We provide IT Staff Augmentation Services!

Senior Security Engineer Resume

4.00/5 (Submit Your Rating)

Philadelphia, PA

SUMMARY:

  • Accomplished Senior Infrastructure / Security engineer with 15+ years experiences designing, evaluating, integrating, testing, and recommending value - driven "best-in-class" OEM and Enterprise Server Hardware, R&D, Telecommunication (AV, UC, etc.), Enterprise Security, BigData Storages / Analytics, and Software solutions.
  • Storage Related Expertise: Netapps, Veritas, EMC, Symmetrics, Brocade, Qlogic, LSIlogic, Clarion, Multi Path, Celerra, HP StorageWorks, IBM FC-SAN, Dot Hill, InforTrend FC and iSCSI SAN, Eurologic FC-SAN, Netbackups, Data Ontap Edge, FlexVol, FlexShare, F5 LoadBalancer, Deduplication, and Snapshot.
  • Experience in Cloud / Virtualization (Hyper-V and VMware), and Cloud technology for Public, Private, and Hybrid consumptions (including Amazon AWS, Microsoft Azure (Office 365 on Exchange, AD, SQL2012, Visual Studios and few other SOA purposes), Dropbox, and KVM (Linux, Ubuntu, and FreeBSD), P2V Migration, Disaster Recovery, Replication and Off-site Tape/Disk Storage solutions
  • TelePresence Related Expertise: Tandberg, Life Size, PolyCom (Radvision Scopia MCU-24, Cordian MCU-4205, Cisco MCU-4501, Cisco MCS 7835-13, Cisco TCExpress, Cisco CTS MX / Profile, Cisco CUCM, Cisco UCS and PolyCom RMX 2000. AMX.
  • Data Center Facility Design and Build Experience: Corporate and Engineering lab builds:
  • Rack specification, AC/DC scoping/BTU estimation, UPS, ATS, STS, PDU, HVAC, VESDA fire suppression systems, switch gear, structured cabling/shielding, documentation and implementing processes and procedures for 24/7 up-time.
  • Commissioning/de/re-commissioning, mission-critical facilities infrastructure with ON-time completion, within budget, cost-effective, and greater return on investment (ROI).
  • Security Monitoring Expertise: NetScout Probes, Zenoss, McAfee IPS/IDS, Infinistream, Achsight, HP OpenView, GigaStor / Observer, SolarWinds, NetDetector, NetForensics, Secret server, QoS and SLA.
  • Experience and Knowledge of: TCP/IP, UDP, LAN/WAN, VLAN, IPS/IDS, VPN, Firewall, Active Directory/ DHCP/DNS/WINS, IPAM, SNMP, SMTP, WiFi, W-LAN, RADIUS, LDAP, AV, SIP, H323, H264, H265, SVC, MPLS, QoS, SLA, ISDN, SIP, Skinny (SCCP), and VoIP/IPT, Digital signal trunking.
  • Regulatory and Compliance Exposure: Standards, Frameworks and Tools such as SOX, HIPPA, GLBA, FISMA, CALEA, PCI-DSS, COBIT, ISO/IEC 27001, ITIL, OPM3, ISO 9001, CC - (ISO/IEC 15408), and other: AESN-I, FIPS, TPM, REACH, WEEE, CCC and ROHS.
  • Experience with McAfee NSM few versions for both on the Enterprise as well as scalable states to proactively monitor various intrusion(sensors), mitigation, and troubleshooting incidental security violations of our networks.The versions used were 7.x and 8.x.
  • Experience with McAfee IPS/IDS for Intrusion prevention and detection purposes to block out potential security violations. Also, used other non-McAfee (NetDetector, NetForensics, Infinistream, Network General, etc.) products that does similar IPS/IDS.

