Senior Security Analyst Resume
SUMMARY:
- Information Security Engineer with more than 10 years of enterprise level experience in addition to a Masters Degree in Management Information Systems. Background includes extensive work with the design, testing, and implementation of Information Security, Certified Disaster Recovery, and Business Continuity Manger. Highly proficient with log management / Security Incident Event Management (SIEM) tools including RSA envision. Experience in both White and Black box penetration testing using tools Nessus and Wire shark.
TECHNICAL SKILLS:
Hardware: Autotrol, AS/400, NAS8063, NAS8063, 3745 FEP, VM3084, Novel NT, Mainframe, IBM ES9000 - xxx, Sun Server, AIX/Linux, Xerox, IBM-LPAR-I Series-550, IBM LPAR - Z series, Wintel/Windows, VM, and Virtual Environments, HP and HP Blade
Software: RSA enVision, Arc Serve 9.1, CentralCritical Watch, Solar Wins/Silk, What's up Gold, JD Edwards, DB2 V8, People SoftIDS/IDP, CICS, Lotus 123, Omegamon, Stamon, MVS-ESA/ZOS, IMSNet view, Resolve, BRMS, TSO/ISPF, CA7/CA11, OS400, Premos/EDI, Microsoft Office Suite, Oracle, Dot. Net,SAPR3,SQL
PROFESSIONAL EXPERIENCE:
Confidential
Senior Security Analyst
Responsibilities:
- Worked on contracts with State of Maryland Children Family Services and MD State Elections
- Performed Security Analysis and Vulnerability Analysis for contracts
- Performed daily Syslog Analysis in conjunction with Maryland DOIT Standards and NIST Controls.
- Provided a monthly report with metrics outlined on the findings of daily log analysis
- Performed Audit recommendations relative to all Security controls
- Provided Quarterly Risk assessment and analysis of Oracle and SQL Vulnerabilities associated with log findings
- Provide Security Awareness to the staff and contractors
- Submitted Security Quarterly Review to the client on Security Posture
- Penetration white and black box testing based on Project overview
Confidential
Senior Information Security Specialist
Responsibilities:
- 6 month contract assisting in the designing and implementing of the Cyber Security Plan.
- Performed table top exercises and vulnerability assessments of CDA’s and critical Systems.
- Performed Pen Test for Client using Nmap and Nessus tools. Also use Wire shark
Confidential
Senior Security Engineer
Responsibilities:
- Support of large-scale, full-service information technology contract with the Department of Human Resources, State of Maryland. Contract provides complete support for Child Support, Business Critical Applications including Child Support, Child Welfare, Food Stamp and a hybrid of Eligibility Systems and Social Services.
- On-site Security Manager responsible for all Confidential day to day security activities, as well as 1 Security Engineer, and (9) Call Center Response Team Members.
- Hands-on support of SIEM Log Management tool RSA enVision, including monitoring; prioritizing, responding to, and remediating alerts; writing scripts for reports; patching, etc.
- Utilize Decoder on a monthly basis for Packets and Logs,
- Responsible for risk assessment and conducted the /Accreditation of 7 Critical Security Application Plans for the State of Maryland
- Key member of the ACS team responding to the RFI and working on the development of RFP solution for all hosting services for the Department of Human Resources for the State of Maryland. Won $283 million 10 year contract for Confidential
- Meet production schedules and hosting services requirements, responsible for the production control group
- Testing of development and production migrations, coordinate and manage Quality Assurance group activities
- Responsible for upgrading DB2 V7 to DB2 V8 and DB2 group activities during upgrade.
- Manage the ACS Network Command Center responsible for, as well as hands-on monitoring of critical devices on the States of Maryland Wide Area Network
- On-site Disaster Recovery Manager responsible for all DR activities for primary and secondary applications and environments
- Develop and test the Disaster Recovery plans for all the State of Maryland Child support critical applications
Confidential
Chief Security Officer / Platforms Director
Responsibilities:
- Management and hands-on responsibility for all Security and Computer Platforms, and IBM LPAR I Series 550
- Managed the information security business unit for the county
- Member of LPT Homeland Security Team (Cyber Security Representative)
- Developed service level agreements for the platforms and security business unit
- Responsible for all platforms/servers, including Sun, AS/400, I Series System 5, Mainframe, NT Server
- Created backup and restore solutions for 260 servers in a mixed server environment
- Disaster Recovery/Business Continuity Director responsible for all DR/BCP Plans
Confidential
Platforms Manager
Responsibilities:
- Manager for the Computer of Operations Group, on-call 24x7
- AS/400 Platform Project Manager & Administrator performing DBA related functions the AS/400 and I Series Platforms
- Managed the backup and restore server team responsible for 260 servers
- Created Disaster Recovery/Business Continuityfor all the platforms and ERP applications
- Coordinated all production control changes/change management.
- Managed offsite storage facility where all the media was located
- Conducted daily operations meeting pertaining to all department issues