Security Engineer - Agile Lead Resume
CAREER SUMMARY:
- 35 years Technology Experience
- 25 years of Management Experience
- 20 years of Project Management Experience
- 22 years Security Experience
- 15 years experience creating or owning Information Security Policy
- 12 years in Compliance and Risk Management
- 25 years experience with server operating systems (Windows/Linux/Unix)
- 20 years experience with technical requirements, design, testing & implementation of technologies & infrastructure
- 18 years experience with server virtualization technologies such as VMware ESX/ESXi/vCenter/Citrix
- 25 years experience with identity and access management
SKILLS:
35+ Years IS / IT Experience, Project Manager, Portfolio Manager, Program Manager, Security, HIPPA, FDA, Regulation, Validation, BPR, ERM, CRM, Supply Chain Management, LAN, WAN, Windows, Windows Server(s) 2000 - 2019, LDAP, Active Directory, ADFS, Director, Management, Program Manager, PMP, Risk, Risk Compliance, DLP, DNS, DHCP, DFS, NFS, iSCSI, Checkpoint, Citrix, XENAPP, Cisco, ASA, IDS, IPS, Network Analysis, Server Analysis, Network Design, Sales, Sales Management, Pre-Sales Engineering, F5, Firewalls, eBusiness, Internet Architecture, Risk Assessments, Deception, AirWatch, IPSEC, INFOSEC, Disaster Recovery, DRBC, Business Continuance, DoD, DoDAF, TOGAF, EAF, GEA, FEAF, Enterprise Architecture, VoIP, VMware, vSphere, IaaS, PaaS, SaaS, DBaaS, CaaS, SECaaS, vMotion, VDI, Juniper, Novell, Hyper-V, Exchange, EMC, NetAPP, Virtual, vFabric, Cloud Computing, vCloud, JuJu, OpenStack, Hadoop, Oracle, MS SQL, MongoDB, PostgreSQL, DevOps, DEV/OPS, Zachman, Waterfall, SCRUM, Agile, Six Sigma, RackSpace, AWS, EC2, S3, IBM, Azure, GCP, DocuSign, Jira, Confluence, PDQ, Python, Java, Ruby, GIT, Ansible, Chef, Jenkins, Puppet, IAM, OIM, ADFS
WORK EXPERIENCE:
Confidential
Security Engineer - Agile Lead
Responsibilities:
- Built relationships within the bank to establish a clear and proper communication channel with clients
- Worked on an initial SDN solution out of many to facilitate workload moving within a hybrid cloud or distributed platform
- Assisted other Security Engineers with different initiatives they had assigned to them when needed
- Worked extensively with the Vmware IT team to support the security policies and baselines for Vmware NSX-t, vRA, vRO, vIDM (now called WorkSpace One Access) and edge devices
- Created a process to formalize all security document reviews to maintain Agile methodologies
- Utilized the basic Zachman framework and Agile methodologies
- Actively reviewing current DPSE security templates for policies and procedures within the group
- Designed and oversaw the setup and utilization of Jira Kanban/Confluence
- Working with different departments and groups to help establish multiple cloud platforms, distributed platforms and the management and communication between them based on tool sets
Confidential
Director - Sr. Solutions Architect - Program Manager
Responsibilities:
- Managed team of up to 21 professionals
- Established and managed multiple PMO offices. Established hands on practical and technical training for Technical Project Managers
- Utilized Agile, Waterfall, SCRUM and Zachman as the main PM theories and frameworks for clients
- Assisted in the configuration and use of Jira, RationalPlan and Project Server
- Worked with customers to establish a Risk Framework or achieve compliance
- Designed, Implemented, and administered multiple Active Directory Domains
- Held Program and Project Management positions. Maintained and managed up to 13 Active Projects
- Managed multiple project budgets and compliancy regulations
- I was the primary interface for all governance, regulatory, compliance and risk management.
- Built multiple lines of communication to bridge gaps with IT and the Legal, Compliance, Sales and Audit groups.
- Worked with several software packages that supported DLP and meta tagging.
- Oversaw all Security and Compliance projects. Had design control over all projects until it was approved through the PMO office. At that time, I would partner with an employee to train.
- Worked with deception software for several clients using Symantec, CyberTrap, Attivo and TrapX
- Created process and policy maps to support cloud migration for several clients
- Designed and oversaw various network implementations for remote military stations thru PPTP and IPSEC VPN tunnels.
- Established separate DNS, DHCP and Security models for the vDI services of clients and their VPN connectivity
- Managed and oversaw the implementation of different IAM modules for access to OpenStack and AWS clouds
- Managed and assisted a team of DBAs / Developers for MSSQL, Oracle, PostgreSQL, Mongo and NoSQL
- Designed, developed and oversaw the creation, implementation and replication of all databases for specific clients
- Defined and Drove SaaS, IaaS and PaaS for separate clients rolling out cloud services to their customers
- Designed warehouse Wi-Fi solutions to support hand held scanners to relay orders through multiple AP with various channel searching
- Preformed Security Audits for multiple clients on all their existing Infrastructure and generalized access to network resources
- Worked with many customers to implement AWS / Azure implementations, and securely connect it to a Hybrid cloud or internal applications.
