Security Analyst Resume Profile
SUMMARY:
- Extensive experience in software, systems, web development, network security, and troubleshooting of desktop and enterprises systems.
- Proven record of accomplishments and increased levels of responsibility in the support and implementation of training programs.
- Highly skilled in developing solutions to business and technical problems, providing leadership, and working with others to achieve company objectives.
- Project Management IT Development
RELEVANT SKILLS:
SKILLS: | YEARS |
Hands on experience documenting and managing all aspects of security within an enterprise organization, including but not limited to: | 10 |
Firewall and IDS/IPS experience | 12 |
Virtual Private Networking VPN | 10 |
Network access policies | 15 |
Web filters | 15 |
Publically accessible assets | 15 |
Active directory | 9 |
Security compliance for third party and/or in house developed applications | 15 |
Virtualization and Storage area networking security | 15 |
Experience Preparing and submitting a Security Program evaluation and compliance report | 15 |
Conducting continual surveys of all offices, departments and functions to determine the need for additional security services, and making appropriate recommendations. | 15 |
Highly-developed and proven oral and written communication skills | 15 |
Experience Supervising and directing personnel from other departments when conducting investigations. | 26 |
Proven experience developing, implementing and administering all aspects of a successful Security Program, including physical, technical, personnel, procedural and electronic security. | 26 |
Providing continual consultation and written reports to senior management and to the board of directors concerning security issues | 26 |
Experience defining processes to maintain security equipment, test intrusions, and the ensure alerting of threats. | 26 |
Developing and maintaining organization security practices and processes on investigating and documenting suspicious incidents and policy violations. | 26 |
Creating documentation library and reporting processes for all investigations and Security Program operations | 26 |
Working with other department leaders, designing security components for operations and other strategic processes, and supervising the development and implementation of required security reporting devices and processes at all levels. | 26 |
Anti-Virus management | 15 |
Extensive working knowledge of Internet protocols, tools and techniques including but not limited to: | 26 |
Virtual Private Networking VPN , | 10 |
TCP/IP, Local Area Networks LAN , Wide Area Networks WAN , | 26 |
Network device operating systems security configuration, | 26 |
Internet security, | 20 |
Internet Information Server, | 15 |
Knowledge of Virtual Machine operation, strengths, and weaknesses. | 15 |
Experience with VMware ESX security. | 18 |
Support of web-based applications for internal intranet sites and external Internet sites. | 20 |
Knowledge of software development lifecycles and migrations from different environments, such as development, production, etc | 26 |
Working technical knowledge of current network hardware, protocols, and Internet standards, including TCP/IP, and DNS, DHCP. | 26 |
Experience in developing and maintaining documentation for security policies, procedures, and best practices. | 26 |
Experience and working knowledge of backup products and methodologies. | 26 |
TECHNICAL SKILLS:
- Operating Systems: DOS, Linux, UNIX DEC, SUN, HP, ATT , ULTRIX, SCO UNIX, Windows 3.1, Windows 95, Windows NT, OSF/1, VMS, OPEN VMS, Basic, Linux
- Languages: C, Java, Visual Basic, Visual J , Access, PHP Perl, Perl-cgi scripting, HTML, HTML2,HTML, CSS3,JAVA Script, Shell Scripting, Net Fusion, SPARCworks Development Environment, SPARCworks/ADA, SPARCworks/ADA, SPARCworksTeamWare and some Share Point experience, Sun Solaris Environment, Macromedia Director, Mindmap Development Environment, CorelWeb Design Environment, JAVA Development Environment, JavaScript, JavaBeans, JSP, Symantec Visual CAF , IBM Visual Age, CAF , MacroMedia, Applett Environment, Macromedia Animation, Ulead Products, Astound, Astound Video Studio, Asymetrix Web 3d, Asymetrix Web Designer, Asymetrix Toolbook, Environment, Macromedia Flash, XRes, Extreme 3-D, Active-X, MS-ASP. Sun Iplanet, WebSphere Application Servers, RAID 0 and RAID 3 protocols, B to C and B to B series
- Database: Informix, Sybase, MS SQL Server, MySQL, Oracle, DB2, Fox PRO I and Fox PRO II
- Networking: Routers Cisco, Digital Bridges/Switches Digital, Cisco , Internet and Intranet configuration PATHWORKS Digital DOS and Windows, ProbeWatch, Protocols, TCP/IP stack experience , Novel, LAN Ethernet/Fast Ethernet, FDDI, Token Ring , WAN, Network Security
- Firewall Experience: ProbeWatch Packet Filters, Application relays and proxies , Products Smartwall, Gauntlet , PrivateNet NEC , PIX Firewall Sysco .
