Cybersecurity • Application Security • IT

Robert
Bromfield.

CISSP-certified cybersecurity and web application security professional.

Results-driven information technology professional with experience spanning enterprise cybersecurity, web application certification, systems administration, application support, consulting, and military signal operations.

View experience LinkedIn profile ↗

01 / Profile

Security perspective built on broad IT experience.

Robert’s background crosses security, infrastructure, enterprise applications, consulting, and military communications. That range supports a practical approach to cybersecurity: understand how technology is operated, how applications are used, and how risk affects the business.

01

Cybersecurity & Application Security

Enterprise security work centered on cybersecurity and web application certification in a large-scale business environment.

02

Systems & Applications

Hands-on background in systems administration, application analysis, enterprise support, and technologies including Active Directory.

03

Leadership & Mission Focus

Military signal experience complements commercial IT work with disciplined communications, information systems, and operational responsibility.

02 / Experience

Career progression from IT operations to cybersecurity.

Professional experience spanning cybersecurity consulting, web application testing, vulnerability management, systems administration, enterprise applications, military information systems, consulting, web hosting, networking, and small-business ownership.

Feb 2022 — Present
Verizon Business · Full-time · Remote
Senior Cyber Security and Web Application Certification Consultant Dec 2023 — Present
Cyber Security and Web Application Certification Consultant Feb 2022 — Dec 2023
  • Leads the Application Certification Team.
  • Advises and consults multiple medium and large organizations on mitigating risk through Cyber Risk and Application Certification programs aligned with the Verizon Data Breach Investigations Report.
  • Penetration tests client web applications for server configuration issues, outdated libraries, cross-site scripting, and other vulnerabilities using the OWASP Web Security Testing Guide and Burp Suite.
  • Uses Qualys for vulnerability scanning, analyzes results, and presents security assessments covering external, internal, and endpoint vulnerabilities.
  • Assesses clients’ anti-phishing campaigns, email filtering capabilities, wireless networks, physical locations, policies, processes, and procedures.
  • Contributes to and discusses the monthly Threat and Vulnerability Intelligence Team report with clients.
  • Monitors and takes action on leaked client credentials, typo-squatting, brand mentions, and other threats.
Jan 2020 — Present
United States Army Reserve · Part-time

Signal Officer — Individual Ready Reserve

Rank / branches: Major — Transportation/Logistics and Signal.

May 2013 — Mar 2021
Northside Hospital · Full-time · Atlanta, Georgia
System Administrator Dec 2017 — Mar 2021
Senior Analyst, Applications (Billing) Oct 2017 — Dec 2017
Applications Analyst May 2013 — Oct 2017
  • Mentored and led a team of five application analysts supporting vendor software tools, IBM AIX, data transfers, reporting, the customer-service help desk, and the work-from-home initiative.
  • Investigated cybersecurity incidents, reported findings, and performed risk remediation as part of the organization’s incident-response process.
  • Analyzed application, server, and desktop logs for unexpected and malicious events.
  • Served on the department’s Change Advisory Board for IT system changes, participating in the assessment of more than 50 configuration-management tickets to help maintain the enterprise security posture.
  • Performed code analysis for potential vulnerabilities, application maintenance, and new logic.
  • Automated complex daily tasks with PowerShell and Perl scripting, reducing errors and producing significant time savings.
  • Created and executed the department’s secure remote-work plan for more than 700 employees using VPN and VMware Horizon.
  • Used identity and access management systems including Microsoft Active Directory.
  • Deployed Windows 10 desktops and Windows Server 2016 servers from operating-system installation through patching, encryption, hardening, and secure disposal.
  • Liaised with healthcare IT teams and vendors to resolve software, hardware, VPN, and network-connectivity issues.
  • Trained end users in cybersecurity awareness and the use of internally developed software.
  • Worked with vendors to establish file and data transfers using PKI key pairs to help ensure privacy and integrity.
  • Managed the department’s ticket queue and established service-level agreements using ServiceNow.
  • Planned, created, and executed test plans for quarterly and yearly software-system upgrades.
  • Maintained application HIPAA compliance initiatives.
  • Scanned computer systems with Nessus for potential vulnerabilities.
Apr 2012 — Jan 2020
Georgia Army National Guard · Part-time · Atlanta Metropolitan Area

