Devsecops Engineer Lead Resume
Ny, NY
SUMMARY:
- A versatile, collaborative, accomplished, and knowledgeable IT professional with a successful track record and a knack for leading people in the right direction.
- Experience well over 20 years.
- Outstanding organizational and problem - solving skills.
- Highly collaborative with a knack for building productive relationships that allow smooth functioning while driving others towards excellence and attaining business goals.
- Possess verifiable leadership, interpersonal, and communication skills that help put across things with a crisp point.
- A remarkably successful mentor to peers and colleagues, owing to exceptional people’s skills and always giving them the nudge in the right direction to go the extra mile and helped in achieving what seemed difficult, with ease.
- Have a solid track record in achieving the set goals and delivering personal best at every step of the way to provide optimal results.
- Thrive in fast-paced business environments and cherish a chance to self-manage things through the innate problem-solving skills and never say never attitude.
TECHNICAL PROFICIENCIES:
Operating systems: Windows 2k8-2k16, Sun Solaris 7/8/9, RHEL 6/9, Ubuntu 18/19, AIXv5, VMWARE ESX Server3
Web Servers: NES 2/3, IPlanet 4, Sun Java System Web Server 6.0/7, Apache 2.x, IIS 4/5/6
Web containers/Application servers: Tomcat 5.5/6.0, JRun, WebLogic 7/8, Oracle WebLogic 10/11g, WebSphere 5/6, .NET 2.0/4.0, Documentum 2/3, Fuego BPM 5, Hadoop 2.x - 3.0, YARN, Docker, AWS EC2
Databases: MS SQL 2k-2k16, Oracle 9i/10g; Sybase ASE, DynamoDB
Build Management: TeamCity; Octopus, AWS CloudFormation, Ansible, Kubernetes
Servers: IBM Netfinity Servers, Compaq Proliant Servers, Sun UltraSPARC Series Servers, Dell PowerEdgeIBM LS20 Blade Servers, HP BladeSystem c3000
Security Products and Tools: CA SiteMinder 5.5/6.0, Entrust GetAccess 6.0, Multifactor Authentication, WhiteHat, Imperva, F5 BIG-IP ASM WAF, Barracuda 960 WAF, Rapid7, OWASP ZAP, Metasploit, Nmap, Veracode, SCUBA, Chef InSpec, OpenVAS
PROFESSIONAL EXPERIENCE:
Confidential, NY, NY
DevSecOps Engineer Lead
Responsibilities:
- The platform resided on Microsoft Windows 2008-2016 utilizing .NET, IIS7/10, SharePoint 2010/2013, and SQL 2012/2016 backends. Responsibilities also included creating, defining, administering, monitoring, and securing all servers within the development, staging, and production environments and securing and supporting all Database Servers, Web Servers, Application Servers, Domain Controllers, and Federation Servers.
- Implemented Microsoft’s System Center Operations Manager as DecisionPoint’s main monitoring solution.
- Responsible for the capacity management of storage, CPU, memory, availability, and performance across all environments.
- Held a seat on Confidential ’s BIG Data Steering Committee. Worked on securing, implementing, and integrating commercial Machine Learning products (Ayasdi & DataRobot) residing on RHEL and Ubuntu Linux, utilizing a Hadoop BIG Data platform.
- Analyzed engagement shortcomings and developed Hadoop and Mongo Clusters for Custom ML Installations that client used for Proof of Concept to improve transaction monitoring segmentation and behavioral patterning rules.
- Responsible for source code and binary repository management tools. Implemented their secure automated CI/CD pipeline in adherence to the latest DevSecOps initiatives.
- Assisted in creating a continuous monitoring solution to validate systems against our security baselines and respond to policy violations. Used AWS CloudFormation, Docker, and Ansible automation/orchestration technologies for deploying applications into the cloud.
- Reviewing compliance and regulatory requirements (e.g., FedRAMP, PCI DSS, etc.) and assisting in accomplishing required tasks to ensure compliance within all elements.
- Building, maintaining, and managing a central security policy for our cloud infrastructure. Responding to alerts and taking actions as required.
- Developed and implemented a strategic and comprehensive enterprise information security and IT Risk Management program to ensure the integrity, confidentiality, and availability of information owned by the organization.
- Understanding patterns of errors within logs and researching new issues for root cause analysis.
- Creating and maintaining technical documentation. Building and maintain internal tools to automate deployments, configurations, operations, and monitoring.
- Adhering to Cybersecurity practices within all applications. Maintained key relationships across corporate verticals spanning the enterprise with an emphasis on Technology Management.
