Application Infrastructure Security Architect Resume
Fort Lauderdale, FL
SUMMARY:
- Infrastructure & security subject matter expert. 20 years of experience supporting, deploying and designing security centered solutions that protect networks, systems and information assets regardless of their location. Well versed in Cloud, security, compliance and establishment of daily operational standards. Excellent interpersonal skills and a positive attitude
- Threat Management/Mitigation
- Security Compliance
- E - Commerce Solutions
- Cloud Management
- Network Security
- Virtualization
- DevOps
- Disaster Recovery
- Software as a Service (SAAS)
PROFESSIONAL EXPERIENCE:
Confidential, Fort Lauderdale, FL
Application Infrastructure Security Architect
Responsibilities:
- Provided expertise around cloud security for Microsoft azure, Amazon Web Services and Rackspace Cloud.
- Developed digital asset criticality rating and compliance process to protect intellectual property.
- Developed network security policies for voice and unified communication services used and developed by Confidential
- Performed assessments on digital assets to determine they’re importance and impact if compromised.
- Developed secured development environment leveraging Confidential technologies including Confidential Receiver, Zen Desktop and NetScaler.
- Design log management solution leveraging Splunk and OSECC
- Developed and maintained working relationship between Engineering, Infrastructure and Global Security Operations (GSO).
- Negotiated co-management of UTM Fortinet firewalls between Engineering infrastructure and Global Security Operations
- Researched current network layout to find opportunity to reduce security risk while promoting innovation.
- Participated as a technical advisor for a variety of ad-hoc information security projects that will be dictated by current business and technological developments
- Provided recommendations and solutions to mediate security breach of code signing s build labs.
- Acted as technical information security reviewer of requirements statements, feasibility analyses, operating procedure manuals, and other documents produced during the systems development process.
- Maintained working relationships with internal and external business partners of Confidential
- Participated in, and acted as a technical leader in, periodic information systems risk assessments including those associated with the development of new or significantly enhanced business applications.
- Reviewed the cost-effectiveness and practicality of existing information security procedures and systems, and make suggestions for their improvement.
- Conducted reviews of information security policies, architectures, standards, and/or other technical requirement documents needed to advance information security at Confidential .
- Interpreted information security policies, standards, and other requirements in light of specific internal information systems, and assisted with the implementation of these and other information security requirements.
- Assisted in selection, installation, and adoption decisions for automated tools that enforce or monitor the compliance with information security policies, procedures, standards, and similar information security requirements.
Confidential, Palm Beach, FL
Infrastructure & Security Manager
Responsibilities:
- Responsible for providing consulting expertise to help guide the direction of the school districts technological roadmap.
- Responsible for the management and direction of the Active Directory team, the application security team and the SRC (Systems Response Center)
- Responsible for security and design of the Palm Beach School Districts’ Active Directory structure that supports over 200,000 users.
- Worked with Legal to develop Invitation for bid (IFB) for multimillion-dollar projects.
- Produced proposals and presented them to the IT committee for approval followed by the School District Board for final approval
- Negotiated service contracts and equipment purchases with OEM vendors such as Dell, Juniper, Bluecoat and Courion
- Developed road map and migration strategies for IT communications and infrastructure systems as well as services offered by the School District
- Responsible for the Network infrastructure and Security of the 189 locations as well as AWS Cloud Architecture.
- Provided technical leadership to internal personnel on highly complex system installation processes.
- Maintained strong focus on customer satisfaction by delivering exceptional project performance and predictable, repeatable project results
- Collaborating with service management to ensure the proper service management functionality for security services is completed
- Coordinated activities between technical personnel and the corporate PMO and administrative units.
- Work with IT teams to perform risk assessments using developed methodology
- Provide Information Security subject matter expertise to IT teams
- Apply subject matter expertise and judgment on risk evaluation, risk assessments and risk mitigations for IT and Business Unit projects
- Ensure that all risk and control issues/gaps are clearly documented and to work with project teams to develop remediation plans to address these issues.
