Computer Network Defense Security Analyst Resume
GA
SUMMARY:
- Extensive technical support experience with in depth expertise in end - user systems support, diagnosis, analysis and troubleshooting network system applications.
- Results oriented with a proven ability to learn and implement new technology concepts.
- Excellent communication skills acquired through progressive experience working in team environments and providing customer support
TECHNICAL SKILLS:
Operating Systems: DOS, NT, MS Win/ 95/98/2000/2003/ XP/Vista/2007
Other Applications: Microsoft Office, Outlook, MS Server 2000/2003, Visio 2002, HyperTerminal, Windows Media Stream 9, Lotus Notes, Service Desk, Polycom MGC VTC Software, Cisco Call Manager, CISCO MeetingPlace 7.x, CISCO Unity and Unity Connection, REM/Retina, Nagios, Remedy
Tools: SourceFire, Fidelis XPS, CheckPoint SmartDomain Manager, FireEye, WireShark, LogRhythm, McAfee ePO, Tivoli WebReports, Active Directory, PSTools
Hardware: Configuring, installing and maintaining/troubleshooting printers, workstations, servers, cabling, hubs, switches, laptops and UPS units, PBX telephones, CISCO Call Manager and Unity Connection 8,x
Knowledge of: Configuring, installing and maintaining servers, networking protocols, Linux/Unix, troubleshooting utilizing various network cable testing devices; Information Technology Security Policies AR25-1, AR 25-2; Fundamental understanding of TCP/IP, WINS, DNS
Key Competencies: Patching, Gold Disk and RETINA Scans, MS Office Professional., Windows 2000 and higher, and/or like enterprise administration functions.
PROFESSIONAL EXPERIENCE:
Confidential, GA
Computer Network Defense Security Analyst
Responsibilities:
- Continuously monitor the Defense Contract Management Agency’s (DCMA) networks for anomalous and nefarious activity. Conduct research using both open source intelligence sites and classified intelligence. Create and modify IPS/IDS rules in order to detect and thwart network attacks. Analyze behavioral malware reports to gain greater insight into malware infections. Perform in-depth packet analysis to identify malicious payloads, network intrusions, and data exfiltration. Manually correlate data across various security tools and created intrusion report based on findings. Participate in the creation and modification of SIEM correlation rules. Assist in troubleshooting and problem solving a wide variety of client issues
- Responsible for monitoring client networks for network security, reviewing events and alerts on a near real time basis and taking the appropriate response actions. Determine the proper fault isolation and identify the necessary corrective action(s), working closely with infrastructure engineers, information assurance engineers, and system administrators to ensure the security and availability of the network to include:
- Constant monitoring, analysis, and response to network and security events.
- Creation of technically detailed reports based on network events and alerts.
- Analyze and evaluate anomalous network and system activity.
Desktop/Asset Management Support
Responsibilities:
- Provide technical support for designated hardware and software as identified by the COR and/or COTR. This support will cover new technology as it is acquired or developed. Technical support will be required for installation, troubleshooting, and preventative maintenance on IT related equipment. Current support includes (but is not limited by):
- Asset Management of information technology equipment including the inventory of all purchased hardware and software assets. This includes all tracking of assets from receipt through disposition using a Government provided Asset Management Database (AMD). Help Desk Support for DLA Columbus database may include the tracking barcode number, end user information, asset description, and location.
- Provide hardware and software configuration of desktop and printer/scanner devices which includes setup and initialization of hardware, operating system, interfaces (user, network, and application), and standard applications. The Employee will also perform reconfigurations due to problems, performance issues, and/or requirement changes. Baseline configuration must be applied using disk-imaging utilities.
- IMACs (Installation, Moves, Additions, and Changes) of information technology equipment will include physical installation (including all cables, internal cards or chips, racks and related peripherals).
- Printer Support: The Employee shall be responsible for installation, placement, configuration, troubleshooting, and maintenance and repair where warranted.
IT Specialist
Responsibilities:
- Senior help desk personnel providing tier 1 &2 support. Provide technical support & solutions to customer’s request for assistance in resolving hardware and software problems for desktop computers, mini computers and mainframes using computer hardware, standard desktop applications or client software applications. Train end users in the use of equipment and software. Fully document all cases in call tracking software and escalate to appropriate queue.
- Experience with Windows 2008 Server Administration, DameWare, Windows XP & Vista. Utilized troubleshooting processed for quickly assessing and determining problems and escalation to subject matter experts. Provided tier 1 CISCO Call manager 4.x and 8.5 (SU3) support and troubleshooting. Provide Tier 1 CISCO Unity Connection 8.3/voicemail support and user configurations; Conducted CISCO MeetingPlace 7.x support, configuration and teleconference setup.
- Install and maintain hardware devices by utilizing remote access tools. Use reference materials and diagnostic equipment/software to identify and resolve internal system conflicts i.e. network monitoring systems such as Nagios to conduct vulnerability remediation support for over 2000 computers. Remove and replace defective hardware components; installs network/peripheral device interface cards. Perform upgrade of hardware to include memory, fixed storage and installation of network interface cards. Install and configure workstation or network operating systems, and applications software on system device. Enforce command standards for hardware and software configurations
- Troubleshot and corrected software problems to include resolving conflicts between applications, hardware and/or device conflicts and operating system faults and printers. Updated hardware and software databases to reflect installations, turn-ins, and changes in reportable software. Migrate systems from Windows XP to Vista to Windows 7. Instructed users on how to use Windows 7.
Information Security Analyst
Responsibilities:
- Accessed platforms to administer and manage user accounts such as: UNIX, Mainframe & Teradata; Process transfers and terminations for all employees’ enterprise wide. Worked on special assignments as assigned
- Administered Lotus Notes email access and create databases and distribution groups for business unit’s enterprise wise; Create and maintain user accounts via the Active Directory Management Console; Investigate and remediate virus attacks
Network Administrator/Help Desk (Intern )
Responsibilities:
- Provided 1st, 2nd, 3rd tier end user support; Maintained user workflow; Created and managed user account
- Repair/Upgrade desktop computers and laptops; Imaged and prep computers for enterprise deployment; Troubleshot network and user problems utilizing various diagnostic tools
- Utilized MMC dashboards and snap-ins for use in Windows administration; Server hardware maintenance and software updates on Windows NT/2000/03 Servers
- Designed and implemented a Symantec Migration Server; Developed a User’s Guide for the Migration Server
- Cleared and pruned printer queues using printer services for Windows, providing continuity of production