TECHNICAL SKILLS:

Network Devices: E1, T1, D3, HSSI, ATM, POS, Gig Ethernet and 10G and Frame Relay. VMWare, Ubuntu, FreeBSD, RH Linux, CentOS, UNIX, Solaris, Novell, Windows, and MAC OS. Traffic Generators; Spirent SmartBits 2000 and Adtech 4000, Flame Thrower, ATM Switcher and Fore-Runner LE 155, Test Director & Load Runner, Ixia Gig-Ethernet and 10GB Traffic Tools. Agilent 8920 and Tektronix TDS5000B, PCI/PCIE Subsystem Interfaces; LSILogic, Adaptec SCSI, IDE, EIDE, SATA and SAS. RAID Controllers; Qlogic Host Bus Adapters; LSIlogic HBA and Emulex HBA. SAN & DAS DOTHill SANnet, RIVA, NEBS based REO, EUROLOGIC, Xtore, IBM Total-Storage, and Infotrend Storage Platforms. SAN Switches Brocade, McData & Qlogic. Enterprise Storage; EMC VNXe 5100, VNX5500 and 5700 with FAST, Symmetrix-DMX-3, DMX-4 and V-MAX, Security and Compliance, Local, Remote and Application Protection Suites, NetApp and HP FC-based SAN, IBM Smart Cloud (App Performance Management Suites), IBM Tivoli, Virtual I/O Server, HP Arcsight SIEM, HP OpenView Control Center, VSphere 5.1, VCenter Operations Manager (VCOP), NetView, NetBackup, etc. Utilities. Network Routers, Switches and Firewall equipment from Cisco, Juniper, and Bay Routers/Switches.

PROFESSIONAL EXPERIENCE:

Confidential, Philadelphia, PA

Senior Security Engineer

Responsibilities:

  • Responsible for handling complex and detailed work on diverse range of security technologies that includebut not limited to: firewalls, application firewalls, IPS/IDS, Network Access Control(NAC), SSL and IPSEC
  • VPN’s, DLP, SIEM, Centralized/Shared and Dedicated Network Security Managers, UTM appliances, F5
  • load balancing, encryption technologies, cloud security, and EPO and HIP vulnerability scanning tools and identity Management tools.
  • Assist in designing and supporting the overall security architecture of the enterprise systems that focusses on all McAfee Security devices. M-1450, M-2850, M-2950, M-3050, NS3200, NS5XXX, NS7XXX, and NS9XXX and Virtualized appliances, Intrusion Prevention/Detection Systems, Network Security Manager and Network Threat Behavior Analysis
  • Research information security standards; system security and vulnerability analyses and risk assessments; Conduct engineering integration on multitude of Security vendor specific platforms

Confidential, Edison, NJ

Senior Partner - Information Technology Group / Systems Architect

Responsibilities:

  • Provisioning of C2C Infrastructure Design, planning, pre/post reviews, deployment of IT and/or Cloud solutions (Network TCP/IP Protocols, Linux, Scripting, Virtualization, Cloud, Continuity Monitoring, etc.) to SMBs in the NY Metro areas.
  • Network Design - Routing, Switching, Firewall, IDS/IPS. Security Monitoring and Load Balancing
  • Active Directory Services; Microsoft SCCM 2012
  • AWS, Microsoft Hyper V 2012; Microsoft Azure, VMWare ESXi 4.1/4.2/5.0 thru 6.5 VDI/VSphere/Disaster Site Recovery Manager, Microsoft Sharepoint 2010 Administration
  • Citrix XenDesktop/ Xenserver/ XenMobile VDI
  • Window Server 2003/2008/2012/2014 standard/R2; DataCenter/Storage, Windows Desktop 7 Pro/8.1 and 10
  • Microsoft SQL server; MySQL, Oracle 10 and 11, and Great Plains (GP) Data warehouse software.

