Information systems, development, and cybersecurity professional with years of experience in designing, kickstarting, and refining teams focused on better cybersecurity, agility, and velocity. Professional experience with cyber defense and resilience at all levels of the TCP/IP stack. Ensures and improves DoD security posture of platform IT environments for a variety of U.S. Navy surface combatants through culture change, facilitating access, and setting standards. Currently cleared at a Secret level and is a Certified Secure Software Lifecycle Professional (CSSLP).
michael@michaeltryan.me
View My GitHub Profile
Experience
DevSecOps Lead, Naval Surface Warfare Center Philadelphia; Philadelphia, PA — 2020-Present
- Leads digital transformation of Philadelphia Division Navy systems to support four pillars of cybersecure policy: data standardization, shared infrastructure between afloat and ashore, automation of development and security authorization, and use of AWS and Azure.
- Leads a team responsible for conversion of standalone, isolated development and test networks for non-traditional IT or non-IT systems to network-connected environments in support of DevOps practices.
- Engages with stakeholders at many levels of DoN leadership, industry vendors, and academic partners on new Risk Management Framework (RMF) Continuous Authorization policy for afloat and ashore systems in support of accelerated warfighter delivery.
- Architects solutions for automated Tenable.sc compliance scanning, STIG compliance-as-code, and manual processes that maximize inheritance for technical groups to conduct business with transparent cybersecurity.
- Responsible for hybrid Cisco, VMWare, and AWS GovCloud test-bed to demonstrate end-to-end prototypes of next-generation Navy systems.
- Engages with industrial control partners on development and integration of new tools to enhance industrial control system cyber resilience across the Navy fleet.
- Regularly presents project progress to DoN stakeholders through in-process reviews, flag officer briefs, and sprint reviews.
- Guides business-wide DoD information systems through RMF categorization and implementation of NIST cybersecurity controls.
DDG 1000 Software Lead, Naval Surface Warfare Center Philadelphia; Philadelphia, PA — 2017-2020
- Supported DDG 1000 Destroyer Machinery Controls Systems (MCS) group.
- Led multi-disciplinary development and information assurance team from through all phases of software lifecycle.
- Organized and trained new team members for government-led development.
- Constructed standalone, disconnected lab, including configuration management, authentication, and development systems.
- Enforced configuration management and release processes for Java, C++, and Siemens Programmable Logic Controller (PLC) software projects.
- Participated in cyber tabletop events as a Navy system subject matter expert.
- Supported site visits and installations for DDG 1000 class surface combatants.
- Created procedural guidance for sustainment by Navy sailors when engineering support is not available.
DDG 1000 Software Engineer, Life Cycle Engineering; Philadelphia, PA — 2015-2017
- Designed configuration management and release processes for Java, C++, and Siemens Programmable Logic Controller (PLC) software projects.
- Upgraded standalone, disconnected Windows/Linux software development lab for machinery controls software development lab from CentOS/RedHat Enterprise Linux 5/6 to 7 with a security focus.
- Supported Navy surface combatant acquisition, development, and systems engineering.
- Tested and configured Cisco Catalyst 6500 network switch configurations to create a representative research, test, and evaluation environment.
Research Fellow, West Chester University; West Chester, PA — 2013-2015
- Performed statistical analyses of microscopic 2D colloidal systems at University of Pennsylvania in the Arjun G. Yodh Soft Matter Group using linear algebra and damped least-squares regression implemented in Python and IDL.
- Presented results and techniques at American Physical Society March Meetings 2014 and 2015.
Education and Certifications
- Philadelphia University, Philadelphia, PA — B.S. Mechanical Engineering, 2015
- Certified Secure Software Lifecycle Professional — 2019
Skills
- Technical: Java, Red Hat Enterprise Linux, Windows Server, McAfee ePO, Tenable.sc, Ansible, Cisco iOS/NX-OS, VMWare, Jenkins
- Programmatic: Agile and Scrum, Atlassian tool suite, Gitlab
- Personal: Public speaking, critical thinking, documentation, biking, upholstery