We provide IT Staff Augmentation Services!

Systems Engineer / It Security Consultant Resume

5.00/5 (Submit Your Rating)

New York, NY

PROFILE SUMMARY

  • Planning and implementing Server setup, configuration & administration of Windows 2012, 2008, 2003 & 2000 Servers
  • Working experience wif Active Directory, DHCP, DNS, WINS and RRAS servers
  • Hands on experience remediating Server and network security vulnerabilities.
  • Worked on penetration test run wif Tenable Nessus Manager and patched IT infrastructure as per scan results.
  • Experience wif user accounts & group policies creation, performing troubleshooting of existing GPO issues
  • Experience wif MS cluster creation, management & troubleshooting node/resource/cluster issues
  • Monitored windows environment for anomalies and errors, reporting and escalation of issues
  • Maintained quarterly patch levels on teh servers through Vulnerability mgmt. program
  • Extensive understanding of networking concepts, (IE. Configuration of networks, router configuration and wireless security, TCP/IP, VPN, Content Filtering, VLANs, and routing in LAN/WAN, Ethernet Port, Patch Panel and wireless networks.)
  • Experience in iSCSI, SAN, NAS, NFS storage, FCOE and RAID concept
  • Experience wif creating, customizing and deploying PowerShell scripts
  • Experience in Microsoft Office Suite, Open Office, Visio, Outlook, Printer
  • Experience wif Data Center/Server Farm environment like Server deployment, Cabling & labeling maintaining AC cooling, Environmental Sensing Devices, power and UPS monitoring
  • Experience wif HP and Dell rack - mounted servers and blade servers
  • Experience in technical documentation for quality, compliance and security purpose
  • Good experience in working wif end users and customers to resolve production issues. Good experience in troubleshooting runtime errors on Windows servers. Extensive working experience in setting up cluster environment for Load balancing (NLB) high availability of Windows servers
  • Experience wif VMware vSphere suite 6.x/5.x/4.x including VMware vCenter Server, VMware ESX/ESXi clusters, Virtual machines and templates
  • Experience wif advance features such as vMotion, storage vMotion, High Availability, DRS. VMware Site Recovery manager for Disaster recovery of environment; physical to virtual migration (P2Vs) and virtual to virtual migration (V2Vs) using VMware vConverter
  • Experience in configuring VMware Fault Tolerance (FT) for critical applications
  • Good understanding of resource mgmt. framework like creating resource pools and adding teh VMs
  • Experience in configuring protection groups and recovery plans to protect Virtual machines and perform disaster recovery tests using Site Recovery Manager (SRM) in case of real disaster
  • Support VDI VMware environment wif VDI capacity planning and emergency readiness policy
  • Create & manage VDI parent images\VDI pools and conduct daily system health checks
  • Experience wif VDI infrastructure migration from VMware View 5.2 to Horizon 6.0
  • Knowledge of other virtual technologies like Citrix Xen Server, MS Hyper V
  • Experience wif server builds, patch management, virus scanning and updates
  • Excellent trouble shooting as well as documentation skills
  • Experience in working fast paced, deadline oriented environments
  • Strong communication and written skill and a motivated team player wif ‘can-do’ attitude.

TECHNICAL SKILLS

VMware: vSphere and ESXi 5.1/5.5/6.0, vCenter server, VMware Update Manager, VMware Tools, Virtual Networking, Storage and Security, VMware Converter, DRS, HA and FT.

Operating System: Windows Server 2012, 2008, 2003, Microsoft ClusterServer, WSUS, MS Exchange, Unix, Linux

Hardware: x86, x64, Intel and AMD based machines, Routers, Switches, Cisco UCS

Storage: DAS, NAS (NFS), SAN, FC and ISCSI.

Backup Software: Veeam Backup, Symantec NetBackup, Windows NT Backup Exec 2012

Antivirus: Symantec Endpoint, Norton Antivirus and McAfee.

