Infrastructure Architect Resume
SUMMARY:
- More than 20 years of practical experience in the fields of Network and System Engineering.
- Extensive experience in architecture, design, migration and development of complex networking environments and applications.
- Experience in implementing complex solutions from concept to completion stages.
- Extensive experience in infrastructure management including: installation, migrations and upgrades of Microsoft, UNIX, Linux systems.
- Subject matter expertise in Active Directory, Exchange, and Cisco routers implementation, Quest/Dell Migration Tools.
- Combined with solid technical experiences and unique hands on approach
- Possesses the necessary experience to accomplish most dynamic and challenging tasks.
TECHNICAL SKILLS:
Cloud Computing: Microsoft Azure, Microsoft O365, Amazon Web Server (AWS)
Applications: SQL 7.0 - 2008, MS Office (97-W2K13), Genesis 2000, Attachmate, CorelDraw 8-11, Quick Books Pro, Lotus SmartSuite, Backup Exec 8.5-9, Quest Migration Suite 8.9, Symantec Ghost Suite 11, IDEAL Administration Suite 6.5, Belarc - BelManage, NETPRO, TOAD (database), Hyena, AdRem Server Manager 5, R-Studio Undelete, Universal Imaging Utility, Beyond Compare, MS USMT, MS Anitgen 9 SP1, Symantec Enterprise Antivirus(SAV-10.x,SEP-12.0), Safeboot
Windows Operating Systems: NT, Windows 2003, Windows 2008 R2, Windows 2012, Server 8, Windows XP SP3, Vista-SP 2, and Windows 7, 8, 10 and MAC OS, Linux SUSE10
Network Applications: Active Directory 2003-2012, PowerShell, DNS, WINS/Global Names, MS Exchange 5.5-2013, Novell 5.1-6.5, AT&T Mail, GroupWise 5.5-6.5, PC MS ISA 2006,, IIS 4-5, VAS/QAS, VMware - vSphere 5.1, VDM, SCCM 2007/2012, vServer, HP Open View, Dell Open Manage, Clustering, NetApp, OpenSSH, Quest Active Roles and PTG, Quest Migration Manager 8.10, Quest NDS Migrator, Quest Coexistence Manager for GroupWise, Quest Migrator for GroupWise, EMC VNX5300, RSA SecureID, ADFS, PKI, and CA, Citrix, Websense Triton
EXPERIENCE:
Infrastructure Architect
Confidential
Responsibilities:
- Confidential migration from Functional Level 2003 to Functional Level 2008.
- User migration from source domain to target domain within one forest.
- Green Field target environment build-out
- Migration of Active Directory Certificate Services from Windows Server 2000 to Windows Server 2012
- Backing up a CA database and private key / Removing the CA role
- Adding the CA role / Restoring the CA database and configuration on the destination server
- Additional procedures for failover clustering
- QC the migration after migrating Windows 2012 R2
- Verifying certificate enrollment / CRL publishing
- Perform Post-migration tasks
- Upgrading certificate templates in Active Directory Domain Services ( Confidential DS)
- Restore Active Directory Certificate Services ( Confidential CS) to the source server in the event of migration failure
- P2V Physical Certificate Authority systems to VMware vCenter for proof of concept testing
- Manage ADMT tool migration.
- Plan, design, test, implement, troubleshoot, recommend and schedule improvements, upgrades and repairs to the Active Directory domains-Deploy Group Policy objects.
- Manage User account and workstation migration in single forest/multi domain infrastructure.
- Perform migrations and manage trusts and integrations with enterprise systems
- Utilize PowerShell to manipulate and/or report on multi domain objects efficiently
- Produce written documentation for proposals which best describe solutions per “Best Practices” (ITIL)
- Migrate internal DNS environment.
Sr. Cloud Engineer
Confidential
Responsibilities:
- Provide troubleshooting expertise for virtualization performance (Citrix) and other issues.
- Troubleshoot DNS, WINS, DHCP and LDAP compliant directories within O365, Azure, and AWS.
- Management of authentication and authorization services; e.g.; Confidential, ADFS, SAML, LDAP & the backend associated APIs that connect various messaging, cloud and social platforms.
- Support network, system and application security hardening, penetration testing, continuous monitoring, and support of policy.
- System Monitoring Tools, like Cloud Watch, Solarwinds, etc. extended into AWS, Azure and premise based systems for a single enterprise and provide analytics to various stake holders.
- Provided technical architectural support for design and runbook creation for deployments and migrations from Windows 7 to Windows 10 systems.
Infrastructure Architect
Confidential
Responsibilities:
- Conduct a network pain point analysis and security review from demark to endpoints.
- Create an internal network to support a Microsoft Hyper V infrastructure.
- Active Directory design and implementation with utilization of best practice standards to ensure ITIL standards.
