Senior Devops And Cloud Architect/engineer Resume
Torrance, CA
SUMMARY
- Amazon AWS Certified - Architect Associate, SysOps Associate, Developer AssociateI am a driven, self-motivated individual with over 20 years of experience designing and managing mixed technology solutions in organizations ranging from small sizes up to high availability, enterprise-class technology deployments in large deployments.
- I specialize in using the latest open-source technologies and designing high performance, highly available, cost efficient solutions to leverage technology in today’s DevOps/Cloud environments.
- My career has given me many opportunities to hone my problem solving skills from a technical as well as procedural perspective.
- I have leveraged my creativity to architect pragmatic engineering solutions to align with business requirements and maintaining fiscal viability as well as developing and improving processes and procedures.
TECHNICAL SKILLS
- System/Infrastructure Architect
- Linux (LAMP) - RedHat, Debian
- DevOps - Jenkins, Git, SVN
- Sun Solaris, IBM AIX, HP/UX
- Networking - Firewall, CDN, WAF, etc.
- Virtualization - VMWare, KVM, Xen
- Database Technologies - MySQL, PostGreSQL, MSSQL, Oracle
- Cloud Services - Amazon AWS, MS Azure, Google Cloud and Rackspace.
- Management
PROFESSIONAL EXPERIENCE
Senior DevOps and Cloud Architect/Engineer
Confidential, Torrance, CA
Responsibilities:
Responsible for new AWS cloud projects and ongoing deployments of mostly java applications in Apache/Tomcat solution stacks, as well as a cloud migration (lift and shift) project to move the remaining servers and applications from on-premise to AWS. We perform over 5,000 deployments per week onto 1,000s of server instances across many AWS accounts supporting the Toyota brands websites and applications in a multi-tiered (n-tier) architecture; CDN (Akamai/Cloudfront), Load Balancers (ElasticLoadBalancer, F5 on premise), Web Application Firewall (WAF) SaaS service (Imperva), cache layers (ElastiCache/EHcache), origin servers, database servers/search indexes (MySQL,Solr, IDOL), etc.
Applications and configurations are deployed with Jenkins/Gitlab and Teamsite into Elasticbeanstalk environments incorporating RDS (MySQL), ElastiCache, API Gateways, Lambda functions, Cloudfront, S3, and Customer Gateways using VPN and Direct Connect. I created many Cloudformation templates to create entire VPC environments, and scripts to leverage the Amazon CLI for creating all of the services mentioned above as well as ebextensions for ElasticBeanstalk environment configuration. I mentor the junior system administrators and I contribute prolifically to the documentation system (mediawiki). I am involved in every proof of concept project, and I am currently working on upgrading the DevOps workflow to a fully automated CI/CD model and migrating from ElasticBeanstalk to Docker. Other tools we use include New Relic, Foglight, Dome9, Duo Security and Azure AD for federated authentication with MFA.
Systems Manager/Administrator/Architect
Confidential, El Segundo, California
Responsibilities:
I managed the IT department for a small sized company that contracts with larger companies (Fortune 500/1000/2000 ) to provide financial planning education for their employees. My role was to design, build, deploy and fully support several production datacenters both physical and virtual, as well as support the users and the office technologies. I managed all policies and procedures, including writing any documents and manuals as needed. I wrote most of IT related documents to conform to the various IT standards for compliance (ISO/IEC/NIST). This includes a complete set of policies covering acceptable use, security, disaster recovery/business continuity, etc. I was required to conform or align with international standards for security, system architecture, personal information management, and other areas involving the handling of data and transition thereof.
I used open source virtualization in the production datacenter, using KVM and OpenNebula, running all linux (LAMP/tomcat) virtual machines on linux host systems. The systems were either hand-built from bare metal, or configured and procured from the best vendors. I also designed/deployed/supported several cloud-based datacenters in Amazon and Rackspace in several of their respective datacenters around the US. I used many of the Amazon AWS services, including: EC2, RDS (MySQL), Route53 (DNS), CloudFront and Elastic Load Balancers with SSL termination.
I also supported ~25 employees, both in an office in confidential, as well as many remote users around the US for all of their technology needs. I recently migrated our MS Exchange email from our office datacenter to Office365 w/ Sharepoint and I fully managed those services.
The SaaS product was developed entirely in-house and I worked closely with the developers to provide them with the systems needed for their work as well as building production systems as needed (standard LAMP environments, plus tomcat, mongodb). I built all systems to align with ISO 27001/17799 standards where applicable. I have deep knowledge of security auditing and monitoring, and I have created several systems using industry standard technologies to manage these areas (Nagios/Munin).
I was responsible for the entire IT budget, managing all vendor contracts, all company billing and finances (except payroll). I was also very involved with the hiring process, training, and general business development. I am often called into prospective client engagements to provide the technical voice for our sales efforts.
