// IT Systems · Cybersecurity · Infrastructure

Isaiah Bernal

IT Systems Specialist & Cybersecurity Engineer

IT Systems Specialist and M.S. Candidate with 5+ years of professional experience in technical support and infrastructure management. Expert in managing hybrid Windows/Linux environments, implementing virtualization solutions, and automating complex workflows via PowerShell. Delivering secure, scalable, and user-focused technical solutions at the intersection of field expertise and modern academic theory.

Skills

Operating Systems
  • Windows 10/11 & Windows Server (AD, GPO)
  • Linux — Ubuntu, Fedora (CLI, services, permissions)
  • macOS — entitlement auditing, codesign tooling
Virtualization & Cloud
  • VMware Workstation, VirtualBox, Proxmox
  • VM provisioning, snapshots, disaster recovery testing
  • Managed 15+ VMs across lab and production environments
Networking & Security
  • TCP/IP, DNS, DHCP, VLANs, VPNs, subnetting
  • Wireshark, Nmap, endpoint hardening, privilege auditing
  • Firewall rules, IDS/IPS concepts, NTFS/Linux permissions
Automation & Scripting
  • PowerShell — sysadmin automation, GPO enforcement, user provisioning
  • Python — data processing, Flask apps, ML pipelines
  • Bash — Linux task automation, audit tooling, shell scripting
Enterprise Tools
  • Jira, Zendesk — ticketing and ITSM workflows
  • RDP, SSH, VNC — remote access and administration
  • Centralized log monitoring, SOC dashboards, SIEM basics

Work Experience

Cloud Windows Systems Administrator

CSUN

Feb 2026 – Present

  • Supporting enterprise Windows and cloud infrastructure through guided training and supervised operations.
  • Assisting with system monitoring, reviewing dashboards, logs, and alerts, and documenting observed issues.
  • Shadowing administrators during server maintenance, configuration changes, and deployments.
  • Creating and updating technical documentation and SOPs while tracking tasks in departmental systems.

AI Data Trainer

Handshake AI · Remote

Dec 2025 – Present

  • Reviewed 600+ system-generated outputs across multiple project cycles applying quality and accuracy criteria.
  • Maintained ~97% guideline adherence in a fully remote, asynchronous environment.
  • Completed 15–25 structured evaluations per hour while meeting accuracy and documentation standards.
  • Identified recurring inconsistencies in automated responses, contributing to improved output reliability.

Technical Systems Specialist

Independent IT Consultant

Aug 2018 – Present

  • Delivered Tier 1–2 technical support for a 50+ user base across Windows, Linux, and macOS platforms.
  • Managed full user lifecycles including automated account provisioning, RBAC, and standardized deployments.
  • Optimized virtualized infrastructure managing 15+ VMs with snapshot and validation testing for high availability.
  • Executed security-focused administration: NTFS/Linux permission audits, log analysis, and baseline hardening.

Projects

Full-Stack Insurance Quote Platform

Capstone · CSUN — github.com/ibernal1815/GuardQuote

  • Built with React, NestJS, PostgreSQL, and JWT authentication.
  • Integrated a Python ML pricing service (FastAPI, XGBoost) for premium estimation.
  • Managed PostgreSQL schemas and maintained architecture documentation throughout.

Enterprise IT Infrastructure Lab

Silverline Technologies — github.com/ibernal1815/active-directory-lab

  • Configured Domain Controller, DNS, and role-based file shares secured with NTFS and share permissions.
  • Deployed GPOs for baseline hardening (password complexity, audit settings, drive maps).
  • Automated user creation and drive mapping via PowerShell; documented troubleshooting playbooks.

SkillSynth — Hackathon Project

2nd Place · CSUN Hackathon — github.com/ibernal1815/SkillSynth

  • Built React/Next.js front-end integrated with Ollama + Pinecone retrieval and PostgreSQL user state.
  • Delivered a functioning MVP in 24 hours focused on UX and real-time interactions.
  • Documented architecture and deployment steps for reproducibility.

Linux Privilege Escalation Lab

Security Research — github.com/ibernal1815/linux-privilege-escalation-lab

  • Discovered and exploited 5+ local misconfigurations: SUID binaries, writable /etc/passwd, sudo escapes.
  • Designed 3 advanced escalation chains including setcap Netcat bind shell and writable systemd service exploits.
  • Modeled lab on red-team post-exploitation methodology to teach defenders detection opportunities.

Python Keylogger + Remote C2 Server

Security Research — github.com/ibernal1815/python-keylogger

  • Implemented a modular Python keylogger and Flask-based C2 server to demonstrate persistence and exfiltration gaps.
  • Verified 200+ keystroke events in an isolated Linux Mint VM; included automated cleanup scripts.
  • Used findings to improve defensive detection ideas: Sysmon, process baselines, and network indicators.

SQL Security Lab

Security Research — github.com/ibernal1815/sql-security-lab

  • Built two Flask apps (secure vs. vulnerable) to demonstrate SQL injection risks and mitigations.
  • Implemented 3 PostgreSQL security layers: authentication, RBAC, and Row-Level Security (RLS).
  • Executed 50+ sample queries and tracked performance via pg_stat_statements.

macOS Entitlement Audit

Security Research — github.com/ibernal1815/macos-entitlement-audit

  • Built Bash tooling around macOS codesign/plutil to extract and parse app entitlements, reducing manual audit time ~80%.
  • Analyzed entitlements from popular binaries (Chrome, Zoom, Postman, VS Code) and indexed 1,000+ plist entries.
  • Created pattern-matching rules to flag high-risk entitlements and produce remediation notes.

Education

In Progress

2026 – Present

California State University, Los Angeles

M.S. Information Systems

Los Angeles, CA

B.S.

Expected 2026

California State University, Northridge

B.S. Computer Information Technology

Northridge, CA

A.S.

2023

Los Angeles Mission College

A.S. Cybersecurity  ·  A.S. Computer Programming

Sylmar, CA

Certifications

CompTIA A+

CompTIA

  • Hardware troubleshooting, PC assembly, and component-level diagnostics.
  • OS installation and configuration across Windows, Linux, and macOS.
  • Mobile device support, networking fundamentals, and help desk best practices.

CompTIA Network+

CompTIA

  • TCP/IP model, subnetting, VLANs, routing, and switching fundamentals.
  • Wireless standards, network troubleshooting, and infrastructure design.
  • Network security concepts including firewalls, IDS/IPS, and VPN configurations.

CompTIA Security+

CompTIA

  • Threats, attacks, and vulnerabilities across enterprise environments.
  • Identity management, PKI, cryptography, and secure network architecture.
  • Incident response procedures and risk management frameworks.

CompTIA CySA+

CompTIA

  • Threat intelligence, behavioral analytics, and SOC workflow operations.
  • Log analysis, SIEM usage, and detection of anomalous activity.
  • Vulnerability management and security recommendations from scan data.

CompTIA Cloud Essentials+

CompTIA

  • Cloud service models (IaaS, PaaS, SaaS) and deployment strategies.
  • Cloud risk, governance, and compliance considerations for business.
  • Migration planning and evaluating cloud vs. on-prem tradeoffs.

ISC2 Certified in Cybersecurity

ISC2

  • Security principles, access controls, and business continuity concepts.
  • Network security, physical security, and incident response fundamentals.
  • Foundation for advanced ISC2 credentials (SSCP, CISSP pathway).