Active Directory Assessment \ Security Engineer Resume
Rosemont, IL
SUMMARY
- Worked on an Confidential Global Value Managed Services project as an Integration Architect on their Fiat Auto Account.
- Migrated applications on AIX 5.3 to Red Hat LINUX.
- Provisioned Apache SVN on Red Hat LINUX accessing LDAP communication to Active Directory (AD).
- Disk space management on Red Hat LINUX server.
- Experience in Systems Architecture, Integration and Infrastructure Management, Exchange 2007, 2010, OWA, Outlook 2010 Exchange Hybrid, 365 Lotus Notes 8.x, Blackberry server 4.1, Blackberry hand held devices. Mail Encryption, SMTP Public Folder, Message Transfer. Quest Migration Manager (QMM), Symantec Archiving.
- Ten plus years of extensive experience working with Windows, 2008, 2012, 2016 Active Directory, Web (Apache, IIS, Web sphere, Joomla, Java).
- Implementation of Windows 2008,2012 Development Server environment, VBS Scripting,
- Perform Scripting, Windows Security, LAN/WAN administration and MS Clustering.
- Well versed in HBA SAN, MQSeries, IIS, Ghost/Kronos, Cisco, SMS, Citrix, ESX 3.0 VMware 5.0, Tivoli, Oracle and DB2 databases.
- LDAP Development Engineer for Active Directory migrations.
- Active Directory upgrade from 2008 R2, 2012 forest level.
- Background in Production Support and On - Call Support, ITIL Process (CVS, Remedy, and Confidential Load Runner).
- Implementation of Hardware and Symantec Endpoint 12 Netback up, Acronis; Backup & Disaster Recovery experience includes working with Arc Serve, Backup Exec, VERITAS Volume Manager and Netback up, BESR Bare metal, TSM, Acronis.
- Project Management experience includes working with tools like MS Project and Visio.
- MYSQL 5.1 Configuration Enterprise Monitor.
- Architected Cisco Load balanced system utilizing MySQL backed. Web space training was designed to educate health care professional.
- Cisco UCF and VPN to allow students to participate in class lectures.
- VPN, UCF was implemented to share files between associates.
- Installation of VPN portals to allow clients server environment access.
- Load balance servers F5 environment
TECHNICAL SKILLS
Microsoft: Windows Server 2008 R2, 2008, 2012, 2016 Storage Server, Windows 7, Windows 10, Hyper V Vista, 10, MS Office 2007, 2010, Visio 2010; MS SQL 2005, 2008, 2016, MS IIS Web Server 6, 7 & 7.5; System Center Operations Manager 2007 R2; System Center Virtual Machine Manager 2008; Systems Center Configuration Manager 2007 R2; System Center Data Protection Manager 2010; Active Directory 2008, 2012,2016 RODC; PKI; SharePoint 2007 (High level); Exchange 2010, Office 365, Azure, ADFS 2.0, 3.0, Clinical Matlab
Working Knowledge of Linux Operating Systems: Red Hat, SUSE, MySQL, Kopi, DSL Linux
Additional Software: Light PowerShell, WMI & VBS Scripting, Symantec Ghost - All Versions, Lotus Notes 8.5, VMware 3,5, 4 & ESX 5, Black Berry Enterprise Server, Lotus Notes 4.x., Lync
Roles: Server Engineer, Field Engineer, Lead Engineer, Network Engineer, SQL Database Engineer, WEB Server Administrator, NAS/SAN Administrator, Lead Engineer, Team Lead, Technical Project Manager, Consultant
Infrastructure Experience: TCP/IP, Clustering, Web Services, Wireless & WEP Support, VPN, VMware, Active Directory, DNS-WINS-DHCP, Fiber Channel, iSCSI, SAN - NAS, SMTP, Adapter Teaming
Tools: /Methods OSI Model, Load Testing, Hardware Stress Testing, Multi-Tiered Architecture, Cisco CDA, ITIL, Microsoft MOF, Data Recovery, Principal of least Privilege, Capacity Planning, Tivoli, Depth and Diversity, Sarbanes Oxley - SOX, Director, Tivoli (Tad4d), BESR, Industry Application Banking, Educational, Commercial, Automotive, Commercial Security, Rapid 7, Big Fix, Security, Install Shield.