Sabbatical/Travel/Self Employed
Responsibilities:
I spent most of this time traveling, and then I started using Amazon cloud services for several customers to establish business websites. This was also when I relocated from Seattle to Los Angeles.
CIO/Systems Manager/Systems Architect
Confidential, Redmond, WA
Responsibilities:
I was responsible for all IT operations, both for the corporate network as well as the production and development networks and systems. The development environment consisted of a VMWare server with ~20 guest systems, mostly linux (standard LAMP stack, plus Perl). I supported both linux with Oracle as back-end database, as well as MS Windows Server with MS SQL as the back end technology. I created and supported both environments for the development staff to use, as well as supporting several client installations. Redhat, Debian, Ubuntu, VMWare, MS Windows, Windows XP and Windows Vista were all fully supported entirely by me in the various areas of the company. Our clients were mostly hospitals and banks, and the nature of our service mandated a very robust system to provide emergency procedures in the event of complete catastrophic failures. Complete expertise of disaster recovery and business continuity was the foundation of knowledge used here. My last role provided the formal education and the experience in developing policies and procedures for DR.
UNIX Systems Architect/Systems Manager
Confidential, Seattle, WA
Responsibilities:
I was the Systems Architect/Systems Manager for all the IBM RS/6000 P-series servers running AIX 4.3 to 5.3, Shark-ESS SAN (now retired), 3PAR SAN, Sun Solaris, RedHat AS 2/3/4 (standard LAMP stack), HP/UX and VMWare ESX Servers, as well as Administrator for approximately 100 Microsoft 2000/2003 servers, including Exchange 2003, Active Directory, multiple Print Servers, and more than 8,000 MS Windows/Mac clients. I was also the Tivoli Storage Manager (TSM) Admin (on AIX and an IBM 3584 tape library), as well as admin for: Ariel document server, WhatsUp Pro monitoring server, Ikakura/Reddfish listserver, PCounter, all license managers (FlexLM, SentinelLM, etc). Several noteworthy accomplishments were creating a load balanced web front-end servers for the ERP system, a complete UNIX systems refresh that resulted in a huge savings, and rolling out a complete VMWare solution on a new SAN to virtualize nearly half the servers in the data center.
For systems design/building, I am able to accurately gather the pertinent information about the requirements and then intelligently design a system to meet those needs in a way that is efficient and economical. I am truly vendor agnostic and I am comfortable with any technology. My solutions address the technical as well as the business requirements.
Being the custodian of all the data for the University from its 125 year history, I was responsible for the disaster recovery and business continuity. I was trained formally by IBM and then developed the entire set of policies and procedures.
Systems Architect/Systems Manager
Confidential, Seattle, WA
Responsibilities:
I was the Systems Architect/Systems Manager for all of the video/audio streaming technologies used for sales demonstrations. This includes being responsible for the availability and performance of ~80 systems (all linux, standard LAMP stack) around the US in 6 cities. I provided tier 2 and 3 support for server and domain related issues. This included producing documentation for the installation, administration and use of the remote access provided by Confidential to ~120 users. I provided training for using VPN to access to the Confidential network remotely, and performed tier 2/3 support for all issues pertaining to remote access. I helped to develop processes around deploying firewall/routers for secure VPN access from users' homes, and educating users on its use and security related issues. I worked closely with a developer to design and build the custom systems used, and created a lab for testing and monitoring of the various systems, and created a graphical interface for general users to use for managing the video conferencing connections. I documented everything and automated all the processes with BASH scripting. I managed the RSA server used for 2 factor authentication into the network. I acquired intimate knowledge of security protocols and technologies and received formal training on RSA security token server and RSA Keon.
I was also involved with the company getting an ISO certification. This involved creating policies and procedures for operations, security, disaster recovery, etc. and documenting everything to comply with the ISO standards.
Technical Support
Confidential, Seattle, WA
Responsibilities:
At Confidential (then acquired by Confidential ), I performed technical support using all mediums: phone, IRC-chat and e-mail. I supported all platforms and applications. And was able to resolve the most difficult problems escalated to me from other techs. Here I was trained extensively on internet protocols, services, etc., from initial browser request through all TCP/IP communication. I supported any application that worked on the internet and could troubleshoot any operating systems (Windows/Mac/linux) or technology at the time.
Sales/Support/Engineering
Confidential, Seattle, WA
Responsibilities:
My duties included sales and customer service as well as performing troubleshooting and custom system building for special applications. Here I learned all about computer hardware, OS installation (all versions of Windows, linux, OS2), drivers, peripherals, etc. I regularly built systems from the ground up and set up networks for individuals and businesses.
General Manager/Sales
Confidential, Waynesboro, VA
Responsibilities:
This was a family business where I was the General Manager for 2 locations, as well as specializing in antique Harley restoration and custom modifications and fabrication.
