Cyber Security Consultant Resume
SUMMARY:
- Broad knowledge of hardware, software, and networking technologies to provide a powerful combination of analysis, Implementation, and support. Experience in system and network administration and engineering, hardware evaluation, systems and network security, Incident analysis and recovery.
- Provide network, systems, and security experience, knowledge, and solutions in a system and network - diverse environment. Protect confidentiality, integrity, and availability of information and information systems. Learn, lead, mentor and share.
- Highly experienced with proven track record in identifying new security threats by continual monitoring, penetration testing, vulnerability assessments and log analysis.
- Experience in all areas of System Development Lifecycle(SDLC)
- Proven Information Assurance and Subject Matter Expert (SME)
- Good knowledge of FedRAMP and C&A processes
- Experience in writing information security management documentation including Enterprise Security Policy and SSPs.
TECHNICAL SKILLS:
Technologies: Virtualization & hypervisors, VMware, VSphere, Oracle Virtualbox, Xen. Cloud Computing, Amazon Web Services (AWS), Microsoft Azure, Google Apps, PaaS, IaaS, Active Directory, Big Data.
Compliance Experience: FIPS, FISMA, PCI-DSS, HIPAA
Security Frameworks: ISO 27001, NIST SP 800-53, FedRamp
OS: Unix, Solaris 10, 8, Linux,FreeBSD, Windows, Redhat Enterprise/Fedora Linux, Ubuntu, Debian, OpenSuse, AIX, Android
Hardware: IBM Xseries Servers, Dell Servers, Sun-Fire-V240, V210, V480, V100, X4100, X4200, Cisco Pix & ASA Firewall, Cisco Routers and Switches, F5 load balancers, Thunderstone Search Appliance
Software: VMware Esxi and Workstation, Virtualbox, Vsphere, McAfee Foundstone, Solarwinds SIEM, HP WebInspect, OWASP tools, AppDetective, Saint, Tenable Nessus, OSSEC HIDS, Websense, Nagios, Puppet, Ansible, Splunk, Sourcefire Snort, IpTables, IPF, Nmap, Netcat, Tcpdump, Nikto, Paros proxy, HAProxy, WebScarab, Wireshark, Ethereal, Metasploit, Netbackup, Apache, Squid, Varnish Reverse proxy , MySQL, Oracle, MSSQL Server, Git, CVS, Dot Project, Solaris Security Toolkit, Asterisk VoIP server, Tomcat, Windows Sharepoint.
Languages : Python, Ruby, C, C++, Java, Perl, PHP, Assembly, HTML, Bash, Android.
Design Programs: Mentor Graphics, Matlab, PSpice, Verilog, VHDL.
PROFESSIONAL EXPERIENCE:
Confidential
Cyber Security Consultant
Responsibilities:
- Prepared FedRAMP SSPs for Cloud Service Provider ( Confidential )
- Implemented a replicable and quick-deployable development environment using Virtualization technologies like Vagrant, VirtualBox, custom stacks and automation tools (Ansible).
- DevOps task automation in AWS
- Created technical reports and risk assessments for Cloud based applications and infrastructure
Confidential
Principal Engineer
Responsibilities:
- Automated security controls, data and processes to provide better metrics and operational support.
- Planned and managed deployment of applications using automation tools on Windows and Linux systems. (Puppet, Ansible)
- Architected system migration and implementation plans for operating systems and applications.
- Used public clouds to implement complex systems.
- Delegated tasks and mentored junior members of the team. Worked with other groups within the organization and outside vendors in implementing tasks and projects.
- Ensured high-availability of Confidential ’s public-facing websites by making sure all services and resources are available.
- Ensured security posture of operating systems by making sure they are security compliant.
- Implemented periodic review of Access controls.
Confidential
Principal Security Analyst
Responsibilities:
- Provided expert-level support in all security issues, including research, studies, requirements, analysis, assessments, planning, development, and maintenance.
- Gathered and organized technical information regarding client’s missions and goals and needs, existing security products, ongoing programs.
- Agency’s Subject Matter Expert (SME) on SIEM tools. Implemented and migrated Solarwinds Log and Event Manger (LEM) tool from a physical environment to a virtualized environment.
- Conducted vulnerability and compliance scans using Tenable Security Center, SAINT, AppDetective and HP Webinspect.
- Worked as a member of Security Operations Center and Information Security in Incident Response team.
- Analyzed and documented findings in accordance with NIST 800-53A vulnerability management guidance.
