Infrastructure Architect. Resume
PROFESSIONAL SUMMARY:
- Confidential Senior Systems Engineer/Architect with a long history of progressive excellence in engineering, implementation, system design.development, including 5 years of experience in the healthcare IT industry. Solid leadership skills, project management, and team building skills combined with strong analytical, troubleshooting
- Technical acumen to consistently deliver productive technological solutions. Served as member of U.S. Army as a tactical satellite communication specialist and provided direct support to multiple locations, Veteran.
CORE COMPETENCIES
- Leadership and project management.
- Technical expertise.
- System design, implementation, and development background.
- Troubleshooting and issue resolution.
- Microsoft and VMware virtualization professional.
- Microsoft Active Directory Services migration specialist.
- Solutions development and deployment specialist.
TECHNICAL SKILLS:
Domain solutions: Windows Domain, NT4.0, 2000, 2003 RC/2 and Windows 2008/R2; Hyper V 2008, Windows 2012, 2012r2, 2016,2019 Domains
VMware: 4.0, 4.1, 5, 5.1, 5.5., 6.1 - 6.7.
Exchange: 5.5, 2000, 2003, and 2007 exchange 2012 System Center Suite, Operation Manager, SCVMM, Configuration Manager Suites 2008/2012
Veeam Backup Versions: Windows Clustering, Windows Hyper-V Clusters and Guest Clustering. 2008r2 to 2012 r2
Windows: XP, Vista, and 7; SharePoint 2003, 2007,2008 and 2010Cisco, USC. Windows SQL and SQL Clusters, Windows 2012/2014 always-on SQL Hyper-V Clusters.Oracle
Scripting: Powershell, C#
Hardware: HP, Dell, Cisco, NetApps, EMC, IBM and Confidential Brand ES Series Servers
Operating Systems: Windows, 3.1, 3.51, NT4.0, 2000, 2003/R2, 2008/R2, 2012, Windows 4.0, 95, 98, ME, 2000, XP, Vista, 7, and 8; RedHat, SCO, AIX, and SUN 6-8 Identity Management, ADFS 2.0 and FIM 2010.
Programming Languages and Tools: Power Shell 1, and 3.0
Office Productivity Tools: Office, 95, 98, 2000, 2003, 2007, 2010, 2013 and 2015.
PROFESSIONAL HISTORY:
Confidential
Infrastructure Architect
Responsibilities:
- Lead Active Directory Services Architect, designed and supported 2020 Census Technical Integration Initiative spanning 2 Datacenters, 3 cloud site, AWS East and West, 6 regional Census Centers, 240 Area Census centers managing 640K end users.
- Team Lead for an 11-man Windows Team to include ticket management/distribution, projects assignment and escalations.
- Implemented on a Single Flat Domain with a forest-to-forest trust to support the 2020 Census and the Census HQ.
- Designed and Implemented the Site Model for the Census Active Directory Domain
- Designed and Implemented the Replication model for Consistency across the multiple VPC and Onprem location with the technical integrator.
- Installed and Configured Vormetric’s, nCipher HSM’s that are responsible for the protecting root private keys for the census.gov and ti.cencus.gov domain.
- Installed and configured multiple Infoblox Virtual DNS appliances to support field site name resolution.
- Installed and Configured Infoblox’s version Active Directory Integrated DDNS, using GSS-TSIG keys for Active directory integration with Infoblox.
- Configured, Infoblox DHCP scopes to Support All Field Sites and Regional Office locations on the Census 2020 Project.
- Designed, Installed, configured Ldap authentication for 150+ applications 3rd party applications.
- Designed, Installed and configured, 2 Tier Pki solution, 2 Intermediate Issuing CA, 1 web.crl server, to offset certificate distribution from HQ and setup HA certificate issuance to support the 2020 census.
- Designed, Installed, configured process to issue certificates to support the initial applications moving to the technical integrator program, to include certificate templates, script issuance.
- Designed Installed and Implemented the Census 2020 ADFS solution, that supported, Mail, Application and Mobile device claims created for Census.
- Configured multiple Claims based rules to Support SAML 2.0 and SAML 3.0 Application Authentication.
- Designed, onboard and Implemented 0365 Mail domain to support 640k Field enumerators.to include license procurement and support.
- Designed and Implemented Full Role Based access model to support field offices and users.
- Designed and Implemented File HA cluster with Role based access to support Field Offices.
- Installed and Configured Azure AD Connect to Support Mobile devices and field Users.
Confidential,
Identity Management, AD, Virtualization SME, Infrastructure Architect.
