Azure Infrastructure/security Architect Resume
Redmond, WA
SUMMARY
- Extensive experience in managing data center operations and cloud computing.
- Proficient in Cloud/Network/Server/Storage/Security.
- Experienced Azure Cloud professional with a strong background in migrating workloads to public cloud, Azure Government and Commercial clouds, AWS, Azure Administration, Azure Infrastructure Operations, Linux, and end - to-end project management.
- Expertise in MS Azure security, including Azure Active Directory, Domain Services, Azure Security Center, Azure Governance, Security, Authentication, MFA, B2C, Data Privacy, Identity and Access Management (IAM), Cryptography/Key Management, Access Controls, and Security Protocols.
- Strong Azure Practice leader with the ability to sell, scope, and win projects, excellent RFP, SOW, RFI, pre-sales/sales, sales lifecycle management, and client management skills.
- Skilled in driving the deployment of customers' workloads into Azure and increasing their consumption of the platform by providing deployment guidance, supporting the development of the customers' cloud adoption model, and providing appropriate recommendations to overcome blockers.
- Hands-on experience in managing configuration, Windows Azure Migration, Deployments, maintenance, software application & hardware devices with a focus on systems and Windows Azure environments.
- Proficient in planning and designing servers for backup and recovery in Azure, restoring application/VMs, etc.
- Strong decision-making, issue resolution, and leadership skills.
- Excellent presentation and customer relationship skills with strong written and verbal communication skills, able to communicate effectively with senior management, third-party vendors, technical staff, and non-technical end-users.
- In-depth knowledge and experience in proficiently handling complex mission-critical projects under extreme time constraints.
- Skilled in IT infrastructure planning, capacity analysis, and system implementations.
- Successfully managed technical teams of Network Engineers, System Admins, and Systems Integration Specialists.
- Resourceful in delivering System/Applications maintenance support and responding to outages during off-hour software deployments within established Service Level Agreements (SLAs).
- Successfully designed and implemented Security, System, Network, and Telecommunication solutions.
- Managed critical IT services such as email, internal and external business applications.
TECHNICAL SKILLS
Azure Cloud Technologies: Azure Compute, Azure Storage, Backup and Recovery, ASR - Azure Site Recovery ServicesIaaS SQL, PaaS SQL, Azure WebApp, Azure PaaS Services, Azure Cloud ConnectivityAzure AD, Azure Key Vault, ExpressRoute, Azure VNet Peering, Subnet, NSG, Azure Load Balancer, Azure Application Gateway, Azure AD Connect, Azure IAM, Azure WAFAzure Security, Azure Disaster Recovery, Azure Networking, Cybersecurity, Security Controls. KEY LIGHT - LOCK PATH for System Security Plan (SSP) Reviews. Check Point - CloudGuard for Cloud Native Security across workloads.
Operating Systems: Windows 3.1/3.11/95/98/ ME/NT4.0/2000/XP/2003/Vista/ 2008/7/8/2012/2016/2019 Novell NetWare 3.X & 4.X, SCO UNIX Open server, Sun Solaris 8/9, IBM AIX, HP-UXRed hat Linux and Open SUSE.
Firewalls: SonicWall NSa 2650, Juniper SRX 240, SRX100, NS25, NS5GT and SA2500, CISCO ASA/PIX, Check point, Watch Guard, FortiGate, Barracuda Spam and Spy ware firewalls.
Cloud Server hosting: Microsoft Azure, Amazon Web Services (AWS), GoDaddy and Windstream.
Cloud Computing: Microsoft Office365/BPOS - Cloud Computing based messaging and collaboration tools includes Exchange Online, SharePoint Online, OneDrive, Teams, Skype for Business/Lync, Office Online, Intune, and Microsoft Dynamics CRM Online. Cloud based Google Apps for business, Cloud based Network solutions mail pro, Quest - Notes Migrator for Exchange Online. Cloudflare - WAF, Web Application Firewall, Apple Business Manager.
