Security Engineer (contractor) Resume
New York, CitY
SUMMARY:
- InfoSec specialist whose qualifications include a Master’s Degree in IT Security Management; BSIT Network Administration, CCDA, Network+, Security+, CISM designations; and detailed knowledge of security tools, technologies and best practices. Ten years of experience in the creation and deployment of solutions protecting networks, systems and information assets for diverse companies and organizations.
- Has supervised a staff of 5 - 7 professional engineers.
- Has designed, implemented and managed a network 2,500 remote sites and 5000+ nodes.
- Have track record of increasing network performance and redundancy while cutting cost by using new cutting edge technology while securing and hardening the network.
- Provide Information Security standards and Network rules, polices, best practices, Firewall administration, Vulnerability testing and assessment, installation, support, configuration and design.
- Demonstrated effective Project management planning and implementation procedures that re-enforced a no-fault network.
- Hands-on experience leading development efforts, including requirements definitions, design, architecture, testing and support.
- Ability to coordinate all phases of a project-based effort.
- Adept at developing effective security policies and procedures, project documentation and milestones, and technical/business specifications.
- Adept at working on a Global scale for GTS services
TECHNICAL SKILLS:
Security Tools and Technologies: Sniffer, WireShark, SNMP, IPS/IDS. Checkpoint, ASA, Juniper Netscreens, Cisco PIX501; SSH; SSL; Digital s; Anti-Virus Tools (Norton, McAfee, Symantec Endpoint Security (SEP), Ghost, etc.)
Systems: Cisco, Juniper, Nortel, Avaya, Unix-Based Systems, SQL (Microsoft, Linux); Windows (all)
Networking: LANs, WANs, VPNs, Routers, Firewalls, ACS, ACE,TCP/IP
Software: MS Office (Word, Excel, Outlook, Access, PowerPoint, Visio, Project)
Core Competencies: Network & Security; Business Impact Analysis; Regulatory Adherence; Data Integrity/Recovery; Disaster Recovery Planning; Contingency Planning; Research & Development; Risk Assessment.
Platforms: Cisco 6500x, thru 3750 with PoE, Nexus 5-7000, Checkpoint, PIX505, ASA 510, 5520, and 5585,, 7206, 4500, ASA 9001, 9002, and 9006, all Cisco and Juniper hardware: VRS, Netscreen-5GT,520, ACS Load Balancers, UNIX/LINX(Solaris, HP-Open View), Microsoft Windows operating systems from 95 on, DACS - TITANS 550, ALCATELS; 1630, 1631, DMS Switches: 100, 250 and 500
Networking: TCP/IP, BGP, OSFP, EGIRP, RIP, IDMS, MARS, VLANS, MPLS, VPNs, Frame Relay, Ethernet, Token Ring, AMT, ISO/OSI, IPX/SPX, SQL, FDDI, SSH, PGP,PKI, T1s, DS3, OC3-OC192, DS0s, CSU/DSU, FLM-150, POTS Lines and SS7.
PROFESSIONAL EXPERIENCE:
Confidential
Security Engineer (Contractor)
Responsibilities:
- I am responsible for the global security of network, which included migration of the Checkpoint VPN over to the new Juniper VPN devices. Working with polices, rules, configuration vulnerability assessments, Symantec SEP for users and Firewall monitoring, IDS/IPS monitoring, packet capturing, connection testing, user verification of the VPN Tunnels, deployment, installation, and user verification on geographically dispersed areas. Network assessments; Cisco 6500, 4500, 3750 switches, routers 2900, ASR 1001, Cisco ASA 5505, Cisco Wireless 5500 devices and APs-configuration and management.
Confidential
Sr. Network/Security Engineer (Consultant
Responsibilities:
- As a service engineer, I provide remote and client-site services. I am responsible for the deployment, security, Network infrastructure, data center implementation, design, installation and support of all networking infrastructure which included; Cisco routers, switches, Firewalls, Wireless devices and MS Windows XP/7 upgrades and desktop support.