Responsibilities:
- Worked as lead Active Directory Services Engineer, designed and supported Confidential ’s Virtual Private cloud initiative, (VPC). 17 Datacenters and 20 countries over 200K user’s base.
- Responsible for the customer Active Directory Design for All customer compartments. Internal and External for Hp Global Active directory services architecture.
- Provides Microsoft and VMware technical assistance to support multiple on premises offerings.
- Served as Hyper-V 2012/R2 and Directory Services Active Directory (AD) resource on a 3-man ranger team to resolve tier 5 resolutions for customers and their designs.
- Supported an internal VPC and Hellion team of 2,000 employees for 500+ customer contracts.
- Helped Migrate Customer Facing Active Directory Solutions into the VPC Cloud offerings. Migrating from Windows 2008r2 to Windows 2012r2
- Provided technical consulting support for HP IT staff and customers recommending best practices to deploy SCVMM and ADDS solutions to its customers for the On Prem Virtual Private cloud offering.
- Configured multiple node Win2012r2 clusters to support the production customer facing environments.
- Managed Patch levels using HPSA for Customer VPC offering compartments.
- Installed and configured DNS and DHCP pools to support AD and system center fabric for rapid deployment.
- Designed and implemented and configured a new 2012r2 domains; tested migration practices; designed and implemented multiple clusters using Hyper-V 2012/R2.
- Implemented the automation of security groups via PowerShell.
- Wrote Multiple Rapid deployment scripts in PowerShell to kick off Server automation processes and server builds.
- Installed and configured 2012 System Center Suite for multiple customers as part of the vpc initiatives.
- Designed libraries to support and store objects used by VMM; pushed VMM agents to host servers.
- Designed a rapid deployment process using P2V methodology and System Center 2012/R2 Orchestrator (SCORCH 2012 R2), installing and configuring WDS for rapid deployment guest turn up.
- Worked between multiple virtualization platforms, proving windows 2012r2 AD support.
- Implemented Relying Party trust and configured multiple application using Microsoft Federation Server, ADFS 2.0
- Installed and configured AGPM 4.02 and 4.03 to manage the phantom production changes to GPO’s in production environments and customer compartments.
- Installed and configured multiple Microsoft ATA (Advance threat Analytics) solution in all the customer compartments.
- Installed and Configured Webfocus and IBM Kenexa ADFS trust to support multiple projects within HP VPC.
- Design and Implements HP’s Policy on Establishing Customers in the VPC space.
- Supported Sales to team with design specification to add new customers and how to establish trust to HP.
Confidential
AD Architect, Virtualization SME, Project Engineer
Responsibilities:
- Managed redesign of US-VISIT domain and AD SFE 2008/R2 redesign and domain restructure
- Served as AD DS team lead and architect; SME for implementation of more than 50 Hyper V host and four four-node Hyper V clusters; SME for VMware data center upgrade; SME for system center suite installation 2008 SCVMM, OP management, and configuration management.
- Implemented a quality assurance system (QAS) for AD, adding 150 UNIX servers to production, and implemented role-based control model to administrate multi-domain/forest solution
- Redesigned security groups and access control model for US-VISIT project
- Implemented best practice for DS deployment and management
- Used PowerShell to help deploy new OU design in Prod, DEV and UAT environments.
- Centralized management of more than /2008 and Unix servers
- Extended single sign-on (SSO) functionality to all RedHat clients-servers using QAS
- Designed and implemented conjoined 08 forest/multi-domain models
- Designed and implemented new OU and rights model using Delegated rights wizard
- Centralized management of more than 2 /2008 Hyper-V server with SCVMM R2
- Designed and implemented Quest Active Recovery manager for AD; implemented Quest Access Manager for permission management across platform
- Served as technical lead, providing growth and direction for application and infrastructure teams, and as one of three lead engineers for Exchange Mail Migration to Google, the cloud.
