About Me

Who I Am

I test security controls at DoD classified facilities and write about 200 findings reports a year. That work has taught me documentation, standards, and clear briefings. I am moving into IT and cybersecurity, and I build and document hands-on labs in help desk ticketing, Active Directory, Azure, and vulnerability management. I hold an active TS/SCI clearance and the GIAC GSEC, GCIH, GWAPT, and GFACT certifications, and I am completing a B.S. in Cybersecurity at SANS Technology Institute.

Skills

What I Do

IT Support

Windows 10/11 and Windows Server troubleshooting, Active Directory accounts and permissions, DNS and DHCP, osTicket ticketing, and clear communication with end users.

Cloud & Infrastructure

Microsoft Azure (VNets, NSGs, Bastion, Key Vault, Entra ID), Microsoft Sentinel and Log Analytics, TCP/IP, VLANs, OPNsense and pfSense, VMware and VirtualBox.

Security & Compliance

NIST SP 800-53 and RMF, DISA STIGs, Tenable Nessus scanning, ICD 705 control assessment, findings reports, and POA&M support.

Projects

IT & Cybersecurity Projects

IT Support

osTicket Help Desk Ticketing System

Installed osTicket on a Windows 10 VM in Azure with IIS, PHP, and MySQL. Set up agents, departments, teams, help topics, and SEV-A/B/C response-time SLAs, then worked example tickets from intake through resolution.

Active Directory & DNS in Azure

Built a Windows Server 2022 domain controller and joined a Windows 10 client to the domain. Bulk-created users with PowerShell, controlled folder access with security groups, and traced a DNS problem to the client cache.

Hardware Firewall & Network Build

Installed OPNsense on bare-metal hardware, assigned interfaces, configured LAN and DHCP, and set up a managed switch and wireless access point.

Cloud & Infrastructure

Azure SOC Honeynet

Captured a 24-hour baseline of 1,200+ malicious events against exposed Azure VMs, then hardened the environment with NIST 800-53 controls: NSGs, private endpoints, Key Vault private links, Azure Bastion, and Defender for Cloud. Security events dropped 85%.

Network Traffic Analysis in Azure

Captured ICMP, SSH, DHCP, DNS, and RDP traffic between Windows and Ubuntu VMs in Wireshark, and blocked then restored ping with a network security group rule.

Security & Compliance

DISA STIG Remediation

Wrote PowerShell scripts that fixed 10 failed DISA STIG checks on Windows 11, then confirmed each fix with registry checks and Tenable re-scans.

Vulnerability Management with Tenable

Ran authenticated Tenable scans on Azure VMs, ranked findings by CVSS severity, and fixed them in rounds with PowerShell and Bash: outdated software, insecure protocols and ciphers, and guest account permissions.

Threat Hunt: Unauthorized TOR Use

Traced TOR browser use from download to outbound connection with KQL queries in Microsoft Defender for Endpoint, and mapped the activity to MITRE ATT&CK.

GET IN TOUCH

Contact Me

contact-img

Loughton Bennett

IT & Cybersecurity · Active TS/SCI

Connect with me via Linkedin, email, a phone call, or leave a message here.

Phone: +1 910 999 7409 Email: loughton11@yahoo.com