Information Security Resume
Grapevine, TX
SUMMARY
- 17+ Years of IT experience - 10 years as Info Security/ Cloud Security (AWS)
- Security - Identity and Access management, SAML/Kerberos, MS-AD/LDAP, Vulnerability Assessment/Pen testing, SAST Tools, Phishing Campaigns, Data Breach/Incident response, Security Event Management Logging, Implementing SANS Top 20 Critical Controls for Cyber Defense, Disaster and Recovery Solution (DR) configuration/setup
- Network Security -Firewalls, VPN, Routers, switches, Intrusion detection (Host/network), packet monitoring (Wireshark)
- Cloud Security (AWS) - Configuring VPC/Security Groups/NaCL rules, ELB, AutoScaling, S3, CFT, AMI, Amazon SimpleDB/RDS databases, AWS Identity and Access Management (IAM), DevOps technologies such as Chef
- Architecture- Load Balance Tools for High Availability - Amazon ELB, F5- BIG IP, Reverse Proxy Servers for HTTP Load Balancing ( Apache)
- Middleware Applications - Oracle Fusion Middleware - Weblogic and IBM Wepshere 7.x, Message Brokers - Websphere MQ, Service Oriented Architecture (SOA) using Tibco and Oracle SOA Management Pack Enterprise Edition.
- VMware Infrastructure - VMware ESX Server, Managing Clusters, resource optimization, high availability, and data protection
- Unix Flavors - AIX v9/Linux - Redhat, Windows 2008/2010
- Database and Application Performance Tuning, Backup and Recovery Technologies
- Technical leadership, Project Management, Good verbal and written communication skills
TECHNICAL SKILLS
Operating Systems: LInux, AIX, HP-UX, WIN XP, Windows 2010
RDBMS: ORACLE 11g/10g, SQL Server2010, DB2-UDB 9.x, NO-SQL - DataStack Cassandra
ERP: Oracle EBS 12.x/11.x, Peopelsoft, SAP, Siebel
Web servers: Apache, IIS, SUN One
Big Data/Cloud: Hadoop, MapReduce, HDFS, Apache Cassandra,AWS,CloudWatch, S3,IAM,ELB, CFT, S3,RedShift
High Availability: VMware ESX Server, F5 Big IP, DR strategies
Information Security: Pen test tools -Nessus/CoreImpact/SecuniaCSI/SSO/SSL, Networking - OSI Model, Certificates/Firewalls/VPN/Routers/WAF, IdaaS providers - Ping Federate, Okta, Dell ARS,DAST/SASTproviders - CheckMarx,Veracode, HP Webinspect
Middleware: Oracle Fusion Middleware - Weblogic, IBM websphere
Other Software: ERWIn, Toad, Sharepoint, Excel, Powerpoint, MS-Project, Informatica Cloud, SalesForce,SnapLogic and Informatica (ETL Tools)
PROFESSIONAL EXPERIENCE
Confidential, Grapevine, TX
Information Security
Responsibilities:
- Involved in Assessment and Implementation of SANS Top 20 Critical Security Controls across the organization.
- Performed Vulnerability scanning tests using Application Security Tools (CheckMarx and Veracode) across the various in-house software applications
- Analyzed the scan results and identified the vulnerabilities in the Software code (Java/PHP) and advised the Application development teams
- Involved in Penetration Testing of the binary code, Internal Dex Applications including external facing applications and analyzed the results using Tools Nessus and Veracode. WebInspect.
- Worked with network team in upgrading weak ciphers, participated in the DDOS attack mitigation plan.
- Involved in Password complexity rules for desktop users
- Involved SIEM and Log Management using AlienVault Tool, identified Intrusion Detection, Behavior Monitoring of various users and generating reports to the management.
- Configured SAML/OpenID for SSO/Authentication for BI environment using Okta (IDaaS provider) for Social Authentication and Multi-Factor Authentication
- Developed a Phishing Campaigns to highlight security threats related to Phishing as part of Cyber Security Awareness Month.
- Configuration/Auditing applications using Nessus and Core Impact Software Tools for HIPAA /PCI DSS compliance.
Environment: CheckMarx 8.2, Nessus, Kali Linux, Okta, Wireshark, AlienVault, AWS, Chef, Puppet, Nessus, Web Inspect, Jenkins, GitHub, Core Impact, GoPhish.
