Project Management / Soc Security Analyst Resume
Alpharetta, GA
PROFESSIONAL SUMMARY:
- A Senior Infrastructure Project Management and Systems Architect with expert knowledge in Windows SharePoint WSS (MCTS), Office SharePoint Server (MCTS), running applications infrastructure monitoring tool such as Microsoft Operations Manager (MOM).
- 6 Yrs. of experience in Project Management
- Exceptional versatility and adaptability. Knowledgeable in cyber security, Quality Assurance and systems infrastructure architect. Dedication and drive as a hard - working individual.
- Superlative communication and team-building skills.
- Ability to manage multiple tasks in a pressured environment
SOFTWARE SKILLS:
Languages: C/C++, SQL, PL/SQL, PERL, JAVA, XML, XHTML, JAVASCRIPT, PYTHON
Cyber Security: SIEM log aggregation analytics, Splunk, ArcSight, Tenable Security Center, Nessus, Qualys, Symmetric Endpoint protection, NetIQ
EDI: IBM Sterling Gentran server
QA Testing: HP LoadRunner, QA Director, HP ALM - QC.
Avionics / aerospace: DO178B (Level A/B/C)
Enterprise Infrastructure Content Management: SharePoint 2007/2010/2013/ Office 365.
Asset/ Process/Security/Configuration Management: LANDesk Management Suite 7.0, BMC Remedy ARS 3.0
Web Technology: XSL/XSLT/ XPATH, DHTML, JAVASERVLET, JSP, J2EE, JDBC, ODBC
Web Services: SOAP, AJAX, IIS.
Virtualization: VMware (ESXi, Server and Player), Hyper-V, V-Center and Oracle VM VirtualBox.
Architectures: J2EE, SOA, Client/Server, Rest API
Enterprise Anti-virus: Symantec, McAee, Trend Micro
Enterprise Monitoring and Testing: Opviews/Mercury (HP) LoadRunner
Enterprise Backup: Varitas NetBackup, Symantec Backup Exec, Unitrends.
Scripting: VBScript and T-SQL scripting, Perl, Bash, Bourne, Korn, C Shell
Databases: ORACLE, SYBASE, MS ACCESS, MS SQL 2000/2005/2008/2012 , POWER BUILDER
OS: AIX/SOLARIS/UNIX/LINUX, WINDOWS SERVER 2000/2003/2008/2012 , MACINTOSH, OS/2, VMware, Windows 7/8.
Application Servers: WebLogic, Oracle 9i AS, Apache Tomcat, Macromedia Cold Fusion MX, IIS
IDE Tools: VISUAL STUDIO.NET, ECLIPSE, NETBEAN
Design tools: RATIONAL TEAM CONCERT, VISIO
Graphics: 2-D, 3-D, PAGE MAKER
Security protocols: RSA, ISA, MOM, IIS, LDAP, Kerberos, DNS, Active Directory GPO, Encrypting File System (EFS), ACL
ERP: ROSS, SAP, i-Renaissance
Project Management: MS Project, CATALYST, ITIL
Report Writers: CRYSTAL, DATATRIEVE, Easytrieve, GEMBASE, Microsoft SQL Server Reporting Services
Networking: TCP/IP, OSI, HTTP, SFTP, LAN/WAN, CISCO IOS router and switches, SolarWinds, WebLogic
IBM MAINFRAME: ENDEVOR, CICS, JCL, APS,MQ-SERIES,COBOL,DB2
DEC VAX: Open VMS, DATATRIEVE, DECNET/SNA, DECCAL, DECGRAPH, ALLIN1, CDD and SQL.
E-mail server: MS Exchange Server 2003/2007/2010.
EDI: Sterling Gentran for Windows server (4010, 4010A1, 4030)
SAN: HP/COMPAQ StorageWorks, tape library MSDL, NetApp
PROFESSIONAL EXPERIENCE:
Confidential, Alpharetta, GA
Project Management / SOC Security Analyst
Responsibilities:
- Working with Incident Handling/Incident Response (IH/IR) team, analyze system requirements of project's business and its security plan; recommend alternative technologies or improvements to enhance information systems to support organizational goals and present this recommendation to senior management.