Databases: SQL Server 7/2000/2005/2008/2012/2014/2016 , Oracle 8i/9i, MS Access, ACT, PostgreSQL, MySQL, and Sybase.
Servers: Microsoft Dynamics CRM, Microsoft Hyper-V, Microsoft System Center Virtual Machine Manager, Microsoft Share Point Server, Microsoft Project Server, IIS Web servers 5.0/6.0/7.0//8.0/10.0 , Verisign/DigiCert/GoDaddy SSL Certificates, FTP Server, Terminal Server, System Center Configuration Manager, System Center Data Protection Manager, System Center Essentials, System Center Operations Manager, Office Communications Server, Microsoft Internet Security & Acceleration Server, Microsoft Virtual Server, Windows Server Update Services, Windows Storage Server, Active Directory Domain controllers, GPO, DNS, DHCP, WINS, File Servers/ Print servers, JBoss and Citrix XenServer, Citrix XenCenter, Citrix XenApp, Citrix Presentation Server, Citrix MetaFrame XP, NFuse and Citrix WinFrame.
Storage: Dell SAN CT-SCv3020, SAN- EMC CX4-240, Dell EMC AX4-5F and CX400, EqualLogic PS 4000/5000/6000 arrays. NAS –NetApp, HP, Quantum, Buffalo, Iomega, and Dell. DAS -IDE, ATA, SATA, SCSI and SAS.
Backup Software: Veeam, Double-Take, Carbonite Migrate, VERITAS NetBackup 3.0/4.5/5.0/6.0/6.5/7.0 , VERITAS Backup Exec 8.0/9.0/10.0/12.5/2010 , Arc Serve, Backup Edge, Acronis, and Windows backup.
Online Backup Software: ASR - Azure site recovery services, Azure backups, Evault and Vembu
Messaging Systems: Exchange Server 5.5/2000/ 2003/2007/2010/2013 , Microsoft Office 365/BPOS, Lotus Notes 5/R6.5/R7.0/R8.5, Novell GroupWise, and Barracuda Message Archiver.
Tape drives: DAT, DLT, Super DLT, DELL Tape loader, SUN Store Edge Autoloader and Quantum Super Loader.
Networking: SSL VPN, VPN (Client to Site/Site to Site), RAS Configuration, Wireless networks, clusteringLink Balancers, Load balancers, Packet Shapers, IPS/IDS, Message Archiver, CISCO VPN Concentrator, CISCO 7204, 2600, 2500, 1600 and1000 Routers, Intel Shiva LAN rover, VOIPIPVideo systems, LifeSize, Intel Pro Share Video System, HP Print Servers, Adtran TSU/CSUDigi box, Cisco/3COM/Dell/Netgear Switches, VLAN, VLSM and QOS.
VMware architecture: VMware vCenter Server 6 Essentials, VMware vSphere 6 Essentials Plus, VMware vSphere 5, vSphere 4, VMware ESX 3.5, VMware vCenter Server, VMware vSphere Client, Networking configuration, Storage configuration, Create and manage virtual machines, Cluster Setup, VMware High Availability (HA), VMware vCenter Converter, VSA –vSphere storage appliance, VMware VMotion, and Virtual desktop infrastructure (VDI).
Microsoft Hyper-V: Microsoft Hyper-V, Virtual machine high availability, Virtual machine clusters/ Templates/Configuration and SCVMM
Communications: OPT-E-MAN, Gigaman, MPLS, Dual bonded DS1 circuits, 10Meg Fiber, Bonded T1s, Frame Relay, ISDN, and Network Cabling.
Hardware Platforms: HP, DELL, SUN, Compaq, Acer, Sony, Mac, and IBM AIX.
Tools: Zenith/Continuum, AutoTask, Ipswich -WhatsUp Gold, SolarWinds, Remedy, SnifferMRTG, NMAP, Network Instruments Observer suite, Net Tracker, Polycom, Secure CheckProKIWI syslog, Security and policy controls and Patch management.