- Implantation of Websense Triton for filtering spam, viruses, and other undesirable or harmful email content from entering the network, and contain sensitive or damaging email content from leaving.
- Configured traffic analysis policies and enabled comprehensive reporting.
- Created and secured websense service account and managed crawler configurations.
- Deployed policies to all websense assets.
- Created a business continuity solution to ensure secure system back-ups.
- Integration of MAC iOS resources with the Active Directory infrastructure for enhanced collaboration.
- Automation of the top incident response solutions to ensure SLA compliance.
Infrastructure Architect
Confidential
Responsibilities:
- Performed an Active Directory discovery review the existing environment and all connected systems.
- Scheduled discovery and discussion meetings with the COR or other NARA representatives, as needed, to clarify information discovered and resolve all issues.
- Analyzed of the Active Directory survey to ensure that any design proposals will be compatible with the existing environment with SaaS email integrations via Google API’s and offerings.
- Delivered a completed document to the COR with the survey results for acceptance.
- Documented and proposed an enhanced Active Directory Environment capable of supporting up to 7,500 end user accounts and 7,000 desktops and laptops that includes a detailed architecture that provides desktop group policies via an upgraded Active Directory Architecture that uses the Novell client local desktop authentication.
- Created a detailed Bill of Material to support the proposed detail design.
- Created an Active Directory infrastructure to control User, Object, and Group Policy settings on the desktops and laptops, including all existing sub domains in NARA's current Confidential environment with ADFS.
- Created an Enterprise Active Directory Design that integrates with existing Novell File shares, provide desktop authentication, and synchronize user accounts via NARA’s Identity Management Solution.
- Created Regional site design to authenticate to Active Directory locally at the site, in event of access being blocked or disconnected to the primary core offsite Active directory domain on the NARAnet.
- Created a design that is compatible with the existing environment and provide increased flexibility of services and must not hamper or diminish current operational status or capabilities.
- Quality control review of current Active Directory Objects and validated that no proposed changes will interrupt current system functionalities and services.
- SecureAuth-SSO pain-point mitigation was achieved during review.
Solutions Architect
Confidential
Responsibilities:
- Architecture, design, implementation and configuration of the systems needed to support a multi-forest Microsoft Active Directory 2008R2 enterprise infrastructure.
- Oversee data and systems discovery of the legacy Infrastructure services to be consolidated.
- Oversee design and development of the Windows XP to Windows 7 upgrade for 5500 users and computers.
- Oversee the design and development of migration and/or new build/expansion for end-user services such as File and Print, Retention, Security, etc.
- Create training material to provide to the customer on all solutions implemented
- Maintained ADFS services for resource reach-back access via multiple external trusts for various web-apps.
- Quest Migration Manager Domain pairs where created between 9 separate forests environments to consolidating target forest.
- Technical Lead for security hardening guidelines for servers
- Technical Lead for Desktop hardening using USGCB standards
- Technical Lead for the redesign of the Active Directory 2K8R2 domain name server (DNS) for DOL HQ
- Work side-by-side with customer personnel in an advisory, support and training role.
- Experience supporting test lab implementations, including developing Systems Acceptance Tests.
- Researched, evaluated, and stayed current on emerging tools, techniques, and technologies
- Developed CONOPS Enterprise (Concept of Operations) procedures
- Developed SDLC system documentation
- Managed the Migration team to perform the migration project encompassing users from HQ and all field offices
Technical Lead Solutions Architect
Confidential
Responsibilities:
- Enterprise assessment and architectural re-design.
- Pain point mitigation, Confidential Health Check / Confidential reconstruction and streamline / Implement Secure DNS
- Technical Project management.
- Conduct training for senior engineers on production environment operations.
- Configure and implement Solarwinds SAM
- SAN expansion for data reallocation project on EMC VNX5300 (reconfiguration)
- Configure and implement of patch management solution (WSUS Server 2012 w/ Secunia CSI 6.0)
- Configure and implement Kaspersky Endpoint 10
- Configure and implement Enterprise wide Secure NTP Solution (NIST)
- Perimeter/Internal Firewall and Switch configuration assessment and firmware compliance.
- Configure and implement RSA SecureID for ESSO deployment with two-factor authentication.
- Architecture of VMware Dev-Environment to Pre-stage Exchange 2007 / Exchange 2013 Migration. (On-Prem)
Sr. Professional Services Architect/Consultant
Confidential
Responsibilities:
- Enterprise assessment and architectural design.
- Integration of all BET infrastructures into Viacom based systems for Email and File/Print Resources
- Project management.
- Conduct training for senior engineers on complete migration operations.
- Configure and implement Quest Migration Manager ( Confidential /EX) and training, Message Stats, & Quest Reporter
- Enterprise assessment and architectural overview.