- Delivered multiple technical presentations in front of “C” class executives of Civilian Government agencies and large corporate companies.
Confidential
Director of IT - Sr. Cloud Architect - Security Architect
Responsibilities:
- Performed the function of Program or Project Manager for most all technical engagements
- Managed the staffing and budgets for each project that required IT work for a client
- Utilized Agile, Waterfall, SCRUM and Zachman as the main PM theories and frame works for clients
- Assisted in the configuration and use of Jira, RationalPlan and Project Server
- Maintained schedules for the onsite IT engineers based on project requirements
- Delivered multiple technical presentations in front of “C” level executives
- Performed actual research and mitigation of issues and or concerns to expedite the resolution
- Was responsible for all Risk engagements and lead the efforts to create an achievable Risk framework
- Was responsible for all Risk compliance initiatives, and worked with third parties to help offset personnel and cost restrictions.
- Implemented Infrastructure / Enterprise Architectures using TOGAF and / or DoDAF based on requirements from clients
- Provided daily security oversight to clients when implementing new solutions, new software, new patches and backing up the entire systems.
- Worked with clients to support base DLP. From meta tagging to complete data tracking
- Performed the function of a DBA architect with MSSQL and Mongo for select clients.
- Created high-level designs of complete solutions from early on that allowed project teams to control cost and the client relationship(s).
- Designed Security access maps for all clouds and most applications running within them.
- Extensive knowledge of installation and management of monitoring toolsets (e.g. SolarWinds NPM, NTA, SAM, KIWI Logger; VMware VCOPs, VCD, VCAC; HP SPM, CMDB and ArcSight logger).
- Worked with clients to implement IAM solutions such as ForgeRock, ADFS and SAML insertions into AD/Oracle.
- Worked with many clients to assess the Security implementation on their clouds, and the hardware that created the cloud, when it was onsite.
- Performed security audits on complete systems, and down to small patches and fixes. Setup a regular testing mode in the SDLC process for apps to go to Change Management.
- Designed, Implemented and Maintained multiple Mobile Device Management Policies, Processes and Procedures.
- Worked with customers to support projects and initiatives, even if the contract to do the actual work was with a separate company
- Designed, developed and deployed multiple complete corporate environments for customers, will all required services (DNS, DHCP, SSO, DFS, Firewalls, Infrastructure and Security
- Implemented and fostered to grow several DEV/OPS Centers of Excellence. Worked with the team to build response templates and auto constructs for software.
Confidential
Acting Director of IT - Sr Enterprise Architect - Security Manager
Responsibilities:
- Stepped in and managed a team of 16 dynamic people
- Successfully designed, oversaw and managed a datacenter move in four months, that the client had been struggling with for two years
- Designed, oversaw and Implemented a video conferencing / collaboration toolset to enhance and create better cooperation between teams utilizing Agile, with the SCRUM framework for clients
- Assisted in the configuration and use of Jira and Confluence
- Maintained maintenance and management of the MSSQL cluster database for the entire Jira/Confluence/Bit Bucket systems
- Designed, oversaw and began implementation of a secure CFR 21 Part 11 secure signature solution for the company. Was only waiting on validation and Regulatory approval when my contract ended
- Worked with the VMware corporate team to setup automatic virtual sessions for active use during peak times.
- Authored an OLA and an SLA document to be the basis of the Corporate datacenter to structure support, timeframes and level of agreements based on applications
- Cross trained engineers so they could build their technical knowledge faster, and with more focus being placed on Agile technologies
- Assisted corporate IT in the POC effort for deception software. (I only focused on the network remediation)
- Worked with the Regulation and Compliance department to test various MDM and MAM solutions, and to build the policies over the BYOD initiative
- Managed the complete compliancy of all software and direct risk requirements based on the framework by the Compliancy department
- Oversaw and assisted the implementation of a Corporate on-prem Jira/Confluence solution
Confidential
Sr. Cloud Architect - Sr Technology Fellow - Security Architect
Responsibilities:
- Managed multiple initiatives within the bank ranging from cloud, networking, to DevOps
- Utilized Agile, Waterfall, SCRUM and Zachman as the main PM theories and frameworks for clients
- Developed the budget, requested and dispersed funds for each initiative upgrade
- Established Risk Compliancy and Risk Frameworks for various teams and business initiatives
- Redesigned BCUK existing cloud to support more users and Guest instances
- Created multiple entry points into the BCUK cloud to support development team in India
- Created two factor authentications with SAML and LDAP to support remote key insertion with BCUK cloud
- Created the virtual networks and services (DNS, DHCP and Keystores) for all clouds
- Worked with the communication department to design and POC (bake off) MDM and MAM functionalities with Microsoft, Vmware, Trend Micro and Fleetsmith
- POC’d deception software (CyberTrap and Symantec) and designed a cloud monitoring model to support the management of it across multiple locations. Created auto-remediation scripts and configurations to support violations
- Created an OpenStack cloud to support a Cloudera BigData (Hadoop) implementation. Increased performance over a standard 60-server implementation by 36%.