Protocols: TCP/IP, SMTP, SNMP, UDP, HTTP, FTP, Telnet, SSH, ICA, RDP, POP3, IMAP and PPP.
Antivirus: Carbon Black, Microsoft Defender, Symantec Antivirus, Symantec End point protection, Norton 360, Microsoft Forefront, Security essentials, MacAfee, Bit defender and AVG.
Desktop Applications: MS-Office 97/2000/XP/ 2003/2007/2010/2013 , Project, Visio, and Publisher.
Remote Administration: Team Viewer, PC Anywhere, Remote Desktop, VNC, Live meeting, WebEx, Go to my PC andLog me in.
Accounting Systems: Microsoft Dynamics, AST, Darwin PEO system, Tally and Smart Clocks.
Printers/Copiers/Scanners: HP, Dell, Kyocera, Xerox, Okidata and Konica
Phone Systems: Cloud based Vonage/Vocalocity IP phone systems for business, 3 COM, Toshiba, and Siemens
PROFESSIONAL EXPERIENCE
AZURE INFRASTRUCTURE/SECURITY ARCHITECT
Confidential, Redmond, WA
Responsibilities:
- Designed and delivered secure cloud infrastructure solutions by creating secure cloud solution architecture with security controls.
- Worked with implementation teams to realize the architecture for successful deployment.
- Conducted deep dive sessions for large internal audience/stakeholders of Microsoft to share expertise in various Azure security controls well before the wave/control release dates.
- Customized SNOW (ServiceNow) ticketing system dashboards and reports to improve efficiency.
- Possessed expertise in Azure Tenant Baseline compliance, Power BI reports, and Azure Tenant Security scanning services.
- Utilized Service 360 to manage key metrics and gain actionable insights to improve Service Fundamentals across all domains, including Reliability, Security, Compliance, Common Engineering, and Spend.
- Experienced with EGRC (Enterprise Governance, Risk and Compliance) - an enterprise-wide integrated platform used by groups across the company to run internal programs and services.
- Helped teams with security related exceptions on various security controls.
- Experienced with Microsoft internal IcM - Incident Management System.
- Collaborated with various teams at Microsoft, including Standards, Engineering, Data Intelligence, Governance, Product Guidance, and Security Intelligence Platform teams.
- Possessed expertise with Security Burn Downs for Inactive External Staff Accounts and 0/0 Subs of Microsoft, as well as with Microsoft SAW - Secure Admin Workstations and Smart Card Alt Accounts and SC-ALT cards.
- Experienced with IDWEB, HEADTRAX, MYACCESS, Core Identity, and SERVICE TREE Tools.
- Analyzed business and infrastructure requirements, including compute, storage, firewalls, scalability, business continuity, and disaster recovery.
- Worked with the InfoSec team to implement the best security practices for top-notch cloud security posture management and Cloud Security Workload Protection.
- Created an Azure Security Controls document as part of the Architecture Design to secure the infrastructure in Azure.
- Advised project stakeholders in driving project delivery with successful outcomes.
- Architected highly available, fault-tolerant, and disaster recoverable clustered cloud architectures.
IT INFRASTRUCTURE ARCHITECT
Confidential, Livonia, MI
Responsibilities:
- Designed, Implemented and Administering various Cloud based computing including SaaS, PaaS, and IaaS services
- Migrated on-prem VMs from VMware Infrastructure to Azure Govt cloud.
- Migrated VMs from third party cloud-based Windstream datacentre to Azure Govt cloud.
- Experienced with Carbonite Migrate to Migrate workloads to and from any environment - physical, cloud & virtual.
- Configured Azure commercial cloud and implemented infrastructure in Europe following GDPR - General Data Protection Regulations.
- Configured various aspects within Azure Govt cloud including Virtual Machines, Firewall - NSGs - Network security groups, ASR - Azure site Recovery services, Azure Backups, Security Center, Disk encryptions, Key vaults, Local network gateways, Network Watcher, NSG Flow logs, Recovery Services vault, Virtual network, vNETs, Alerts and Virtual network gateway.
