Cyber Security Architect Resume
Ft Meade, MD
PROFESSIONAL SUMMARY:
Senior Network Engineer with over 25 years of experience in network and security architectures. Professional experience designing, implementing and troubleshooting large scale LAN/WAN datacenter and enterprise networks in multi - vendor environments. Honorably served as Non-Commissioned Officer in the Confidential for 17 years, receiving numerous citations and decorations.
TECHNICAL SKILLS:
- DoD Security clearance
- Blue Coat Proxy Appliance
- Alteon 6000 Series Application Delivery Controllers
- FireEye Malware Appliances
- HP Data Center switch series (12900, 12500, 11900, 5900)
- HP Enterprise/Campus switch series (10500, 8200, 7500, 5400, 5800)
- HP HSR, MSR, and VSR series routers
- HP CS7000, CS700, CS500 Converged Systems
- Cisco Nexus 7000, 5000 and 2000 Data Center switches
- Cisco Catalyst Switches (6500, 4500, 3700, 3500, and 2900)
- Juniper ISG 1000, SSG 500, 300 Series Firewall
- Cisco ASA 5500 and Pix 500 series firewalls
- Cisco Catalyst Switches (6500, 4500, 3700, 3500, and 2900)
- Cisco Router (ISR 1000, 3900, 2900, 1900)
- Palo Alto Networks 4000 Series Firewall
- BGP, OSPF, EIGRP, IP Multicast, IPSEC, VPN, DMVPN, HSRP/VRRP WCCP,
PROFESSIONAL EXPERIENCE:
Confidential
Cyber Security Architect
Responsibilities:
- Guiding, assessing and documenting design of secure solutions and architectures.
- Architecting and directing implementation of technical security solution in alignment with bank policies and standards.
- Researches, evaluates, recommends, designs, tests, and implements new security technologies.Serving as subject matter expert and central point of contact for Cyber Security.
- Prepares and maintains architecture guides, SOPs, security architecture documentation and diagrams.
- Analyze, Document, and Present findings and proposed solutions.
- Continually communicate to project managers and owner.
- Participate in meetings and provide recommendations and strategies for ensuring remediation of gap and deficiencies as projects develop.
Confidential
Technology Consultant
Responsibilities:
- Design and implement complex networking architectures supporting customer requirements.
- Performs datacenter network transformations based on the latest architectures focused on high performance, reliability, availability, resilience and flexibility.
- Delivers and integrates latest switching and routing technologies into existing and green field enterprise/campus environments.
- Implements Big Data solutions (HP Converged Systems and HADOOP solutions).
- Assesses existing customer networks and identifies strengths, weaknesses, future state requirements and recommends best practice standards based solutions to provide future proof designs.
Confidential
Senior Network/Security Engineer
Responsibilities:
- Served as principal security engineer for USAID TIC (Trusted Internet Connection) Project. Re-designed firewall architecture to support new security posture and created new rules and NAT design in order to meet TIC security requirements. Met and coordinated with vendors and security team to develop implementation plan.
- Designed and implemented firewall and VPN architectures, complex DMZ networks utilizing Juniper ISG 1000, SSG 500 firewalls and Web/HTTPS Proxy gateways utilizing Blue Coat 8100, 800, and 500 series proxy gateway appliances.
- Designed and implemented LAN/WAN solutions supporting domestic and overseas sites utilizing Cisco ISR, 3900/3800 and 2800 routers and Cisco 6500, 3700, and 3500 switches .
Confidential
Senior Network/Security Engineer
Responsibilities:
- Designed advanced network architectures in support of DOD customer needs.
- Implemented high performance firewall and site to VPN solutions across multiple sites as well as deploy remote access VPN utilizing Juniper 5000 series, ISG, and SSG series. Implemented Cisco ASA series firewalls
- Implemented complex security architectures in support of DOD requirements to include development firewall policies, router access lists, IAVA security updates, indentifying threats and vulnerabilities on network infrastructure.
- Designed and implemented multitier DMZ architecture.
- Designed and implements multilayer Gigabit Ethernet switch and router infrastructure utilizing Cisco 6500, 4500, 3500 series switches.
- Provided Tier 3 network support and troubleshooting.
- Provided training to junior level network engineers.
- Served a technical lead for network design, installations and network upgrade efforts.
- Performed technical research, testing, and installation/configuration of network architecture solutions and delivered detailed reports, drawings, and recommendations to customer.
Confidential
Network Engineer
Responsibilities:
- Utilized CA Unicenter and Cisco Works to monitors network and measures performance and provides supporting data to customer. Utilized CA Unicenter Service Desk to manage trouble tickets.
- Reviewed system logs daily to determine network performance and diagnose possible network issues. Troubleshoots network and resolves issues. Maintains 24/7 support for large scale enterprise network.
- Managed 13 network engineers, data and telecommunications technicians at 4 sites.
- Provided network design solutions supported customer requirements for high performance, high availability, scalability, and secure enterprise network architecture.
- Provided Tier 3 technical support as required. Troubleshot application and protocol issues.
- Consults with special customers to identify requirements and provide design solutions required for unique network solutions not conforming to existing enterprise architecture.
- Prepared weekly project status reports to customer and documents network design and configuration.
- Implements network router/firewall filters, access lists, and security policies at customer request.
- Consulted with 3rd party vendors to obtain price quotes, technical specifications and capabilities.
- Designs and implements, and maintains large scale multilayer switch networks implementing L2 and L3 VLANS supporting various customer needs including, high performance computing, technology research,
- Designs and implements network security solutions utilizing state-full inspection firewalls, inter-site VPN tunnels, remote access VPN utilizing Netscreen firewalls and Cisco ASA and Pix series firewalls.
- Performs technical research, testing, and installation/configuration of network architecture solutions and delivers detailed reports, drawings, and recommendations to customer.
- Established policies and procedures for day to day operations upon customer request.
Confidential, Ft. Meade, MD
Network Engineer
Responsibilities:
- Designed, implemented and troubleshot complex data networks, consisting of Fore Systems 4000, 1000, and 200 series ATM switches and Power hubs, Cisco 7500, 7200, and 2500 series routers, ODS Intelligent Hubs and Proteon CNX-500 routers.
- Installed, patched and terminated multi-mode and single-mode fiber cables to switches and routers.
- Provided Level 1/2 technical support of network infrastructure by performing diagnostic troubleshooting and repair of network and related equipment using HP OpenView, ForeView, network sniffers, analyzers.
- Provided guidance, technical training, and supervision to junior-level engineers.
