Network Access Control Admission Resume Profile
OBJECTIVE:
My objective and dream is to make a very large impact in organizations or companies in the realms of information technology and communications as a whole. Although I specialize in information security and business management as of late, I want to deliver a well-rounded but focused effort and success within positions and companies that can benefit from my non-paralleled set of problem solving, analytics, leadership, and communications skills.
QUALIFICATIONS
- Well-accomplished and referenced network architecture and security background with strong communications and presentation skills information security, and impeccable troubleshooting skills.
- Has managed groups of multiple sizes with success and motivation for those who report to me.
- Proven track record in dealing with mission critical business applications and 365/24/7 business requirements.
- Highly tuned creativity in forming strategies for business-affecting improvements, compliance, and uptime requirements.
JNCIE-SEC Juniper Networks
CCIE Security
- CCDP, CCNP, and CCSP
- Checkpoint Certified Security Administrator
- Checkpoint Certified Security Engineer plus
- Aruba Certified Mobility Professional
- Aruba Certified Mobility Expert
- CISA Certified Information Security Auditor
- CISM Certified Information Security Manager
- CISSP Certified Information Security Professional
Certified Ethical Hacker
Network Access Control Admission for Cisco Specialist
Very sound business and operations management skills with a very well-versed mindset for fiscal responsibility
EMPLOYMENT
Confidential
- Security Consulting for FundTech, Verizon Business, McAfee Intel , and Target for major security projects
- Compliance auditing and documentation for PCI, SOX, and ISO
- Implemented Checkpoint and Juniper firewalls for various large customers
- Network Access Control Implementation for point-of-sale terminals
- Implemented Cisco ASA firewalls, routers, and switches at a major Boston-based data center for a 10,000 plus store Dunkin Donuts application rollout
- Trainer for Cisco ASA administration Mentor for lower level engineers on perimeter security
- Implementation of Palo Alto, Fortinet, and Sonicwall firewalls
- Internal auditing with social engineering projects
- Storage ISCI and SAN implementation
- Virtualization with VMware flavors for cloud computing
- SAIC monitoring support with Imperva WAF, Snort, Tripwire, and other tools
- Security Information Even Management from RSA and HP
- Data Loss Prevention
- Linux administration
- Turn-key IT operations augmentation and hand-off
Confidential
- Responsible for post-sales SOW implementations, troubleshooting, design, and compliance reporting for sold accounts and projects.
- Performed 90 percent travel across the U.S.
- Mentor for lower level engineers on perimeter security and networking.
- SIEM, SLB, IPS, firewall, VPN, wireless, endpoint security, and application acceleration expert.
- Designed an end-to-end solution for a large utilities customer in San Diego, CA.
- Created standard Juniper SRX configurations for a large customer in Washington State Redmond .
- Project Manager for a large Palo Alto Networks UTM deployment.
Confidential
- Worked with customers to ratify security standards, design solutions, and manage projects, and implementations.
- Principle business owner of Instinctive Security, Inc. Incorporated April 2008
- Wrote router, switch, and firewall configuration standards.
- Responsible for the network security architecture design for Superior Access in Irvine California.
- Implemented Checkpoint and Cisco firewalls for various customers.
- Various Cisco NAC Clean Access along with Profiler. Linux-based . Most with government entities with my clearance.
- Implemented RSA Envision for Tampa customers.
- Designed and implemented Aruba Wireless implementation for a major hotel chain Atlanta franchise
- Performed vulnerability assessments and external penetration testing for multiple customers.
- Government contractor managing multiple sites and installing Network Access Control products
- Firewall and Secure ID implementations for Acxiom Inc. via contract
- Supported a managed security services environment for IBM with firewalls from all major vendors
- Implemented Cisco ACS for TACACS and RADIUS administration for GNAX
- Converted from Juniper SSG to multi-ASA environment for GNAX
Confidential
- Responsible for day-to-day operations of all the network security engineering team.
- Representative of various vendor products to include RSA, RSA Envision, Checkpoint, Aruba Networks, Aladdin, McAfee, Imperva, VMware, eEye, Symantec, Surf Control, Websense, Barracuda, Ironmail, PGP, Forescout, and EMC.
- Obtained Checkpoint and Aruba certifications.
- Responsible for all RSA Envision engagements for log aggregation, analysis, and implementation with router, switch, firewall, Windows 2003 Server, Solaris Carnival , and Linux system logs.
- Worked closely with vendors such as Aruba, RSA, Forescout, and Checkpoint for product promotion and pre/post-sales efforts in the Florida region.
- Managed all professional services effort to include scheduling, statements of work, implementation plans, customer readiness, and support.
