Cyber Security Architect Resume
SUMMARY
- Cybersecurity architect with several years’ experience governance, compliance, strategy, policies, procedures, planning, designing, configuring, implementing, reporting, and fine - tuning Cloud networks, WAN, MAN, and LANs.
- Previous experience troubleshooting, monitoring, managing, testing, network operations center, client support, customer support, help desk, and sales engineering.
- Proven ability to define requirements, analyze business process, and make recommendations.
- Coordinates and troubleshoots all aspects of network functionality including performance, efficiency, speed, redundancy and resiliency.
- Communicate effectively with clients and vendors for project management.
TECHNICAL SKILLS
System Platforms: Microsoft Azure, AWS, GCP, Cisco Systems, Juniper Networks, Linux, Dell Networking
Hardware: Cisco ASA firewall, Palo Alto firewall, CheckPoint firewall, Juniper VPN, Juniper Netscreen, Netscout probes, sniffers, packet analyzers, BlueCoat proxy, Cisco routers and switches, F5 BigIP load balancers.
LAN Technologies: Gigabit Ethernet, Power over Ethernet, VLAN, ATM, 802.11 WLAN, FDDI, STP
WAN Technologies: MPLS, T3, Frame Relay, ATM, HDLC, PPP, HSSI
Network Protocols: TCP/IP
Routing Protocols: BGP, OSPF, EIGRP, IS-IS
Applications: Security, VPN, firewall, UNIX, Microsoft Visio, WireShark, Splunk, Tenable.io, CheckMarx, SonarQube, Netsparker, SolarWinds, SNMP, Nagios, MRTG, Cacti, IBM Tivoli NetView, Netcool, HP OpenView, Cisco Works for Switched Internetworks, What's Up Gold, Enterasys NetSight, Network Instruments Observer, Internetworking, Enterprise, Telecommunications, BlueCat DDI, Infoblox DDI, DNS, DHCP, IPAM, bind, gated.
PROFESSIONAL EXPERIENCE
Cyber Security Architect
Confidential
Responsibilities:
- Cloud-based security controls (secure web gateway, next gen firewall, cloud access security broker). Designing and managing security controls within service providers and the cloud.
- Provided a security service steer to the program, on security related matters.
- Formal input to projects during the start-up, requirements, and design stages to ensure that security has been considered and is appropriate.
- Provided security related guidance during the build and testing stages of the projects.
- Provided technical security input as required by the security policy development team.
- Security review and design of complex application and technology architectures.
- Coordination of technical design/review activities with various segments within the Security team.
- Evaluation and maintenance of systems and procedures to safeguard internal information systems and databases.
- Researching and recommendation/implementation of changes to procedures and systems to enhance security aligned with corporate policies
- Representing the Security Team ensuring ease of engagement with Security during projects and major programs.
- Accountable for ensuring that key risks and issues are identified, addressed and resolved in a manner that satisfies the business.
- Accountable for ensuring residual risk is captured and owners are identified and accept the risks.
- Continuous view toward standardization and process improvement with a view toward automation where possible.
Senior Cyber Security Consultant
Confidential
Responsibilities:
- SIEM evaluation, preparation, and collaboration
- SolarWinds products for asset management, network discovery, mapping, and monitoring
- IP Address Management reorganization planning
- Cisco ISE, TACACS, and Active Directory network devices credential access planning.
- Logs documentation and organization
Senior Network Engineer
Confidential
Responsibilities:
- Built and supported DNS environments that support external and internal DNS name resolution.
- Built and supported DNS environments that work with Global Domain registration vendors and ISPs
- Built and supported DHCP environments across multiple sites and regions
- Partnered with other network and engineering teams to solution load balancing infrastructure for cloud and datacenter environments
- Provided L3 operational support for production F5 Network infrastructure: Local Traffic Manager (LTM), Global Traffic Manager (GTM)
- Routinely applied broad knowledge of network-related processes and procedures to the completion of complex assignments
- Served as a resource to others in the resolution of highly complex problems
Network Engineer
Confidential
Responsibilities:
- Responsible for network changes of a migration solution
- Understood the technical challenges and complexities that exist when migrating sometimes bespoke applications to completely different network infrastructures.
- Identified, understood, and quantified technical risk and advises on strategies to mitigate that risk.
- Ensured appropriate documentation was in place for transition into Operations
- Supported the PM in understanding the technical risks, dependencies and issues that exist, quantified these and the impact that they may had on the migration.
Principal Network Design Architect
Confidential
Responsibilities:
- Experienced Sr. Network Engineer in a Large-scale inter-Network environment. Proven complex network experience in design, administration, implementation, and troubleshooting of network related hardware both layer 2 and layer 3 devices/appliances.
