We provide IT Staff Augmentation Services!

Senior Security Analyst Resume

5.00/5 (Submit Your Rating)

Virginia Beach, VA

TECHNICAL SKILLS:

  • Project Management
  • Team Management
  • Budget Management
  • IT Strategy Development
  • IT Process Analysis
  • IT Migrations
  • MS Server 2008R2/2012R2/2016
  • Exchange Server 2003/2007/2008
  • MS Hyper - V 2012R2
  • Active Directory
  • Group Policy
  • Remote Desktop Services
  • Windows XP, 8, 7, 10
  • WSUS
  • Spiceworks
  • Allscripts EHR & PM 16.0
  • Tanium
  • Symantec DLP
  • Symantec Endpoint
  • Veritas Backup Exec
  • Phreesia
  • Noah 4
  • Sysinternals
  • Clonezilla
  • Servers (HP&Dell)
  • Desktops/Laptops/Tablets
  • Raid systems
  • Network KVM (Aten)
  • Switches/Routers/Wireless AP’s (Adtran)
  • Network Attach Storage
  • Patch Panels

PROFESSIONAL EXPERIENCE:

Senior Security Analyst

Confidential, Virginia Beach, VA

Responsibilities:

  • As a Senior Analyst I executed risk assessments and testing of data, evidence and controls in place on the network infrastructure based on required protocols and security standards against Confidential Subsidiaries, to ensure alignment of security measures, such as, data encryption, technical standards, access controls, intrusion detection and prevention while establishing risk and documenting the client’s security posture. In addition to assessments, I performed continuous improvement efforts in enhancing performance and functionality throughout the general workplace, including performing proactive general tasks such as minimizing time spent on ongoing and reoccurring tasks by automating the deliverables to the best of ability in order to expedite the process.
  • Created document request list (DRL) to aid in collection of in-scope controls and processes for the 2021 Security Assessment
  • Conducting vulnerability assessment of all network infrastructure such as servers, firewalls, IPS/IDS, load balancers, VPN concentrators and others
  • Utilize Tanium to perform DISA STIG Scans and Technical Configuration Scans (TCS) on Servers, End user devices, Microsoft Server Operating Systems, Linux OS, windows 10, and Mac OS to ensure alignment with Confidential security requirements.
  • Experience in planning and conducting risk assessments, security assessments, PCI DSS, FISM and HIPAA compliance both on premises and in cloud computing environment.
  • Assist in development of security Plan of Actions and Milestone (POA&M) mitigations through timely assessment of POA&M corrective actions
  • Conduct technical and nontechnical reviews and observe audits as necessary to support development and test efforts
  • Evaluating security solutions to ensure they meet requirements for processing covered information HPI/PII
  • Supporting security authorization activities and ensure compliance with Risk Management Framework (RMF)
  • Understanding of Systems Engineering requirements, specifications, and processes
  • Ability to organize, multi-task, and prioritize tasks in a fast-paced, deadline driven environment
  • Areas of Strength
  • Vulnerability analysis and remediation
  • Cyber threat and Malware analysis
  • NAC Controls and Network Security audit
  • Business Continuity and Disaster Recovery Planning
  • Governance, Risk and Compliance (GRC)
  • Identity Access Management (IAM)
  • PCI DSS compliance and implementation
  • Endpoint protection, DLP, Encryption and Log Analysis

Security Analyst

Confidential, Virginia Beach, VA

Responsibilities:

  • Subject matter expert on the Subsidiary, Security, Governance and Oversight (SSGO) technical team member.
  • Perform assessments on existing and newly acquired subsidiaries to ensure alignment of security posture with Confidential ’s security policies.
  • Provide technical expertise and guidance to subsidiaries to aid in security remediations efforts.
  • Subject matter expert (SME) on the SSGO technical team for network security, data loss prevention (DLP), encryption and vulnerability management.
  • Serve as the primary backup for Tanium Comply implementation within Confidential and its subsidiaries environment.
  • Led vulnerability management project with a goal of being able to quantify the progress at which subsidiaries were meeting security patch remediation
  • Designed a vulnerability management dashboard that assigned a vulnerability score as well as data visualization of each subsidiary’s vulnerability remediation progress.
  • Was able to identify issues within the current patching management process and provide solutions to the Vulnerability Management department to resolve the identified issues.
  • Lead to the discovery of several subsidiaries that were not currently included in Confidential ’s current vulnerability management program.
  • Provide top-tier knowledge and support for all security domains and bodies of knowledge including Access Control, Application Security, Business Continuity and Disaster Recovery Planning, Cryptography, Information Security and Risk Management, Legal, Regulations and Compliance and Investigations, Operations Security, Physical Security, Security Architecture and Design, Telecommunications and Network Security.

