Nathan Joyce Information Systems Security Manager Security clearance: TS/SCI FSP Draper, Utah | nathantylerjoyce@outlook.com PROFILE Cybersecurity and intelligence professional with experience across federal, state, DoD, and private-sector environments. Background spans RMF, CMMC, NIST 800-53/800-171, security engineering, vulnerability assessment, penetration testing, incident response, SIGINT, and target network analysis. PROFESSIONAL EXPERIENCE Whitman, Requardt and Associates Information Systems Security Manager | Sep 2024 — Present - Achieved authorization to operate without deficiencies through end-to-end Risk Management Framework activities. - Built the enclave System Security Plan and supporting evidence for NIST 800-171 and CMMC assessment readiness. - Designed security awareness campaigns for 1,100+ users and all cleared personnel. - Assurance & authorization: Lead information assurance and network security programs for multiple information systems, driving end-to-end RMF activities across multilevel network enclaves. - Assessment readiness: Implement NIST 800-171 controls and CMMC requirements, coordinating with managed security and service providers to develop the enclave SSP and supporting artifacts. - Vulnerability analysis: Use Nessus and SCAP benchmarks to assess enterprise configurations and system architectures, identify security gaps, and drive remediation across federal and state contracts. - System hardening: Apply DISA STIGs and CIS Benchmarks to network devices and servers. Develop custom hardening strategies for systems that lack formal guidance. - Detection & response: Integrate Arctic Wolf, Splunk, Windows Defender, and Palo Alto Cortex to centralize network analysis and support incident detection across multiple enclaves. - Incident leadership: Author the corporate Incident Response Plan and coordinate cross-functional response, external forensics, legal engagement, real-time timelines, and executive briefings. - Security awareness: Design and execute KnowBe4 campaigns for 1,100+ users and all cleared personnel to support secure enterprise network use. - Network understanding: Analyze and map enterprise enclaves, traffic flows, and misconfigurations to support red-team and assessment planning. InFocus Consulting Penetration Tester | Feb 2023 — Feb 2025 - Identified and helped remediate over 100 critical vulnerabilities across client engagements. - Delivered findings, impact analysis, and remediation recommendations in Dradis and PlexTrac. - Penetration testing: Performed authorized penetration testing and exploitation of systems, target networks, and web applications using advanced testing methodologies. - Assessment tooling: Used Burp Suite and Qualys to discover, validate, and document network and application vulnerabilities. - Threat-informed planning: Developed exploitation-focused test plans based on threat intelligence and risks to client infrastructure. - Reporting & remediation: Produced comprehensive reports through Dradis and PlexTrac, and worked with developers and system administrators to resolve findings. - Continuous research: Maintained current knowledge of vulnerability advisories, incidents, exploitation techniques, and assessment best practices. Lockheed Martin Cyber Security Engineer & Vulnerability Management | Feb 2021 — Apr 2024 - Configured Palo Alto Firewalls and applied DISA STIGs to network infrastructure. - Automated device configuration and administration with Ansible playbooks. - Network engineering: Configured and deployed Palo Alto firewalls, applying DISA STIGs and knowledge of ports, protocols, and OSI-layer behavior to harden networks. - Monitoring infrastructure: Built and managed administrative virtual machines, including Identity Management and ELK stack instances, to improve visibility and system performance. - Configuration automation: Developed Ansible playbooks for device configuration and network and systems administration, supporting consistent compliance across enclaves. - Incident investigation: Supported incident response and forensic investigations with Arctic Wolf, including timeline reconstruction and technical findings for stakeholders and legal teams. - Vulnerability management: Validated HackerOne submissions, coordinated global remediation, and tracked findings in Jira. - Threat intelligence: Used Recorded Future and open-source intelligence to assess cyber threats and produce actionable reports for senior leadership. - Traffic analysis: Analyzed firewall and ELK telemetry to identify anomalous behavior, support metadata-driven analysis, and inform remediation and hardening. Booz Allen Hamilton Intelligence & Network Exploitation Analyst | Mar 2019 — Feb 2021 - Analyzed adversary infrastructure and target communications to support cyber operations planning. - Delivered intelligence reports and high-interest briefings to senior leadership. - Digital network research: Conducted cyber intelligence and digital network exploitation research, including blockchain transaction investigations, to identify risks and target communications. - Infrastructure analysis: Profiled adversary infrastructure using open-source and classified sources to support intelligence requirements and operations planning. - Decision support: Delivered actionable intelligence and briefings for strategic planning, target development, and cybercrime prevention. - Metadata & continuity: Analyzed metadata, researched targets, and contributed to global network analysis and mapping to maintain target continuity. U.S. Army Special Operations Command & Tennessee Air National Guard Military Service | Aug 2013 — Present - Provided round-the-clock SIGINT and cyber intelligence support to special operations missions. - Produced actionable intelligence and briefings to support leadership and mission planning. - Mission support: Provided 24/7 signals intelligence and cyber intelligence support, including analysis and mapping of adversary digital communications and network infrastructure. - Assessment support: Supported red-team efforts and Computer Network Exploitation operations to identify vulnerabilities and enhance mission effectiveness. - Network intelligence: Analyzed SIGINT and cybersecurity data across the OSI stack and delivered actionable intelligence products and high-interest briefings. - Technology research: Researched target technologies, digital communications, and network topology to support access and exploitation analysis. - Analytical continuity: Analyzed collection and open-source data to profile target activity, maintain continuity, and develop additional cyberspace information. - Technical foundation: Performed troubleshooting, preventive maintenance, and calibration of military aircraft avionics in an early-career technical role. EDUCATION Bachelor’s in Cybersecurity and Information Assurance — Western Governors University (in progress) CERTIFICATIONS CompTIA Security+ — 2024 CompTIA A+ — 2025 MILITARY COURSES Joint Cyber Analysis Course — Department of the Navy, 2016 Digital Network Intelligence Analysis Apprentice Course — Community College of the Air Force, 2015 Intelligence Fundamentals Course — Community College of the Air Force, 2015 Avionics Technician — Heavies — Community College of the Air Force, 2011 Electronics Principles Course — Community College of the Air Force, 2011 INDEPENDENT DEVELOPMENT VidarFit - https://vidar.fit/ Building an adaptive strength-training application with Next.js, TypeScript, Supabase, and Cloudflare. Working with Codex and Claude Code across research, implementation, testing, browser verification, and release. ADDITIONAL GRC TOOLS IntelliGRC | FutureFeed | eMASS GitHub: https://github.com/tyler109j