- Instrument Mechanic E.I. Dupont
PROFESSIONAL EXPERIENCE:
Confidential
Support of small to medium systems Windows and Unix based servers, Security Analyst / Web Designer Contractor
- Designed and developed websites for small to medium size businesses utilizing centric software development multi-agent system MAS structures with the tools and protocols PHP, JavaScript, and other web technologies - JAVA, JSP, ASP, XML, HTML, C, Adobe Photoshop, Dreamweaver, Macromedia Flash Designing and implementing data models using wire framing and template construction on Unix, Linux and windows operating systems.
- Assisted in conceptualization, planning and managing project for redesigning internal Web/data security infrastructure providing access to current sales and marketing information.
- Implemented security risk-awareness forums to enable end users and employees to identify and share knowledge of various information security risk categories.
- Developed sites utilizing Joomla Drupal content management systems, HTML5, CSS3
- Support and Administration of IIS and LINUX based server systems
.Confidential
Security Analyst / Web Developer
- Performed internal development functions and provided expert advice to clients developing their own sites.
- Worked with 3rd party developers to help them migrate their sites and code to State Streets web servers and database engines, and Ecommerce web platforms throughout the company utilizing Iplanet, and Websphere Application Servers, utilizing RAID 0 protocol.
- Designed and developed test cases.
- Performed system testing, configuration, installation and support.
- Consulted with internal organizations on practices and policies that govern physical storage of company/customer sensitive information, access and disposal of data.
- Recommended system security controls and physical environment enhancements.
- Evaluated current system security and asset protection procedures relative to passwords, file protection, system audit procedures, user accounts, software installations etc.
- Provided various IT development services to companies across diverse industries, specializing in tier 3 and tier 4 level support for Unix/Linux, Solaris and windows based desktop and racked mounted systems.
- Served as Developer for Ecommerce and training web based products.
- Designed and developed websites and website applications utilizing ROR Ruby on Rails, PHP, JSP, JavaScript, HTML, ASP, XML, Adobe Photoshop, Dreamweaver, Macromedia Flash, JavaScript, SQL Server.
- Performed content creation design and development of Web pages.
Confidential
Information Security Manager / Web Application Developer for Network Security
- Evaluated and established security controls and recommended corrective actions as needed.
- Oversaw the development and communicated an enterprise information security vision, strategy, standards and program, throughout the company utilizing Iplanet, and Websphere Application Servers, utilizing RAID 0and RAID 3 protocols.
- Provided leadership for the implementation and evaluation of secure systems processes and networks.
- Managed directed a staff charged with day to day computer security controls including but not limited to creating access and control, monitoring, security awareness to BCBSMA mainframe, e-commerce, membership self service web and desktop computers and remote dial in access.
- Worked with EDS, Concordant, and BCBSMA management to solve specific security problems or threats within and potentially outside the company.
- Established security risk awareness forums to enable business end user and employee to understand and identify different risk categories within the information security environment.
- Consulted with internal organizations on practices and policies that govern physical storage of company/customer sensitive information, access and disposal of data.
- Recommended system security controls and physical environment enhancements.
- Evaluated current system security and asset protection procedures relative to passwords, file protection, system audit procedures, user accounts, software installations etc.
- Published asset protection and information security reports on a scheduled basis with broad distribution.
- Ensured that state-of-the-art tools are used and implemented, wherever possible, to protect the BCBSMA total business environment.
- Interfaced with BCBSMA Audit/Control and legal offices.
