Name: Stacy Rosberg
My Background
Compliance Analyst
I am passionate about ensuring compliance with regulatory requirements, analyzing and improving processes, and managing risk. I'm looking to transition 23 years of cybersecurity compliance skills to a position in the growing cannabis industry where my creativity, problem-solving skills,
and experience in regulatory compliance can be used to guide existing cannabis license holders and applicants for cannabis licenses in achieving their business objectives.

May 2019 - April 2025
Raytheon Technologies
Cybersecurity Technical Analyst
-
Assisted with implementing federal requirements that balanced cost, reputation, and compliance risks to the company.
-
Reviewed, documented, and published internal team processes to determine areas for improvement and enhance services provided.
-
Oversaw compliance efforts that ensured the company’s ability to safeguard, handle, and disseminate sensitive information.
-
Reviewed and reported impacts of new and modified government publications affecting the company’s compliance landscape.
May 2018 - May 2019
L3 Power Systems
Cybersecurity Engineer
-
Oversaw compliance updates for approximately seven programs that managed mission critical systems.
-
Drafted proposals on behalf of the company that generated approximately $400 million of revenue.
-
Generated project schedules for quarterly compliance reviews that included testing, documenting operational impacts, and applying appropriate countermeasures in a timely manner.
-
Provided training to approximately 40 engineers and program managers that discussed implementing compliance requirements using the Risk Management Framework (RMF).
January 2016 - May 2018
Blackbird Technologies
Cybersecurity Policy Analyst
-
Supervised a team of seven technical writers/policy analysts responsible for producing policies and procedures in accordance with federal guidelines, international standards, and private industry best practices.
-
Provided guidance and support answering compliance related questions associated with federal laws and regulations.
-
Designed a document database for capturing the similarities between the various compliance frameworks implemented.
January 2015 - December 2015
DYSIS
Cybersecurity Analyst
-
Performed periodic compliance reviews for five platforms to ensure they were configured to meet minimum security baselines and standards.
-
Authored, reviewed and updated job aids detailing instructions for completing daily compliance activities.
-
Performed trend analysis to identify persistent issues and drafted remediation strategies.
May 2011 - January 2015
SRA International
Cybersecurity Analyst/Engineer
-
Performed periodic compliance self-assessments using government and industry approved tools, and generated and enforced Plan of Actions and Milestones (POA&Ms) for identified risk(s) in accordance with Federal guidelines.
-
Developed and updated standard operating procedures (SOP) and policies for performing risk management, and continuous compliance.
March 2008 - May 2011
Raytheon
Information Systems Security Engineer
-
Authored, reviewed and updated compliance paperwork for 65 federal networks.
-
Revised local IA policies, procedures, and forms to meet regulatory requirements.
June 2006 - March 2008
Harris Corp.
Information Systems Security Engineer
-
Reviewed, updated, and managed compliance for 34 federal networks contributing to the agency’s ability to attain a 90% system approval rate.
-
Managed a team of 15 personnel responsible for reviewing, maintaining, and providing training to approximately 7000 employees on compliance requirements.
-
Provided monthly Quality Assurance Surveillance Plan (QASP) and Program Management Review (PMR) reports.
Experience
Education
April 2025 - July 2025
Elmira College
Certificate, Cannabis Retail Specialist
January 2026 - December 2026
Business Administration A.A.S.
Jamestown Community College