Confidential, Plano, TX
Information Security/AWS
Responsibilities:
- Developed a Social Authentication (Facebook) using IDaaS providers - Okta and Ping One (Ping Federate)
- Participated in Data Breaches/Incident Response using Rapid 7 including Tabletop.
- Performed Vulnerability tests using CheckMarx, Penetration Testing using Nessus
- Worked with Application teams on PCI DSS compliance issues for Credit Card payments.
- Participated in securing an AWS Cloud environment working with Architecture team and Business users; for Migrating an on-prem application (Tableau) to AWS environment using Elastic Load Balancer (ELB) for load balance the Tableau cluster and configure Web Application Firewall (WAF) and Reverse Proxy for external facing users and integrate with Salesforce.
- Involved in building security model, VPC, Subnets,, WAF(web application firewall), Reverse Proxy Servers( Apache), Elastic IP for databases on AWS (public)Cloud platform
- Installed the Verisign SSL Certificates, Database drivers including Data Stack for Cassandra (NO-SQL) databases.
- Configured the AWS (IaaS)environment for Reverse Proxy using Apache Servers to integrate with Cloud based Applications - Salesforce, using iFrame and Javascript, configured to prevent Click Jacking.
- Used HP’s Load Runner for Performance test of the BI Reports in the Cloud environment.
- Worked strategies for a Disaster Recover (DR) for the BI Platform in the AWS Cloud in different Region.
- Developed a backup and recovery strategy for BI environment and database platform.
- Worked on Integration of the SalesForce (Saas) and Tableau on mobile devices (iPad) solved for ClickJack issues.
- Configured Tableau Security/users/AD sync with groups, published reports to server, implemented best practices in Tableau deployment
- Worked with various AWS services - Amazon Elastic Compute Cloud (EC2), Amazon Simple Storage Service (S3), Amazon SimpleDB/RDS databases, AWS Identity and Access Management (IAM), Cloud Formation Templates (CFT) to create the Instances, Splunk software for indexing the Log search, CloudWatch for monitoring servers, Auto Scaling, Amazon Kiness and others
Environment: Oracle 11g R2, Tableau 8.4/9.x, Azure, AWS, Chef, Puppet, Zookeeper, Cassandra, SalesForce, Teradata, Load Runner, WAF, Reverse proxy, Tableau 9.x,Ping Federate, Nessus, Web Inspect, Jenkins, GitHub,Core Impact, SnapLogic, redshift
BI Consultant/Security Analyst
Confidential, Dallas, TX
Responsibilities:
- Initiated the installation of a Websense Email Security Gateway Anywhere solution to manage/secure SMTP traffic.
- Recommended Websense Internet proxy and Web Security Gateway Anywhere to manage corporate Internet proxy traffic and supporting infrastructure.
- Helped the cyber forensics manager create extensive documentation and procedures related to email security monitoring, Internet proxy management and content filtering
- Installed and configured VMware ESXi server, for creating the VMware servers for the BI environment.
- Installed Virtual center to manage virtual machine resources and resource pools, Vmotion, VMware DRS,
- Configured a High Availability solution using VMware HA.
- Implemented new Security ( MS-AD) using Weblogic (LDAP) and BISQL Provider
- Created Backup and Recovery procedures for the BI environment and the underlying Oracle Database structures.
- Provided Infrastructure designs for the implementation of SOA based solutions and SOA Governance for managing the web services
- Created Virtual servers for WebLogic application servers by cloning and using templates
- Resolved issues related to Oracle EBS and OBIEE 11g Integration.
- Developed a Disaster and Recovery Solution (DR) using Oracle VM 3
- Tested the Upgraded environment for scalability using HP Load Runner
Environment: Informatica 9.1, Oracle EBS R12, Websense Security modules, OBIEE 11g (11.1.1.6.6 ).DAC, Oracle 11g R2, Oracle WebLogic Server, Oracle BIApps 7.9.6.4, Red-Hat Linux OS. VMware ESXi
BI Consultant/Security Admin
Confidential, Dallas, TX
Responsibilities:
- Gathered requirements from Business Users on SSO (Single Sign ON) for CRM and OBIEE environments.
