nick@jax:~$ status –availability
Available_
GRC Analyst · Compliance Analyst · Information Security Analyst · ISSO. TS/SCI active. Remote, or hybrid/onsite in Jacksonville, FL. Can start immediately.
“clearance”: “TS/SCI (active)”,
“location”: “Jacksonville, FL”,
“work_model”: [“remote”, “hybrid”, “onsite-jax”],
“start”: “immediate”,
“roles”: [“GRC Analyst”, “Compliance Analyst”, “InfoSec Analyst”, “ISSO”, “IR-adjacent”],
“employment”: “W-2 preferred”,
“education”: “B.S. Cyber & IA, WGU, Dec 2026”,
“certs”: [“GSEC”, “GFACT”, “Sec+ CE”, “Net+”, “A+”, “ITIL 4”]
}
verified_highlights
grep -i “receipts” career.log
241 systems / 24h
Zero-day mitigation across 11 sites at USAF Ramstein. The RMF documentation held with zero rework on the follow-up audit.
100% log retention
Splunk dashboard engineering backing full audit log retention on classified DoD programs at Lockheed Martin.
1,000+ incidents
Tier 1/2 monitoring, triage, investigation, and escalation across four years of 24/7 shift-based operations.
what_you_get
man nicholas-southern
compliance that survives audits
Full control lifecycle across NIST 800-53/171, RMF, SOC 2, and ISO 27001, built by someone who’s been on both sides of an assessment.
automation by default
Python, PowerShell, and REST API pipelines for evidence collection. Drata administration from sourcing through rollout.
operational floor time
Four years of 24/7 network defense on DoD networks. I’ve worked the alerts your controls exist to prevent.
AI-era readiness
Current, hands-on LLM red-team practice: prompt injection, adversarial evaluation, AI governance fluency.
recruiter_notes
notes –for-recruiters
15-minute intro calls welcome. I answer my own email, usually before the second coffee. For clearance-sensitive specifics, please use encrypted email. The resume PDF above is the canonical copy; LinkedIn mirrors it.