- Ensure IT and Business teams adhere to Confidential Policies and standards.
- Designed and oversaw the implementation of solutions and policies for:
- Role Base access controls (RBAC)
- Password Privilege Management (PPM).
- Design and deployment of BlueCoat SG to protect students and employees from malicious content.
- Migration of 31,800 employee accounts from Exchange to Google Apps and deployment of Google Apps to students.
- AWS deployment for DR and business continuity requirements
- SSO implementation to support Google mail and other in the cloud providers.
- School Police secure data center including DR of its resources and those shared across the CJIS network and FDLE
- Likewise deployment to gain control of all Linux, UNIX and Mac systems in the domain and harden with policies.
- The administration, hardening and deployment of network LDAP (Windows AD) infrastructure.
- Design the Active directory upgrade from Windows 2003 to Windows 2008 R2 followed by the Windows 2012
Confidential, Fort Lauderdale, FL
Operations Manager
Responsibilities:
- Worked closely with createCore's clients to build scalable ad secure cloud solutions.
- Performed DevOps for Linux, Mac and Windows platforms.
- Focused on automation and integration.
- Streamlined applications delivery to get applications out to customers faster.
- Manage development teams and track their progress through Jira Agile.
- Responsible for migration of customer's data centers to scalable AWS cloud infrastructure
- Configuration and management of VPC connections to critical locations
- Migration from Windows based systems to open source products, LAMP, Docker, mySQL, postgres and Elastic search
- Leveraged cloud based tools such as ylastic to manage and maintain cloud services.
- Performed load and performance testing of complex systems.
- Focused on automation, integration, monitoring and configuration management.
Confidential, Hollywood, FL
Security Architect
Responsibilities:
- Responsible to provide consulting expertise to resolve audit compliance issues, by leveraging Group Policy, WSUS, UAC and windows firewall profiles.
- Responsible for Network Architecture of the RewardsNetwork's IT Data Centers that are used to support restaurant and consumer services.
- Revised network policies to ensure systems were not compromised and to conform to PCI Standards.
- Implemented PCI security measures to insure compliance requirements are met to maintain partnership with Visa, MasterCard, Confidential and Chase.
- System vulnerability scanning using Nexus and provide vulnerability remediation recommendations.
- Cost cutting by leveraging VMware ESX to optimize equipment utilization at the production site and Disaster Recovery site.
- Redesigned Windows 2000 and 2003 Active Directory domains with Windows 2008 and Likewise integration for AD authentication across the Linux web farm systems.
- Lead the replacement of Trend Micro with McAfee Enterprise including EPO Server with Endpoint encryption, Site adviser, and Spyware removal to insure availability.
- Design of Lights-out DR Data center with multiple methodologies of access to ensure opportunities to resolve issues without the need of local IT staff
Confidential, Fort Lauderdale, FL
Security Architect
Responsibilities:
- Responsible for Security Architecture of the Citco group of companies serving as the custodian for over $482B in assets.
- Coordinated with client management to formulate highly complex technical solutions. Identified and implemented solutions based on client needs. Informed client management of appropriate developments in technical support products.
- Created corporate standards for management reporting, system standards, performance benchmarking, thresholds, SLAs, and IS/IT growth management planning. Initiated and led reviews/audits on a regular basis.
- Provided technical leadership to internal and external personnel on highly complex system installation processes.
- Revised network policies to ensure systems were not compromised and to conform to Citco corporate policy.
- Provided daily operational/technical leadership to IT, customer service and other appropriate personnel on highly complex system administration activities.
- Coordinated activities between technical personnel and the corporate PMO and administrative units.
- Worked with business development personnel, providing expertise & estimation for various proposals.
- Designed and oversaw the implementation of solutions and policies for:
- Data loss Prevention (DLP) to ensure the integrity of critical system data.
- Controlled proxy VPN connectivity for vendor and other access, protecting customer confidentiality.
