Information Security Engineer /vulnerability Program Manager Resume
Fort Mill, SC
SUMMARY:
- An effective, efficient, dedicated and results - driven IT strategist and visionary for comprehensive IT planning and implementation, information technology professional seeking a Senior Information Security position where I can utilize my strong analytical, detail-oriented, and interpersonal skills to align technology with company initiatives, ensure the confidentiality, integrity, and availability of information and services, improve customer satisfaction, enhance the company image, and mentor others while engaging in new challenges and learning experiences.
- Experience developing and implementing a standardized framework to identify, measure, and monitor information technology-related risks based on NIST Risk Management Framework
- Extensive experience implementing vulnerability management program
- Demonstrated capacity to implement innovative security programs that drive awareness, mitigate risks, decrease exposure, and assure availability
- In depth knowledge of IDS/IPS, firewalls, routers, end-point security, VPN, PKI, asset discovery, change management, and anti-virus
- Proven success managing information services, identifying business technology solutions to cost-effectively support business processes, improve company-wide communications, and ensure information confidentiality, integrity and availability
- Functional knowledge of COBIT, HIPAA, ISO 27001/27002 framework, NIST 800-53, and PCI-DSS, and penetration testing
- Strong project and resource management skills
- Extensive experience with Microsoft Active Directory, Group Policy, SQL, and Exchange
TECHNICAL ENVIRONMENT MANAGED/KEYWORDS:
Tenable: Nessus
Tripwire: Enterprise
Solarwinds: Orion
HP: Arcsight
Microsoft: Windows 2012/2008/2003/ operating systems, Active Directory, Exchange 2010/2007/2003 , OCS/ Confidential, SQL, Internet Information Services (IIS), SharePoint 2010, Systems Management Server, Systems Center Operations Manager, Visual Studio 2010, Hyper-V, Office 365
VMware: ESX(i), Vsphere, View.
Citrix: XenApp. Presentation Server.
Barracuda: Email Anti-spam/anti-virus, email archive appliance.
McAfee: Virus Scan, e-Policy Orchestrator, Group Shield, Ironmail Anti-Virus/Anti-spam.
Quest: Change Auditor, InTrust, VPN.
NetApp: FAS, HP Blades, HP servers, HP MSA-1000, Dell EQ-Logic, R710 serversManaged Services, Cloud Infrastructure (IAAS, SAAS)
RAPID7: Nexpose
PROFESSIONAL EXPERIENCE:
Confidential, Fort Mill, SC
Information Security Engineer /Vulnerability Program Manager
Responsibilities:
- Planned and implemented enterprise-wide vulnerability management program with an excess of 60,000 endpoints.
- Planned and implemented FIM (File Integrity Monitoring) system for PCI and other government and industry compliance-related policies.
- Participated in a ground floor SOC (Security Operations Center) inception, team building and workflow development.
- Worked with approved scanning vendor (ASV) to coordinate ASV scans and PEN tests.
- Used HP Arcsight SIEM system for incident investigations.
Confidential, Charlotte, NC
Infrastructure Technical Project Manager/Systems Engineer
Responsibilities:
- Managed technical component of all project work plans including: task definition; work estimation; resource/timing assignment.
- Assessed and advised on impact of overall project planning tasks and milestones as they related to current and planned technical topology.
- Worked with the Project Manager and Program Manager for appropriate work effort leveling of technical resources across assigned projects.
- Reviewed project QA approach and assures appropriate QA environment is available.
- Organized and ran meetings, participated in Project and Program leadership, and strategy sessions.
- Developed, managed and maintained scope, schedule and budget with respect to technical aspects of various technical project plans.
- Identified and monitored project risks and advised on appropriate mitigation strategies for initiatives with respect to the overall technical topology.
- Drove communication with functional and subject matter expert counterparts to represent technical interests in systems initiatives.
- Developed, managed and maintained technical project work plan by working with the Project Manager, including technical resource estimates, assumptions and staff availability.
- Worked with key stakeholders and users to identify and implement process improvements in the key areas of technical project management, technical strategy, communications, and vendor management.