- Installed BI Publisher (Linux Platform, Webserver - Tomcat and Apache), Siebel CRM (Linux OS, Oracle 11gR2) and OBIEE 11g (Linux OS, Oracle 11gR2) environments in Test and prod environments
- Configured BI Publisher for LDAP Authentication and SSL in an Integrated environment ( Siebel CRM v81.3.4 and OBIEE 10g, Java, Siebel Web Services)
- Managed the project complete life-cycle support for OBIEE 11g, Informatica 9.x products, WebLogic, Enterprise Manager
- Configured BI Publisher for LDAP Authentication and configured SSL in an Integrated environment
- Installed and configured OBIEE 11g environments including EM, Weblogic Admin Console, BI Server and Presentation Server.
- Configured Oracle Identity Manager and Oracle Access Manager modules.
- Configured Microsoft AD Authentication for Security, created new Roles, Shared Folders and access to dashboards
- Resolved numerous issues related to data, workflows, middleware (TIBCO), missing Oracle database structures - synonyms, Indexes, SSL certificates, LDAP authentication, Informatica Workflows, MQ Messages, Channels, Queues
- Designed ETL Process to migrate the Peoplesoft Ledger tables to an Aggregate tables for P&L reports
- Worked on improving the IO of the Exadata using IORM module.
- Worked on performance tune of OBIEE Reports on Oracle Exadata, using Tkprof/Explain Plan.
- Developed procedures for a Backup and Recovery of the Exadata and BI Modules.
- Tuned certain reports of Dashboards/Reports and made changes to database by implementing the materialized views, partitions, re-building of indexes.
- Worked with Change request Management Software - CA and Jira for Ticketing system
Environment: Informatica 9.1, Peoplesoft Financials 9.x, EPM 9.1, Data Stage, OBIEE 11g (11.1.1.5), DAC, Oracle 11g on Exadata, Oracle WebLogic Server in a Oracle BIApps 7.9 environment, Tibco, OAM/OIM
BI Tech Lead
Confidential, Dallas, TX
Responsibilities:
- Designed and Architected a new BI environment (Informatica 9.x, OBIEE 11g/Oracle EBS R12 - GL/AP/AR) which includes a multi user development (MUD) environment for Hudson Americas team
- Gathered requirements for New Dashboard Reports from Whole Loan, Securities, Portfolio management departments and developed prototypes for Financial Reporting
- Created a new Enterprise Data Warehouse (Dimension Model) for Hudson Whole Loans department - modeled based on Ralph Kimball’s approach. Used ERWIN/Zachman Framework to model the Facts and Dimension Tables
- Designed the Star schema, Repository (rpd) to accommodate for drill downs, measures, rank and shared measures for various reporting requirements
- ImplementedComprehensive Security Model, by creating User Roles and Web Groups,and setting upExternal Table (Single Sign ON) Authentication
- Troubleshoot performance issues in Complete ETL loads.
- Modified the EBS R12 (GL/AP) Data model to accommodate new business rules and created new joins.
- Designed repository, with complex Time Series Calculations, for prior months/ quarters/ years.
- Used dynamic Dashboard prompts to create a Loan Summary Portal, which allowed business users to search a Whole Loan database.
- Enabled Siebel Delivers using iBots for delivery of daily/weekly/monthly reports to business users, by setting up Scheduler and configuringJob Manager.
- Resolved issues related LDAP Authentication by modifying and web groups.
- Managed a team of Offshore OBIEE and ETL developers
- Managed the Daily Scrum session of the Project, enabling capturing of the issues on a daily basis and getting status on the assigned work and tracking progress
- Worked on Cloud Computing POC by connecting OBIEE to Microsoft Azure.
Environment: - OBIEE 10g/11g, Informatica 8.6/v9.x, DAC, OBIA 7.9,Oracle EBS R12, SharePoint, Jira. EBS modules - Fixed Assets, Accounts Payable, Accounts Receivable, Cash Management, General Ledger, Purchasing
BI Architect
Confidential, Irving, TX
Responsibilities:
- Upgraded Informatica 6.x environment to Informatica 7.x. and then to Informatica 8.x
- Installed a new Informatica 8.6 SP2 environment.
- Worked on Disaster and Recovery Plan and Implemented across the Siebel and BI Platform.
- Worked on a Backup Recovery plan of the Oracle database.