- Lead the design and review processes for new systems; develop and document the proposed technical design for the integration and implementation of any new software, into existing infrastructure.
- Assist with Security Vulnerability Exception in remediation to request for granting exceptions of vulnerabilities via Request for Policy Exception Form (POEM) spreadsheet or documentation and confer with ISSO and security PM and stakeholders.
- Assist with Honeywell NetAXS, a Web Based Access Control application to use Web browser to manage access of any device that interface to internal computer network. Assist for Data Flow Controls for serial data transmission locally or in a network, with Xon/Xoff protocol and assist with modem connections onXon/Xoff or CTS/RTS (Clear to Send/Ready to Send) commands. Also use Data-flow analysis in gathering information in programming such as control flow graph (CFG).
- Manage Tenable Security Center with Nessus scanner for threat identification and isolation of vulnerabilities through remediation. Coordinate activities needed to automate and manually remediate vulnerabilities in close collaborate with local site and corporate personnel. Execute remediation activities through the application of updates, configuration changes and installs to systems within the site boundary.
- Assist and coordinate with the implementation operational directives of the Technical Implementation Guidance (STIGs), Security Content Automation (SCAP), Security Federal Information Security Modernization Act of 2014 (FISMA 2014), NIST 800-53, CMS MARS-E and HIPAA Security and Privacy for cybersecurity practices. Coordinate and assist with the technical standards based on the Centers for Medicare & Medicaid Services (CMS) and the Minimum Acceptable Risk Standards for Exchanges (MARS-E), on a series of security controls. Support security standards which includes network scanning for security vulnerabilities, PCI-DSS, NERC/CIP, CIP-003 Security Management Controls, and CIP-007 Systems Security Management.
- Create Security Assessment Test Plan for a series of system assessments and tests to exercise the security features and procedures against all applicable security requirements of DoE directives for vulnerability testing regarding Web application vulnerability assessment and security test plan: Establish the Test Target, Select Test Environment, Define Test Scope, Determine Test Restrictions, Determine Test Window Details, Obtain Access Credentials, Obtain Stakeholder Approval and Obtain Stakeholder Contact Info. Assist QA and DevOps teams on Jenkins servlet container and GitHub version control with SOA architecture and UML .
- As a member of SOC Tier 2 team, troubleshoot content for a complex HP ArcSight Security Information and Event Management (SIEM) tool and infrastructure. This includes use cases for Dashboards, Active Channels, Reports, Rules, Filters, Trends, and Active Lists. Provide optimization of data flow using aggregation, filters, etc. Logging - Parsing, Normalization, Aggregation, Filtering and Enrichment Events - Correlation, Alerting, and Monitoring via Reports, Dashboards, & Active Channels. Health - Monitoring of varies aspects SIEM environment: application, hardware, and events.
- Configure Informatica PowerCenter to accomplish data integration that can process vast records and connect to a vast array of data sources, including AWS services such as Amazon Simple Storage Service (Amazon S3), Amazon Relational Database Service (Amazon RDS), and Amazon Redshift. Have virtual private cloud (VPC) configured with public and private subnets across two Availability Zones. This provides the network infrastructure for your PowerCenter deployment and PowerCenter Repository Service for object locking and access, and the PowerCenter Integration Service. Use Enterprise Data Catalog that is available on Azure and currently Informatica Intelligent Cloud Services(IICS) for natively running on Azure.
- Building and managing SIEM use cases and content driven from customer requirements, log formats, source data for SIEM analysis, deploying systems and applications, ETL, and configuration management ( with ArcSight and Splunk) and concepts, Logging - Parsing, Normalization, Aggregation, Filtering and Enrichment and Events - Correlation, Alerting, and Monitoring via Reports, Dashboards, and Active Channels, monitoring Health on aspects SIEM environment: application, hardware, and events)
- Install, configure and apply patches on RHEL VMs, Windows 2008/2012 servers hosting on VMware Esxi environment with the specified HP ArcSight products to meet the customer’s business requirements, to include: Enterprise Security Manager (ESM), Logger, Connectors, User Bahavior Analystics, Event Broker with ADP, Management and configuration of Vulnerability Management (VM) platform, security advisories and defining the severity levels for the vulnerabilities and scanning, validation and reporting of vulnerabilities, and integrate data and event feeds with HP ArcSight SIEM with MySQL/ PostgreSQL, SQL 2012 and 2016 on Windows Servers.
