Information Security Engineer Resume
5.00/5 (Submit Your Rating)
Richardson, TexaS
OBJECTIVE
- To obtain an information systems related position in Information Technology where my skills as a Information Security, Systems engineer & Cloud Solution Architect, can be fully utilized, and most importantly where I can learn new skills and extend the depth of my experience in those areas.
SUMMARY
- 10 years of experience in System Administration/Engineering, troubleshooting & Tech support of servers, Desktops & PC's and LAN/WAN issues
- 5 years of experience in Designing, Sizing, Staging, Development and Building of Enterprise Level Servers
- Provisioning of Xen App 6.5 environment and server scaling with Citrix Policies
- VPN clients (CVC), MS office, Word, Excel, Outlook & FTP clients, SMS 2003, SCCM 2007, OS deployment & management.
- VBscript, Power shell, Linux bash, Power CLI scripting, Windows 7 deployment using MS MDT 2010 Light touch
- Windows 7 image distribution point using SCCM 2007 SP2 & SMS client agent’s installation. SCOM dashboard configuration
- VCP, A+ certified. MCP + I, VCA Varonis DatAvantage admin, Double Take engineer and ITIL v4 Foundation Certified
- Completed IT courses with proficiency in various platforms like DOS, Windows95/98/ME/XP/Vista & Window 7 Business / Home Premium, Windows 8, 8.1 Windows NT 4.0/Windows 2000/2003/2008 R2, 2012 Servers
- Mac OS X version (Panther & Leopard) installed on end user workstation & laptops.
- VMware ESX, VMware Server, MS Hyper V Server, vSphere ESXi 4.x,5.x,6 x
- Configure WebLogic environment on Red Hat Enterprise prepare domain, accounts & create Manage servers
- Design and Deployment of LAN/WAN, Remote Access and Security solutions.
- Communication with Project Managers and other affected teams during change management freeze for the appropriate window
- Basic knowledge of Red Hat Linux Enterprise Install & configure for BEA WebLogic Server
- Physical and Virtual Server security scans aimed to deal with security threats for large scale IT enterprises
- Configuration Hardening and Vulnerability Management between software and configuration based
- Continuous compliance assessment using various IT standard tools to verify that file systems has not been compromised
- Install & push security software agents to all network attached devices and pull server logs for security team to perform analysis and investigate security incident during PEN testing
- Symantec/Veritas Backup Exec: client installation and configuration, monitoring, reporting, backup & restore
- Defined enterprise documentation standards and practices for project engagement and definition, use cases, test cases, technical documentation, runbook, end to end workbook, palybook, support requests, and maintenance agreements
- All hardware vendors Enterprise level servers and equipment i.e. HP Servers, C - Series, B-Series c Series 3000/7000 Blades, EMC clarion Storage, IBM Servers X series, IBM Blade center, Dell PowerEdge series
- EMC Clarion CX series SAN, HP MSA 1000 & IBM DS 3000, 5000 series
- Amazon EC2 instances for compute & Amazon Virtual Cloud offerings with management tools
- Designed roles and groups for users and resources using AWS Identity Access Management (IAM)
- Define the hybrid identity management tasks according to the end-to-end identity lifecycle
- Plan for Hybrid Identities solutions for Mobile Device Management MDM using Air watch and Ms Intune
- Involve in Azure Information Protection classification and labeling of sensitive data protection throughout its life cycle
- Designed EC2 instance architecture to meet high availability application architecture and security parameters
- Provided highly durable and available data by using S3 data store, versioning, lifecycle policies, and created AMIs for mission critical production servers for backup
- Using Cloud Watch to monitor resources such as EC2, CPU memory, Amazon RDS DB services, Dynamo DB tables, EBS volumes; to set alarms for notification or automated actions; and to monitor logs for a better understanding and operation of the system
PROFESSIONAL EXPERIENCE
Confidential - Richardson, Texas
Information Security Engineer
Responsibilities:
- Executing risk assessment activities, analyzing the results of audits (performed by other groups) to produce recommendations of acceptable risk and risk mitigation strategies.
- Working on deploying, tuning and running vulnerability-scanning and penetration-testing tools.