25A Signal Officer — Information Systems Manager

  • Branch qualified as both 88A Transportation (logistics) and 25A Signal (Information Systems).
  • Secured telecommunications using cryptographic security, transmission security, emissions security, and physical security in accordance with AR 25-2, Information Assurance.
  • Used SCAP Compliance Checker and STIGs to analyze and report on the security configuration of information systems.
  • Served as an Information Systems Manager under the G6 at Joint Forces Headquarters.
  • Served as the G6 Signal liaison for the Joint Operations Center during natural disasters and incidents.
  • Led more than 50 Soldiers and managed unit equipment and six tractor trailers as a Transportation Platoon Leader.
  • Prepared and presented operations orders for platoon missions.
  • Ensured the platoon was fully trained and deployable to meet organizational needs.
  • Served as Convoy Commander for company missions involving the movement of cargo and personnel.
  • Created SOPs and applied the NIST Risk Management Framework to information systems.

Additional military experience: O-3 Captain — Information Systems Manager.

Signal Captain's Career Course Unit Movement Officer Course Transportation Basic Officer's Leadership Course
Jan 2004 — Dec 2019
RBromfield Photography

Photographer

  • Created and directed business, bridal, and general portraiture in a variety of environments.
  • Designed and executed photo shoots integrating lighting techniques, composition, wardrobe, and photography equipment.
  • Managed daily business operations including client and vendor relations.
  • Designed and implemented an image and file backup system for studio computers.
  • Presented and delivered high-quality portraits to clients and followed up to ensure client satisfaction.
  • Evaluated, trained, and mentored photography assistants in the science and art of photography.
  • Developed and post-processed images using Adobe Creative Suite.
Oct 2008 — Oct 2010
Accenture

Consultant Analyst

  • Performed quality testing of ETL data transformations using IBM DB2 SQL scripts.
  • Logged and tracked defects affecting data validation and program functionality using HP Quality Center.
  • Created detailed defect reports with metrics used as a baseline for the software-development team’s progress.
  • Reviewed and assigned program defects to team members during daily defect meetings.
  • Developed scripts and rules for the rollout of an international Siebel-based custom equipment quoting system.
  • Researched, developed, and executed testing scripts for a large-scale insurance underwriting program.
  • Assisted in designing, creating, and implementing a custom system to identify and record healthcare-professional expenses.
  • Presented project status to department heads and project leads.
  • Gathered and documented functional and technical requirements throughout project lifecycles.
  • Maintained the accuracy and currency of project design documents.
Dec 2006 — Apr 2008
Florida State University

Graduate Research Assistant

  • Created Windows and Linux VMware virtual machines for instructional purposes.
  • Administered and configured Linux servers and ensured they received current security patches.
  • Worked with College of Information faculty and staff to implement open-source software packages for student use.
  • Developed websites and provided web hosting using Apache HTTP Server on Ubuntu Server.
  • Administered MySQL databases for web applications including Moodle, Greenstone Digital Library, and WordPress.
  • Researched and implemented a multiuser WordPress blog system for the college.
  • Maintained a staff wiki documenting Linux server issues and their resolutions.
Oct 2003 — Mar 2008
Florida Multimedia

Field Service Technician

  • Resolved customer network issues by troubleshooting and analyzing telecommunications components and data systems.
  • Helped optimize LAN performance by conducting tests and creating reports.
  • Assisted customers with registering and setting up phone service.
  • Installed LAN components including switches, fiber jumper wires, T1 cards, media converter boxes, Cat5 cabling, and basic routers.
  • Informed property managers and residents about upgrades and network downtime.

03 / Credentials

Professional certification and education.

Certification

Certified Information Systems Security Professional (CISSP)

Issued by ISC2.

Education

Florida State University

Master of Science (M.S.)
Graduate study, 2006–2008; Graduate Research Assistant.

Bachelor of Science (B.S.)

Dean’s List recipient multiple times.

Core focus

Cybersecurity Web Application Security Application Certification Information Security Systems Administration Enterprise Applications Active Directory IT Consulting Information Systems Technical Operations

04 / Connect

Cybersecurity experience grounded in real-world IT operations.

For professional background, networking, and current career information, connect with Robert on LinkedIn.

View LinkedIn ↗