Summary
Overview
Work History
Education
Skills
Clearance
Certification
Timeline
Generic

Zachary Liptok

Fayetteville

Summary

Experienced Information System Security Officer specializing in risk management processes, security assessments, cyber operations, tactical communications, and joint military operations. Proven leader with a strong background in securing sensitive networks, conducting continuous monitoring, and managing cross-agency cybersecurity initiatives. Certified Information Systems Security Professional (CISSP) with a Master’s degree in Cybersecurity and Information Assurance from Western Governors University.

Overview

14
14
years of professional experience
1
1
Certification

Work History

Information System Security Officer

Peraton
12.2024 - Current
  • Executed the Department of Defense (DoD) Risk Management Framework (RMF) process as the Information System Security Officer (ISSO), successfully obtaining an Authority to Operate (ATO) for the Special Access Program (SAP) network in compliance with NIST SP 800-53 controls; utilized tools such as the Enterprise Mission Assurance Support Service (eMASS) for documentation, the Assured Compliance Assessment Solution (ACAS) for vulnerability scanning, and Security Technical Implementation Guides (STIGs) for control implementation and validation.
  • Conducted continuous monitoring on networks operating outside the Special Operations Information Environment (SIE), ensuring compliance with the DoD RMF and maintaining adherence to NIST SP 800-53 security controls.
  • Conducted comprehensive training for ISSO on the RMF process, covering essential steps including system categorization, security control selection and implementation, continuous monitoring, and assessment and authorization (A&A); provided hands-on instruction on utilizing U.S. Special Operations Command’s (SOCOM) Assessment and Authorization (A&A) system of record, eMASS, to document compliance and track security posture.
  • Established Interconnection Service Agreements (ISAs) between the U.S. Department of State and the tactical communications department of U.S. Army Special Operations Command (USASOC), ensuring secure and compliant network connectivity across agencies.


IT Project Lead

US Army and US Army Reserves
10.2011 - Current
  • Managed secure communications systems during multiple military operations, implementing protocols to protect sensitive data and ensure compliance with cybersecurity standards.
  • Led the design and execution of secure communications systems during multiple missions, including the rollout of a help desk platform and several networks that reliably supported over 730 users per year.
  • Coordinated and managed personnel data and training records for several Army units within the Army Training and Certification Tracking System (ATCTS), streamlining certification tracking and improving audit readiness.
  • Designed and implemented communications SOPs to enhance operational consistency during training exercises, while conducting daily leadership briefings to report on system health and technology readiness

Cyber Security Analyst

Department of Defense
08.2022 - 12.2024
  • Conducted in-depth assessments of diverse projects using NIST standards and RMF protocols via EMASS and XACTA, delivering critical insights that supported timely accreditation and authorization decisions.
  • Directed a team in creating risk assessment frameworks for Large Language Models (LLMs) deployed across various enclaves, identifying potential vulnerabilities and ensuring compliance with evolving AI and cybersecurity policies.
  • Developed Standard Operating Procedures (SOPs) for assessing software risk through a newly deployed cloud-based platform within the DoD environment, aligning procedures with NIST RMF and FedRAMP guidelines. This initiative improved risk assessment efficiency and enhanced compliance across multiple enclaves.
  • Provided cybersecurity training to government employees, contractors, and military personnel, focusing on interpreting and validating vulnerability scan results to strengthen the DoD enterprise's security posture.
  • Produced critical security artifacts—including System Security Plans, Security Assessment Reports, and Security Control Traceability Matrices—for multiple applications and enclaves to facilitate Risk Management Framework (RMF) compliance and authorization.

Security Professional

ISS Action
04.2021 - 08.2022
  • Conducted High-Security checks and patrols to include security of Sensitive Compartmentalized Information Facilities (SCIFs) and Special Access Programs Facilities (SAPFs)
  • These facilities contain highly classified materials, which if released, is expected to cause exceptionally grave damage to national security
  • Provided Force Protection to a secure facility while following standard operating procedures and enforcing Federal, State, and Fort Bragg Laws and Regulations to promote public safety and protect the installation, personnel, and interests of national security.

Education

Master of Science - Cybersecurity And Information Assurance

Western Governors University
Salt Lake City, UT
04-2024

Bachelor of Science - Business Administration, Management and Operations

North Carolina State University
Raleigh, NC
01.2020

Skills

  • Cybersecurity expertise
  • Risk evaluation
  • Knowledge of cybersecurity frameworks
  • Monitoring adherence to regulations
  • Strategic leadership
  • Project oversight
  • Mission coordination
  • IT expertise
  • Software application security
  • Network protection strategies
  • Regulatory adherence
  • Data privacy management
  • Risk reduction techniques

Clearance

TS/SCI Clearance – Top Secret / Sensitive Compartmented Information

Certification

CISSP – Certified Information Systems Security Professional
CySA+ – CompTIA Cybersecurity Analyst
CEH – Certified Ethical Hacker
CCNA – Cisco Certified Network Associate
Security+ – CompTIA Security+
ACAS – Assured Compliance Assessment Solution Operator and Supervisor Course
XACTA 360 – Risk Management Framework (RMF) Automation Tool
RDRP – Registered DoD Risk Management Practitioner

Timeline

Information System Security Officer

Peraton
12.2024 - Current

Cyber Security Analyst

Department of Defense
08.2022 - 12.2024

Security Professional

ISS Action
04.2021 - 08.2022

IT Project Lead

US Army and US Army Reserves
10.2011 - Current

Master of Science - Cybersecurity And Information Assurance

Western Governors University

Bachelor of Science - Business Administration, Management and Operations

North Carolina State University
Zachary Liptok