- Responsible for vulnerability assessments and penetration testing using NMAP, eEye, Nessus, NS Auditor, and other products.
- Handled Tier 1-3 support calls.
- Created new methods of evaluation software-based products via VMware virtual machines.
- Built engineering labs for training and customer environment replication.
- Began socialization of NAC marketing campaigns within the principle organization, to customers, and South Florida ISSA members
Confidential
- Responsible for implementation of NAC, vulnerability assessment, and IPS/IDS products. All products are completely Open-source using Postgres, SQL, Linux 2.6 kernel, and Python scripting languages.
- Environment log analysis for vulnerability assessment and NAC products.
- Pre-sales engineer for eastern and central regions.
- Wrote documentation for implementation process.
- Responsible for mobile lab presentations.
- Performed various web and VMware demonstrations of NAC and other products.
- Orchestrated pre-sales engineering model.
- Completed training for pre-sales engineers.
- Expert in most vendor NAC products.
- Major proponent of virtualization for software appliance products and pushing features to engineering and development.
Confidential
- Managed all information security design for firewall, IPS/IDS, VPN, and content filtering.
- Drove the architecture of a new EarthLink corporate security design and rezoning using Checkpoint, Juniper/Netscreen, and BSD open-source firewall components.
- Member of the EarthLink Operations Risk Council to evaluate security risks and best practices.
- Personally completed compliance documents for SOX, PCI formally CISP , and ISO177990 standards.
- Implemented policy compliance standards for the Security Operations group.
- Approved all firewall policy exceptions.
- Launched successful EarthLink Unlimited Voice security mitigation strategy for VOIP/SIP Session Border Controllers using Cisco packet filters,
- Implemented training program for EarthLink Operations Center personnel NOC for first and second level incident response.
- Defined, authored, and implemented security operations polices for the management of security appliances.
- Worked with industry leaders in firewall, VPN, content filtering, and IPS/IDS to evaluate and designate potential products for EarthLink use.
- Instituted new procedures for the audit of changes to firewalls, VPNs, and other security devices
- Successfully completed the architecture strategies for Video and VOIP security for emerging EarthLink strategies.
Confidential
- Worked my way from Senior Network Engineer to Director to improve network operations and secure the 200 plus web sites hosted by CNNIT from malicious vulnerabilities.
- Mitigated risk of Denial-of-Service by implementing Juniper IP services routers with extremely granular packet filters.
- Responsible for the 24/7/365 uptime of CNN.com, HBO.com, CartoonNetwork.com, WB.com, and other major Time Warner web entities.
- Designed an ironclad network and security architecture to support the 24/7/365 operation of plus 200 websites.
- One of many liaison for AOL OPSEC Operations Security .
- Defined, authored, and implemented Internet security policy while also provisioning IDS and active response systems.
- AOL-Time Warner Streaming Data expert. Member of Internet standards committees and CNAB Cisco Content Networking Advisory Board
- Spearheaded and designed several new streaming products to include NASCAR Trackpass/Racecast and PitCommand using custom Extreme Networks Streaming media Accelerator blades for 6800 series and Squid proxies.
Confidential
- Worked with ITC DeltaCom to upgrade the backbone network infrastructure to Cisco GSR routers using optical circuits ranging from OC-3 to OC-48 connections.
- Architected ITC DeltaCom services infrastructure to support new data centers and secure hosted network offerings.
- Hand-picked to head a European VSC 3000 Voice-o-IP-o-ATM team in Brussels, Belgium.
- Renumbered the entire AS with a staff of 12.
- Principle site contact for all Internet-based consultative services.
- Pix firewall configuration, implementation, and support.
- Trainer of Network Engineers in Internet filtering via ACLs and service modules for the Cisco 5500 and 120000 series.
Confidential
- Became an MCP and MCSE.
- Trained new Horizons customers as an independent contractor for Novell 4.11 and Windows NT 4.0 certifications
- Traveled to U.S. cities to train Social Security staff on Windows-based applications.
- Trained on Nortel, Cisco, and Shasta access technologies.
- Worked with various customers on Novell and Windows NT operating environments.
- Lead engineer on Nortel Networks/Teligent wireless DS1 deployment in various cities. Consisted of Nortel and Cisco equipment.
- Trainer of various staff. Spearheaded Cisco network engineering training program after successful classes.
Confidential
- Completed the sale of computer and information services for Circuit City.
- Became a Novell and Microsoft certification trainer within three months of the New Horizons hire.
- Spearheaded a new certification process for aspiring network, systems, and communications engineers for New Horizons.
- Began a move into network engineering after completion of Cisco, CNE, and MCSE training classes.