- Coordinated authorized access to e-commerce web page s
- Established and coordinated communication of enterprise-wide information security strategies.
- Built and managed team of 15 individuals designing and developing software security tools including protocols to prevent anti-hacking and anti-intrusion.
- Performed full program management and application development life cycles, from concept development to post-implementation support.
- Directed acquisition and deployment of cutting-edge security tools.
- Interfaced with upper management in locating and resolving security issues and threats.
- Monitored network to identify security vulnerabilities, and recommend upgrades and corrective actions.
- Communicated with various cross-functional departments on policies regarding physical storage, access and disposal of sensitive customer/company data.
- Liaised with sales team and vendors in coordinating pre-sales efforts.
- Developed, maintained and managed access to e-commerce and Member Self Service Web sites.
- Authored and distributed company-wide asset protection and information security reports.
- Provided key support in developing action plan and defining project scope for purchase of 2M in hardware, software and professional services to support E-commerce initiative.
- Used TeamSite and Mambo Web Content Management tools to help manage, deliver and archive content and applications.
- Performed Total Cost of Ownership TCO studies providing client executives with information for managing physical assets and determining performance levels and existing infrastructure value.
- Assisted in conceptualization, planning and managing project for redesigning internal Web/data security infrastructure providing access to current sales and marketing information.
- Implemented security risk-awareness forums to enable end users and employees to identify and share knowledge of various information security risk categories.
- Spearheaded development and implementation of proof-of-concept for single-user login.
Confidential
Internet Security Consultant
- Provided support to over 350 Internet and intranet sites, providing installation, testing support and 24/7 production support.
- Designed, developed and maintained sophisticated Web sites and applications.
- Created, updated and provided support for written, visual and multimedia Web content.
- Consulted with clients, providing expert advice on Web page development.
- Aided third-party developers in migration of Web sites to company's Web servers and database engines.
- Used TeamSite and Mambo Web Content Management tools to help manage, deliver and archive content and applications.
- Responsible for meeting with top management to determine web specifications, needs, revisions and problems.
- Developed functional specifications, and designed highly professional web sites.
- Trained members of the team to work with Photoshop, Illustrator, Flash and Video Studio multimedia editing software.
- Designed and implemented multilingual State Street Zurich web.
- Designed and implemented corporate Quality Office Intranet web with streaming multimedia presentations.
- Fulfilled requests to redesign many company webs both functionally and artistically due to successful implementation of previous projects.
Confidential
Webmaster/Web Architect
Provided 24/7 2nd level Web/Ecommerce production and security support for three types of web servers: Netscape Enterprise server on both UNIX and NT Lotus Note Domino server on both UNIX and NT Microsoft Internet Information Server on NT.
Confidential
Online Marketing Manager / Tier3 Tier4 Technical Support Served as Project Manager for Ecommerce and marketing websites. Promoted and optimized Behring Diagnostics web presence. Created innovative use of Behring hardware and software through coordination of technical products. Communicated between Behring Diagnostics customers, Sales Force, Research and Development and Marketing personnel to resolve issues.
PrincipalTechnical Engineer/Network Security Software Development
- Qualified new devices and software products, concentrating on system test and debug under UNIX, OSF/1 operating systems.
- Qualified UNIX Clustering Software and Hardware Products.
- Applied engineering Support principles to assure that the 7000 8000 series computers complied with corporate design and engineering standards.
- Performed DEC Standard 038 system testing.
- Planned, scheduled, analyzed, system test plan development and test implementation prototype preliminary evaluation : analyzed and interpreted the architectural elements of a system utilized software skills to test the interaction between each architectural element.
- Troubleshot and analyzed hardware and software functional problems executed bottleneck analysis this required strong, detail oriented written communication skills and included software project experience utilizing UNIX or Ultrix, UNIX, OSF and Open VMS.
- Designed and implemented training programs for customers and technical staff on UNIX clustering and hardware.
- Performed system level testing, interpreting results and isolation of failures.
- Worked with other software and hardware developers to resolve system related issues. PLC and ladder logic programming utilizing Alan-Bradley PLC Controllers.