- Worked on improving performance of the home grown Java based SOA and Middleware (MQ-Channels)
- Completed a full Life Cycle Implementation of OBIEE (Oracle Reporting) by gathering requirements for New Dashboard Reports from Marketing users.
- Created new Execution plan in DAC to populate the Siebel Warehouse in Oracle 11g
- Developed scripts to Archive Data from CRM to reduce the CRM upgrade time
Environment: - OBIEE 10.g, Siebel CRM v7823, Oracle EBS R11, Hyperion/Essbase and SQL Server 2008, Sharepoint, Control-M,Jira
Technical Manager
Confidential, Dallas, TX
Responsibilities:
- Led a team of 4 developers for a Siebel Marketing and OBIEE rollout – from Requirements gathering to technical Design to Production Roll out.
- Addressed the Technical Issues of the project including – hiring, mentoring of team members, monitoring the progress of the project, Interfacing with Management on updates of the project.
- Created a gap analysis documents based on the requirements.
- Involved in Campaign Management and List Generation, Data loading thru ETL to OBIEE environment and using EIM in CRM environment
- Designed the Warehouse Star schema and OBIEE Dashboard Reports involved in customizations.
- Setup (Installed and Configured) a Solaris Siebel environment both CRM and Analytics including DAC in DEV, TEST and Production
- Configured EIM mappings by gathering requirements from users and processing the loads and automated using Unix shell scripts, thru Control-M scheduler.
- Used Siebel Answers (OBIEE Answers) and used iBots to schedule ETL refresh and delivery of reports
- Designed the optimal Architecture of Siebel Email Marketing Server and resolved issues with firewall, MTA configuration, Load balance options of CTD/BHD Servers in DMZ.
- Monitored all the environments and ensured they were up and running all the time and addressed the Server crashes and other system issues
- Migrated Siebel Repository and Analytics rpd from Development to test and Prod.
- Involved in creating test plans for training users; Mentor team members, status to upper management, hiring resources
Environment: – Informatica 7.x, OBIEE 10.3.x, Siebel CRM v7823, Oracle 10g
Confidential, Dallas, TX
Senior Architect
Responsibilities:
- Hardware Sizing -Dev/Test/Prod Landscape – Collect the capacity planning details from customers and plan their Development, Test and Production Servers based on based on various metrics (Reports/user counts) and Architecture issues like High Availability requirements, Storage Requirements – SAN/NAS
- Install and Upgrade and Configuration- Helped many customers (US/Canada/EMEA) in Installation issues predominantly on Unix environment, applying patches if required. Configured DAC /exception reports for end to end connectivity. Configured the Analytics Repository and Connection Pools. Advised customers in Analytics Repository best practices in using caching, time wizards and aggregates. Involved in integrating Siebel CRM to Analytics modules.
- Performance Tune – Post production issues – tuned the DAC/Informatica Loads, reduced the Load times form several hours to few minutes in some cases. Help tuning of the underlying Oracle database memory parameters, examined I/O issues related to SAN and addressed network latency issues, creating Indexes to improve reports (Query) performance, creation of Materialized views etc
- Architecture issues - creating custom Audit trail functionality per FDA regulations, Data Quality issues (Trillium and others), Capacity planning, database sizing, Software installation of the Siebel environment, conducted High Availability Workshops (Load Balance using Resonate/Clustering issues) on various Hardware platforms, volume testing of ePharma (Call Center) application using Mercury Interactive’s Load Runner and other tools to examine the scalability of Siebel environment. Helped Customers in Security related issues including - Firewall layout, LDAP, SSL and UCM modules.
- Performance tune Helped the above Customers in troubleshoot performance issues (databases involved – DB2-UDB 6.x/7.x, Oracle 9i and SQL Server 2000) in their application by tuning RDBMS, tuning the SQL code and Siebel Object Manager parameters, Web Server/SWSE, network issues and Siebel Configuration of UI- configure SearchSpecs and SortSpecs for many Siebel Field Service Customers
- Design - Helped many Telecom customers in gathering requirements for their Billing Systems Applications by conducting workshops and compiling a gap analysis with objects available OOB (Out of the box) help in customization of the data model by creating new Facts and Dimension tables, Aggregations in Informatica/ETL. Created, iBots, Initialization Blocks, new Dashboard reports using Spreadsheets, flat files and other external sources.