- These devices were cisco 6509, 6513, 2951, 3750, 7206, ASR 9001/9006, CRS, Nexus 5xxx, Firewalls; Check Point 4800s, Cisco ASA 5515, 5585, Juniper Netscreens 5GT, SG520, Juniper routing/switching; SRX550, EX450. I am responsible for firewall security; polices/Rules, user passwords and Privileges, information security and standards, IDS/IPS monitoring, security tools-SNORT, Wireshark and network hardening, Visio network designs, diagrams and documentation, configuring and testing of new devices. In addition, I was involved in the placement and management of the cisco wireless 1240/802.11 n AP, cisco WLAN 4400 controllers and the setting up video conferences using the Polycom RMX 2000 system over a dispersed geographical area. The clients that I performed these duties and functions for were:
Confidential, New York City
Sr. Network/Telecommunication Engineer (Contractor)
Responsibilities:
- I was responsible for maintaining the Avaya/Nortel network at Grand Central Station/Terminal in the center of Manhattan. These duties include problem solving all telecommunications and network related issues and providing the highest level of customer service for over 1 million transit rider per day. In addition, I am responsible for providing leadership, customer support and detailed designs for the new Data Center which will be located in Grand Central Terminal while supporting the current legacy equipment and upgraded to a newer Avaya platform. This includes weekly meeting with the Confidential engineers, security personal, communications personal and the
- IT Director who was leading the project. I was tasked with the inventory of the current equipment rooms and assessing the network equipment needs going forward, building the test Lab for equipment testing which includes, running CAT5E, MM, SM fiber (SC) and testing T1s. The Grand Central Terminal currently has seven network rooms and server farms on a 10 Gig dual fiber ring. These rooms has Cisco ARS 1000 routers, Checkpoint 570 security devices, Cisco Wireless 4400 Controllers, Cisco ACS 1113 and Dell PowerEdge 1950, 1850 SAN devices.
Confidential, New York City
Network Lead Design Engineer (Consultant)
Responsibilities:
- Had regular meeting with all subsystem leads, PMs and Engineers such as; Nice systems (Logging and Recording), FDNY and NYPD CAD/ICAD systems and Motorola Radio Networks to gather systems interface and application information. The current proposed recommendation design calls for all agencies to use the “Enterprise Campus” Data Center model. The proposed recommended equipment will consist of; (LAN) Cisco Nexus 7018 and 4510R+E switches at the Access Layer, Nexus 7018 at the Distribution Layer, ASA 5585X Firewall at the Layer2/Layer3 Boundary and ASR 9006 at the Core Layer. This included the design, attention to detail and the build out of the SDE (System Development Environment) for the network prototype. I was also took part in the Designing and recommending encryption on the SONET ring RPR and Point-to-Point technologies will be used to supply bandwidth for all Trusted and Untrusted sites/agencies. Our main focus was to provide a high level of customer service and satisfaction for all three agencies.
Confidential
Sr. Network/Telco Specialist (Contractor)
Responsibilities:
- I helped with the design and implementation of the current MPLS network and recommend changes to the infrastructure at all 134 locations around the country, Canada and the Data Center. My responsibilities were to plan, engineer and provide detailed diagrams and documentation for the new IT infrastructure, and to upgrade the company’s steel mills infrastructure with newer, faster and better technologies. This included Cisco 2811, 2900 series routers, 3750, switches, Cisco 1250 Aironet (AP) Wireless security using 802.11/N & G standards and WAP2 technologies, Dell 1850 servers, evaluating Microsoft, Siemens
- Avaya, and Cisco for our new VOIP Unified Communications solution for all locations, CAT6 cabling. The recommended IPT Telephony vendor and system was the Cisco CMEv.6 for the new VOIP Unified Communications solution for all locations and CAT6 cabling. Also responsible for troubleshooting Telco circuit issues at all locations and determining circuit upgrades by using network tools just as; Net-flow, HP Service Desk, and Solar Winds EE, consulting, meeting and evaluating vendor products; Riverbed(optimization), Qwest, XO, TW, and L3 to implement a reasonable redundant backup to our Sprint MPLS network.