Hardware: Confidential Blade Centers 8582, Confidential 7147 Esx/VMware 5.x, HP Blades, DL Series, Dell servers, Confidential Chassis, San (HP AVI, Confidential, EMC)
PROFESSIONAL EXPERIENCE
Confidential, Rosemont, IL
Active Directory Assessment \ Security Engineer
Responsibilities:
- Analyzed and updated Visual Basic scripts for all encryption/decryption PGP programs throughout the system to significantly improve security for customer files.
- Conducted Red Hat Linux administration including:
- Orchestrating source code security access and updates as part of Apache subversion.
- Completing Applitools application upgrades to version 10.4.4.
- Executed a series of Windows security updates and Java upgrades to further eliminate system vulnerabilities and minimize penetration risks utilizing LDAP
- Expertly installed Splunk Enterprise on Linux and Windows Servers and upgraded Sha1 to Sha2 as part of security measures currently occurring industry-wide.
- Applied Splunk report queries, dashboards
Confidential, New York, NY
Security Analysts
Responsibilities:
- Applied Tenant to Tenant migration Lotus Notes to Exchange 2010, Office 365
- Applied F5 Load balance Website environments.
- Baseline security audits across all platforms, systems. To meet Nisst or ISO 27001 standards.
- Policies to have Tech specifications Documents for legacy applications.
- Installation on Qradar on windows Provide client Dashboard alerts.
- Applied Quarterly Scans to reduce vulnerabilities security risk.
- Provide analytical functional detail high level reporting’s
- Deployed Quest migration tools Lotus Notes to Exchange 2010, Hybrid and Office 365.
- Upgrade current ADFS 2.0 to 3.0 Single SQL database to cluster environment
Confidential
Independent Security Consultant
Responsibilities:
- Performs Security Controls Assessments (SCAs) and evaluation of the security controls for an information system conducted in accordance with current versions of NIST Special Publications (SP) for assessments and risk management.
- Audited the systems for complying with SOX-404 IT Compliance, PCI DSS Compliance, HIPAA Compliance, SAS 70 Certifications and ISO 27001 Certifications
- Plan, design, deploy, integrate and maintain IT security systems into corporate and store computing environments including systems used for logging, monitoring, intrusion detection, centralized cyber security knowledge base, and behavioral analysis. Identify, plan, develop and implement automation of routine tasks.
- Remediate issues occurring with any IT security systems including but not limited to unexplained system outages, cyber security incidents, issues with data collection feeds or interfaces with external MSSP providers. Collaborate with IT teams to remediate any potential hardware or network issues that prevent detection capability.
- Microsoft Monthly windows patching through Big Fix.
- Security Scanning Windows, UNIX.
- Created Security auditing standards for Bench mark comparisons.
- Installation of Sun Directory Server
- Confidential Security Identity Manager LDAP on Sun, windows servers.
- Confidential Cloud Private clouds
- Applied VMware, Private cloud load balanced requirement city origin.
- Implementation of Site-minder Cloud migration from Microsoft ADFS 2000 users.
- Operating systems, VMware, internet explorer, SharePoint, vpn, windows Active Directory, SharePoint
- Most recent experience is in Systems Architecture, Integration and Infrastructure Management, Exchange 2010, 2010, OWA, Outlook 2007
- Exchange 2010 Hybrid and Office 365 from Lotus Notes Quest Migration Manager
- Deployment of Patching utilizing PowerShell to servers Desktop through AD GPO’s Microsoft Scheduler
- Bit locker encryption: server Hardening, PKI Windows 2012 SQL Using Mount Point Architecture,
- SCADA Gas system upgrades
- Kerberos authentication Engineer systems
- Managed Software licensing through SCCM, Active Directory Computer, and User Objects.
- Identified Software risks in computers, License accuracy.
