Splunk/splunk Es/nagios Administrator Resume
San Diego, CA
SUMMARY:
To continue a career that will allow me to gain valuable experience and further enhance my skills in information technology and cybersecurity. To always be in a position that challenges my problem - solving skills and fosters creativity.
PERSONAL SKILLS:
- Strong work ethic, highly motivated, positive attitude, sense of humor
- Great attention to detail, team player, effective communicator
- Excited to learn new technologies and concepts
SKILLSCOMPUTER SKILLS:
Splunk, Splunk ES, Splunk ITSI, Splunk REST API
Nagios, ExtraHop, AKIPS, ThousandEyes, QRadar
Python, Bash, PowerShell, SQL
Windows, Unix/Linux
EXPERIENCE:
Confidential, San Diego, CA
Splunk/Splunk ES/Nagios Administrator
Responsibilities:
- App and index creation in search head and indexer clustered environments
- Splunk forwarder installation, maintenance, upgrades, log inputs
- Configured/tuned Splunk DB Connect inputs, created SQL queries
- Applied maintenance releases, patches, updates to Splunk ES and add-ons
- Created/tuned correlation searches, data models, kv stores, lookups.
- Worked through technical issues and support cases for Splunk and Nagios.
- Assisted users with dashboards, searches, alerts, reports, etc.
- Added/removed hosts/services in Nagios for ping monitoring.
SIEM Engineer
Confidential
Responsibilities:
- Sole Administrator of QRadar SIEM, consisting of 15 appliances.
- Technical lead for hardware refresh project to install ’24 series appliances
- Brought the SIEM into compliance with NERC CIP regulations.
- Applied maintenance releases, patches, updates Created custom parsers, reports, rules, building blocks.
- Worked through dozens of support cases with Q1 Labs and IBM support.
- Experience with QRadar at both the GUI and CLI levels.
Information Security Engineer
Confidential
Responsibilities:
- Perform risk assessment, triage, and review of security controls Consult with project teams on company information security requirements Principal IS Engineer for Human Resources and Sunrise Powerlink IBM Rational Appscan, NeXspose Rapid7, Burp Proxy, Wireshark
Security Operations Analyst
Confidential
Responsibilities:
- Monitor and correlate security events from IDS/IPS sensors and VM scans ISS SiteProtector, TippingPoint, Arcsight, Manhunt, nCirle, AirMagnet Perform upgrades/maintenance on IDS, IPS, and VM tools
- Work closely with Information Protection engineers, supervisors, vendors
- Administer/Monitor many enterprise firewalls in a Perimeter Network Security Infrastructure (Nokia Checkpoint, Cisco Pix)
Network Operations Analyst
Confidential
Responsibilities:
- Troubleshoot outages of network elements (Cisco routers and switches)
- Provide PBX and voice mail support
- Work closely with field technicians, engineers, supervisors, vendors
- Create network documentation (diagrams, procedures, contact lists)