We provide IT Staff Augmentation Services!

Principal Architect Resume Profile

3.00/5 (Submit Your Rating)

NY

SUMMARY

I have focused my entire career on Staying Ahead of The Threat . However, all the televised attacks on networks have sparked much needed changes within the IT industry. I have always focused on staying current with technology across multiple vendors and combining various products into a single solid solution. This enables me to provide Planning, Design, Implementation, and Operation for any complexity levelHardware and Software Defined Data Center technologies. The key to any organization is delivering them in secure, repeatable, and scalable method. While my focus is mainly Cisco, Red Hat, VMware, and NetApp many recent acquisitions have increased the software and hardware portfolio for these companies. I personally own and maintain enterprise class lab environment that permits me quickly adapt to these new technologies and integrate them for my customers.

EXPERIENCE

Confidential

Principal Architect

  • Red Hat Enterprise Linux Engineering, Design, Implementation
  • NetApp Storage Planning, Design, Implementation
  • Data Center Security Expert focused on Design and Implementation of Emerging Technologies
  • Assist Sales Pre Sales in closing enterprise deals based around Borderless Network Solutions Security, Wireless, Infrastructure, etc.
  • Enterprise Engineering and Implementation for Cisco Borderless Networks
  • Subject Matter Expert in the planning, design, implementation on the technical side as well as pricing and procurement for Cisco Advanced Technologies and Security Products ASA/IPS/CX/ISE/Sourcefire/Meraki
  • Expert in Microsoft Active Directory Installation, Configuration, and Maintenance for enterprise level organizations.

Confidential

Chief Architect

  • Practice Lead for Cisco Technologies, Emerging Threat Detection, Reverse Engineering and Network Defense.
  • Red Hat Enterprise Linux Engineering, Design, Implementation
  • NetApp Storage Planning, Design, Implementation

Confidential

  • Procurement of all hardware and software for enterprise project s to include Cisco, VMware, Microsoft, Red Hat, Dell, and other Vendors.
  • Analysis of Alternatives and Proof of Concepts for Virtualizing custom applications written in 64-bit Solaris Sparc to 64-bit Solaris X86 within VMware vSphere 5.1
  • Complete Design, Procurement, and Architecture of VMware vSphere Virtualization effort of entire data center.
  • Virtualization Environment with300TB Storage, NFS, RDM, CIFS, iSCSI, 50Physical Hosts consisting of over 100 various operating systems, custom applications and virtual hardware.
  • Certification and Accreditation Package Development, STIG s , Vulnerability Assessment and Penetration Testing of UTC Assets for their SIPRNet system s to include network, software, and hardware
  • Design and Implementation of full certified SIPRNet network for connection to the DISA DISN, coordination with DISA, DSS, and Project Sponsor in order to achieve IATT, IATO, and finally ATO.
  • Design and Implement CAC PKI based Active Directory infrastructure to support 50-75 Users

Confidential

Cloud Architect

  • Red Hat Openstack Platform Engineering, Design, Implementation
  • Hadoopon Red Hat Enterprise Linux
  • Red Hat Clustering and Storage
  • Red Hat Enterprise Virtualization

Sr. Security Engineer

  • Delivery of new technologies, services and solutions to meet critical customer requirements specifically in the Cisco, VMware, Windows, various Unix flavor s with a specialty in Red Hat, Meraki, Sourcefire, Infoblox, NetApp, RSA, Citrix, and HP Environment
  • Extensive work with Next Generation Firewalls across all major vendors for the purposes of design, planning and implementation of various single and multi-vendor solutions.
  • Provide security oversight and engineering recommendations on new development efforts, the network infrastructure, as well as providing quality assurance by ensuring that existing system and network configurations meet the security requirements for the customer and provide a high level of security posture.
  • Provide security oversight and engineering recommendations on new development efforts, the network infrastructure, as well as providing quality assurance by ensuring that existing system and network configurations
  • Complete from the ground up complex implementations of 802.1x solutions to include Cisco Secure ACS, Cisco Identity Services Engine ISE , Cisco WLC, Cisco Prime, and integration with other Cisco Products Wired, Wireless, Guest, BYOD
  • Red Hat OpenStack Design, Delivery, and Training
  • Enterprise Network Design, Analysis, and Troubleshooting
  • Implementation and configuration of network and security control protocols CoS, PoE, NTP, DHCP , network management protocols CDP, TFTP, SNMP and security protocols 802.1x, Radius, SSH, HTTPS, AAA, IPSec
  • Large Scale migrations from other vendors to Cisco equipment to include tasks such as Firewall and access control list ACL rule migration, NAT configuration, routing, and VPN terminations
  • Expert in Microsoft Active Directory Installation, Configuration, and Maintenance for enterprise level organizations.