- Performs risk assessments and Security Control Assessment (SCA) processes which identify system/service provider threats, vulnerabilities, likelihood of occurrence, and potential impacts
- SCCm 2012, 2012: Deployment packages, updates, Server, Client
- Year Disaster Recovery physical server for physical and virtual servers. Besr 2013, Acronis, RCA documentation.
- Remote access servers, RDP, Radius, VPN, Citrix Portal, Vulnerabilities, PKI server hardening.
- Confidential Hardware Blade 7914, HBA, San Clustering Windows server on San
- Steady State Server System Windows Active Directory.
- GPOs, OU, ADFS. Bit locker encryption: server Hardening, PKI Installation of Windows server 2008 R2, 2012 Enterprise (DFS, Share, AD), QMM.
- Designing, deploying, and managing AD LDS environment for LDAP authentication.
- Global Policy Management, implementation, SCCM 2007, 2012.
- VMware, 5.0 Administrations, Data Store expansion ion Confidential 7147 servers.
- Backup implementation of Acronis 7.5. Perimeter, Symantec Endpoint 12 ver 12.1
- Symantec Backup Recover. Disaster Recover Testing yearly
- Aligned various security initiatives for Microsoft’s Identity Management ILM, CS and RMS WebSphere.
- P2V deployments into VMware 5.0, Server deployments.
- Middleware Installation, Debug, Tivoli, Net backup, Antivirus, Acronis,
- Change Management Confidential ITD Global Maximo, Impact.
- Technical Assessment Documentation Migrations.
- Cisco UCF Microsoft / Change control management presentation.
- Security Checking Vulnerabilities Remediation. Utilizing Rapid7, PowerShell scripts
- San, IIS, Director 6.32, Tad4d, SMS, Tivoli.
- ADFS, Office 365(2013), Lync, Data, Voice).
- GPO Policies, Route add, WSUS) and Systems Center Configuration Manager (SCCM, ADFS 3.0, Configurations, Certificate Services, Proxy.
- Cisco Telephony implementation 3000 user deployment.
- Health Checks, Security Vulnerability Scans, Big Fix Manual Health / Gap Checking windows servers.
- Tivoli Endpoint, SRM, SEA
- Remote access servers, RDP, Radius, VPN, Citrix Portal.
Confidential, Morristown, NJ
Active Directory Migration, Architect
Responsibilities:
- Control management.
- Disaster recovery from Backup recovery from disk backup.
- Deployed Quest migration tool to reduce DC forest, International DC deployment, update Group policy configurations. Installation Radius, (NPD, IAS), SCCM 2012 for Us, Europe, Asia Pacific.
- Software licensing reduction utilizing SCCM inventory. Active Directory, Implementation for ADFS, Wins, DNS, connection signal signs Office 365/ Azure.
- Worked with the server team in redesigning the AD/LDAP structure for more efficient administration and heightened security.
- Microsoft Lync 2010. Migration 3000 user based import scripts, Forensic workstation migration tool. VMware installation. HP, DL, 360, Blade.
Confidential, Ithaca, NY
Active Directory Migration Engineer
Responsibilities:
- Migration of a subset of the users, computers, and applications identified in the units to be consolidated.
- Reviewed Requirements Gathering in support of AD Consolidation.
- Deployed the Quest Migration Manager for AD software on customer provided servers.
- Assisted in the development and testing of the migration scenario to ensure QMM ver8, Forensic and associated processes are performing as expected.
- Assisted in the configuring of Active Directory Windows 2008R2 based on Migration Lead's design and configuration recommendations.
- Nagios, SCCM, Deployments.
- Remote access servers, RDP, Radius, VPN, Citrix Portal, Vulnerabilities, PKI server hardening.
- Mobile Data Terminal to Client access and server
Confidential, NY
System Engineer
Responsibilities:
- VMware 4.1 VSphere VCenter 4.10, Physical servers utilizing VMware 4.1.x migrations, Deployment for following software packages Symantec (Altiris) Nagios, SysEdge application monitoring - Auto agent installation through AD OU, VB Scripting installs Reduction of Server space issues. Define Service level agreement for Backup standards
Confidential
SAN Engineer and Windows AdministrationResponsibilities:
- VMware 4.1 VSphere VCenter 4.10, Physical servers utilizing VMware Cold Clone, SCCM 2007, SCOM WOS Job scheduling tool - Auto agent installation through AD OU, Script installs.
