measures are in place for AMS team, including physical space and all hardware and software GFE requirements as well as serving as POC to ISSO on all other matters. Assists CITI Security with DoS Diplomatic Security compliance and annual inspections.
Provided training and mentorship to new hires. Provided document management within DoS OpenNet. Provides coordination of team training, including all paperwork.
Provided Quality Assurance checks to various applications team testing. Performed as the onsite administrator for Project Management Office’s (PMO) reengineering processes with the primary purpose to ensure projects achieved CMMI Maturity level 3; continual participation to ensure reengineering processes are consistent across AMS tasks.
2007 : 2008
Creative Information Technology Inc
Division Coordinator
Cloud Lake Technology
Information Security Engineer
Serves as the Bureau of International Information Programs (IIP) Office of Digital’s Phase I security analyst, producing all security documentation to ensure compliance with all Federal, FedRAMP and DoS regulations for the AWS cloud system Mission Website Platform; responsible for all contingency planning, testing and continuous monitoring activities, including risk analysis and POA&M remediation. Serves as the Phase II Auditor of the CMS system; responsible for all POA&M updates/closures and auditing validation of continuous monitoring activities. Responsible for coordination with ISSO and IA, presenting updates on NIST 800-53 and FedRAMP, coordinating with team leads and ensuring projects comply with all Federal and DoS regulations; researching issues and providing solutions to client in alignment with all applicable laws and regulations.
2014 : 2018
Sevatec, Inc.
Information Security Analyst
Responsible for Assessment and Authorization (A&A) efforts for the Dept of State International Information Program's (IIP) Content Management Systems Office. Works with CMS team, ISSO and IA on the offices systems providing reporting to IA and management; ensuring POA&Ms are monitored and closed in a timely manner; updating iMATRIX system; writing systems A&A documentation such as SCF, eRA, SSP, CP, etc… and ensuring documentation is complete and up to date. Ensures all annual tests, including Contingency Planning is tested and maintained.
Served as the assessor for the Content Management System program; performing NIST and DoS IA related auditing tasks, documentation and reporting.
Performed Planned Change Comparative Analyses, Notification of Change Memo’s and retirement of applications, reporting all changes to ISSO and IA.
Monitored iMATRIX asset listing to ensure accurate reporting.
Provided cloud computing FedRAMP specific requirements for SalesForce program.
Lead all assessment and authorization (A&A) effort for the Administrative and Management Systems (AMS) task for Dept of State (Dos) CA/CST bureau and has successfully obtained ATOs on two moderate level systems with minimal findings. Worked with AMS team and ISSO on both systems providing reporting to ISSO and management; ensures POA&M’s are kept to a minimum and are closely monitored and closed in a timely manner. Ensuring all annual tests, including Contingency Planning is tested and maintained. Works with ISSO to update all A&A related documentation such as SSP, SCF, PIA, eRA, CP, etc… Ensuring all documentation is kept up to date and all changes reported to ISSO. Provided reporting to ISSO and management. Ensuring all documentation is kept up to date and all changes reported to ISSO. Serving as point of contact for all team members and Information Systems Security Officer (ISSO) to ensure security compliancy and Department of State (DoS) requirements are met.
2010 : 2014
Creative Information Technology, Inc.
Security Analyst
Lead testing endeavors, most recently the CA/CST Windows 7/IE8/Office 2010 testing endeavor for AMS team which included procurement of required H/W and S/W, testing of applications, meetings, preparing documents and reporting findings relating to programs, and policies. As well as analysis and valuation of hardware and software application and compatibility. Served as AMS asset manager in charge of all Government Funded Equipment (GFE) assigned to the AMS task, including procurement, returns, CEPO and auditing/reconciliation of teams GFE. Leads all phases of AMS GFE, including preparing documents and reporting on required resources, both H/W and S/W as well as reporting on and ensuring adherence to CA/CST and CA/EXs requirements, policies and procedures. Researched team requirements and CA/CST baseline approvals and writes justifications and procurement requests which are organized and provided to PM and GTO. Once required approvals obtained, organizes materials in accordance with CA/CST standards for continuation of approval process, follows process end to end. Ensures all AMS GFE is accounted for and provides accounting to CA/CST as well as CA/EX. Led CITI/DoS 2011 GFE Audit ensuring all CA requirements met and documentation provided. Continued participation in the annual audits conducted by CA/EX. Participated in special projects and studies affecting the requirements for DoS telecommunications, such as recent coordination efforts with network teams to ensure stability of team’s network infrastructure. Served as central communications POC to AMS—providing interface between team and all other groups. Provided Project Manager (PM) and Government Task Officer (GTO) with regular status reports and any/all issues that require escalation.
2009 : 2010
Creative Information Technology, Inc.
Project Technical Coordinator
Serves as security POC to ensure all DoS and DS security measures are in place for AMS team, including physical space and all hardware and software GFE requirements as well as serving as POC to ISSO on all other matters. Assists CITI Security with DoS Diplomatic Security compliance and annual inspections.
Provided training and mentorship to new hires. Provided document management within DoS OpenNet. Provides coordination of team training, including all paperwork.
Provided Quality Assurance checks to various applications team testing. Performed as the onsite administrator for Project Management Office’s (PMO) reengineering processes with the primary purpose to ensure projects achieved CMMI Maturity level 3; continual participation to ensure reengineering processes are consistent across AMS tasks.
2007 : 2008
Creative Information Technology Inc
Division Coordinator
Company:
Cloud Lake Technology
Years of Experience:
16
Skills
Assessment and Authorization (A&A), Asset Management, Data Center, Disaster Recovery, Enterprise Architecture, Information Assurance, Information Security, Integration, ITIL, IT Management, Network Security, Physical Security, PMP, Process Improvement, Program Management, Project Management, Requirements Analysis, Risk Management, SDLC, Security, Security Clearance, SharePoint, Software Documentation, System Administration, Troubleshooting, Visio, Assessment and