Confidential, Atlanta, GA
Senior Consultant
Responsibilities:
- Provided consulting services specializing in Office 365 cloud migrations and hybrid infrastructure design and optimization of Office 365, Confidential 2013, and Microsoft Exchange.
- Planned and implemented Office 365 and OCS to Confidential migrations for corporations with an excess of 5000 mailboxes.
Confidential, Charlotte, NC
Senior Engineer
Responsibilities:
- Planned and implemented Active Directory, Group Policy, and Exchange mergers, migrations and consolidations for corporations with an excess of 1000 mailboxes.
- Provided onsite and remote Citrix XenApp, VMware and Microsoft Exchange/Active Directory support and analysis.
- Piloted VDI infrastructures such as VMware View.
- Harnessed relationships with clients and colleagues to understand and ensure end users IT needs are met.
- Mentored junior-level engineers and technicians.
Confidential, Rock Hill, SC
Owner/Managing Consultant
Responsibilities:
- Provided onsite VMware and Microsoft Exchange/Active Directory health checks and analysis.
- Established presence as an online retailer providing discounted consumer electronics.
- Designed e-commerce storefronts with a virtual inventory of over 30,000 items.
- Developed websites using LAMP technology (Linux, Apache, MySQL, and PHP).
- Managed search engine marketing campaigns and web site analytics (SEO).
- Built relationships with multiple vendors and service providers to provide a wide product selection and secure shopping experience for customers.
Confidential, Rock Hill, SC
Adjunct Instructor of Information Technology
Responsibilities:
- Taught courses in computer technology, database design, networking and project management.
- Developed innovative online courses in information technology using latest instructional technology solutions.
- Taught faculty workshops on information security and Microsoft Office applications.
- Wrote detailed lesson plans and training materials geared to facilitate student success.
Confidential, Rock Hill, SC
Information Technology Manager
Responsibilities:
- Planned and implemented server consolidation and virtualization initiative using VMware resulting in a hardware savings of approximately $12K every five years, an energy savings of $14K per year for the 30 servers, and an improved redundancy of mission-critical systems.
- Managed the daily operations of all IT resources, systems and services including: the College ERP system (Datatel), WebCT, IT helpdesk, web services, College computer laboratories, the campus network, and all desktop computers and related software.
- Assisted with the implementation of the wireless campus infrastructure implementation and upgrade, VOIP conversion, Datatel upgrade and SQL migration, campus-wide rebranding initiative, online electronic student services project, server virtualization, client VDI and outsourcing of student email
- Defined overall technology architecture policies, standards, and services for the College.
- Directed research on VDI (virtual desktop infrastructure) products by Quest, Parallels, Citrix, and VMware providing flexible computer labs as well as remote access to desktops for faculty and students resulting in a cost savings of $600 per desktop and an extended life cycle for existing desktop computers.
- Implemented, administered, and upgraded all servers including Microsoft Windows Domain Controllers, Citrix XenApp, VMware ESX & V-Sphere 4, Microsoft SQL, Exchange and Sharepoint servers.
- Orchestrated major software rollouts to over 1000 desktops using Microsoft Systems Management Server (SMS) resulting in reduced hands-on installation time of 80% and minimal disruption of end users.
- Provided leadership and vision by recruiting, managing and mentoring technical support staff resulting in a more efficient and cross-trained team.
- Served as information technology project team member and subject matter expert crucial to the successful implementation of college-wide IT projects including the college rebranding initiative, ERP system, VOIP, document imaging systems, and course delivery systems.
- Conducted disaster recovery, data replication, and storage consolidation functions.
- Provided opportunities for students to learn about information security and network operations.
- Streamlined user technical support needs by installing and customizing software helpdesk system that provides a centralized portal for campus-wide technical support.
- Established and strengthened relationships with vendors; negotiated contracts to provide 20-40% discounts on technology purchases.
- Reduced influx of malicious and unsolicited email by over 95% by installing and managing Secure Computing and Barracuda email firewall appliances, McAfee anti-virus/anti-spam desktop distribution systems, server-based virus detection, host-based intrusion detection systems, and Tipping Point.
- Planned and executed campus-wide transformation from legacy VAX systems to Windows Active Directory including the migration of 400 email accounts from All-in-1 to Microsoft Exchange.