- Created a high-performance cloud(s) for BCUS that supported over 750K IOPS to the more than 800 Guest instances
- Created a support model to actively utilize the DevOps framework for two separate monitoring call centers. Trained employees and consultants on the proper use of the utilities and scripts to utilize the cloud and assist both developers and system engineers
- Worked with Senior Management on a rate structure on how to effectively charge back cloud usage to various cloud consumers to assist in the daily cost of hardware, support and software licensing
- Created a grand total of seven (7) distinct clouds, that were all 75% utilized when I left the project
Confidential
Sr. Cloud Engineer \ Program Manager
Responsibilities:
- Worked with business stakeholders to discuss fears and expectations over the undertaking
- Created a RACI chart and brought the organization inline with what a vendor would expect
- Interviewed vendors and assessed offerings to determine which solution would satisfy most of the client needs and wants
- Utilized Waterfall and Zachman as the main PM theory and framework for clients
- Assisted in the configuration and use of RationalPlan
- Brought in to design an RFI and an RFQ for a complete cloud implementation for the organization
- Worked with the vendors over implementation plans and what tools would be used and why
- Assessed personnel levels to determine if the proposed staffing levels were adequate or not
- Worked with the selected vendor to integrate them into the organization better so they could get up to speed quickly and hit their marks
- Reviewed final implementation plan from vendor with client and explained what was needed on the client’s part for it to be successful
- Created a DNS and AD design that provided multi homing for the cloud and remote users
- Helped the vendor on technical issues that were causing issues or delays with the migration to the cloud.
- Oversaw and approved the MSSQL cloud-based cluster. Assisted in the design and implementation,
- Assisted and oversaw the P2V and implementation of 1200 servers into the cloud.
- Also assisted in the design and implementation of a VDI solution for 120 developers in India.
Confidential
Sr. Design Engineer
Responsibilities:
- Developed conceptual infrastructure design drawings of systems and specific junctions and logical network connections that to advantage of SOA and Shared Services when possible
- Designed the Centralized Data Warehouse using Oracle 10g, and Green Plum hardware.
- Assist in the Customer Relationship Management (CRM) Group in gathering requirements to build appropriate documentation for client projects
- Created high level designs of complete solutions from early on that allowed the project team to control cost and the client relationship(s).
- Created a DFS design and layout for the new datacenters in Plano and Kansas City
- Created detailed documentation to assist the build engineers and support staff to create and support the environment of the customer quickly, and efficiently
- Assist the Project Manager in the review and escalation of technical issues to the appropriate stakeholder or service owner
- Assist in the technical review and evaluation of software in response to RFPs submitted to the bank
- Worked on new technology concepts for the FRB and getting clients to accept them
- Assisted System and Build Engineers in troubleshooting implementation problems with Splunk, KIWI logger and NetFLOW analyzer.
Confidential
Sr. Enterprise Architect \ Program Director
Responsibilities:
- Managed 6 Engineers, 2 Project Managers and 1 manager
- Final oversight of 10 active technical projects within my tenure as a Project Manager. There where 13 projects that I was technical lead/architect for, and 26 projects that I oversaw as a Program Manager
- Utilized Waterfall and Zachman as the main PM theory and framework for clients
- Designed and maintained Risk compliancy templates to satisfy the National Rail Administration and Congressional oversight
- Assisted in the configuration and use of Microsoft Project Server
- Managed a team of Off Shore Developers and DBAs for the implementation of the new Oracle databases and replication points throughout the US.
- Assisted in the education and training of the datacenter staff to support eCloud services with using IBM’s SaaS, IaaS and PaaS capabilities.
- Designed Satellite communications to all P42 Diesel engines thru the many DMZs that Amtrak currently has for Amtrak.com and all internet booking of tickets without downtime. These are handled thru VPN and multiple NAT translation rules
- Designed network to support simultaneous communications from P42 Diesel engines via Cellular, Satellite, and WIFI through Mechanical yards and stations for GSM positioning
- Designed and Developed and Programmed a wayside communication system that would allow all Road Foreman to connect to the P42 engines remotely in case of an incident to download “BLACK BOX” information for the FRA (Federal Railroad Administration)
- Designed Architecture, Upgraded and Deployed the largest application that Amtrak uses for the 24-hour mechanical part supplying, Mechanics monitoring and time keeping. (4500 users) with only a 6-hour downtime while upgrading nationwide.