- Reporting residual risk, vulnerabilities and other security exposures, including misuse of information assets and noncompliance, to DFW's management.
- Collaborating on critical IT projects to ensure that security issues are addressed throughout the project life cycle.
- Performing analysis on threat alerts from various security tools, including Intrusion Detection and Prevention tools, firewalls, antivirus systems, user behavior analytics tools, proxy devices.
- Create SNOW standard template for the Global Access removal project and write the Implementation plan
- Adding valid reasons for DatAlert Workflow and refresh alerts for IAM team
- Prepare Executive reports and provide recommendations on Managed objects for monthly steering committee meetings
- Review statistics and Calculate least & Inactive user access for AD Cleanup
- Monitoring and analyzing Intrusion Detection Systems (IDS) and Security Information and Event Management (SIEM) to identify security issues for remediation.
- Recognizing potential, successful and unsuccessful intrusion attempts and compromises through reviews and analyses of relevant event detail and summary information.
- Evaluating/deconstructing ransomware, malware (e.g. obfuscated code).
- Communicating alerts to leadership team regarding intrusions and compromises to their network infrastructure, applications and operating systems.
- Preparing the Monthly Metrics on briefings and reports of analysis methodology and results
- Schedule monthly reports for HR and Recruiting Department which provides details view of file access activity, permissions changes and audit data using Varonis DatAdvantage
- Configure weekly Share discovery walk and daily pull AD & File walk in Varonis Management Console v. 6.3.267.12
- Consolidating and conducting comprehensive analysis of threat data obtained from classified, proprietary to provide indication and warnings of impending attacks against networks
- Re-sizing exercise for moving Varonis 6.3 to 7.5 considering new enhancement
- Implementation of File & Folder Permission Phase II work flow using Varonis Data Management Tool
- Provides escalation point for DevOps team as a support for O365 related incidents on Threat Management
- Write Playbook for File Server remediation project for DevOps
Confidential - Fort Worth, Texas
Security Solution Architect
Responsibilities:
- Working with Global Technical Staff & Consultants in US, SAC, EMEA & APAC
- Create reports and workflows for users using Varonis Suite of Unstructured Data Management tools
- Working on UDM Share Remediation process for STaaS project where we work to Examined ACL on Shared Resource, Create Varonis (Domain Local Groups) to replace existing local groups with share permissions, Populated newly created groups with existing permissions, Remove redundant Permissions and Assign ownership
- Responsible for providing systems information to clients and auditors
- Manage product management and reporting metrics
- Defining the migration and the implementation of the tools to be used for local groups remediation and Group AD Migration
- Create workbook for local group remediation prject for off shore DevOps team
- Responsible for making sure IT security Principles, SOX & PCI regulations are followed
- Update and maintain records in the master report using Word
- Unstructured data management using Varonis Data Privilege for generating permission reports
- Request Tanium reports for finding Linux and Windows operating systems
- Prepare and print Stale data report and move inactive data grouped by file server using Varonis DatAdvantage for archival and retention plan
- Create Normal/Standard/Expedited change in Service Now Online get approvals from business owners, present to CAB and close change after the implementation
- Groups remediation using Varonis Data Previlage and Dell ARS
- Remediation of local groups on NetApp vFiler & prepare to migrate on Dell Isilon
Confidential
Cloud Solution Architect
Responsibilities:
- Work with Microsoft engineers in designing and collecting data for assessment phases
- Ensure Data security with HIPAA compliance
- Work with developers and SQL team to assist them in writing code for pulling data from Meditech and use it for Galaxy software to generate reports
- Attend Microsoft FastTrack training sessions and ensure client participation
- O365 Hybrid setup and mail box migration planning, AD sync and AD connect appliance installation
- Attend Microsoft FastTrack training sessions and ensure client participation
- Governance of Ms. Azure portal and subscription setup, express route planning and vNet configuration
- Define classification with standard labels -Personal, Public, General, Confidential and Highly Confidential to handle different levels of information sensitivity and apply appropriate information protection against unauthorized disclosure and breaches (AIP)
- Schedule Dynamics 365 upgrade approval with ITS engagement
- Manage Partner’s Office 365 Admin portal and perform recommended updates
- Work with partner advisory team for migration executions and remove road blocks
- Add new users in O365 Admin portal & configure users’2016 desktops and mobile apps
- Database migration planning using Azure Database Migration Service, perform test using PaaS for Azure SQL Database
- Digital Transformation of data from client portal to database and Transcription Portal
- Provide solution which allows you to ensure physician/clinician adoption and patient engagement, improve quality of patient care, and deliver revenue cycle workflow automation, resulting in cost savings
- Work and assist team for IT solutions using mobile health in the cloud, offering both on premise and cloud-based solutions.