- Analyzed and made changes to Active Directory Group policy for regulatory compliance and maintain best practices.
- Installed and Maintained Virtual Machines (VMs) using VMWare Vsphere, VmWare Workstation and Oracle Virtual Box. Allocated resources for virtual machines and monitored performances. Created user accounts on Linux machines. Installed packages, patches and applications. Compiled and installed applications both manually for source and using Linux binaries.
- Administered Linux servers of various flavors: OpensSuse, Solaris 11, Ubuntu, Fedora, Backtrack linux. Administered user accounts. Downloaded and installed packages from repositories, Installed patches.
- Installed and Configured Apache httpd, PHP, Amazon EC2 instances.
- Planned, deployed and configured OSSIM tool for network-wide monitoring.
Confidential
Systems Engineer
Responsibilities:
- Participatd in Information Assurance Certification and Accredition (C&A) process effort - Hardened Servers and implemented, assessed and monitored security controls.
- Implemented and maintained IDS/IPS for the client - review logs and reconfigure IDS/IPS settings.
- Daily Management, Control, & Support over Security System used on Sun Solaris, Redhat Enterprise 6, Windows XP,Vista, Firewall, Servers
- Deployed, Supported and Administered Cisco Pix 525 and proxy servers
- Worked in a team providing 24/7 support.
- Conducted comprehensive evaluations of security controls and analyzed risk of system operations.
- Conducted the Ongoing reviews of all vulnerabilities for key systems - Review security patches for all affected systems.
- Performed periodic vulnerability scanning client-owned systems.
- Implemented centralized documentation system to enforce structured development and provide recovery.
- Implemented network-wide monitoring system of all servers in operation with Nagios and OSSEC.
- Lead for incident response -- handled isolation, determination, correction, and communication.
- Planned and prepared technical reports on new system integration into Company's existing networks.
- Created procedures for system security audits, vulnerability assessments.
- Created Data backup and restoration plans and procedures.
- Selected and implement ed appropriate security controls to ensure FISMA & NIST 800 compliance of IT security of Systems and Facilities owned by client.
- System Administration support of Sun X4100, X4200, V240, V210, V480 servers running Solaris 10 & 8 and Linux.
- Administered DNS, Remote access server and Unix user accounts.
- Responsible for capacity planning, including allocating storage, providing hardware and software redundancy, and planning future expansion requirements.
Confidential , Washington, DC
Senior Systems Engineer
Responsibilities:
- Responsible for all aspects of local network administration and security.
- Vulnerability Assessment and Management
- Implemented quality of service (QoS) in challenging connectivity environments such as VPN, satellite, and multi-tenant LAN facilities.
- Managed DNS services.
- Ensured security compliance of systems using guidelines from NIST 800 publications
- Used tcpdump and Snort IDS/IPS for Intrusion detection.
- Manged User accounts on Unix and Windows servers using Active Directory Tools and command line. Applied patches.
- Administered Firewalls.
- Monitored and managed system processes.
- Managed DNS services.
- Managed and Deployed Hospital Emergency Operations center’s Voice over IP network and PBX system with Fedora and Asterisk.
- Researched new hardware and software technology.
- Liaised with vendors.
Confidential, Lorton, VA
Systems Administrator
Responsibilities:
- Implemented periodic review of access controls.
- Managed Confidential on Redhat IPTables and Linux Systems.
- Managed server backups on Veritas Netbackup .
- Analyzed log files and Core dumps.
- Administered DNS,Unix servers and Windows Active Directory objects.
Confidential, Ashburn, VA
Unix Systems Administrator
Responsibilities:
- Administered 500+ nodes of SunOS workstations and NFS servers as part of a team. Troubleshot, configured and maintained user workstations and NFS servers. Monitored network and troubleshot network problems.
- Administered workstation configuration and connectivity to servers, databases, and applications.
- Implemented system security measures and maintained Confidential of Unix servers and IPFilter firewalls.
- Installed Solaris with Jumpstart
- Managed Startup and shudown scripts
- Installed patches and upgrades.
- Monitored and managed processes.
- Managed and configured backups of Solaris servers.
- Managed and troubleshot Solaris LP print services.
- Managed Swap spaces and File systems on Solaris.
- Analyzed log files and Core dumps.
Confidential, Reston, VA
Systems Administrator
Responsibilities:
- Administered windows and Unix based computer systems and networks on contract assignments.
- Troubleshot workstations and user applications. Monitored network connectivity, installed patches and upgrades.
