Senior Systems Automation Engineer Resume
SUMMARY:
Senior Automation Engineer/Architect and hold expertise in Linux systems and cloud engineering. Excellent problem solver and decision maker, with a detailed understanding of goals and objectives. Good understanding of current technologies, ability to handle a dynamic workload and prioritize projects. Highly motivated and enjoy learning and empowering other personnel.
TECHNICAL SKILLS:
Operating Systems: Expert in Red Hat Enterprise and Centos configuration and installation and support. Expert in administering DNS, LDAP, NFS, Postfix, OpenSSL, SELinux and AutoFS. Proficient in UNIX Solaris 8/9/10 and Ubuntu administration.
Cloud Platforms: Proficient with Google Cloud Platform. Familiarity with AWS and Confidential Cloud (SoftLayer). Proficient Red Hat OpenStack
Automation and Monitoring Tools: Puppet, Ansible, Foreman, CloudForms, GIT, Jenkins, Satellite6, svn, tcpdump, splunk, SolarWinds, Nagios, KVM, RHEV, r10 - k
Virtualizations and Storage: Proficient in VMware ESX 4.0/ ESXi 4.1, 5.1, vCenter, vMotion
Proficient in RHEV: M, RHEV, OVirt, KVM, and VirtualBox, Knowledge of NAS, SAN, CIFS for NetApp and EMC Powerpath
Networking (TCP/IP) and Security: Hands on knowledge of Network infrastructure products such as switches, firewalls and routers. Implemented VLANs, SNMP on devices to allow for network management.
Programming/Scripting, Databases and Web Services: Proficient in Apache 2.2/2.4 web servers.Experience in Ruby, PHP, Python and Bash/Shell.Proficient in MS SQL, MySQL and Oracle
EXPERIENCE:
Confidential
Senior Systems Automation Engineer
Responsibilities:
- Create/modify puppet modules to automate/manage over 9,500 RHEL5, 6 & 7 servers in three major environments in a controlled-release fashion.
- Orchestration, deployment and maintenance of RHEL systems and app software in multiple clusters across several data centers using Foreman (Kickstart, TFTP/iPXE) and CloudForms (image and cloudinit).
- Setup and build AW S infrastructure resources like VPC, EC2, S3, Security Group, Auto Scaling, and RD S.
- Use EC2 Container Service (ECS) and GKE to support Docker containers to easily run applications on a managed cluster of EC2 and GC E instances.
- Creating alarms in CloudWatch service for monitoring the servers performance, CPU Utilization, disk usage, etc.
- Implemented CIS/STIG compliant security baseline using Puppet and Ansible to manage both the RHEL6 and RHEL7 vms and hypervisors.
- Configured AWX( Ansible Tower upstream) with Docker and three containers. Configured Satellite 6/Foreman as in inventory source with AWX to manage hosts via Ansible Playbook.
- Created/ managed over 120 puppet modules and 25 Ansible Playbooks to implement the CIS security baseline.
- Deployed Satellite 6.2/6.3/6.4 with integrated Puppet and Foreman. Used Ruby to export the Foreman Host groups and host overrides by utilizing Foreman and Satellite6 REST API.
- Installed, configured, and upgraded Satellite to version 6.4. Migrated over 9000 servers from Satellite 5 to Satellite 6 with a custom ruby script utilizing Foreman and Satellite APIs.
- Designed and implemented a three-node clustered ActiveMQ/MCollective infrastructure in order to run parallel jobs for the puppet/foreman infrastructure.
- Implemented a Continuous Delivery pipeline with Jenkins and GitLab.
- Configured gitlab server and migrated project repositories from svn to gitlab. Managed puppet environments using r10k.
- Upgraded Foreman from version 1.3.1 to 1.6.12 to support current version of puppet and server deployment on RHEV 4.1/4.2 infrastructure and CloudForms.
- Upgraded Puppet Master Servers running with passenger to Puppet Server 1.2.1 version load balanced with haproxy for two major environments.
- Assists in puppet code review and after-hour puppet code promotions to production environment via Jenkins Pipeline.
- Assists in the migration effort, release findings, and support the transition to a production environment.
- Assisted in designing Red Hat OpenStack Juno using Red Hat OpenStack installer with multiple controllers, and compute nodes backed by Ceph storage.
- Provides OpenStack and puppet training for users/customers and Operation teams, and authored SOP as needed.
- Served as an escalation point for Puppet, Foreman, CloudForms and OpenStack issues.