Systems/Network Engineer

Confidential, Jacksonville, FL

Responsibilities:

  • Responsible to oversee and perform remediation of none permitted technology on Confidential enterprise network.
  • Responsible to oversee and perform remediation of Tier 1-3 for Desktops, Servers, Virtual Desktops/Servers and Confidential banking client machines. Managing, deploying, upgrading and patching and remediation of 325K+ client-side computers for compliance audit.
  • Technical professional with operations & troubleshooting experience, perform technical analysis, drive for results, take ownership, be self-motivated, and think outside the box.
  • Created and refined the remediation process for Confidential network.
  • Achieved 100% patch compliance for GWIM global group.
  • Locate and patch security vulnerabilities across Confidential Workstations
  • Silently patching and updating PCs without disturbing users using Command Line, PSTOOLS and PowerShell.
  • Advanced OS and application troubleshooting knowledge required. Experience with Enterprise Vulnerability Management tools. Experience with desktop security practices and tools.
  • Responsible for silent installation and updates of McAfee.
  • Create command line installation scripts.
  • Troubleshooting of network related issues involving IP and DNS issues for Desktops, Virtual appliances and bank center machines.
  • Review logs from IBM Bigfix, Windows Event View to determine and resolve client issues.
  • Extensively worked with registry settings.

Senior Systems/Network Engineer

Confidential, Chesapeake, VA

Responsibilities:

  • As the sole engineer I was responsible for developing, designing and managing all information technology aspects of a complex medical practice network consisting of 3 locations.
  • Manage an annual IT Budget of $300,000+
  • I Negotiated a contract for a product call Phreesia. I was successful in implementing Phreesia technology ahead of deadlines set by the Board. This product improved employee performance throughout the organization. It also introduced more options for our patients to complete check in paperwork ahead of their appointments. This in turn allowed our doctors to see more patients per day. The billing department also saw a 20% increase in collections with the implementation of this product. With the deployment of this product there was a 70% reduction in paper in out clinic.
  • I was able to meet all government requirements for Meaningful use attestation and ICD10 implementation ahead of time for 3 years in a row. This resulted in government incentive payments over the 3-year period of $750,000.
  • I relocated 3 medical offices. During the relocations I was able to refresh all IT equipment for each location. I negotiated all contracts for electrical and network wiring for each office. During the relocation of the main office, I was able to design and setup a new server room. Leading up to the relocation of the main office I was able to pre-stage several new servers. During this relocation I completed the migration of a Domain, Exchange server as well as Allscripts PM and Allscripts EHR servers.
  • Planned and redesigned the entire Network and Systems architecture in first 6 months
  • Migration of Domain from server 2003 to 2008 r2
  • Migration of Active Directory, DNS, Group Policy, ISS, SQL, File and Print Servers
  • Migration of Exchange 2003 to 2007
  • Migration of Electronic Health Record Server from 2008 r2 to 2012 r2
  • Migration of Practice Management Server from 2008 to 2012 r2
  • Migration of Remote Desktop Server from 2008 r2 to 2016
  • Implemented company policies, technical procedures and standards for preserving the integrity and security of data, reports and access
  • Perform HIPAA security audits on the network and systems based on best practices outlined by HHS.gov
  • Coordinated multiple projects to meet Meaningful Usage stages ahead of government regulatory requirements.
  • Work efficiently and productively with third party vendors.
  • Procurement of IT assets (Hardware and Software)
  • Research emerging technologies and prepare presentations and present to Board of Partners consisting of 6 Doctors.
  • Planned and Managed main office relocation that included the following:
  • Negotiated the electrical and network structure wiring and the server room environmental controls.
  • Successfully moved the server room, network equipment, phones, printers, and 50+ workstations.
  • Completed the entire move within all project parameters.
  • On time (96 hours to complete)
  • Managed two additional projects to relocate satellite locations.
  • Negotiated new contracts with Internet Service Provider:
  • Upgraded from T1 service to 20 meg Metro E service
  • Upgraded from 5 meg internet connection to 20 meg connection
  • Annual savings of $6,500.00
  • Improved satellite office productivity
  • Negotiated a contract with Ricoh for copiers and toner supplies for network printers.
  • Maintain corporate infrastructure and ensuring service up time and quality of service for company end users in all three regional offices
  • Detect and repair network infrastructure issues
  • Review switch and router logs for possible network attacks
  • Responsible for researching hardware and services to implement to secure the network and services
  • Adding and editing users in Active Directory, create reservations in DHCP, check Event Viewer for troubleshooting issues, and perform various other Network Administrator Duties. Implement and support various company resources including Active Directory, DHCP, DNS, Exchange services, Hyper-V environment, RDS environment, print server, Backups, and medical practice specific resources
  • Responsibility for IT hardware for infrastructure and end user equipment.
  • Planned and Implementation of Noah 4 Audiology System
  • Centralized Audiology Database
  • Improved productivity
  • Reduced security risk
  • Designed backup solution consisting of:
  • Symantec/Veritas BackupExec
  • HP StorageWorks 1/8 G2 Tape Autoloader
  • HP X1500 G2 Network Storage Server
  • Microsoft Storage Server 2008 r2
  • Additional projects and implementations that have improve end-user productivity and efficiency:
  • Phreesia
  • Central Phone Scheduling System
  • Rosch Visionary Systems
  • Allscripts Patient Portal
  • Administration and maintenance of Allscripts Software (EHR 16.2, PM 16.0, and Patient Portal)
  • Designed and implementation of Active Directory, Group Policy and Exchange.
  • Created and implemented logon and logoff scripts.
  • DNS, DHCP, IIS, WSUS Administration.
  • Configured IIS 7.0
  • Configured Site Bindings
  • Setup Exchange SSL
  • Ordered SSL certifications
  • Setup Default Website
  • Enable SSL redirection for OWA
  • Mange Company locally hosted Website
  • .NET troubleshooting
  • Experience with trouble shooting third party applications that are having issues with .net installation.
  • Allscripts PM and EHR heavily relied on .NET in order to properly function.
  • Configured DNS Forward and revers Lookup Zones as well as root hints.
  • DHCP
  • Installed and setup DHCP server
  • Setup DHCP Scopes
  • IP Reservations & Exclusions
  • Implemented a Security system consisting of:
  • Axis cams and Synology NAS.
  • Paxton Access FOB system (Net2 Access Control)
  • Documented all server and network problems and other unusual events in detail.
  • Installed and Manage ADTRAN switches and routers
  • NetVanta 1238/1534/1531 p/1638/3448
  • NetVanta Wireless AP’s 150/160
  • Setup VPN’s, Firewalls, Access Control List, VLANs, WAN, LAN, and Trunking Protocol
  • Experience with Firewall administration, Rule Analysis and Rule modification
  • Provide Support to Doctors, Nurses and End Users