- Virtualization Cold Clone, VM clone physical to virtual.
- Collections, Software Patch Service Pack 2, R3, Feature Packs, Update Rollups, and Configure job schedules.
- Installed OS, configure system, & patch physical and virtual servers.
- Managed Software licensing through SCCM, Active Directory Computer, and User Objects.
- Windows 2008R2, Linux, UNIX, HP (Blade & Neap Storage, Backup EXEC, HP).
- Backed up Exec tape administration.
- Documented and maintained configuration and process information.
- Installed servers in racks, cable, and power.
- Installed HW in server racks, connecting power, etc.
Confidential, NYC, NY
Infrastructure Design Engineer
Responsibilities:
- Project task management - Ability to work in an unsupervised mode and take ownership of projects and/or subtask and manage to completion Capacity Planning for each.
- Created Low Level Designs.
- Provided Subject Matter Expertise for Hardware, Platform, Storage, Middleware and Messaging infrastructure components. Remote access servers, RDP, VPN, Citrix Portal, Vulnerabilities, PKI server hardening.
- Windows server migration 2003 to VMware 3.x.
- Exchange 2007 Administration. Used the DMAIC framework for all design projects
Confidential, Bridgeville, PA
Sr. IT Architect/Engineer/Integration
Responsibilities:
- Upgraded small business systems email, Virus Storage Area Networks (San), Remote Access Windows Production Server environment.
Confidential, NYC, NY
Confidential Operations Manager
Responsibilities:
- Performed Level 2 and Level 3 dispatch services for DAS Infrastructure-related tickets and performed preventative and perfective maintenance services for the DAS Servers and Storage platforms.
- Creation of Operation and Maintenance (Run Book) manual for client system.
- Deployment of Wireless Cameras in NYC
- Mobile Data Terminal to Client access and server communication
Confidential, Bridgeville, PA
Sr. IT Architect/ Engineer/ Integration
Responsibilities:
- Upgraded small business systems email, Virus Storage Area Networks (San), Remote Access.
- Disaster recovery, virus.
- Windows Production Server environment.
Confidential, NYC
Web Site/ MS SQL, Security Engineer
Responsibilities:
- Consolidation Implementation of Clinical testing software Matlab.
- Cisco UCF Virtual Private Network (VPN) Web based Teaching Training.
- Implementation of MYSQL 5.1 Intel-based Apache Joomla LMS, PHP on Windows 2003 Replication utilizing MYSQL Enterprise Monitor.
- Implementation of Always Sync software to have Real Time Data Replication for Website Healthcare course Martials.
- Administration Windows 2003, 2008 VMWARE 3.x.
- MS Exchange 2003, OWA Mail, FTP, Blackberry hand held devices. Mail Encryption, SMTP Public Folder, Message Transfer.
- Implementation Apache/modules, Tomcat PHP/modules Configuration of MYSQL 5.1 Replication utilizing MYSQL Enterprising Monitor.
- Implementation of Imap, POP Email messaging standards, on/ Windows 2003 Platform OWA, Active Directory, DNS, Wintel, Wins Email accounts. Along with SharePoint 3.0.
- Implementation of Disaster Recovery Multi-tier Microsoft SQL application multi-tier client access database 2003 front end.
- Created test client server loads and tested 110 Clinical Trials Center (CTC) client server applications documentation for quality standard operating procedures, standards, disaster recovery.
Confidential, NewYork, NYC
Exchange Engineer (Consultant)
Responsibilities:
- Migration of Lotus Notes Data Lotus version 200 mailboxes to Microsoft Exchange version bits on windows Active/Passive mail to Cluster.
- Exchange 2003 Migration from Lotus Notes 6.x utilizing Quest Notes Migrator for Exchange 3.1
- Installation of eight Dell 2950 server operating systems Windows version bit Enterprise in Cluster environment.
- UNIX DNS administration, Archiving Policy emails 2g per user and enforces archiving mail.