- Verified all designs that allowed WIFI access on the high-speed trains and regional trains for riders
- Worked with the Security team to implement DLP and created security policies around the use and monitoring of it.
- Assisted in the network design of the LAN/WAN outsourcing of Amtrak’s IT environments to the two new datacenter facilities
- Designed with Verizon the Mobile Private Network (MPN) to support internal IP addresses thru multiple carriers while train is moving. This is done thru IPSEC VPN tunnels coming from multiple Verizon LAN stations.
- Installed, Trained and Maintained the SolarWinds monitoring package to monitor and report on over 10,000 network interfaces across the US and Canada.
- Designed and oversaw the new implementation of DNS for the new data centers using AD and BIND.
- Worked with the application developers to setup multiple IBM WAS servers with connections to the MQ servers
- Designed auto monitoring and management for all IP time clocks for use by Conductors, Mechanics and LSAs.
- Maintained software and its architecture that was implemented in 2008 (see notes above)
Confidential
Sr. Enterprise Architect \ Project Manager
Responsibilities:
- Worked with the Commercial Lending group to support new fork flows within their purview to accelerate life of loan and life of process
- Worked with various departments to create realms within the Financial Domain models.
- Delivered multiple technical & AE presentations in front of “C” class executives.
- Assisted technicians in understanding new layout use the TOGAF framework, and helped create implementation plans based on designs.
- Developed and migrated multiple applications from standard support to a more hierarchal design to support fewer engineers
- Worked with Sub-Prime group to structure multiple requests within a day to store documentation inside a DOCUMENTUM warehouse.
Confidential
Network Manager \ Program Manager
Responsibilities:
- Managed a team of 15 professionals based locally and remotely to me
- Utilized Waterfall and Zachman as the main PM theory and framework for clients
- Assisted in the configuration and use of Jira, RationalPlan and Project Server
- Designed, upgraded and managed the DNS and DFS setup for clients within the supply chain systems (13 companies)
- Managed the “day to day” Network, Desktop Support, and the IT Security operations
- Managed outsourced client’s telecom circuits in client facilities. This included multiple voice, data, and the satellite back up locations. 7 engineers on this team were focused on the VoIP migration and setup of the telephones.
- Managed Desktop support team of 7 engineers. This team would perform the support of local users and provide telephone support to remote users, facilities and sales people
- Managed IT Security department with a team of 3 engineers that supported all IT security policies, antivirus, NAP and corporate system patches
- Managed network designs and installations of smaller companies purchased by primary client
- Oversaw the Mobile Device Management (MDM) initiative and setup
- Managed and oversaw the Wi-Fi APs, routers, and ordering guns that the storage warehouses used to pull and put orders
Confidential
Sr. Systems Engineer \ Pre-Sales Engineer
Responsibilities:
- Delivered multiple technical presentations in front of “C” class executives of Civilian Government agencies and large corporate companies.
- Assisted Microsoft Technicians in the technical analysis of several civilian “GOV” agencies, for the purpose of Active Directory, SharePoint and Exchange Migrations.
- Developed and migrated multiple Exchange migrations from earlier versions of Exchange, Novell GroupWise and Lotus Notes.
- Worked with several separate school districts along the east coast to enable and install SharePoint and student portals
- Designed and Deployed multiple Active Directory Domains for clients
- Worked with several Dell partners to support multiple Dell clients with Migrations, Upgrades and new build outs.
- Worked with prospective clients to integrate technical offerings with their existing infrastructure or to design new ones from the “ground” up.
- Designed and deployed Citrix Metaframe environments for clients and partners supporting clients
Confidential
Sr. Systems Architect \ Program Manager
Responsibilities:
- Managed a team of 40 professionals
- Utilized Waterfall and Zachman as the main PM theory and framework for clients
- Assisted in the configuration and use of MS Project and MS Project Server
- Implemented multiple HP OpenView (NNM, OVO, OVIS) installations for customers
- Redesigned the current SSA’s DNS infrastructure to support BIND 8.x and Active Directory Integrated zones to support 119K + users
- One of 5 people that Designed, Reviewed, and Managed the largest Active Directory Pilot Implementation in the world (1.2 MIL Seats), for the US Army.
- Contributed to NIST articles M800-63 and M800-69
- Delivered multiple technical presentations in front of “C” class executives of Civilian Government agencies and large corporate companies.
- Designed, Implemented, and administered multiple Active Directory Domains
- Developed and migrated multiple Exchange migrations from earlier versions of Exchange, Novell GroupWise and Lotus Notes.
- Designed multiple Disaster Recovery options for DoD and Civilian agencies.