Confidential
Network Manager/ Engineer
Responsibilities:
- I maintained, Monitored, upgrade and replace obsolete technologies and equipment with than 25,000 users in 100 remote WAN site locations. Provided project management, SLA, day-to-day IT staff and resolution tracking, bi-weekly management meeting, monitored the NYC core network infrastructure at the 24/7 NOC. Maintained HRAs LAN/WAN/Telecommunications network /infrastructure which included; the integration and configuration the systems, Nortel CS100 PBX, TCP/IP network and installation, Fiber Optic ring installation of Gigabit Ethernet, DMZ,VPN, VLAN, ATM, Frame Relay, Nortel/Juniper 8600 platform
- Cisco routers and switches, Juniper 5GT and SSG520 Firewalls. I was responsible for the Planning and designing new Hub/Computer room for new and additional systems and equipment, these projects which included; implementation, analyzing and maintaining the IT/IS network and systems for the Human Resources Administration (HRA). Develop detailed solutions, implementing short and long range plans and strategies for information technology equipment and systems. To ensured that internal clients were provided with sufficient equipment, consultation,, customer service and support to enhance the organizational efficiency and productivity. Established standards of performance to measure effectiveness and efficiency of the overall information technology functions and to maintain and manage the core network/IT/IS infrastructure. Managed software installation, fault -diagnosis and data mining tools-SNMP
- Monitoring devices, Sniffer-Pro and Wire Shark testing equipment and Trouble complaints which included; the trouble ticket systems, patch management, hot fixes, updates, upgrades, IDS/IPS, NIDS, HIDS systems, new T1 and circuit installations, planning, designing and implementation of Hub/Computers room, installation new CAT5, CAT5E, and CAT6 cabling to the building or to the desktops. Also familiar with many software packages and their use; Microsoft Suite, Windows, Linux, UNIX, and Cisco IOS.
Confidential
Telecommunications Engineer
Responsibilities:
- This system allowed dispatchers, train conductors, motormen, superintendents and General Superintendents to constantly maintain two-way communications. My responsibilities were to project manage the night shift installation and maintenance of the Nortel 8600, 8100 layer 2/3 switches by assisting the EMD division with testing internal and external devices, help develop and monitor performance metrics which provide communications for the Siemens ATS/PTC(CBTC) system, 15 radio towers and to four hundred and sixty-eight field stations
- Trouble and Incident tracking, T1 carrier system, Nortel 3210 switch installation, radio equipment, telephone switching equipment, managed 2 SQL Window 2005 servers and the Data Warehouse by providing logical security access, auditing and log review, troubleshooting with transmission test equipment, line and consoles card configuring, schedule and maintain failovers every 30 days, maintain shift logs reports, and the data Warehouse which consisted of; The SQL database, 2 SQL servers, retrieval and backup of tapes, RAID 1 & 5 drives. I was responsible for the NICE Security system solution which provided real-time management, effective investigation of incidents to ensure fast resolution and security improvements.
Confidential, NY
Telephony Site Manager/Engineer
Responsibilities:
- Internet technology/International and Global Telecommunications Company. I directed site network operations, Planned and managed multiple network projects, maintenance and all new equipment, improve infrastructure to the network and CO-Locations, physical and logical site security, circuit and vendor site documentation. Project managed the site on a 24/7 basis, responsible for network integrity; problem solving of all network equipment such as; outages, break/fix, site log updating, DR planning (Disaster Recovery)maintaining test equipment- T-Berds, Sniffers, Protocols Analyzers, the site budget and expenses, monitoring and resolving trouble tickets using the
- Remedy trouble ticket system and updating the Call Center. I was responsible for assessing new IT and security technologies and making recommendations. Additional duties included; Ethernet cabling, wiring, configuring Cisco VoIP routers and IP Phones. Planning and designing the network infrastructure. Managed all Cisco 3600, 4500, 5300, 5400 routers, 7206 VoIP (MGCP)Gateways, T-DAX cross-connects on ENAVIS system and Lucent Excel TDM switches using Solaris Operating software and T-1, DS3, SS7 ckts, and Protocols-TCAP,SCPs,ISUP,STP’sMTP, ISDN, POTS ckts and CSU/DSU installation and testing. Very familiar with all of Microsoft Office products, Also worked closely with International/Global and Domestic carriers, customers and vendors-ex: L3, XO, Verizon, NTT, ATT, Sprint, BellSouth, Qwest Communications.