- Performed data base consolidation in Exchange Servers and ensure maximum usage of space.
- Planned and implemented DR for all Exchange Servers and Domain controllers.
- Migrated and upgrade LDAP aware applications to ensure service availability in the new domain structure
- Implementation, Wintel, Dell Equal Logic PS5000E Storage Area Network with 7.2 Confidential . B storage.
- Storage Area Network disk allocation Loons Migration.
- Performed Best Practices related to email routing, filtering, monitoring, storage, backup, and replication.
- Implementation of (COS Roles Hub Transport, Client Access server role, Mailbox Role) Migration user mailboxes utilizing application software Quest. Setup of Blackberry server Enterprise.4.1.
- Anti-spam management and administration using Iron Mail and MacAfee group shield for Exchange.
- Troubleshot ActiveSync, OWA, OMA, and RPC over Https issues.
- Outlook 2007, Web Access and Outlook Anywhere, Configure Microsoft CAS roles and install SSL certificates.
- Implemented iSCSI San devices utilizing clustered, snapshot, Replications between SANs Equal Logic, implement Exchange anti-spam management and administration and ActiveSync wireless (Exchange 2007, Outlook 2007).
- SharePoint administration on Windows 2003 Web Server environment.
Confidential, NYC
Lead Architect (Consultant)
Responsibilities:
- Installation of Operating systems (Windows 2000, UNIX, VMware) Applications. Tested front end and Backend applications after deployment.
- Private Cloud VMware presence Load balance country geography, Car Europe, USA, Farming Equipment CNH
- Primary Lead Architect and mentor of eight to ten engineers.
- Relocation of Fiat Auto Torino Data Center to Milan Primary and Secondary Data Centers.
- VPN remote using Confidential & Confidential VPN Encryption and RDP, Thin client, terminal server client access to Windows servers.
- Used Putty software VPN connection to UNIX HP Super Dome.
- Smart Card remote access by network or internet Connection. Network VPN Gateway was implemented.
- Security Software utilized Symantec Perimeter, Endpoint 12 Virus, Firewall software installation on server for File servers and clients for centralized administration.
- Infrastructure Data Analyst Excel Access, SQL database, MySQL 5.1 (or SQL) analysis of data.
- Architect on transformation project with relocation of 100+ business applications and consolidated the IT Infrastructure for the largest car manufacture in Europe.
- The Infrastructure consisted of Open Systems 100 midrange systems mainframe and large network Infrastructure across Italy. Server migration Windows 2000/2003 to VMWARE 3.x, Email platforms, Lotus Notes 8.x, Exchange 2007, Black Berry Enterprise Administration.
Confidential, NYC
Systems Engineer
Responsibilities:
- Novell NDS Edirector, Monitoring User, file Print environment.
- NetIQ Edirector Certificate Web, Application environments using LDAP authentication.
- NPrivate internal VMware, EMC, Cisco Cloud.
- Systems Engineer entailed relocation of the Primary and Backup Data Center.
- Utilized images tools, San Snap shoot EMC and Replication tools.
- Server software updates performed via Management remote access individually.
- Lotus Notes, 8.x, Exchange 2003 Email Archiving to Platters.
- Archived to San disk storage.
- System Center Configuration Manager (SCCM) Windows Management Instrumentation (WMI), ITIL Process (Remedy).
- Private VMware Cloud Load balanced IP Segment, Application speciations.
- Allowed large software server updates in centralized and decentralized computer centers.
- HP Remote Management VIA: Web access of network Smart card management software. Email Security Gateways allow tunneling access into Banks DMZ sites, DNS. Wins.
- Active Directory consolidation, Implementation of SMS. Server migration Windows 2000/2003 to VMWARE 2.x, 3.x.
- Good working knowledge of installing Windows NT4.0/W2K/W2K3/XP on industry standard vendor hardware (e.g. HP/ Confidential /Dell hardware including blade. Performed security monitoring and audits using Confidential Tivoli tool (TSM as a System Engineer Consultant for Disaster Recovery Project (Windows, UNIX). (***Additional responsibilities can be provided on request)