David A. Catino

Easton PA, 18045 | dac5190@gmail.com

Technical Summary

Certified CompTIA Security+ CE and CySA+ CE professional with 12+ years of experience. Specialist in identifying deep logic vulnerabilities, enforcing STIG compliance, and hardening personal infrastructure to protect enterprise endpoints.

Technical Skills

Cybersecurity: RMF, STIG Validation, Nessus, Logic Vulnerability Research, SBOM, SonarQube.

CI/CD & DevOps: Jenkins, JFrog Artifactory (NPM Caching), Docker (Secure Secrets Injection), Git.

Infrastructure: Private Cloud Orchestration, Azure Key Vault, Linux Hardening, RAID, BitLocker.

Compliance: DoD 8140 IAT Level II, NIST 800-53, OWASP Top 10, CISA Auditing Standards.

Professional Experience

IT Specialist (Federal Employee)
Internal Revenue Service (IRS) | 2024 - Present
  • Consulted on personal network security and hardware optimization for developers to ensure endpoint integrity and secure remote access.
  • Hardened local developer environments by upgrading workstations to eliminate bloatware and legacy vulnerabilities.
Senior Software Engineer (Security & Infrastructure)
B. Braun Medical Inc. | 2023 - 2024
  • Hardened software supply chain by implementing JFrog Artifactory for NPM caching and automated SBOM generation.
  • Engineered custom Linux build environments from scratch to facilitate secure builds and bypass infrastructure bottlenecks.
Web Developer (DoD Contractor)
UTRS - Picatinny Arsenal | 2011 - 2023
  • STIG Logic Research: Collaborated directly with STIG authors to identify and remediate worthless workarounds; proved critical data leaks existed in "sanitized" dev-mode environments.
  • Conducted security patching and remediation for DoD applications to ensure 100% compliance across mission-critical systems.
  • Developed custom libraries for secure file access and conducted deep-dive code reviews for high-security environments.