Confidential

Sr. Security Engineer/Information Security Manager

  • Enterprise Grade Next Generation Firewalls: Palo Alto, Cisco ASA and the analysis of data, design, traffic flow, ports, protocols, and current security architecture.Auditing the security posture of the network hardware, software, documentation, diagrams and integrating new hardware with current design.
  • Cisco Identity Services Engine ISE Planning, Design, Implementation for 60k Endpoints, Wired, Wireless, Guest, BYOD
  • Wireless and Wired 802.1X Deployments to include Enterprise CA, 3rd Party CA, non 802.1X Devices MAB
  • Developed, integrated, and maintain the enterprise network at n-tieractive incorporated which in 2011 successfully achieved ISO 9001, 20000, 27001 as well as keeping the network within DoD compliance consisting of Cisco, Baracuda, HP San, NetApp, IT Watchdog, VMWareESXi, Citrix, GPGPU Computing.
  • Technology Implementation such as: Network Access Controls, 802.1x, LDAP/AD integration, Clientless, Anyconnect VPN, MDM, Active Directory, and Exchange. In support of the DoD BRAC Initiative design, built, integrated 802.1x based LDAP/AD Integration to include the use of Cisco, Palo Alto, and Juniper network equipment.
  • Enterprise Network Design, Analysis, and Troubleshooting. Utilize network analysis tools to quantifiably measure traffic flows, identify problems with configurations, hardware, and software L1-L4 . Supported DoJ to determine
  • Cisco Network Design in support of the DoD Tricare Management and Force Health Protection and Readiness utilizing Cisco VRF Routing, OSPF, 802.1x, Radius
  • Network Security Engineering for the DoD, DoJ, and Commercial clients. Focusing on staying ahead of the threat by utilizing a mixture of techniques and technologies. Integrating the use of Firewall, VPN, IDS, SEIM, IPS, Sniffers, Log Analysis Tools, and Vulnerability Detection and Prevention.
  • Maintain technically proficient through study, research and development. Cisco certified in various disciplines to include Cisco Partner specific specializations. Attend various security training and conferences.
  • Ethical Hacking for various government agencies. Participation in 3 different hacking challenges in 2012, including the DHS Maryland Cyber Challenge, CyberStorm, DC3.mil
  • Utilize SME knowledge of guidance and directives from DoD, NIST, Navy, OMB, FIPS, HIPAA, and Vendor Best Practices to develop, design and implement various technologies across the supported organizations focused on meeting the requirement s while incorporating management, technical, and security need s .
  • VDI Environment Research and Development, Citrix, VMWare, Hyper-V, RemoteFX. Full GPGPU Accelerated VDI, Citrix NetScaler. Cloud engineering and virtualization, metrics, trending, reporting. Data Center to Cloud migration for major DoD organizations.

Confidential

Sr. Security Engineer

  • Bringing emerging technology based methods to assist with large C A projects and see them through to Signature while decreasing the time to identify and remediate findings and maintain the ATO Package.
  • Provide Information Security guidance for all active government and commercial clients to include document reviews, writing, and auditing.
  • Data Center consolidation and virtualization for the Associated Press, DoD, pFizer, Bank of America to name a few. Consisting of 10 6513 and 25 6509 Switches, with POE requirements, VOIP, OSPF, BGP, VLANs, FWSM, IDS, 8 Fully Loaded Dell Blade Chassis, consisting of over 100 Servers performing various roles. I was one of 3 engineers on the project for the duration responsible for planning, rack/stack, configuration, troubleshooting, maintenance, and documentation.
  • Red Team Ethical Hacking for Government and Commercial Clients, Web Application Assessments, Vulnerability Analysis with a focus on identifying items missed by automated scanners.

We'd love your feedback!