Patching/Vul. Manager: SCCM, IBM BigFix, Tenable Nessus

Networking: Cisco Routers and Switches, HP Procurve, Brocade, MDS fabric switches, Fortigate Firewall

Networking Protocols: TCP/IP, UDP, DHCP, HTTP, HTTPS, VPN, DNS, NTP, WINS, FTP, SSH, WinSCP, Telnet

Documentation Applications: Microsoft Office suite, Access, Project, Visio

Terminal Services: Remote Desktop Services, VNC, Putty, Tera Term, Team Viewer, Citrix, Logmein

Monitoring tools: Solarwinds, IBM Tivoli, HP OpenView, HP Operations Manager, HP SIM, HP SMH

Service Managers (ITSM): Service-Now, HP Service Manager

PROFESSIONAL EXPERIENCE

Confidential, New York NY

Systems Engineer / IT Security Consultant

Responsibilities:

  • Transitioned Win server 2003 to server 2012R2
  • Implemented IBM BigFix and monthly patch cycle created.
  • Implemented and upgraded Tenable Nessus vulnerability scanner to latest version.
  • In response to scan results, OS and third party app patches applied.
  • Created Unique local account passwords throughout all workstations, servers, applications, storage and network devices
  • OS Hardening policy modified and increased.
  • Implemented NFS whitelist for all NetApp controllers and removed Share permissions for everyone.
  • All Sensitive data /files made password protected and encrypted for network share
  • SMB Signing enabled on all servers and workstations.
  • SMB Null shares settings were disabled wif GPO
  • Implemented Active Directory wif AD Manager plus tool.
  • Updated web tools and applications using active directory domain user accounts wif LDAP autantication.
  • Deployed Microsoft Baseline Analyzer (MBSA), Big Fix and Nessus and remediated missing patches.
  • Removed Anonymous accounts from all FTP servers
  • Disabled NetBIOS and LLMNR via GPO on all servers.
  • To replace Clear text protocols, firewall rules were configured, Implemented SSH, SFTP, SCP, HTTPS, SMTPS
  • TLS 1.1/1.2 implemented using a valid CA signed certificate
  • SNMPv3 implemented and routed to a secured management network, ACL implemented to restrict devices to comm. to SNMP server.
  • Reserved ports being used and disabled unused ports. Port Monitoring Enabled wif Solarwinds syslog to remediate comm. eavesdropping ARP attack
  • Worked wif vendor to implement internal Firewall to segregate server and user network segments
  • Implemented ACL and restricted access to IT mgmt VLANs to only IT workstations.
  • Reviewed firewall policies and tighten rules
  • Implemented Microsoft Root CA and Enterprise Certification authority
  • Horizon View Virtual Desktop Infrastructure (VDI) operational support and maintenance.
  • Constructs VDI parent images\VDI pools for new business developments
  • Conduct daily system health checks of VDI environments.
  • Managing multiple floating\linked-clone VDI environments utilizing View Admin & vCenter
  • Upgraded and reconfigured HP Procurve /Cisco switches
  • Upgraded HP DL and BL servers wif latest service packs
  • Upgraded HP C7000 Enclosures Onboard Administrator along wif blades - switches
  • Managed nodes in Solarwinds for monitoring.
  • Worked on Microsoft System Center Configuration Manager (SCCM) for automated patch management, implementation and maintenance.

Environment: VMware vSphere 6; Horizon view and Appliances, Windows server 2012/R2, 2008/R2; HP ProLiant BL and DL series Gen 6, 7, 8, 9, HP C7000 Blade enclosures, EMC VNXe Unisphere storage arrays

Confidential, Orlando, FL

Windows System Engineer/ VMware Engineer

Responsibilities:

  • Supporting Disney’s DTSS service as a DTOC (Disney Technology Operations Center) member since May’2015 for 24X7 onsite support and service availability.
  • Worked on Microsoft System Center Configuration Manager (SCCM) for automated patch management, implementation and maintenance.
  • Experience applying OS updates and software deployment using SCCM and WSUS.
  • Providing Solutions on System Center Suite products like, SCCM, SCOM, SCSM, SCVMM and SCO
  • Assisted new Customer Support employees wif customer noledge development
  • Worked on Cisco UCS and HP server hardware and software.
  • Cisco UCS implementation and configuration
  • Supporting multi domain Active Directory environment.
  • Supporting OS, hardware and networking of converged infrastructure.
  • Install and configuration of MS SQL and Oracle servers.
  • Execute all non-revenue based change and shared infrastructure change as required
  • Work in teh Infrastructure design and planning from a virtualization & storage perspective involving large scale clusters
  • Supporting FCOE/ Fiber channel/ Fabric network configuration and troubleshooting SAN.
  • Work in data migration involving SAN and NAS from older storage clusters to new storage cluster.
  • Worked on HP C7000 Blade enclosure configuration and administration
  • Support Citrix VMware environment.
  • Support VDI Vmware environment.
  • Implemented and managed VMWare Servers and Designed solution based on VMware
  • Involved in P2V, V2P and V2V Migrations using VMware converter and provided support for teh related issues
  • Involved in ESXi Update Manager and Patch Management
  • Involved in Virtual Center Management and VMWare License Management
  • Virtualization monitoring and performance planning
  • Installing, configuring and deploying Microsoft Clustering servers
  • Creating, customizing and deploying PowerShell scripts
  • Supporting EMC VPLEX and VNX storage on SAN and NAS wif fiber channel
  • Expert in implementing and managing High Availability / Clustering environments
  • Translate technical documentation in provisioning Windows enterprise servers in virtual platform
  • Experienced in performing network and security audits (PCI security compliance)
  • Worked on patching Qualys and system vulnerabilities
  • Implemented EMC ViPR SRM in environment to better visualize and manage storage to IT

Environment: VMware vSphere 6, 5.5; Windows server 2012/R2, 2008/R2, 2003; HP ProLiant BL and DL series Gen 7 Gen 8, Gen 9, HP C7000 Blade enclosures, Cisco UCS, HP and EMC VMAX storage arrays

Confidential, Cary, NC

Windows System Admin/ VMware Administrator

Responsibilities:

  • Designed, installed and configured Windows 2003 and 2008 servers in Enterprise Environment of 3000+ physical servers and 1000+ VMs.
  • Experience wif Hyper - Virtualization Assessment and Implementation
  • Worked on Microsoft System Center Configuration Manager (SCCM) implementation and maintenance.
  • Designed and implemented teh enterprise Windows 2003 Active Directory & GPO’s.
  • Install support and maintain ADFS in infrastructure.
  • Windows 2003 Server Maintenance and builds.
  • Install & Support Web Servers, FTP Servers, File and Print Servers
  • Help and support on iSCSI SAN and NAS storage.
  • Maintained networking devices and various servers’ hardware & software.
  • Performed installations and testing of upgrades and patches before final implementation in teh active network.
  • Defined and implemented backup service levels.
  • Responsible for documentation of processes and changes in teh network on a day to day basis.
  • Managed and Monitored availability, performance and Disk/CPU usage of servers
  • Performing backups of data on teh servers as well as network backups
  • Monitor various aspects of server like health, file systems, logs using tools like HP OM, IBM Tivoli, HP Service Manager, BMC patrol, and Net view.
  • Assisting customers and end users wif hardware, software application & network connectivity issues.
  • Actively participated in migration from Windows 2003 to 2008 server and application updates.
  • Troubleshooting of file system issues wif remote servers via telnet and putty.
  • Creation of profiles, profile manager, task configuration and execution wif ITM 5.1 package.
  • Worked on vCenter Configuration Manager for setting teh parameter values for storage and ESX hosts.
  • Generated reports wif Health analyzer giving recommendations and resolving performance and tuning issues in teh HA, DRS clusters and virtual Datacenters.
  • Configuring VMware for clustered environment and implementing DRS, HA along wif implementing vMotion.
  • Analysis of physical server candidates, which are eligible for Virtual Conversion Process using VCenter Guided Consolidation.
  • Worked closely wif Storage and Networking teams to ensure allocated SAN, Fiber and networking infrastructure reflected specifications laid out in initial VMware farm design to ensure successful deployment
  • Configure and maintain all server appliance hardware in Data Center, which includes managing and maintaining VMware virtual infrastructure.
  • Upgrading teh Firmware to teh latest version/date on teh BIOS/ controllers/ hard drives.

