Soc Engineer/analyst Resume
Ann Arbor, MichigaN
SUMMARY:
- Over 15 plus years as an IT professional specializing as an IT Production Support Engineer providing hardware, client/server and network technical support for a vast number of clients through the course of his career.
- He has proven success working in high - volume enterprise production environments with exceptional skill and strengths in rapid troubleshooting and problem resolution as an engineer/administrator, and as a production team member.
- In his professional and free time, he is a high-level research specialist in the areas of security trends, current/future/legacy data assurance, and new hardware/software applications.
- He also has excellent verbal, organizational, and written communication skills, and has garnered a consistent high level of praise for communicating effectively with both technical and non-technical users.
TECHNICAL SKILL:
SOPERATING SYSTEMS NETWORKING/VIRTUAL ACCESS: Windows (NT - Server 2012) LAN/WAN/VPN, SuSE, Network System Configuration/Migration, Ubuntu, TCP/IP Configuration/Implementation, Chrome/Android, OSX, OpenBSD, Solaris.
SECURITY: Intrusion Detection Specialist, Group Policy, Security Policy, SSL Encryption, Identity/Access Management, IT Auditing, MS - Windows Security Permissions, Disaster Recovery Support, Security Audit Support.
HARDWARE: Desktop PC, Mobile Devices, Printers, Modems/Routers/Switches.
LANGUAGES: MS - Access, JAVA/J2EE, Ruby/RubyOnRails.
SECURITY TOOLS: Alienvault OSSIM & USM Bluecoat Proxy Cloudmark, SNORT/ Razorback Solarwinds SIEM, Symantec Endpoint Protection /Security Suite.
SERVER/SYSTEM MONITORING TOOLS: Bluecoat Proxy, Mercury SiteScope, Nagios, Packeteer, Windows Monitoring Tools, PFCS, PFS FIS, Splunk.
PROFESSIONAL EXPERIENCE:
Confidential, Ann Arbor, Michigan
SOC Engineer/Analyst
Responsibilities:
- Place engineered focus of maintaining maximum security efforts in Domino’s Network Environnments
- Utilized Bit9 CarbonBlack tools to monitor, detect, analyze and mitigate threats to Domino’s data centers in VA, MI and Europe.
- Create rule sets in CarbonBlack Endpoint solution to thwart threats dectected.
- Administered Splunk for high level monitoring of Domino’s Pizza Online Order infrastructure.
- Utilized and administered VMWare vSphere 5-6 applications to virtualize Microsoft Windows Active Directory and relative applications to create virtual server components designed as network backups.
Environment: Windows Server 2008/2012, Active Directory, MS Office 365, RedHat, VMware, Palo Alto, Splunk, Dark Trace, Carbon Black, ARC Site
Confidential, Detroit/Rochester Hills, Michigan
Systems Security Production Support
Responsibilities:- Engineered, implemented and monitored system security measures and conditions for the protection of all Confidential clientele network related entities assigned for administration. Security environment protection: (Symantec Enterprise Security Solutions, Tripwire, Rootkit, and Sebek)
- Conducted automated security metric reports based on client’s set server threshold rules.
- Utilized and administered VMWare vSphere 5-6 applications to virtualize Microsoft Windows Server systems and its varied applications to create virtual server components designed as network backups.
- Conducted vulnerability scanning using OpenVAS for client’s newly implemented backup networks.
- Conducted constant research on client network vulnerabilities in order to have maximum impact on information assurance and create cost effective business impact overall.
- Created process & procedure rules in conjunction with other team members by reviewing the technologies involved within the client infrastructure, legacy data involving issues and their reoccurance; created mapping strategies for necessary steps to protect and defend client’s network and various systems in their organization by reaching out to other IT teams around the world to gain proper perspective on how they may handle similar issues.
- Utilized SNORT/RAZORBACK and AlienVault intrusion detection systems daily.
- Utilized IAM skillset on a regular basis in which duties were to create budget analysis, quality point assurance, security systems schedules.
- Managed security system functions under IAM and executed, and monitored network functionality using varied client technologies and cross-platforms.
- Hardened most OpenSource areas with implementation of Imation Ironkey.
Environment: MS Windows 7 Enterprise, MS Windows Server, MS Office, Linux (Ubuntu Server), VMware, Juniper, Symantec
Confidential, Grosse Pointe, Michigan
Microsoft Exchange Server Administrator
Responsibilities:- Reported to senior management status of program, manage program financials, track project deliverables
- Performed maintenance protocol of various email and active directory applications.
- Provided continuous customer support for email issues and network access.
- Supported Windows Server applications to client side users in conjunction with multiple application platforms including; Citrix and SharePoint.
- Conducted file system applications testing on a daily basis of application and data reassurance. Assurance metrics were based on 83-100% success rate after testing on the Bramis network.
- When working with automotive clients, conducted administrative duties utilizing the assembly plant’s FIP, PFCS, and PFS software, and SiteScope monitoring applications.
- Conducted web conference support for multi-paralegal team interaction using VoIP.
- Acted as mobile device administrator for all Bramis employees and clients (200+) configured and administered support for all Apple, Android, Windows and Blackberry devices.
- Hardened most OpenSource areas with implementation of Imation Ironkey.
- Implemented the Bluecoat Proxy server.
- Implemented all firewalls through various suites including Juniper SRX & Palo Alto
Environment: MS Windows Exchange Server 2007, OSX, Blackberry Mobile, Android Mobile (beta testing for Google), PuTTY, Juniper, Bluecoat
Confidential, Southfield, Michigan
Helpdesk Support Technician/Assistant System Administrator
Responsibilities:- Utilized Remedy Ticket/Incident Software System in order to log trouble calls from end-users in need of Level 1-2 technical support.
- Conducted common computer troubleshooting solutions for students (conducted password resets, password creation, for faculty), and staff of Lawrence Tech.
- Performed system reloads, desktop configuration / reconfiguration, PC rollout, global system migration, Microsoft, UNIX updating and viral tracking.
- Performed duties of a systems administrator such as, server maintenance and monitoring, packet monitoring and security distribution throughout the network environment.
- Administered programs, packages, and program patches from developers and system administrators to the LTU environment in assistance to the university’s lead administrators.
Environment: Windows XP Professional, Windows 2000, Window NT, Red Hat Linux