- Enable multifactor authentication and apply built-in Role Based Access Controls in Azure Active directory
- Security Assertions Markup Language (SAML) token claims signature by the provider for all applications
- Running Dir sync for AD between on premises Active Directory and Azure AD
Confidential, Dallas
Citrix / Windows Admin
Responsibilities:
- Running Citrix farms discovery to migrate from Presentation server 4.5 to Xen App 6.5
- Publishing applications to new Citrix Xen App 6.5 environment
- Manage Domain and DNS server for steady state support teams
- Working with Microsoft engineers in designing and assessment phases
- Schedule Dynamics 365 upgrade approval with ITS engagement
- Manage Partner’s Office 365 Admin portal and perform recommended updates
- Monitoring & manage old and new Citrix farms and troubleshoot daily issues
- Co-originating with Helpdesk for Level 2 and 3 incidents for remote users using Remington Service Desk Plus ticking system
- Execute the change on schedule maintenance window and follow the change management process
- Install & Configure Property Management Systems software for all property sites
- Documenting incident report for Helpdesk team and provide services for the escalation
- Evaluating the risk during application migration in new Citrix farms
- Configure weekly reboot scheduling in Worker Group of App Center
- Defining the process for server decommissioning & validate nothing left un-attendant during the decom phase
- Prepare and propose PCI compliance for the hotel payment solutions which meets the SIEM regulations
- Copy database from server to server using SQL Server Management Studio
- Involve in the planning to apply the PCI security Standard Council version 3.0
- Running vulnerability scan and co-ordinate cyber security team for penetration testing
- Ensure clients connectivity using Telnet and Net statistics
- Provide consultation & assistance to helpdesk team in user’s connection issues & validating windows servers availability, keep all record documented creating Standard Operating Procedure for support team using Ms.Word
- Web Interface, IIS and telnet client management to confirm the TCP ports are listening and open for ICA
- Create A record in DNS server for web URL
- Monitoring & managing physical & virtual server platform using PRTG monitoring tool & vCenter server
Confidential - Fort Worth, Texas
Solution Architect
Responsibilities:
- Working with vendors to find the right tool for legacy applications & OS transformation from Windows 2003 to Windows 2008r2 & 2012
- Conducting POC with App Zero, Dell Secure Copy & ATTA-DATA migration tools
- Defining SLA & communication plan for the Migration factory
- Design migration plan and define strategy to move Windows file server to NetApp vFilers
- Planning for data migration from EMC to Infinidat storage and HP3par to NetApp
- Prepare Service Offerings for Confidential IT Migration Engineering team
- Direct or indirect involvement in the development of policies, standards and guidelines that direct the selection, development, implementation and use of Information Technology for client
- Create change request, assign task to appropriate team, add & modify assets CI’s using Service Now
- Attend weekly CAB meetings and presents all Windows Engineering/Open Systems changes & understand the Confidential change management process risks
- Help and co-ordinate off shore team for Service Now tickets and train them on new cloud base Service Now application
- Update the CI’s in Service Now Confidential change management tool after decommissions the servers
- Communicate with Project Managers in scheduling the cut over dates and get Business approvals with change management team
- Work with Client and other vendors for Persistent solution architects to provide a consensus based enterprise solution that is scalable, adaptable and in synchronization with ever changing business needs
- Meet with BU & plan to move their critical data from Virtual to Physical environment
- Run server reports and perform data analysis using Win audit, Quest NTFS enterprise reporter tool and TreeSize Professional
- Understand Client’s heterogeneous tech stack, platform, do analysis and suggest technology solution to simplify it
- Raise tickets and CTasks in Sonic provided by Service Now cloud base application
- Migrate users & group shares data with NTFS permission using Dell Secure Copy
- Using Carbonite Move powered by DoubleTake for Windows for block level migrations