- Championing the exploration of infrastructure security and service leverage opportunities across our global practices. Improved operational efficiency, reduced costs, and improved user satisfaction.
Confidential, NY, NY
AVP - Cybersecurity Engineer Lead
Responsibilities:
- Strategically managing data inflows across Confidential while ensuring high levels of data availability.
- Responsible for improving the scalability and performance of network services, leading and managing a team of local and offsite engineers.
- Establishing policies, rule definitions, and monitoring for secure Layer5 packet sniffing firewalls.
- Translating business, risk, and regulatory requirements for data protection.
- Evaluating and selecting all infrastructure components for complete protection and availability of secure web applications.
- Managing resource alignments, projects, support, and Enterprise Releases.
- Collaborating with project teams to design, implement, and support their web hosting environment.
- Integrating application delivery capabilities using technologies such as Barracuda Web Application Firewall (WAF) 960s, SiteMinder SSO, LDAP, FIPS, Solaris 10, Oracle WebLogic 10g, Sun Java Web Server 6.x, Apache 2.x, and Tomcat 6.
- Responsible for driving standards, best practices, championing internal improvements, and achieving high client satisfaction.
- Accountable for operating rules, best practices, championing internal improvements, and delivering high client satisfaction.
- Responsibilities also included engineering creative and cost-effective solutions, capacity planning, and performance monitoring.
Confidential, Warren, NJ
Lead Application Support Engineer - Consultant
Responsibilities:
- Worked with a team of Application Engineers supporting Confidential ’s layered security model for online consumer protection using Multifactor Authentication.
- Responsibilities as an Application Support Engineer were to support the corporate Flagship internet-facing websites running 24x7 on Sun One Web server and WebSphere.
- Provided support, integration, delivery, and administration of production NET web applications.
- Worked on Wintel initiatives involving installation and configuration of third-party applications utilizing IIS6, .NET 3.0, SQL 2005, SiteMinder 5.5, and web services.
- Worked on Linux initiatives involving Redhat 9, Tomcat 5, and Apache 2.x web services.
- Worked with external vendors to ensure applications were successfully integrated into Citi’s environment. Supplied ad-hoc enhancement requests support for current applications.
- Provided technical support on internal and external consolidated middleware applications. Interfacing with development groups and other technology organizations from the business side on critical projects and support issues.
- Investigated and applied root cause analysis for prior issues.
Confidential, Hopewell, NJ
GWMT Lead Infrastructure Engineer - Consultant
Responsibilities:
- Technical Lead responsible for managing the delivery of multiple technologies, projects, and services.
- Managing a team of resources responsible for resolving issues and setting up new web-based applications.
- Played a key role in the systems support, integration, and delivery of WEB applications for Merrill's Benefits Online (BOL) application across the organization.
- Advised internal groups on all issues relating to their web site.
- Responsible for supporting and facilitating the continued growth of internet sites.
- Responsible for managing client relationships.
- Key components of the infrastructure were Win2k3, AD, IIS 6, C++, .NET 2.0, VMWare ESX Server 3, NAS, SharePoint 2003, SiteMinder 5.5/6.0, and MSSQL 2005.
- Created work instruction procedures for system changes.
Confidential, Princeton, NJ
Sr. Web Engineer - Consultant
Responsibilities:
- The position entailed expertise in a wholly validated Shared Services Environment spanning across DEV, TEST, and Production sites.
- Experienced in TW infrastructure layout, application load balancing, and Web farms. Provided technical and functional expertise for Sparta System’s TrackWise 6 configuration and administration.
- Configuring and administering Cisco Local Director, F5’s BIGIP, and QIP DNS Solutions.
- Supporting multi-tiered web applications for various businesses within BMS and Convatech. Implemented, administered, and supported TrackWise 6.0 Enterprise Process Management QMS, EHS, CAPA, DEA, and REA web applications.
- Collaborated with Engineering and Development teams on enhancing architecture.
- Technologies employed by this solution encompassed Win2k3, .NET 2.0, IIS5/6, Apache Tomcat 5/6, Sparta QMS, Crystal XI, and VMWare, Servlet Exec, and Oracle9i.
- Responsible for providing work instruction and APIQ documentation.
- Experienced in Windows, Solaris, and Linux systems.
- Knowledgeable in web application troubleshooting and performance monitoring.
- Involved in the creation of Active Perl management scripts and experienced in GxP and CFR21P11 compliance.
- Excellent project and time management skills.