- Migrated Azure Govt Enterprise agreements to CSP agreements.
- Implemented Cloudflare - WAF -Web Application Firewall on all web portals.
- Implemented ASR - Azure Site Recovery services in Texas region and successfully accomplished the DR Test Failovers.
- Wrote DR - Disaster Recovery procedures using Azure ASR and Run Books
- Installed and configured Windows Server 2000/2003/2008/2012/2019 , OpenSUSE, SCO Open server and Red hat Linux servers.
- Configured Dell SAN CT-SCv3020 and various NAS – Synology, HP, Netgear and Lenovo.
- Migrated from Juniper firewalls to redundant Sonic Wall NSa 2650 firewalls
- Installed and Configured Juniper NetScreen Secure Access 2500, SRX 240, SRX100, NS25 and NS5GT firewalls.
- Migrated Lotus Notes to cloud-based Microsoft BPOS suite (now Office 365) using Quest Notes Migrator for Exchange Online.
- Configured Office 365 across the company, Implemented Teams.
- Configured Barracuda Networks Essentials and Sentinel.
- Configured MDM solution using Microsoft Intune and Apple Business Manager.
- Successfully transitioned from BPOS to Office365.
- Implemented complete Track-IT Help Desk System.
- Configured Veeam backup solution across all the on-prem VMs.
- Migrated on-prem infrastructure to VMware vCenter Server 6 Essentials/VMware vSphere 6 Essentials Plus with multiple Hosts.
- Implemented and have experience with Disaster Recovery/Business continuity planning/solutions
- Configured companywide Carbon Black cloud-native endpoint security.
- Experience with Security Monitoring, Auditing, Data security and Penetration testing.
- Configured a secondary data centre for Disaster Recovery at Windstream’s facility in Colorado.
- For Disaster Recovery implemented real time replication using Double-Take.
- Installed, Configured and Implemented Microsoft Dynamics CRM and CRM online.
- Implemented AST system, it includes Accounts Payable, Accounts Receivable, General Ledger, Payroll, Report Mate, Sales Mark, and Skill search modules.
- AST system is running on Windows Server 2008, Microsoft Terminal Server farm and SQL Server 2008.
- Migrated accounting systems to Microsoft Dynamics GP and BI 360.
- Configured and maintaining company’s web servers running on Microsoft IIS with SQL Server as a backend database and with VeriSign encryption.
- Configured Red hat Linux and Apache web server for Web and FTP services.
- Implemented Barracuda Message Archiver.
- Managing Microsoft share point services.
- Implemented VERITAS NetBackup, SQL Agents and Notes Agent.
- Implemented DAS, NAS and SAN storage systems.
- Designed and configured MPLS network and bonded T1 solution with CISCO 2600, 2501 and 1600 routers.
- Configured CISCO VPN 3005 Concentrator for secured access.
- WAN consists of Multiple Domain Controllers and 300 clients.
- Configured DNS, WINS, DHCP, RAS and Print Servers.
- Implemented 3COM IP Telephony and VOIP systems.
- Configured Barracuda Spam and Spyware Firewalls for Spam control, Virus protection and content filtering.
- Implemented and administering VMware vSphere 5 infrastructure and Virtual desktop infrastructure (VDI).
- Implemented Microsoft Windows Failover Cluster and SQL Server clustering.
- Implemented IT Cost centre and annual budgeting and Consulting/negotiating with various vendors and customers.
- Accompany Sales force to presales meetings; Manage all IT purchasing and support contracts
- Installed, maintained & monitored Citrix Server XenApp/Citrix Presentation Server making sure they are up to date with latest rollup hot fix and service packs.
- Migrated 300 users, 45 applications from Citrix MetaFrame XP to 4.0 to 4.5.
- Configured Microsoft Hyper-V infrastructure, Virtual machine high availability, Virtual machine clusters/ Templates and SCVMM
- Migrated complete on-prem previous infrastructure to Azure Govt cloud.