Confidential, Edison, NJ

Sr. Systems Engineer

Responsibilities:

  • A premier provider of Bandwidth Reduction Solutions for fortune 100 IPTV, Telecom and Cable industries worldwide.
  • Responsible for hardware R&D, integration, test and evaluation of computer systems and conducting researches for “best of the breeds” future Enterprise server/storage solutions from major manufacturers such as Dell, HP, IBM and Supermicro.
  • Conducted integration and benchmark tests on highly scalable GPUs, CPUs, Memory, and peripherals including Asynch/Synchronous CODEC and Encode interfaces from DeltaCast, Matrox, AJA, BlackMagic, Nvidia, etc.
  • Performed several SDLC / ITIL Agile-centric builds, installations, testing, and patches/kernel/device driver upgrades using Solarwinds, MS Server 2008/2012 (SCCM, WSUS), Zenos HP iLO and Dell OME, LINUX and other automation tools and scripts.
  • Transitioned into a Senior Server Engineer role within the IT Operations of the company.
  • Responsibilities included support of the network and LAN/WAN Infrastructure, installation and administration of three labs housing of over 500 servers composed of: HP Proliant DL360, DL380, HP Proliant SL250/270, Dell R320/R520/R720/R730/4130 servers, Cisco and Juniper routers and switches, Sonicwall Rules and VPN connections.
  • Other responsibilities included installation, implementation, management and troubleshoot (Root Cause Analysis) of the following:
  • Microsoft System Center Operations Manager 2012
  • Microsoft SCCM 2012
  • Microsoft Exchange 2010; Microsoft Hyper V 2012; VMWare ESXi 4.1/4.2/5.0 thru 5.5 VDI/VSphere/Disaster Site Recovery Manager,
  • Citrix XenDesktop/ Xenserver/ XenMobile VDI
  • Window Server 2003/2008/2012 standard/R2; Server 2012 DataCenter/Storage, Windows Desktop 7 Pro/8.1 and 10
  • Microsoft SQL server 2008/2012; MySQL, Oracle 10 and 11, and Great Plains (GP) Data warehouse software.
  • Microsoft Sharepoint 2010 Administration
  • Management of Active Directory DNS DHCP and Migration of PDC/BDC (domain controllers) servers
  • Deployment/Conversion project from Office 2013 to full Virtualized Private and robust Public Cloud solutions for all Office 365 platform on AZURE which involved migration of all user emails/contacts/calendar items, etc.
  • Deployment and management of .NET, Visual Studios and few other SOA apps on AZURE
  • Deployment of several LINUX (RedHat 7.2 through 7.6 and CentOS) servers on AWS Cloud via Puppet and used Jenkins to manage several of the Development Instances in combination with Github
  • F5 Load Balancer
  • McAfee HBSS and McAfee Web Gateway; Kaspersky Enterprise Antivirus Administration
  • FireEye
  • Managed ConnectWise ticketing System
  • LAN/WAN Cisco/Juniper Networks of Switches and Routers
  • Managed several company-wide OpenEye Enterprise Security Monitoring Cameras
  • Advanced knowledge on Cisco Networks
  • Used McAfee IPS/IDS for Intrusion prevention and detection purposes to block out potential security violations. Also, used other non-McAfee (NetDetector, NetForensics, Infinistream, Network General, etc.) products that does similar IPS/IDS.

Confidential, Randolph, NJ

Video Field Engineer / Senior Hardware Engineer

Responsibilities:

