Welcome to my Cybersecurity portfolio where I showcase my expertise as a GRC Analyst and Cybersecurity Project Manager.
I am an Army Veteran, Father, GRC Analyst and Cybersecurity Project Manager with over 20 years of experience in the field. I have diverse experience in cyber security management, including performing risk assessments and vulnerability audits, project management, and awareness training. My goal is to improve my craft while helping others break into the Cybersecurity field along the way.
Antonio Sandoval
LinkedIn: https://www.linkedin.com/in/antonio-sandoval-army25b/
Education
Western Governors UniversityMaster of Science - MS Cybersecurity and Information Assurance
Capstone: Implementing Cloud Migration Technical Solutions
American Military UniversityBachelor of Arts - BA, Security Management (IT)
Magna Cum Laude
Certifications
CISM
PMP
CompTIA Security+
CompTIA CASP
Certified Ethical Hacker
Splunk Power User
AWS Cloud Practitioner
My Thoughts
I believe that integrating cyber certifications, personal research, and hands-on experience is the optimal approach to building a successful career in cybersecurity. Cyber certifications not only validate skills but also offer a standardized recognition of expertise, unlocking opportunities within the industry. Engaging in personal research keeps professionals updated on the latest trends, emerging threats, and cutting-edge technologies. Lastly, hands-on experience in real-world scenarios is invaluable, cultivating problem-solving skills, critical thinking, and a profound understanding of cybersecurity challenges. By combining these elements, individuals can position themselves as competent and well-rounded cybersecurity professionals.
Risk Management
My Videos
Target Breach: https://www.youtube.com/watch?v=-fSGbeP5uJQ
Email Phishing attacks: https://youtu.be/BhQxOEx3xWE
Common Security Key Terms: https://youtu.be/tjif65wHYUw
CIA Triad: https://youtu.be/WI9qOHh-W0U
Risk management is a crucial component of Governance, Risk, and Compliance (GRC) processes. It involves identifying, assessing, and mitigating risks that an organization may face. Risk management helps organizations to proactively manage risks and safeguard their operations, employees, and assets. It involves developing risk management strategies, policies, and procedures that align with an organization's objectives and regulatory requirements. Effective risk management requires a comprehensive understanding of an organization's risk profile, including internal and external risks. Risk assessment is an essential part of risk management, which involves identifying potential risks, evaluating their likelihood and impact, and prioritizing them based on their significance. By implementing a robust risk management program as part of GRC, organizations can minimize the likelihood of risk incidents and ensure continuity of business operations.
Governance
Governance is a crucial aspect of GRC (Governance, Risk Management, and Compliance). It involves establishing policies, procedures, and guidelines to ensure that an organization operates effectively, efficiently, and ethically. Governance provides a framework that helps to define roles, responsibilities, and decision-making processes. It also ensures that risks are identified and managed appropriately. Effective governance requires a clear understanding of an organization's objectives and how they will be achieved. It involves creating an environment of transparency, accountability, and integrity. Good governance practices can help to prevent compliance failures, reduce risk, and improve performance. In summary, governance is an essential component of GRC that helps organizations to achieve their objectives while managing risk and ensuring compliance with relevant regulations and standards.
Compliance
The Cloud
Cloud computing is a technology that revolutionizes the way we store, access, and process data. It eliminates the need for physical servers and allows users to access software, applications, and files through the internet. With its scalable and flexible nature, cloud computing provides businesses and individuals with cost-effective solutions for their computing needs. It offers a wide range of services, including storage, networking, and analytics, which can be easily accessed and managed from any location. The cloud also ensures data security and backup, minimizing the risk of data loss. It has become an essential tool in today's digital age, enabling collaboration, innovation, and efficiency in various industries. Whether it's storing documents, running applications, or analyzing big data, cloud computing has transformed the way we work and interact with technology.
Compliance is a critical aspect of Governance, Risk, and Compliance (GRC) that involves adhering to legal and regulatory requirements. It encompasses various policies, procedures, and practices that organizations implement to ensure that they operate within the framework of the law. Compliance is crucial because it helps to mitigate risks, prevent violations, and protect the reputation of an organization. Moreover, organizations that comply with regulatory requirements are likely to avoid penalties, lawsuits, and reputational damages. Thus, it is essential for organizations to develop a robust compliance program that aligns with their business objectives and supports their risk management processes. Through effective compliance management, organizations can maintain their integrity, improve their operational efficiency, and build trust with their stakeholders.
About Me
Originally from Los Angeles CA, I joined the Army in 2003 while in High School after the September 11 attacks. I enlisted as a 25U Signal Support Systems Specialist. I did 2 combat tours in Iraq out of the 101st Airborne Division in Fort Campbell, KY. I had follow-on assignments in Georgia, Guatemala, South Korea, Texas, Sacramento CA, and Kentucky.
In 2013 I switched jobs and trained to become a 25B Information Technology Specialist where my first assignment was to teach this same course to other soldiers that also wanted to change their military career path. I had to learn the job quickly and fast. I fell in love with routing and switching but my true calling came after I studied for my Security+. I was intrigued by the security niche of I.T. In 2017 I was assigned to a brand new Cyber unit in San Antonio, TX. I absolutely fell in love with Cyber and enrolled into my Masters degree in Cyber with WGU. I worked alongside other Cyber professionals and learned about the different aspects of cyber. I completed my Masters in Cybersecurity in 2021 and have been aggressively looking for the cyber niche that interest me the most. Since then, I have attained certifications in different genres to include AWS, Splunk, CASP and most recently the CISM certification from ISACA.
I currently reside in Los Angeles with my wife, 3 children and dog Bruno.
Let's Connect
email: tony@antoniosandoval.tech
LinkedIn: https://www.linkedin.com/in/antonio-sandoval-army25b/