Confidential - Reston, VA
AD Architect, Virtualization III Team Lead and Technical Lead
Responsibilities:
- Served as SME for Hyper V design of HIM solution, for SCVMM 08/R2 installation and data center consolidation, and for AD Windows 2003/2008 domain restructure
- Deployed six 10-node cluster environment and migration data centers
- Provided technical support and on-call duties for 24/7 operation shop
- Designed conjoined 08 forest/multi-domain model using multiple migration techniques; designed and implemented new ADI DNS topology for a new domain model
- Centralized management of more than 2 /2008 Hyper-V servers with SCVMM R2
- Implemented Raritan KVM/ILO lights out infrastructure spanning two data centers; leveraged KMS and MDT to accelerate server deployment and activation; leveraged WSUS v2, v3, Ops Man07 for virtual environment HA and management; leveraged high availability for Hyper V technology to support critical servers and apps
Confidential (SBINET)
Team Lead
Responsibilities:
- Managed Document Solutions Design Lifecycle (SDLC) process
- Redesigned Windows 2003/R2 AD infrastructure proof of concept; designed Windows 2003/R2 64-bit single forest/single domain structure
- Implemented a role-based access control (RBAC) model spanning 17 Windows 2003/R2 sites for more than 50,000 users
- Installed and configured third party authentication tools (LDAP) by Quest
- Extended SSO functionality to all RedHat clients-servers using Vintela
- Designed and managed a support lab to test deployment scenarios
Confidential
Team Lead
Responsibilities:
- Directed the SDLC upgrade
- Served as AD team lead for Windows 2003/R2 upgrade and operations group; provided Tier 4 support for engineering and operations groups
- Designed, tested, and deployed Windows 2003/R2 DC upgrade for TSA domain
- Deployed 288 geographically located airport DC sites for a government client
- Designed and implemented DNS and Windows topology and an AD new replication model
- Standardized infrastructure using Microsoft best practices across environments
- Helped reduce TCO by reducing DC deployment schedule, rendering $58,000 in savings
- Developed a green process to reduce power consumption and discard old equipment.
Confidential
Senior Solutions Architect
Responsibilities:
- Designed, installed, and implemented Windows 2000/2003 AD domains; designed and implemented an enterprise authentication system using IAS; and designed and implemented a single forest, single domain for the CCSP project
- Supported more than 20,000 users via dial-up, wireless, and VPN
- Migrated and consolidated server service to a newer, faster Dell server platform
- Served as Tier 4 senior engineer in charge of AD and operations domain architecture
- Collapsed and consolidated multiple modes totaling 72,000 users
- Standardized monitoring, health, and performance of growing AD architecture
- Implemented RBAC model, and implemented and managed 72-terabyte EMC storage solution
- Served as technical manager for a 15-member team, providing growth and direction
Confidential, Washington, DC
Senior Storage Solutions Engineer
Responsibilities:
- Designed, installed, and configured EMC premier storage tool, Control Center (CC) 5.1.1, for NMCI
- Designed a multi-site control center infrastructure to manage SAN resources coast to coast
- Managed tasks and problems related to control center issues
- Installed and configured CC 5.5.1 on a seven-tiered Windows 2000 distributed infrastructure
- Configured CC 5.5.1 to manage multiple storage networks spread across two data centers
- Deployed policies, discovery tuning, and report creation, and managed objects and resources
- Earned $475,000 in new business revenue.
- Designed, installed, and configured CC in Disney’s large storage environment; managed administrative reduction task and deployment of CC
- Implemented CC 5.5.1 at multiple sites, including Orlando, FL, and Burbank, CA
- Configured CC 5.5.1 to manage more than 400 managed object environments in dual environments
- Earned $375,000 in new business revenue
- Designed Windows 4.0 to 2000 migration strategy; assisted with Windows 2000 AD rollout
Confidential, Chantilly, VA
Senior Systems Engineer
Responsibilities:
- Implemented a single forest, multi domain Windows 2000 AD domain for 3,200 users
- Distributed domain design between residential housing and corporate network
- Planned and implemented upgrades to all Windows 2000 servers and Exchange 2000 services
- Supervised three engineers and advised technical staff on procedures
- Leveraged multiple technologies to support DS, Citrix, and other services
- Maintained and administered IBM AIX RISC 6000 servers
- Resolved user desktop connectivity issues and provided tiered support
- Designed print servers and installed printers; performed patch remediation and version control for Windows 2000 INF
- Served as business objects administrator
- Migrated NT 4.0 domains to single Windows 2000 forest/domain
- Installed and configured VERITAS to perform scheduled nightly backups
- Managed and supported Windows 2000 AD domain running DNS, DHCP, and IIS 5.0
- Implemented the Exchange 2000 Infrastructure; managed user domain for more than 3,000 users
Confidential
UNIX/NT Systems Administrator
Responsibilities:
- Administrated and controlled tasks for a global financial communications system
- Investigated and troubleshot network communication at 72 global FIS sites
- Administrated Unix DNS (bind v5), Windows DNS, and Windows server
- Liaised with clients and third-party communication companies
- Provided multilingual support to companies as a service provider
- Served as technical lead
- Performed nightly backups and batching of tapes for offsite storage
- Tested, debugged, and reported new software releases to ADP brokerage software
- Directed release management and installation of new Sun O/S patches