  • Responsible for Field related installations of Audio-Visual equipment at Fortune 500 companies in the tri-state areas. My daily responsibilities involved: Conducting preliminary site survey of the customer premises, planning, designing and recommending appropriate TeleConference solutions. Project Manage the entire installation, configuration and testing of the CUCM while at the same time ensuring that all OSHA and Local HVAC/Fire Safety and Protection codes are met
  • A leading company with several patents in SVC Voice and Video Conferencing /Telepresence Solutions, which has been, rated as one of the fastest growing technology companies’ year after year.
  • Responsibilities included research and development on hardware (Vidyo patented Room Systems, Mobile platforms and Audio Visual), platform builds, Storage and Backup, BIOS and Firmware Integration, and all phases of the ITIL product development cycle from initiation through implementation, documentation, prototyping, FA validation until reaching the market.
  • Subject Matter Expert (SME) who initiated, maintained deep technical and business knowledge of industry directions and trends and possess drive to deliver technology and products in the roadmap on schedule and with the highest quality and greater ROI.
  • Achieved customer satisfactions through creation of Enterprise and OEM relationships with hardware manufacturers such as IBM, Dell, Lenovo, Logic Supply, Intel, AMD, HP, etc., that saved the company over $4M annually by eliminating repeated break and fix issues in the field.
  • Managed cross-group planning activities relating to BIOS definition, SOW, BOM build-out, design prototypes, integration, performance testing, documentation, FA validation and transitioning of new technological products (Server, Desktop, and Next Unit of Computing) for Vidyo to market in over 50 countries.
  • Worked on various Unified Communication and Telepresence projects involving integration of the Vidyo Portal, Router, Gateway and Replay with Legacy collaboration systems from Cisco, Tandberg, Life Size and PolyCom (Radvision Scopia MCU-24, Cordian MCU-4205, Cisco MCU-4501, Cisco MCS 7835-13, Cisco TCExpress, Cisco CTS MX / Profile, Cisco CUCM, Cisco UCS Manager and Central, and PolyCom RMX 2000. Included: H.323 Protocol Suite (H.261, H.263, H.264, H.450, G.711, G.723, G.728, G.729, RTP, RTCP, Q.931, H.225, H.245, RAS) and Google Hangout, Microsoft OCS / Lync, WebEx, WebRTC, and Jabber projects.
  • Managed various video, audio and extender quality testing activities involving webcams, cameras, scalar, and video extenders: Logitech, Tandberg, Microsoft, LG, Sony, Vaddio, Minrray, Blackmagic, Lumens, TelyLabs, Panasonics, LG, with extenders such as Extron, Crestron, TruLink, StarTech, TVOne, TRIPP.LITE, etc. for up to 300ft over Ethernet as well as longer range over Fiber Optics.
  • Provided advice on HA projects and performed many installations of Window Server 2003/2008/2012/2012R2 DataCenter/ Storage, Windows 7/8.0, SQL 2008/2012, MySQL, Oracle 10. Active Directory, Sharepoint, DNS DHCP, SNMP, SMTP. PHP web-servers, IIS, SQL and Imaging servers.
  • Served as liaison to strategically define scope and responsibilities with the IT "Think-thank" Business unit regarding deployment of key infrastructure on Fiber Channel / iSCSI from Infortrend, Cisco MDS switches, Brocade, MacDAta, NetApp Storages(FAS2Xxx-FAS6xxx), E2612(primarily for Engineering testing), V3250, FAS 2240-2 and FAS 6220, multitray DLT tape systems (Overland DLT 200 and NEO 20000).
  • Used McAfee NSM few versions for both on the Enterprise as well as scalable states to proactively monitor various intrusion(sensors), mitigation, and troubleshooting incidental security violations of our networks.The versions used were 7.x and 8.x.
  • Used McAfee IPS/IDS for Intrusion prevention and detection purposes to block out potential security violations.Also, used other non-McAfee (NetDetector, NetForensics, Infinistream, Network General, etc.) products that does similar IPS/IDS.
  • Lead engineer on implementation and testing of Business Continuity Planning/Disaster Recovery through application of Clustering, Snapshots, SnapMirror, and SnapVault. Also, executed an enterprise-wide DFS namespace design for location transparency and storage virtualization for NAS and ILM, which significantly benefited the company's global IT infrastructure.
  • Managed the team responsible for i/O performance tuning researches on VMWare (ESXi 4.0, 4.1, 5.0, 5.1 and 5.5), Linux Virtualization (KVM) and Cloud based configurations using Ethernet Test tools used: Valid8 Protocol (1Gig) and TeraVM {10Gig}. Unixbench, Wireshark and IrisView.
  • Deployed and managed several Microsoft System Center Operations Manager 2012, SCCM 2012
  • Microsoft Exchange 2010; Microsoft Hyper V 2012; VMWare ESXi 4.1/4.2/5.0 thru 5.1/2, VDI/VSphere/ and implemented Disaster Site Recovery Manager.
  • Initiated and worked with the project management team charged with the IoT (Internet of Things} initiatives to design, execute and position the company's SaaS product offerings through the Cloud.
  • Managed deployment of storages for internal customers and teams according to approved requirements. This consisted of assessing vFiler needs, Aggregate, FlexVol, and Qtree creation, Exports, CIFS Shares, Quotas, Deduplication, Data OnTap Edge (remote site server based platforms), FlexShare, Snapvault, Snapmirror, OnCommand Operations Manager, Flexclones. Configured and migrated lots of applications into the Amazon AWS and deployed several server instances into Amazon EC2/EBS/S3 while sustaining performance.
  • Planned, implemented and supported IT installation of Cisco UCS, Cisco ASA 5510 security appliance as well as for SSL and IPS functionality. Completed extensive LB (load balancing) on multiple platforms via vserver/vip and configured FW and DNS to accommodate existing nodes on VLAN.
  • Experienced engineer in application of Unix/Linux/FreeBSD/Ubuntu/Windows/iOS, ITIL, SLA, QOS, JASON UI/API tools, Agile-Scrum processes and JIRA Ticket Management and Escalation Systems

