Network Administrator/lan Support Resume
Washington, DC
SUMMARY
Seeking a challenging position in the field of Cyber Security, Networking, Telecommunication, and Information System Technology in a company that provides challenging opportunities to enable me to utilize my experience, skills, and proven abilities in the high - tech field.
TECHNICAL SKILLS
Operating Systems: Windows Server 2008 Family, Windows Server 2003 Family, Windows 2000 Family, Windows NT 4.0 Family, Windows XP, Windows ME, Windows 9x Family, DOS, MAC.
Security: Cisco ASA 5500 series firewalls, Cisco TACACS+, nmap, BackTrack, Kali - Linux, Samurai-WTF, Nessus, NTO Spider, HP Web Inspect, McAfee Vulnerability Management (Foundstone), NIKTO Web Scanner, Burp Suite, Web Application Penetration Testing, Network Penetration Testing, Bluecoat Proxy SG, F5 Firepass SSL VPN.
Networking: Cisco Pix and ASA 5510, 5520, 5580 Firewalls, Cisco 3750 Switches, Cisco 3550 Switches, F5 BIG - IP LTM, Bluecoat Proxy SG, Active Directory, Exchange, DNS, DHCP, SCCM, SMS, SCOM, MOM, TCP/IP, IPX/SPX protocols, Ecora Auditor, Ecora Patch Management, Internet Security Systems (ISS), NetIQ, HP OpenView, Symantec AntiVirus 10, Symantec Mail Security for Exchange, knowledge of Routers, Switches and Hubs
Backup/Storage: Galaxy CommVault, Backup Exec, ADIC Scalar i2000, Dell PowerVault 130T, PowerVault 136T, SAN Power Vault 650/630, EMC CX700, CX500, CX300
Database: SQL 2008/2005/2000/7.0 , Oracle 9i/8i DB2, Access
Web Servers: Microsoft Information Services (IIS), Apache Web Server
Programming: C++, MS Visual Basic 5.0
WORK EXPERIENCE:
Confidential,Washington, DCNetwork Administrator/LAN Support
- Assembled, installed, configured, and administered servers and workstations
- Maintained, troubleshoot networks and monitor network performance
- Assisted LAN team in migrating from Lotus Notes to Microsoft Exchange
Confidential,Vienna, VA
Lead Information Security Engineer
- Working with vendors and teams to draft and finalize documented procedures for the management
- f the Confidential solution and the renewal of the Certificate Revocation List (CRL), as well as Confidential
- Leading a project to implement, design, and secure Direct Access (DA) solution and the
- enforcement of “Forced Tunnel” to alleviate security concerns with “Split Tunnel”.
- Also, conducting pen-testing against the Direct Access client and network to ensure security meets the required standards
- Setting the organizational security standards for different Windows platforms based on systems role and their location on the network (internet facing vs. internal)
- Setting the organizational security standards for Cisco routers, switches, and firewalls and working with our network and network security teams to ensure compliance and address any possible issues
- Leading the PCI Discovery project as part of the PCI compliance effort by identifying PCI data in- motion, and data at-rest by leading the mainframe, databases, file systems and network share scanning efforts
Sr. Network Security Engineer
- Designing network architecture in a three tier architecture
- Configuring Cisco PIX and ASA firewalls with Failover
- Migrating all Cisco PIX firewalls to Cisco ASA 5510/5520/5580
- Standardizing all Cisco firewalls on a standard code and establishing standard global security configurations of firewalls.
- Auditing all firewall access control lists (ACL) to identify insecure ACL, and create the necessary ACL to harden these rules
- Planning, designing, testing, and implementing Cisco TACACS+ in DMZ and Internal network
- Configuring and managing Cisco switches 3750/3550
- Managing F5 Big IP load balancers in a complex environment and the use of SNAT
- Managing and designing a complex F5 Firepass SSL VPN solution that’s integrated
- Directory, eDir, and RSA SecurID Authentication
- Migrating RSA SecurID from 5.x to 6.1 and then 7.1 and the conversion of Radius authentication method to SecurID
- Designing, testing, and implementing Bluecoat Proxy SG solution with Active Directory integration and transparent authentication with Cisco WCCP protocol
- Designing, testing, and implementing Bluecoat AntiVirus appliances
- Designing, testing, and implementing Bluecoat Director
- Implementing Secure File Transfer Protocol (SFTP) solution
- Designing and implementing McAfee Intrushield 5.1 and integrating it with ePolicy Orchestrator (ePO) 4.5
- Designing, testing, and implementing ePolicy Orchestrator 4.0 and automating many of the tasks and reports.
Sr. System & Network Engineer Lead
- Managing and administering five domain in a large DoD environment
- Planning and Implementing Confidential and Tumbleweed Certificate Validation
- Planning, designing, testing, and implementing Tumbleweed OCSP Responders and Repeaters across multiple geographical sites
- Troubleshooting and resolving various certificate revocation errors during the pilot stage of the Confidential
- Working with the security team to initiate internal DITSCAP audit scans using Retina and Gold Disk.
- Ensuring compliance with the Defense Information Systems Agency (DISA) DITSCAP requirement through mitigation of any findings.
- Ensuring all systems are compliant with DITSCAP requirements by enforcing strong security settings using Group Policy Objects (GPO)
Sr. System & Network Engineer
- Planning, testing and implementing the migration of domain controllers and Microsoft Exchange
- Planning, testing and implementing the migration of file server, print server and member servers
- Designing the Active Directory OU structure to best suit the agency
- Managing Exchange 2000/2003 and Active Directory on a daily basis
- Implementing group policies to enforce standard security policies
- Working side-by-side with Dell Professionals to design, plan, and implement EMC CX500 SAN
System Management Server (SMS) NT Professional
- Upgraded 1500 PC from NT Workstation 4.0 to Windows 2000 Professional
- Performed software deployment via SMS and created custom packages to include ActiveX and registry entries to lockdown systems
- Administered Tangram Asset Insight Management Solution
- Created a Step-By-Step documentation for future references describing the steps taken to install and configure server-client applications
Developer/Database Programmer
- Develop Y2K compliant software applications using VBA
- Troubleshoot various application problems
- Update database on a daily basis using Microsoft Access
- Generate and update various reports using Microsoft Access and Excel
