Specialist Master Resume
Arlington, VA
SUMMARY:
- Over 22 years of IT Management experience. Past roles include Senior Program/Project Manager, Federal Advisory Specialist Master, Security SME, Cyber Security Architect, IT Manager, Incident, Change and Knowledge Manager, ITIL SME, IT Security Architect, Business Continuity and Disaster Recovery Architect, Networking Architect/Consultant, DBA and Systems Administration.
- Experience also includes design, implementation, management and maintenance of Enterprise On - premise and Cloud Datacenter Infrastructures.
- E xpertise includes Project/Program Lifecycle Management and Software Development Lifecycle management, Data Center, DR and Business Continuity, ITIL based IT Service Management, IT Governance, PCI, FISMA and SOX compliance management using PMBOK, OWASP, ITIL, PCI, NIST 800 series standards and COBIT framework.
- Facilitated team coordination and communications for successful Project Management in a highly matrix environment. Have excellent interpersonal and communication skills.
- Core skills are in the areas of Cyber Security, Secure SDLC, Enterprise Architecture, IT Governance, Risk Management, IT Infrastructure Management, IT Service Management, Secure DevOps, Application Security and Cloud Computing.
- Currently CSM, PMP, ITIL v2 & v3 Foundations, CISA, CGEIT and CSSLP certified. Past Certifications includes CCNA, Data Warehousing, Oracle DBA and Lucent’s Design and Engineering.
SPECIALITIES:
- 22 years of IT experience, on Program and Project Management, Information Security, IT Architecture, IT Governance, Service Delivery Management, Federal and State government best practices and Infrastructure Operations Management for Government and Private Sector.
- Extensive experience in managing IT Security related technologies, processes, infrastructures, policies, standards, procedures, best practices, training and awareness, controls, compliance and human capital resources
- Extensive experience and expertise in implementing ITIL best practices for Incident, Change, Release, Configuration, Knowledge, Service Portfolio, Service Catalog, Security, Business Continuity and DR Management in enterprise IT operations environment.
- Strong knowledge in the implementation of ITSM Tools such as BMC Remedy and Microsoft Business Solutions, and other Infrastructure and Enterprise Management Tools and processes.
- Expertise in implementing NIST, ISO, COBIT based IT controls, IT Governance and best practices for SOX, FIPS, HIPAA, PCI-DSS, HSPD-12, CMMI Compliancy requirements
- Expertise in Enterprise Data governance, including Data Architectures, Data Warehouse systems, OLAP and OLTP Systems, traditional Decision Support Systems, Business Intelligence, Analytics and Reporting environments.
- Extensive experience in interacting with Data Center, Network Managed services, Storage, Database, Security, UNIX, Wintel and Application support on globally distributed business units on 24/7 basis.
- Agile Project Management, DevOps and Cloud Computing on Iaas, Paas, Saas service offerings.
- Technical and Business Expertise in presenting organizational strategy to senior level executives and expert in optimizing the use of technology and service frameworks investments.
TECHNICAL EXPERTISE:
Development Platform Servers: Dell, HP, IBM, Sun, Compaq, Acer, Robotic Tape Backup Systems, Clustered Servers (RAC), Load Balancers F5, AS/400, AWS AMIsServers - Windows, Unix, Solaris, Linux, Novell, BMC Remedy ITSM, Microsoft Business Solutions, SOA, ESB, MuleSoft CloudHub, AEM, SalesForce MS Visual Studio, Borland Developer tools, .Net Platform, Android OS, Hybris, SalesForce
Desktops/PCs/Notebooks: Dell, IBM, HP, Acer, Toshiba, Sony, Gateway, Lenovo
Desktop: Windows, Unix, Linux, Java OS, Chrome
Application: Primavera, HP Service Manager, MS Office Suite, MS Project, MS Visio, Lotus Notes, BMC ITSM Suite 7.X, Microsoft Dynamics, CRM and ERP applications
C, C++, C#, VB.Net, VB, SQL, Borland Delphi, VB Script, Fortran, Pascal, Java, HTML, Etc. Networking: Switches, Routers, Bridges, Hubs, Gateways Firewalls, IPS, IDS, Wi-Fi Access Points, Bridges, Sniffers, F5 Load Balancers, GTMs, ELBsDatabases - MYSQL, MS SQL Server, Oracle, Dbase, Flat files, MS Access, OLTP, OLAP, Data Warehouse, Data Marts, AWS RDS
Install Shield: Printers, MFP, FAX, ACD, IVR, Phone systems (EAPBX, PBX), Power systems, Security Systems (Access Control), Call Center InfrastructureNetworking - Cisco IOS, UAG, EAS, Firewalls, Packet capture, Load Balancing, Sniffers, Adaptive Security Appliance, JuniperBMC Monitoring Tools, AWS GovCloud Services
EXPERIENCE:
Confidential
Specialist Master, Arlington, VA
Responsibilities:
- Current engagement is on a very large-scale federal program composed of several multi-vendor contracts and work as the Government PMO Security SME representation on guiding vendor contractor Programs and Project personnel on timely implementation of Security Controls and Authorization to Operate (ATO) on a FedRAMP approved AWS GovCloud and Federal On-prem Datacenter Hybrid Infrastructure environments.
- Also, support another Confidential as a Database Security Architect, while assisting remediation of identified weaknesses and vulnerabilities over a continuously monitored FISMA compliant environment.
- Past role had been that of a Security Architect/Lead and had provided expertise on Secure SDLC, PCI and FISMA compliance, Security Strategy framework development, security planning, design, and architecture services for enterprise software applications.
- Studied client infrastructures, topologies and architecture(s) to leverage appropriate security defenses and appropriately position those defenses within those systems.