- Document and support Identity & Access Management (IAM) solutions with NetIQ products on Red Hat Linux servers, provisioning workflows, customizing eDirectory schema, in implementing driver logic, performing data migrations, and in general troubleshooting solutions, implementation of SSO (single sign on) solutions, SAML based federation solutions for applications deployed in the Salesforce cloud environment; review Design and development experience with governance and certification workflows. Administer Fortify Application Defender as a Web Application Firewall tool.
- Setup and configure Microsoft Systems Management Server- SCCM for remote control, patch management, software distribution, operating system deployment, network access protection and hardware and software; integrate with end point management tool Sysmantec Endpoint Protection and Shavlik Ivanti patch management. Trouble shoot and configure CISCO switches, routers and ASA firewall appliance. Fortinet FortiGate next generation firewall (NGFW) has been looked at for future consideration. Manage Site-to-Site and Client VPN for multiple office locations in Aiken, SC and Augusta, GA to establish secure connections with each other.
- Administered Active Directory infrastructure components including Active Directory Connectors; applied software upgrades, security patches and perform planned maintenance as required. Manage Microsoft Active Directory and/or NETIQ E-Directory, NETIQ Access Management 4.0, NEITQ Access Governance 6.1., Random Password Generator, Password Expiration Notification, implement role-based access provisioning, developing custom roles, provisioning workflows.
Confidential, Charlotte, NC
Project Management / Systems Administrator
Responsibilities:
- Integrated and upgraded Duke Energy Meter System.
- Used Informatica tool for Extract, Transform, and Load files for data integration.
- Provided system-level support of multi-user operating systems, hardware and software tools, including installation, configuration, maintenance, and support of these systems.
- Performed capacity planning for future growth and expansion of the network server infrastructure on Cisco switches, routers and firewall.
- Ensured network server resources meet requirements for continuous business availability.
- Implemented a server consolidation strategy consistent with providing tiered services to customers. Solutions to include Blade, SAN, NAS, CAS and virtual technologies.
- Implemented data archiving solutions.
- Ensured change management process is adhered to at all times.
- Acted as initial point of contact to receive trouble calls from the Help Desk or PC Support Group.
- Performed 24 x 7 support processes for all facets of our network server based systems.
- Developed shell scripts (PERL, BASH) to automate server procedures and administrative tasks.
Confidential, Charlotte, NC
Infrastructure Architect
Responsibilities:
- Installed and updated newly developed Becubic application for Confidential Data Lineage System.
- Responsible for the operating system and associated subsystems.
- Researched, planned, installed, configured, maintained and upgraded hardware and software interfaces with the operating system.
- Worked as a team member with other technical staff, such as networking to ensure connectivity and compatibility between systems.
- Participated in design, development and implementation of systems engineering activities, to include OS technical support, systems programming and data center capabilities.
- Responsible for components of complex engineering and/or analytical tasks and activities. Assisted in establishment of input/output processes and working parameters for hardware compatibility and coordination of subsystems design and integration of total system
Confidential, North Charleston, SC
Systems Administrator/ QA Test Engineer
Responsibilities:
- Performed installing and configuring Tomcat Apache 6.0 Web Server. Modifyserver.xml configuration file, Servlet and JavaServer Pages,Tomcat installation directories, deploying Java Web applications, the web. xml file, valves, loggers, security realms, connecting Tomcat to Apache Web Server, hosting multiple Web sites,performance issues, load testing, the Tomcat Manager and the Tomcat Administration tool.
- Built, tested, secured and implemented Red Hat Enterprise Linux VMs servers.