- PAR, EGP, QUEST applications to ensure authentication and authorization to mission critical systems.
- Daily monitoring of data systems and providing recommendations for remedy to appropriate personnel.
- The administration, hardening and deployment of network LDAP (Windows AD) infrastructure.
- Reducing the deployment of customer websites from 24 hours to literally 8 minutes, with no reduction in quality.
Confidential, Boca Raton, FL
Infrastructure Architect
Responsibilities:
- Architected and managed the operation of the most trafficked real estate website in the country (Remax.com).
- Key participant in the design and ground-up build out of a new multi-million dollar NOC.
- Responsible for the subsequent successful migration of 4 separate data centers into the new facility with minimal interruption using VMware and HP blades.
- Implemented policies and procedures within the infrastructure team based on Six Sigma methodologies, achieving the expected efficiencies and providing very visible & tangible results for management and clients.
- Provided, support and mentoring to network engineering and helpdesk teams to facilitate developing an understanding of and adherence to network standards and corporate initiatives.
- Worked with business and accounting teams to establish annual budgets for Confidential ’ infrastructure
- Responsible for the negotiation of ISP contracts, maintenance contracts, and any project cost estimations.
- Generated installation, configuration, and disaster recovery documentation and policies, and trained personnel on how to build, manage and support these web based systems.
- Made recommendations and led efforts to improve service delivery processes and infrastructure, and served as the primary sponsor for projects focused on that goal, with a visible uptick in customer satisfaction resulting.
- Responsible for the monitoring of corporate, client, and consumer-facing infrastructure, minimizing or mitigating interruption of service, while adhering to stringent SLAs regarding uptime and security compliance.
- Implemented enterprise-wide network and system monitoring to proactively discover and resolve issues, maintaining the highest possible uptimes. Infrastructure backups and failovers were part of this, along with regular testing and “fire drills”.
- Implemented a program for the exhaustive testing and “burn-in” of new equipment/systems prior to being deployed.
- Monitored business activities and trends in the space in order to appropriately investigate and make recommendations about hardware and personnel acquisitions in order to anticipate and meet future needs.
- Recommended and pushed through the performance of regular fault tolerance, redundancy and disaster recovery testing.
- Designed and oversaw the implementation of:
- An enterprise-wide migration from Windows 2000 Active Directory to 2003 Active Directory.
- Several scale-out efforts and migrations due to M&A activity.
- A complex, yet robust, web-based server architecture with “cloud” and virtual elements.
- Several redundant systems for failover, and the re-architecture and configuration of firewalls, switches, and routing in order to take full advantage of those efforts.
- High-availability MS SQL clusters (in various configurations), tied to advanced storage (HP EVA 5k/8k).
Confidential, Fort Lauderdale, FL
Sr. Infrastructure Architect
Responsibilities:
- Provided consulting expertise which
- Provided operational and strategic direction to the business analysis and application development groups.
- Responsible for ensuring that infrastructure is capable of meeting business unit established SLAs for uptime and availability, and providing the flexibility and scalability to meet business unit growth plans.
- Designed and implemented sound technical solutions for Confidential 's headquarters and field offices, and integration with a complex panoply of external business partners, including Reynolds and Reynolds, ADP, BMW, Mercedes-Benz, Ford and all of the Confidential 's affiliate dealerships.
- Responsible for the design, development and architectural review of new technologies, and establishing the scope, plan, and priorities for multiple projects.
- Managed all aspects of the development process including resource planning and budgeting.
- Researched, evaluated and selected new technology, providing feedback on the viability and applicability.
- Contributed to development of department-specific business analysis tools and methodologies to make sure that they fit with and support the IT architecture.
- Developed/reviewed systems architecture design specifications for new and existing information systems to meet business processes and enterprise architectural requirements.
- Responsible for the research, comparison, cost-justification, recommendation, and ultimate planning of current and future hardware and software architectures for all aspects of information technology, from the network backbone to operating systems and shared software services.