- Application Load Balancing with F5 Big-IP and Cisco ACE for external clients and customer facing networks. Migration from Cisco ACE to F5 LTM and DNS (GTM).
- Provided analysis and redesign of the network to keep up with the changing needs of the organization. Delivered and collaborated on the design, implementation and support of network core routing, switching infrastructure, Remote Access, B2B VPN, and security services.
- Provided tier 3 support and expert trouble resolution using SolarWinds Orion, Wireshark, and proprietary customized tools. Implemented SolarWinds LEM for tracking network changes.
- Participated in the design, implementation and maintenance of new network products or services. Recommended enhancements to existing networking systems and infrastructure
- Coordinated with remote datacenter contractors, cloud vendors, and internationally located engineers on large-scale network infrastructure projects. MS Azure cloud implementation for foreign clients. Compared benefits and restrictions with AWS owning information.
- Documented, implemented and maintained processes and procedures related to network service delivery via standards, policies and procedures. Change control, BOMs, TIDs, Visio network topologies, JIRA tickets, InfoBlox, and SharePoint document reserve.
- Maintained accurate records of all maintenance, inventory, and security measures associated with the company’s data network for current support with vendors.
- Experience with administration, implementation and troubleshooting of Cisco firewalls and Palo Alto firewalls. Migration from Cisco to Palo Alto firewalls.
- VoIP and MPLS configurations using Cisco, Oracle, SBC, and TelcoBridge gateways.
Network Engineer Consultant
Confidential
Responsibilities:
- Experience with cloud based as well as hybrid public/private cloud infrastructures.
- Analyzes non-standard technical requests and engineers solutions that meet business needs, adhere to security rules, interoperate well with existing systems, and stay within budget
- Assesses and resolves technical issues associated with Cisco switches and routers, VOIP circuits, station cabling, wireless networking, and video conferencing equipment
- Monitors and maintains the health, integrity, and performance of the enterprise network using a variety of industry standard tools
- Manages hardware upgrades related to network infrastructure
- Coordinates site visits with service providers
- Writes and maintains technical designs and documentation
- Performs project support as coordinator and lead as needed
- Comfortable working as part of a larger tech team which includes DBAs, Sys Admins where communications and collaboration are key
- Experience configuring and maintaining Palo Alto and Cisco firewalls
- Experience supporting the unique requirements of a large retail warehouse
- Experience with PCI compliant environments
- Willingness to assume additional information “security” related responsibilities beyond what is already generally expected on a network engineer
- Experience with various open source monitoring tools such as Nagios, OSSEC, SIEM, OPENMNS
Network Engineer Consultant
Confidential
Responsibilities:
- Experienced Sr. Network Engineer in a Large-scale inter-Network environment. Proven complex network experience in design, administration, implementation, and troubleshooting of network related hardware both layer 2 and layer 3 devices/appliances.
- Application Load Balancing with F5 Big-IP LTM, DNS (GTM), Cisco ACE, and Cisco CSS appliances.
- Implemented Boston MAN project replacing legacy expensive WAN circuits with inexpensive dark fiber saving company significant telecommunication costs. Project manage medium size network related projects. Demonstrated ability to lead medium to large scale network implementation projects.
- Provided analysis and redesign of the network to keep up with the changing needs of the organization. Delivered and collaborated on the design, implementation and support of network core routing, switching infrastructure, Remote Access, B2B VPN, and security services.
- Wireless LAN infrastructure with Cisco WCS, WLC, WAPs, and monitoring
- Provided tier 3 support and expert trouble resolution using Eye of the Storm, SolarWinds Orion, Wireshark, Cacti, and other tools.
- Participated in the design, implementation and maintenance of new network products or services. Recommended enhancements to existing networking systems and infrastructure
- Worked with contractors, vendors and other Engineers on medium and large-scale network infrastructure projects.
- Documented, implemented and maintained processes and procedures related to network service delivery via standards, policies and procedures. Change control, BOMs, TIDs, Visio network topologies, and SharePoint document reserve.
- Maintained accurate records of all maintenance, inventory, and security measures associated with the company’s data network for current support with vendors.
- Experience with administration, implementation and troubleshooting of Juniper Firewall and Checkpoint firewalls
- Experience with WAN networking technologies; including MPLS, MetroEthernet. Proficiency with BGP and OSPF routing.
- Proficiency in best practice network design in medium to large distributed enterprises
- Excellent written and oral communications skills, as well as strong interpersonal and communication skills.
- Experience working with the Cisco routers and switches such as Nexus series.
- Experience with Cisco and Avaya VoIP solutions.