Confidential, NJ

Senior Lead Engineer

Responsibilities:

  • Built an impressive record of achievements through a series of increasing responsibilities.
  • As Lead Engineer charged with introducing advanced solutions into NetVCR, NetDetector, and NetOmni product offerings for large-scale government, aerospace, financial, and telecommunications markets.
  • Other responsibilities included new server builds, maintenance and monitoring of existing hardware, operating systems and application monitoring and patching across 250 physical and virtual servers running Windows 2000, 2003, & 2008, Active Directory, IIS, SQL 2000 and SQL 2005.
  • Qualified and recommended to the product management team the need for integration of major Fiber Channel/iSCSI storage vendors such as IBM, Enteryasis, HP, Intel, Dot Hills, Adaptec, and Infotrend’s (Galaxy), and Fabric switches from Cisco, Brocade, etc. into NIKSUN products offerings.
  • Managed a team of Systems Engineers responsible for product roadmaps and infrastructural tasks intended to announce EOL and also improve performance and increased scalability on tiered Storages on EMC VNX-3300, VNX 5500, Symmetric DMX-3, and NetApps FAS 2020), 3PAR, etc. Post Sales implementation agreements.
  • Implemented VMware vSphere 4.0 on EMC Symmetric DMX-4 to virtualize production data center, improved system availability and reduced server deployment times by as much as 70%.
  • Served as L3 field engineer with responsibilities to resolve critical issues at major client sites globally.
  • Co-Project lead for Server Consolidation, utilizing Network Appliance Filers, within NIKSUN Corporate and our premium customers like Verizon, Goldman Sachs, JPMorgan Chase, etc.
  • Contributed to enhancing interface cards to enable the integration with POS, ATM, OC-3, OC-12, OC-48, OC-92 networks and 10 Gigabit Ethernet infrastructure for Network Performance and Security Surveillance requirements.
  • Collaborated with vendors such as Intel, HP, IBM, SuperMicro, Sun Microsystems, Seagate and Hitachi to test and ensure that server hardware and storage components met United States, Canada, China and United Kingdom regulatory requirements. Also, made big contribution to the NetVOICE (Video and Voice data capture) Project
  • Experience with log correlation engines, application whitelisting, endpoint forensic and visibility, IDS, malware sandboxing, threat intelligence, netflow, packet capture and malware types and various Wireless configurations.
  • Created, handled and expanded the Enterprise Penetration Testing Program.
  • Established, develop, and socialize the Enterprise Secure System Development Lifecycle (SDLC).
  • Managed Advanced Persistent Threats, Global Threats, as well as Botnets, DoS, Flooding & Command Control.
  • Performed compliance risk assessments based on ITIL (best practice framework for Service Management), COBIT/ITGI (SOX compliance framework), and ISO 17799 (Infrastructure best practice)
  • Provided several routine Tier 3 Level support to platinum customers on regular basis.
  • Experienced in RDBMS concepts and data modeling with SQL and ORACLE, plus Scripting PERL/TCL, C, C++, Java, Unix Shell and Bash.
  • Provided Tier 3 Level world-class network monitoring, troubleshooting, fault management and solution support onsite on our NetDetector Security Monitoring and NetVCR products to: Verizon Wireless, GD., Barclays Bank (London), UBS, Goldman Sachs, IBM, Citi Group, Morgan Stanley, and Thompson Reuters.