- Created Test Plans, System Decomposition Diagrams, Test Matrices, Test Scenarios, and Test Cases (both manual and automated).
- Updated, upgraded and patched all RHEL Linux severs in the Federal, Private and Miami clouds.
Confidential, Blythewood, SC
Systems Administrator
Responsibilities:
- Managed Linux/AIX/Solaris installations and upgrades to ensure work is properly performed in accordance with company policy.
- Recommend resolution to complex matters of significance and coordinates the implementation of the approved course of action. Setup Network Installation Managers (NIM) servers on Aix to support clients using Network File Systems (NFS).
- Configured LVM on VMware and Hyper-V VMs.
- Configured two node clusters in PowerHA application for AIX for HACMP (High Availability Cluster Multiprocessing) for system fault resilient and reduces downtime of applications.
- SQL Server 2008 DBA, responsible for improvement and maintenance of the SQL databases to include rollout and upgrades; responsible for implementation and release of SQL database changes for SharePoint. Used T-SQL to query databases.
- Managed and supported video conferencing (VTC) -Tandberg Quickset 20, KIV 7, KG175D on NIPR/SIPR net through the NEC (DOIM)- for unclassified (NIPR) and classified (SIPR) for Biometrics Identity Management Agency (DoD). This technology mainly serves the communication for the Army and other intelligent agencies on a weekly basis through Defense Information Systems Agency and Department of Defense.
- Built and managed multiple Solaris SunOS 10 servers and installed, configured and managed in virtual environment with Oracle VM VirtualBox and VMware ESX Server.
Confidential, Columbia, SC
Systems Analyst
Responsibilities:
- Managed Active Directory using Microsoft Operations Manager (MOM) to monitor the latency experienced by Outlook, Outlook Web Access, Outlook Mobile Access, ISA and Exchange ActiveSync technology, created Sites and Workspaces in SharePoint 2007/WSS 3.0, controlled user access and permissions for project management.
- Managed MS Exchange 2007 in NAS/SAN environment; responsible for administering, monitoring, and maintaining the internal Exchange messaging server environment; responsible for provision of problem escalation support, troubleshooting of messaging system, and implementation of appropriate patches, updates, service packs and repairs; supported and administered the operations of the Enterprise Mail System, including OWA; administered Active Directory infrastructure components including Active Directory Connectors.
- Functioned as a researcher as a member of software development team on enterprise IBM host system (DRMANAGER, TSO, ENDEVOR, TAO, CICS, JCL, APS, MQ-SERIES).
- Mainframe EDI (MMIS system, 4010A1/5010) consultant for EDI Team for mandated compliance to Health Insurance Portability and Accountability Act (HIPAA),
- Launching Protocols) to access to some applications such as queue status and reports.
- Served as a key contributor to the identification of business objectives, business workflows, screen/entry workflows, etc., for projects and/or LOE (Line of Estimate).
Confidential, Dearing, Georgia
MIS Manager
Responsibilities:
- Directed IT department in the development, implementation and ongoing support of existing and new software applications and hardware platforms. Worked closely with end-user groups to ensure operational stability and that new applications met the practical needs of the company.
- Used VBScript and T-SQL scripts with Data Transformation Services (DTS) tools in SQL Server 2000 to copy complete database schema and all of its objects such as Stored Procedure, Functions, Triggers, Tables, Views, Constraints etc.
- Managed and did coding for EDI system with Sterling Gentran translation (4010, 4010A1, 4030), XML, interacting with the SQL plant database and Gembase programs with 810,820, 856,850,855,856 and 997 transaction sets with Walmart, Home Depot and Lowes over the Web (XMODEM, AS2) integrated with Ross Systems ERP package.
- Managed enterprise anti-virus software (Symantec, McAee, Trend Micro) and enterprise backup software Varitas NetBackup, Symantec Backup Exec.
- Modeled business processes; simulated, documented, stored and optimized the cross functional business process model using Visio and Ross ERP package.
- Designed nursery plant beds, buildings, materials and water irrigation systems using AutoCAD.