- Assisted in troubleshooting and automating RHEV-M (Red Hat Virtualization) infrastructure hosting several thousand Red Hat VMs.
- Assist Cisco UCS infrastructure team in overnight patching/upgrade drivers utilizing puppet and Foreman.
Summary: Ansible, Docker, OpenStack, Puppet, Ansible, AWX tower, MCollective, ActiveMQ, gitlab, Jenkins, SVN, LDAP (IPA), foreman, GIT, r10-k, satellite, sat6, CloudForms, IDM, FreeIPA, RHEV, RHEV-M, Neutron, Nova, RHEL 7, IPTables, VMware, RHN, Security Hardening, Ruby, Python
Confidential
Cloud Linux Security Engineer
Responsibilities:
- Managed several thousand servers and ensured high-availability and scalability across multiple worldwide data centers.
- Deployment and maintenance of Linux systems and app software in multiple clusters across several data centers
- Administers the virtual Firewall (LINUX), Brocade Vyatta and Load balancing ( Confidential Websphere Edge Components) devices for the Confidential Cloud Services.
- Deploy and configure virtual servers from template, cloning from a VM and create Port group in VMWare environment.
- Experience with Red Hat Satellite, Kickstart, PXE, DHCP, DNS, Configuration management, monitoring tools.
- Proficiency with source control, continuous integration and testing methods (svn, and GIT).
- Initial setup of Red Hat IDM (IPA) to centralize Linux servers and network device authentication.
- RPM package creation for proprietary software. Red Hat Package Manager spec files creation.
- Manage Red Hat Satellite (RHN) server for patching and deployment (bootstrapping, Kickstart).
- Advised on best practices and spearheaded an upgrade project from older Linux distributions to CentOS/RHEL6 and updated the puppet module for RHEL7 baseline.
- Maximizes server performance by monitoring performance proactively; troubleshooting server problems and outages; scheduling upgrades; collaborating with team members and vendors server and datacenter optimization.
- Automating server builds, installing and configuring DNS, Apache, Mail servers, IPTables (Firewalls), PHP etc.
- Designed and implemented a secure (TLS based) centralized log server.
Confidential
Linux Systems Engineer
Responsibilities:
- Managed multiple infrastructure UNIX/LINUX OS (RHEL, Ubuntu, Solaris servers) for multiple government and commercial clients. Includes web, DNS, mail, load balancer, FTP, proxy, and file servers.
- Worked in project teams focused on system high-availability, business continuity, data replication, virtualization, and online/near-line data archiving.
- Responsible for installing, configuring, and patching a variety of LINUX/UNIX and Windows applications; including Oracle, CALEM, Tripwire, GIT, OPSware, NetBackup client.
- Administered over 600 Red Hat Enterprise Linux 6/5 and Solaris 9/10 servers
- Updated and modified current BASH scripts
- Standardized Red Hat Kickstart configuration files for more consistent system installation.
- Configured EMC/NetApp storage and present over Fibre Channel with multipathing and LVM.
- Created and modified existing Linux LVM storage partitions, and added additional drives to increase capacity, mirroring of volume groups used hot spare Physical Volume.
- Migration of Logical volumes across PVs in same VG, Copy LVs between VGs.
- Create/modify zones, ZFS filesystems on Solaris Systems.
- Setup and manage sftp chroot jail access for outside vendors.
- Authored standard maintenance procedures (SMPs) for complex LINUX changes and update already existing procedures.
- Experience with DNS, scripting, network protocols, HTTP, web server applications and backup applications Veritas NetBackup.
Confidential
Senior Systems Engineer (LINUX/Windows)
Responsibilities:
- Responsible for supporting financially significant 400+ Red Hat Enterprise(running Oracle, application and file servers), Windows 2003/2008 servers running IIS, Active Directory, DNS, and DHCP.
- Migrated several Solaris 10 file servers to a Red Hat Linux file server running Samba 3.x with LDAP authentication cutting delivery and storage costs by 25%.
- Improved system security by limiting users using unjustified root access. Built optimized and patched Linux kernels and mission-critical daemons with CPU optimizations to provide functionality not available in stock kernels and software, performance and reliability.
- Experience in developing Network infrastructure technologies like DNS, NFS, Samba, CIFS, DHCP, SMTP, postfix, Sendmail, FTP, SSH, rsyslog and web servers like Apache, HTTP & Tomcat.
- Responsible for installing and configuring third party software such as HP Quality Center ALM11, SAP Business Objects XII. Responsible for Web server (JBOSS) and Application server installation, support and performance monitoring for all applications running on the company’s Website.