Confidential

Team Lead Engineer / R&D Lab Manager

Responsibilities:

  • Led the evaluation, testing and integration of new architecture, platforms and hardware devices into NetVCR and NetDetector product offerings to improve performance, enhance capability, strengthen redundancy, and reduce costs while meeting evolving customer network / application monitoring and security surveillance needs.
  • Led the evaluating, testing and integration of new devices to enhance SAN switching, management, and storage provisioning.
  • Conducted complex testing of vendor-provisioned storage systems. Evaluated industry and emerging technology trends on SCSI cards, motherboards, processes, drives and RAID products.
  • Collaborated with Qlogic, LSI, Adaptec, Intel and IBM partners to resolve compatibility, performance and End of Life (EOL) issues.
  • Collaborated with various manufacturers and Nationally Recognized Test Labs for certification of ROHS, NEBS and FUS cert.
  • Researched and evaluated performance of disk subsystem products from multiple manufacturers to support controlled packet capture on Ethernet, T1, E1, X.25, T3, E3, FDDI and HSSI recording interfaces
  • Credited with analyzing and resolving complex open systems SAN / Disk issues at client sites, facilitating the capture of more than $8 million in contracts.
  • Chosen as primary liaison with storage manufacturers for the provisioning of Adaptec SANbloc, XTORE, Xyratec, StorCase, Adaptec FS4500, DOTHill RIVA / SANnet II / Sannet NEBS/ REO, and IBM StorEdge SAN, NetApp F880 and FAS270 platforms.
  • Coordinated the testing, troubleshooting and design of solutions to support integration with new AMD and Intel Architecture 64-bit systems, and FreeBSD, HP-UX, Linux and Windows.
  • Defined solution and framework to integrate Windows and Redhat, operating systems into SAN storage platforms to support the launch of NetOmni, an enterprise network and service delivery management portal. Highly knowledgeable in Python, Java, Objective-C, or C++ and shell scripts.
  • Tested, recommended and led the integration of SATA and SAS storage system into product offerings, increasing disk growth by multiple-terabytes on single disk-subsystems while reducing storage costs by more than 30%.
  • Originally hired to plan and manage deployment and upgrade of LAN/WAN infrastructure to support Y2K remediation efforts. However, based upon attained Y2K project success, I was retained to manage and enhance internal IT infrastructure for DMR HQ and other locations throughout the US.
  • Systems Administrator (1999-2000) / Technical Consultant (1998-1999) - Oversaw the complete modernization of Y2K Network Infrastructure to minimize disruption and improve overall capability for Corporate. Led a multi-million project to deploy and/or upgrade servers, desktops, laptops, storages and network infrastructure for 7 laboratories throughout 5 states for Merial Ltd. (a subsidiary of Merck & Co. Pharmaceutical}
  • Responsibilities include new server, desktop/laptop builds, maintenance and monitoring of existing hardware, operating systems (Win NT / 2000, Windows 2000) and application patching across hundreds of servers running Windows NT 4.0, 2000, UNIX, Solaris, LDAP, RADIUS, IIS, SQL, MS mail and Exchange.
  • Conducted detailed feasibility analysis of infrastructure at each site; defined technology needs; project managed and completed all efforts to meet Y2K-compliant environments 3 months earlier.

We'd love your feedback!