Environment: VMware vSphere 5.5/5.1/5.0/4.1, Windows server 2003, 2008/R2, 2012, Active Directory, HP ProLiant BL and DL series Gen 6, Gen 7 and IBM x Series

Confidential, NJ

Systems Administrator

Responsibilities:

  • Hands on experience in designing and implementing new methods, procedures, and systems (both automated and manual) to improve teh processing and flow of information wifin teh company.
  • Assisted in developing documentation of teh system specifications, including system scripts, system installation procedures, system backup and recovery techniques and system test methods.
  • Assisted in developing cost/benefit analysis for new proposed program modifications, methods, and procedures.
  • Managed Windows Server Update services
  • Enforced configuration settings wif group policy
  • Developed system build and hardening guides
  • Troubleshot basic network problems; monitored and evaluated system performance. Analyze, install and configure applications as needed.
  • Improved basic operational databases, software configuration controls and system interfaces for computer system(s) assigned.
  • Prepared systems for operational use and supports operational tests.

Environment: Windows server 2003, 2008/R2, Active Directory, Dell and IBM servers

Confidential, NYC, NY

Jr. Systems Engineer

Responsibilities:

  • In place upgrade of Domain Controllers from Windows 2003 to Windows 2008
  • Analyzing weekly patching report for potential vulnerabilities generated by QUALYS Guard for Domain Controllers and Member servers.
  • Creating a weekly report consisting of teh number of installed and pending patches per domain, region and site.
  • Coordinate wif application owners for Windows 2003 server owners to halp them in decommission or upgrade process.
  • Creating and presenting change requests before teh Change Management Team, for implementing changes in production.
  • Raising emergency change request to patch a Domain Controller or Member server wif a brand new hot fix that fixes a vulnerability.
  • Create GPOs to for Domain Controllers to point to teh new regional WSUS.
  • Collaborating wif teh offshore team in approving teh security and critical patches for Domain Controllers and Member Servers for teh quarterly patching cycle.
  • Install and configure Windows 2008 Domain Controllers in Active Directory.
  • Configure and set up DNS and DHCP settings for Active Directory.
  • Create user accounts and modify teh attributes in Active Directory.
  • Create and modify teh membership of groups in Active Directory.
  • Moving FSMO roles to convenient Domain Controllers.
  • Enhancing teh security of Active Directory and Member Servers by implementing GPOs at domain and OU level.
  • Creating GPO objects in Active Directory Domain Services wif settings related to Audit, Event log size, User Account Control, User Rights, Windows Firewall, Internet communication, Security.
  • Creating templates to deploy servers using teh templates.
  • Configuring forwarders/root hints on Domain Controllers in Active Directory.
  • Adding load balancer IP to teh TCP/IP settings of Domain Controllers and DHCP scopes for better DNS resolution.

Environment: Windows server 2003, 2008, Active Directory, IBM servers

Confidential

Hardware / Network Engineer

Responsibilities:

  • Servers Management and real-time Server Monitoring.
  • User Hardware & Software Issues including Networking and Operating Systems
  • Configuring network security policies, Operating System and application software
  • Planning & implementation of network security including building firewall
  • Antivirus / Anti-spam Updates on server and workstations
  • Managing Router tables and IP Addresses.
  • Network Device Configuration.
  • Perform Hardware Diagnostics, technical support & trouble shooting
  • Problem Management and Troubleshooting
  • Implementing Guidelines and Policies
  • Disk Space management of various servers
  • Email/Proxy server management
  • Software management (MS) and management of various device drivers
  • Security policy updating, Implement Firmware and Software Upgrades, Patch installation and Management
  • Interaction wif IDC and Telecom companies on various support issues and working wif service providers to implement new or upgraded data network.
  • Root Cause Analysis for Critical Events.
  • Performing Network Integration Tests.
  • Installing & configuring teh network & security devices.
  • Maintenance and monitoring network and attending day-to-day complaints on networking
  • Perform day-today routine hardware and software maintenance as assigned, and provide assistance in proper upkeep and utilization of systems.
  • Excellent skills in trouble shooting teh hardware & network related issues.

We'd love your feedback!