- Managed complex IT infrastructure projects using ITIL principles, including wireless connectivity/security, Exchange 2003, Hyperion, Mom 2005, and BindView, among other efforts.
Confidential, Boca Raton, FL
Sr. System Administrator
Responsibilities:
- Maintained and supported Windows server environment.
- Work closely with management and engineers to resolve technical issues.
- Supported the network and helpdesk teams with troubleshooting firewalls, hardware load balancing switches, DNS, SSL, FTP, and SMTP dependant programs.
- Provided support for proprietary applications as well as 3rd party hosted applications in all environments.
- Worked with security teams on component-based & file security, active directory security and web security.
- Implemented and supported a variegated data environment, including MS SQL and Oracle databases.
- Planned and implemented a cost-effective hardware refresh of internet and intranet environment from development to production.
- Oversaw change control, and the promotion of web applications from QA and staging environments to production.
- Planned and deployed enterprise-wide search and collaborative tools, including Microsoft SharePoint 2003.
- Worked closely with the PMO to plan and ultimately deploy and maintain their collaborative suite.
- Designed & implemented the system disaster recovery plan, which was put to good use during the 2004 hurricane season and provided support throughout to recover the systems from power outage, etc.
Confidential, Hollywood, FL
IT Director
Responsibilities:
- Reported to the Chief Technology Officer, and worked directly with users across all levels of the organization.
- Accountable for managing and monitoring physical resources that are required for IT service delivery including storage, processing power, network capacity, electrical power and power distribution, HVAC, and capacity planning across all of these.
- Supported the network and helpdesk teams with troubleshooting firewalls and hardware load balancing switches.
- Responsible for partnering with the internal business units, playing an integral role in the planning, development, and deployment of new technologies and business solutions within the organization.
- Designed and planned the successful migration of the enterprise’s domain, web, DNS, DHCP, and other servers and services from an NT 4.0 platform to Windows 2000 clustered infrastructure.
- Designed and implemented the GDS booking engine, equipment selection, server load testing, and SQL database, web servers, etc.
- Designed and managed the QA environment used to validate and analyze that implementation.
- Accomplished a ground-up redesign of the network, meeting with vendors to review their products, and implementing a full network upgrade from Sonic Firewalls & NT 4.0 systems to Cisco Pix 520 & Windows 2k with ADS.
- Oversaw the installation and configuration of redundant systems for fail-over; including Cisco Pix 520 programming and fail-over setup for firewall protection.
- Supported multiple engagements as the overall technical architect to ensure successful delivery
- Planned and oversaw the deployment and configuration of load balancing switches allowing the service of over 4,000 web sites, each with more than 85,000 pages.
- Planned and deployed the suite of collaborative tools used by the enterprise.
- Configured and managed the deployment of enterprise management tools to reduce the total cost of ownership for desktops, notebooks, handhelds, and servers
- Engendered, planned and deployed several network enhancements, including a nation-wide VPN for corporate users, the migration from Exchange 5.5. to 2k, the upgrade from frame point-to-point data connections, the connection of remote offices to the corporate infrastructure, the deployment of patch management and other tools which expanded the helpdesk’s capabilities, among other projects.
Confidential, FL
Network Systems Engineer & Analyst
Responsibilities:
- The deployment of a QA lab, including design, vendor and product selection, negotiation, and implementation.
- The recruitment and development of multiple technical teams.
- The analysis and optimization of network security in order to comply with internal security policies, corporate and FDA audits.
- Developed and deployed methodologies and tools for testing network performance and providing performance statistics and trends, greatly improving capacity planning.
- Organized the rollout for in-house OEM products to franchised offices and organized and trained a team of administrators to manage patches and provide helpdesk support.
- Instructed over 1,400 TAG technicians on various operating systems, IBM, Gateway, 3com, Intel and Compaq products.
- Created manuals, policies and procedures for new employees.