- Responsible for identifying cyber security gaps non-explicit in project documentation.
- Implemented Static Application Security Testing, API Security Testing, Secure SDLC processes and DevOps Application Security automation tools.
- Provided guidance on secure solution and infrastructure design on multilayered Cloud infrastructures utilizing Iaas, iPaas and Saas cloud services from vendors.
- Also responsible for managing human capital and cross functional teams, composed of SMEs, Vendor/Supplier contacts and Client stakeholders.
- Provide coordination and integration of people, process and technologies for an efficient and effective Cyber Security posture in compliance to required standards, frameworks, policies and guidance. Possess expert level knowledge on application security mechanisms, products, patterns and best practices as well as threats, vulnerabilities, attacks and anti-patterns.
- Recently conducted an enterprise application prototype evaluation and assessment, for a global public-sector organization.
- Evaluation and assessment areas includes, Solution Architecture, Security Architecture, Application security controls, PMO methodology and analysis of Functional and Technical requirements implementation with respect to Business requirements.
Confidential
Senior Project Manager, McLean, VA
Responsibilities:
- As a Project Manager/Certified SCRUM Master, was responsible for managing Service Oriented Architecture projects using Confidential 's agile methodology, for the Common Securitization Platform program.
- Responsible for successful execution of multiple projects of varying levels of complexity.
- Responsible for initial project planning efforts (e.g., developing project scope, defining project guidelines, obtaining business and IT sponsor approvals, coordinating resources necessary to successfully complete the project).
- Responsible for communicating major milestones, identify potential project risks, provide continuing direction to project team, conduct regular status meetings and SCRUM meetings, to review project activities.
- Communicated status and obtained feedback from Stakeholders, to assure that project efforts meet customer expectations for agreed upon schedule, cost and objectives.
Confidential
Senior Project Manager, Washington, DC
Responsibilities:
- Engagement is on Mobility Program, composed of 4 inter-related projects. First project is to establish mobile governance, along with implementation and deployment of a MDM solution to manage BYOD and corporate-liable Apple iOS Devices. Second effort is to revamp the current Remote Access Infrastructure.
- This would compose of evaluation and selection of an Enterprise Remote Access solution replacement composing of CISCO, Juniper, F5 Big-IP LTMs and Confidential & Confidential AGN and ANIRA technologies. Third project will handle formulation of the standards, controls and the security for the mobility program. This will be the playbook for all future Technology Solution Architectures.
- Fourth project is conversion/to publish Enterprise Applications on the mobile platform. Other Projects Managed included Multifactor Authentication integration for Mobility and Remote Access platforms. Projects were managed per the PMO methodology with respective quality gates and approvals.
- Performed Project/Program Change Management and Problem Management employing organizational ITIL based Service Management processes. Remedy ITSM Platform was used for service desk Incident Management coordination.
- Managed projects under the Mobility Program with Enterprise Architect, implemented and s upported integration of certificates (User Certs, Device Certs along with Root Certs from AD CA) with Mobility applications such as E-mail and Remote Access VPN clients and evaluation of development of ICAM solutions.
- Partnered with cross-business security architects, users, working groups, project teams and application owners to define requirements for and build solutions which meet business objectives.
- Proactively engaged with business stakeholders and identified practical solutions applicable to the business needs based on available technologies.
Confidential
Senior Project Manager, Baltimore, MD
Responsibilities:
- Worked on a consulting engagement with NewWave Technologies, an 8(a)/SDB, MBE certified and GSA IT 70 full-service Information Technology and Business Services firm and a leading implementer of business solutions using service-oriented technologies. Engagement was on the QualityNet Identity Management projects, for the Centers for Medicare and Medicaid Services (CMS).
- Practiced CMS’s ITIL Based Service management process for issue resolutions, work order management, Incident and Problem management. Employed formal Change Management process and procedures for Configuration Items related changes to the Test, Dev and Production environments.
- Responsibilities include the development of a technology strategy to complete the Oracle Access Management product implementation with the QIMs Project Manager.
- Lead the efforts with the NWT management team members to achieve a new Oracle strategic opportunity.
- Co-Ordinated activities on the QIMs project and with senior level management to strategize/resolve technology issues and ensuring QIMs systems maintain optimal functioning.
- Managed the execution of QIMS solution design, integration prototype, implementation, integration and development lifecycle in delivering respective QIMS versions to the IV&V phase before it could be released to the Production environment.
Confidential
Senior Project Manager, Sacramento, CA
Responsibilities:
- Engagement, with the California Public Employees' Retirement System , on the Security Roadmap Program, with management responsibilities over multiple IT Security related projects, as a contractor Senior Project Management resource under the PMO.
- Facilitated the development of Security Roadmap and the transition plans to O&M.
- Architected revamping of Enterprise IT Governance, Policies, Procedures and Guidelines, and conformance to ITIL and COBIT based service management process and IT Controls (Technical, Management and Operational) respectively.
- This includes providing subject matter expert support to develop plans for transitioning from the Baseline to the Target Architecture, including transition strategies, activity sequencing plans, budget monitoring and control, impact analyses and manage alignment to the roadmap.
Confidential
Senior Consultant/Senior Project Manager
Responsibilities:
- Managed Project activities on ATO (Authority to Operate) security audit reviews and POAM remediation, multiple Cloud Computing and ‘As A Service’ infrastructure and Datacenter Infrastructure projects for the DHS and its component agencies.
- Engaged with stakeholders, coordinated with other Government Integrated Product Teams (IPTs), and participated in cross functional matrix teams and task forces in support of the management of all system architecture and design activities.