- Create user & group shares on NetApp vFiler FAS 8040 & 3280 series and assign appropriate NTFS permission
- Prepare end to end migration document for DevOps team
- Hands on file share remediation experience on very complicated CIFS based shares
- Visualize access activities, data hierarchy & permissions, detect privileges and role-based access using Varonis generated reports
- Change the user’s Citrix profile after migrating users home drive
- Identify and automate provisioning using Varonis work flows with Open Systems team
- Procurement of Dell R710/720 physical servers from asset management team and prepare environment for tool servers
- Work closely with PMO and define the road map for future data migration, prepare docs in Word
- Configure the Local group re-structuring to Domain Local Groups & data copy jobs using Dell Secure Copy
- Work with Global technical staff and consultants in US Houston & New Jersey, EMEA and Asia offices
Confidential
Infrastructure Could Architect
Responsibilities:
- Provides technical expertise, analysis and strategy support to the customers in conjunction with the project manager and prime consultants.
- Generate a clear and accurate statement of work based on the technical requirements of the customer's cloud initiative.
- Gather the needs and technical details from the customer produce a complete analysis and reports to address the customer’s needs.
- Responsible for the design, integration, troubleshooting and implementation of LAN/WAN, client/server environments.
- Provide guidance and coaching to supporting technical team members. Provide hands on expertise to support cloud initiatives and migrations based on customer needs
- Client Infrastructure & application assessment, interview app owners for interdependencies & workload discovery.
- Rack & stack hardware equipment at SunGard AS Data Center and server builds for the client’s manage cloud
- Racking, cabling, labeling & dressing of Cisco equipment’s (UCS 5100 blade chassis & Nexus 9000 switches
- Document the Data Center operation procedures and logs
- Discuss project plan & server grouping with respect to BU change window
- Resource management for migrations waves in outage windows.
- Application migration using replication / data sync software
- Using VMware standalone converter for powered on & live cloning of workloads.
- Import & export of virtual machines using Synology NAS connecting to core switches.
- Physical & virtual workload migration of Windows & Linux environment
Confidential
Wintel Architect
Responsibilities:
- The Manulife DC Relo Project has as its scope the migration of multiple elements of the clients infrastructure from its current IBM Data Center at Consumers Road to the IBM Barrie Data Center
- Source to target mapping & build Physical/Virtual servers in mix flavor Operating Systems
- Attend Wave Plan meetings & discuss move groups in T-minus activities
- Migrations of Wintel environment (90% W2K8, 10% W2K3) where primary migration method is Carbonite Move powered by DoubleTake, PlateSpin Migrate & vSphere Converter
- Clients application owner interview & fill Application Assessment Questionnaire, discuss affinities, dependencies of hard coded apps
- Workload discovery and assign resources. Training of migration engineers (off shore)
- Create migration test plans physical environment to vSphere 5.1 & enhanced system functionality to meet the business requirements and maintain appropriate documentation for user training Develop system documentation and provide training to the end user.
- Configuration of vSphere 5.1 in highly redundant cluster, Migration of existing production virtual machines to new cluster
- Conduct the POC for V2V, P2P & P2V using Vision Solutions Carbonite Move powered by DoubleTake & Double Take Availability
- Prepare workbook with pre & post migration tasks using Double Take.
- Train Server Admins & Migration Engineers to how to use runbook during the Double Take fail overs
- Identify & document network, server outages and resolving when possible or routing to proper support group capture all data in Word
- Create Development environment for middle ware team to run Web logic cluster server on Windows Server 2012
- Document the P2P process for Hyper V host and create work load check list using Double Take Availability.
- Involve with Vision Solutions Professional Services for migrating the MS.SQL cluster.
- Add & manage servers, uphold license inventory & Prepare replication/Sync jobs in Double Take Console.