At Amazon, I lead end-to-end RMF lifecycle execution for 10+ high-impact government systems, sustaining 100% compliance across annual assessments and driving ATO authorizations on schedule.
I create audit-ready SSPs, SAPs, SARs, RARs, and inheritance documentation aligned to NIST 800-37, NIST 800-53, and FedRAMP. I also reduced POA&M backlog by 35% through risk-based prioritization and close collaboration with engineering and DevSecOps teams.
Previously at AT&T, I assessed federal security controls, validated evidence for ATO renewals, and reviewed IAM, AWS, and Azure IL4/IL5 environments for compliance gaps. I used SQL and Python scripts alongside SCAP and STIG results to improve technical evidence validation and detect configuration drift.
Earlier at CSI Companies, I conducted enterprise risk assessments, monitored Splunk and ELK Stack for security incidents, performed forensic analysis with Wireshark, and delivered security awareness training that improved phishing simulation pass rates by 20%.