Service Desk Supervisor (IT)

Confidential, Norfolk, VA

Responsibilities:

  • Supervised and coordinated activities of the Help Desk Technicians and processes in support of 1000+ users
  • Carried out supervisory responsibilities in accordance with the organization’s policies and applicable laws.
  • Responsible for conducting interviews, training, planning, assigning, and directing work.
  • Addressed complaints
  • Established help desk system for task management and tracking,
  • Analyzed documented problem areas, and devise and deliver solutions.
  • Assisted help desk technician in solving, non-routine or complex software, hardware, and procedure problems.
  • Conferred with staff, supervisors, managers, and end users to improve services and prevent future problems
  • Coordinated installation of hardware, software, implementations, system configurations, etc.
  • Conducted research on emerging products, services, protocols, and standards in support of help desk technology procurement and development efforts.
  • Provided problem resolution and information related to Zim's custom computer/network systems.
  • Provided application support and training to various levels of staff (users to executives and helpdesk staff) through written, verbal, or onsite instruction.
  • Created and maintain technical documentation.
  • Created and maintain videos and step by step documentation on how computers, laptops, software, servers, and telephone systems are deployed or repaired.
  • Developed and implemented procedures for the creation and deployment of computer images.
  • Ensure all users' computer questions and related problems are resolved in a timely manner.
  • Maintain historical records and related problem resolution documentation for Knowledge base creation.
  • Managed companies’ IT assets within an MS Access built database

Help Desk Technician

Confidential, Norfolk, VA

Responsibilities:

  • Provided resolution to elevated trouble tickets
  • Performed problem research, isolation, resolution and follow-up for routine user problems.
  • Responsible for all PC deployments and moves
  • Provide remote support to users throughout the United States, Canada, and South America.
  • Troubleshoot network issues WAN and LAN
  • Troubleshoot Blue Coat proxy software/hardware
  • Provided Support for SAP
  • Resolve telephone issues
  • Troubleshoot RSA
  • Monitor all inventory

Senior Help Desk Agent

Confidential, Norfolk, VA

Responsibilities:

  • Responsible for providing software, hardware, and network support.
  • Served as the Backup supervisor for the team.
  • Monitored and evaluated the level of service provided by other Helpdesk Agent's to ensure strict adherence to Confidential policies was upheld.
  • Member of the morale committee; responsible for plan and set up activities to improve morale.
  • Serve as a tester for the progression plan. This was designed to test the abilities of individual agents to provide different levels of support.
  • Other Duties included:
  • Providing RAS support
  • Microsoft Outlook support
  • Legacy application support
  • Network connectivity support
  • Network printer support
  • User account support
  • Citrix support
  • Work with Active Directory, File servers and Print servers
  • Provided support for Terminal Services
  • Provided support for user profiles

We'd love your feedback!