- Configured Apache 2.2, ColdFusion; managed ColdFusion security sandboxes; managed SSL certificates; maintain and enhance application and server performance monitoring using Cacti, Nagios, and shell scripts.
- Developed specifications and business requirements for new application development and hosting environment based on VMWare Virtual Infrastructure; revised procedures for provisioning servers and application platforms.
- Setup, configured and administered NIS+.
- Worked with Salesforce developers on moving a Sales Credit processing project on to the cloud.
- Assisted in planning and testing failover and HA tests in semi-annually basis as it is required by the SOX security audits.
- As a SOX requirement, installed and configured Cygwin to use secure ftp (sftp), scp between Windows and Linux servers.
- Execution and maintenance of internal SLAs developed with business stakeholders.
- Upgraded several Windows 2003 servers to windows 2008.Converted several Physical machines to Virtual machines using VMware vCenter Converter.
- Closely worked with DBA Team for Oracle Installation and Oracle Performance Tuning.
- Managed the daily activities of configuration and operation of business systems on a clustered environment.
- Worked as a member of System Security adhoc committee for financially-significant Windows and Linux/UNIX servers (gather audit materials, document procedures, and analyze the data from a SOX Security perspective, tools used DumpSec, Tripwire, Symantec AV).
- Participated in Change Review Board for all changes or additions to the standard configuration within the organization.
- Verify backups and error logs on the servers and troubleshoot any failures or alerts, open trouble tickets if necessary to work with technicians from other departments.
- Responded to Remedy and Remedy Force trouble tickets assigned to me and fix any issues promptly.
Confidential
IT Specialist
Responsibilities:
- Primarily responsible for supporting the network infrastructure, including Database Server(SQL 2000/2005 server) and Windows 2003 servers running Exchange, IIS, Active Directory, DNS, DHCP.
- Monitored and maintained over SQL Servers (2005 and 2000) in Production, QA, Test and Development Environments.
- Managed Exchange 2003 server and spam firewall filters.
- Provided security measures, maintained patch management with Windows Server Update Services (WSUS) and SMS.
- Installed and configured brand new servers, and desktops computers, switches and routers.
- Configured and implemented routing protocols like EIRGP, OSPF, and RIP
- Recommended and implemented complete Technical Support solutions.
- Execution and maintenance of internal SLAs developed with business stakeholders.
- Good understanding and implantation of SDLC
- Determined appropriate course of action, and conduct repairs, modifications, and upgrade internal components and peripherals as needed.
- Administered user and group account and wrote VBScript & Windows Scripting Host and implemented DFS etc.
- Monitor, maintain, and implement backup and security for Windows 2003 based environment.
- Assisted deployment and administered Symantec Antivirus Server for financially-significant Windows production servers.
- Planned and implemented disk-to-disk-to-tape backup and recovery using Symantec (Veritas) 11d.
- Developed and designed web application (apait.org) using three-tiered architecture
- Implemented Web User Interface, Business logics, and Data Access Components.
- Implemented with VB.NET, ASP.NET, ADO.NET and SQL Server 2000 as back-end database.
- Designed and implemented relational database and stored procedures.
- Reviewed and provided suggestions on existing network administration documentation, policies, and processes.
Confidential, Alexandria, VA
Junior Systems Administrator
Responsibilities:
- Installed, Configured desktops and assist building a Domain, Active directory, SQL server 2000, MSSQL server 2005.
- Supported and maintained of all in-house systems networking, Access points, wireless devices, handheld devices (treo, blackberry, etc).
- Implemented SNMP on devices to allow for network management
- Implemented Network Migration from RIP to OSPF.
- Configured Cisco Routers (2500, 3000, 4000) using RIP, IGRP, OSPF, EIGRP
- Configured Cisco Switches (5000, 3524, and 2900)
- Supported Active Directory infrastructure including Group Policies, Domain Controllers and core network services such as DNS.
- Implemented best practices systems and application patching procedures to maintain a consistent and secure environment.
- Maintained systems backup procedures, policies and practices to ensure that business System Level Agreements are met for production systems and data.
- Monitored all servers for hardware and application performance issues for optimization, troubleshooting and growth.
- Provided End-User support in all Microsoft Applications, Setup a small and medium scale network, cabling.
- Responsible for troubleshooting and configuring e-mail clients, web browsers and proprietary office applications.
- Performed troubleshooting, optimization, system health monitoring, virus removal, software installation, drivers update and system updates.
- Troubleshoot and repair PCs, Laptops and HP Laser printers in a network environment.