- QAS Implementation.
- Integration of all Linux based systems with Confidential by administering, upgrading, and configuring UNIX servers and Mac systems.
- Confidential automation for Linux-enabled Confidential users.
- Conduct training for senior engineers on complete migration operations.
- Configuration and implementation of the Quest Active Roles Server and training.
- Enterprise assessment and architectural overview.
- Quest GroupWise Migrator for Exchange Implementation.
- Architectural design/implementation of an email migration from GW 6.5 to Exchange 2010 Rollup 4.
- Implementation of PHP Tools for GroupWise was key to migration of pseudo objects.
- Mac OS system integration into Confidential .
- Conduct training for senior engineers on complete daily migration operations.
- Configuration and implementation of the Quest Self Service Desktop Migrator and training for Help Desk Staff.
- Enterprise assessment and architectural overview.
- Quest Migration Manager for Exchange implementation.
- Architectural design/implementation of a cross forest email migration from of Exchange 2010 Rollup 6.
- Migration planning documentation and process development.
- Conduct training for senior engineers on complete migration operations.
- Enterprise assessment and architectural overview.
- Quest GroupWise Migrator for Exchange Implementation.
- Customized an email migration from GW 6.5 to Live 365
- Migration documentation and development.
- Conduct training for senior engineers on complete migration operations.
- Enterprise assessment and architectural overview. QAS, Quest Active Roles Server Implementation.
- Designed total integration and automation of enterprise user provisioning.
- Quest Spotlight, Recovery Manager for Confidential and GPOAdmin Implementation.
- Custom configurations to facilitate enterprise system operations.
- Enterprise assessment and architectural review.
- Quest Migration Manager for Confidential and Exchange implementation.
- Customized a multi forest consolidation migration to a co-operating environment.
- 65,000 total users.
- Quest Reporter Implementation custom reports for enterprise systems documentations and migrations.
- Enterprise assessment and architectural review.
- Quest Migration Manager for Confidential and Exchange implementation.
- Customized a dual forest migration for 15,000 total users.
- Migration planning documentation and process development.
- Conduct training for senior engineers on complete migration operations.
- Enterprise assessment and architectural review.
- Quest NDS Migrator Implementation.
- Designed total migration procedure for Netware to Active Directory 2K3 on VM.
- Quest Reporter Implementation custom reports for enterprise systems documentations and migrations.
- Quest InTrust Architecture and Implementation.
- Customized InTrust for network management and reporting of critical assets.
- Quest Reporter Implementation.
- Designed custom reports to facilitate for detailed enterprise system documentations.
- Quest Change Auditor Implantation.
- Created critical monitoring of system changes to assure consistent IT integrity.
Confidential
SME - Global Networkers
Responsibilities:
- VMware vSphere 4.0 Implementation.
- P2V build out of current desktops to facilitate advanced CAD design capabilities.
- Implement an enterprise wide process for VM provisioning.
- HA configuration and Host clustering.
- Raised the Confidential domain functional level to 2K8R2
- VMware VDI implementation/provision deployments.
- OnPrem Exchange to Microsoft Office 365 Hosted Cloud consolidation/migration.
Confidential
SME/Consolidated Test Facility ( Confidential ) Manager
Responsibilities:
- Established and enforced Confidential policies, procedures and overall administration.
- Confidential validation of all POE deployments.
- Manage the Confidential budget for support costs.
- Scheduled and configured changes to servers or environments that are required by certain tests, and communicating these requirements to all Confidential users.
- 90% of all tests conducted in VMware virtual environment.
- Developed a bug and problem escalation plan.
- Developed and managed an incident-tracking system.
- Developed and monitored the change control process.
- Set up an inventory control system.
- Maintained Confidential documentation (such as Confidential descriptions, diagrams, and guidelines and procedures).
- Managed network taps and server capacity and configurations.
- Managed hardware and software configurations and updates.
- All configuration build outs from scratch.
- Established physical security.
- Implemented a preventive maintenance program for equipment.
- Established an approval process for removing equipment.
- Made periodic server backups.
Confidential
SME - Interaptech
Responsibilities:
- Developed “as-is” performance baseline for future reference.
- Technical lead for the discovery of the Microsoft environment which consisted of Active Directory 2K3R2, 2K8R2, Blackberry 4.1, Exchange 2K3/2K7,
- COOP and Disaster Recovery
- Technical Lead for Exchange 2K3/2K7 discovery for optimal configuration for all remote users
- Technical Lead for the mix mode Active Directory 2K3/2K8 Global Catalogs positioning
- Technical Lead for network discovery using Active Directory Topology Diagrammer, Gpinventory, Custom Discovery scripts, and Windows Essential Business
- Presented assessment results with formal presentation to US Treasury CIO and stakeholders.
