Security Architect Resume
COMPUTER SKILLS:
Computer Operations Knowledge: Build - from-scratch workstations and servers, router and switch configurations, hardware/software/network diagnostics, Network hardening, monitoring and intruder control, scripting, troubleshooting and upgrades.
Operating Software/Programming Knowledge : Numerous legacy Operating Systems and applications, .VBS and PowerShell scripting, Microsoft Windows Server NT4-2016, VMWare VCenter and VSphere, Workstation and Desktop, numerous backup solutions, ISA Server/Forefront TMG,, IIS, Quest Suite of Domain Tools, Novell Systems, C+, C++, FORTRAN, BASIC and COBAL.
PROFESSIONAL HISTORY:
Confidential
Security Architect
Responsibilities:
- Preparation for major IAM implementation.
- Development and implementation of secure Group Polices that are more in line with Best Practice and NIST security standards, as well as other duties as assigned.
Confidential
Active Directory Architect
Responsibilities:
- Analyzed and redesigned an existing a multi - forest M&A environment.
- Authored and delivered new Best Practice GPOs for all
- Wintel servers and workstations. Included Baseline (OS-specific) and role-centric policies geared towards optimal performance and security.
Confidential
Active Directory Architect
Responsibilities:
- Designed a fully cloud-ready enterprise Active Directory forest in accordance with the VA’s desire to consolidate 300+ Data
- Centers and extend their applications and Directory Services into two Confidential High-certified CSPs.
Confidential
Active Directory Architect /Active Directory Technical Team Lead
Responsibilities:
- Assumed control of all phases of Directory Services engineering support for Confidential Enterprises.
- As part of a hand-off from Confidential internal personnel to Confidential, myself and one other replaced nine full-time engineers to provide the “Care & Feeding” of Confidential ’s Directory Services environment.
- This complex setting was comprised of 10+/- Active Directory forests, ranging from versions 2003 to 2012R2. In addition to responding to incidents and requested changes via ServiceNow, all Quest monitoring and management tools; along with their corresponding web presence and SQL backends, were maintained.
- Began collaborative architectural design process with Dell counterparts with the intent of a full migration of Confidential into a new Active Directory Environment.
- Shortly thereafter, it was decided to abandon the plan to stand up a net new on-premise forest/domain.
- Instead, migration plans were drawn up to move all server objects to one of two Cloud Service Providers; Virtustream or AWS.
- Design and implementation of new multi-Forest, multi-tenant Directory Services environment for all agencies within the State of Georgia.
- As the technical lead, I performed all AD engineering activities, as well as assisting with troubleshooting numerous application migrations, as well as many network challenges.
- Configuration of all Quest migration and monitoring tools.
- Migration of all users, workstations and servers from 13 legacy AD Forests and 10 Novel e-Directory Trees into the new Forests.
- Maintained relationships with all agency focals throughout all phases of transformation. Assisted support when necessary.
Confidential, Schaumburg, Illinois
Active Directory Architect/ ADS Team Lead\Senior Wintel Engineer
Responsibilities:
- Active Directory Services Lead for the North American migration of a very large multi-national insurance and finance company.
- Designed and implemented a multi-forest environment for both production and testing/sandbox purposes.
- These forests were complete with all proposed Group Policy Objects, Groups, Users and scripts designed for temporary inter- and intra-forest trusts through a planned period of coexistence and into Steady State.
- Primary goals have been uniform desktop and laptop images to be rolled out to all users in North America and Europe, as well as an integrated Software Distribution Server environment designed for the secure delivery of roll-based application sets, and a “Closed-Client” approach to a mandated 98% of desktop and notebook users in order to minimize unauthorized application installation, in addition to maintaining a SAS70 rating corporate-wide. Needless to say, frequent communications with my management and migration counterparts in Europe have been the key to this project’s success.
- Subsequent to the migrations, I have been heavily involved with the planning and implementation of the collapse of the aforementioned legacy domains. All NT/2k/2k3 environments other than the target GAD forests are in scope. Though laborious (Due to lack of documentation and employee turnover of the involved developers), significant progress has been made via the analysis of network activity, log files and active packet capture.
- As I have been involved with this project on quite a high level, as well as performing a great number of tasks personally, it would be daunting to describe them all in the current context. I will be happy to discuss in detail all of my various activities within the project when appropriate.
Confidential, Chicago, Illinois
Network Administrator/Architect
Responsibilities:
- Responsible for the initial configuration and subsequent maintenance and troubleshooting of all servers, workstations, desktop and laptop computers, managed Ethernet switches, hubs, routers and printers in order to achieve maximum uptime and productivity for roughly 350 end users.
- Designed, deployed and maintained a dynamic Grandfather/Father/Child data backup solution using Veritas Backup Exec 9.1 for approximately 1.3TB of CAD, Graphics, Email and user files residing on Windows NT4/2000/2003 and NetWare 5.0/5.1 servers. Key member of an IS team which designed, developed and maintained the largest, most robust and stable Active Directory infrastructure within all of the Confidential Companies, with a combination of over 11900 objects including users, servers, workstation, desktop and laptop computers, switches, printers and Group Policy Objects encompassing four branch locations and seven Chicago area showsite, crossdock and marshalling yard locations.
- As a result of the success of the Chicago branch Active Directory design and execution, I was the key Network/Server Engineer which led the Enterprise-wide migration to Microsoft AD from Novell 5.1 & GroupWise. I; along with one other, was directly responsible for the AD Forest architecture, Domain Controller and File & Print Server configuration, PoC (Proof of Concept), and deployment of approximately 180 newly-configured Windows Server 2003 systems. Utilizing the suite of migration utilities from Quest, we converted roughly 30 branches within the US and Canada and approximately 3500 users. This also required the data migration of roughly six terabytes of various user files across the Enterprise, as well as the subsequent retirement of nearly 350 legacy server devices.
- Support and troubleshoot a broad range of applications including Microsoft Office Suite (Releases 2000, XP and 2003), AS400 w/Lawson interface, a large portion of the Adobe Suite of products (Acrobat 4, 5, 6, and 7, PhotoShop 5-CS2, Illustrator 8-CS2, PageMaker, etc.). Additionally, I was the primary technical support person for a 20-person CAD department utilizing high-end, multi-processor workstations running various applications including AutoCAD, 3D Viz and Studio, etc.
- I was instrumental in creating a standardized workstation hardware configuration for the last two years for all CAD machines companywide, as well as a locally standardized OS/software package for the Chicago CAD department which has resulted in minimal downtime and increased productivity.
Confidential, Olympia Fields, Illinois
Systems Specialist
Responsibilities:
- Responsible for the technical maintenance and interfaces between the mainframe and PC environment.
- Responsible for installation, maintenance and support of data transmission networks and computer hardware.
- Responsible for support of network, network server, E-mail and dial-in servers and related items for PC productivity, database and software interfaces.
- Responsible for maintaining system hardware and software, installation of new equipment and technical assistance to 300+ users.
- Responsible for job queue, report runs, disk/task loading and monthly closing procedures using IDX.
- Coordinate services and maintained contracts and repair services with outside vendors related to PC equipment, maintenance contracts and supplies.
- Monitor manufacturer’s Internet sites for updates.
Confidential, South Florida
Infrastructure Consultant
Responsibilities:
- Provide PC/Server hardware/software support, troubleshooting, and training to small business and individuals.
- Assess client’s needs for the implementation of necessary hardware and software to maximize productivity.