Sr. Aws Solution Architect Lead, Security Engineer Resume
Chicago, IL
SUMMARY:
- Abdel Aboufariss is a US Citizen and experienced in IT Infrastructure & Cloud Security with a Bachelor’s degree in Computer Science and a Master’s degree in Information Technology combined with over 18 years of experience in IT field. Abdel is also a HIPPA certified & has extensive experience working in a fast paced start - up environment. Among other responsibilities, Abdel also managed & maintained critical HIPPA databases using RDS/Aurora and Mongodb and assisted in database (Oracle & Mariadb) migration from on-promise to the Cloud RDS Aurora. Abdel served recently as an Enterprise Cloud Architect Lead role as well as a Security lead ensuring HIPAA security rule enterprise wide.
- Abdel provided leadership, direction and accountability for the enterprise technical infrastructure including data center transformation (servers, software, Network, Security, Relational NoSQL Databases) & end-to-end deployment to AWS Cloud.
- Below is a high level of the setup & library I’ve used to build end-to-end Infrastructure as Code (IAC) which enables me to
- Single AWS Account vs. Multi-Account
- Security end-to-end using KMS, IAM, WAF, Bastion/OpenVPN, SSL/TLS, CloudTrail, Fail2Ban
- End-to-end encryption (as part of HIPAA, PCI, or other compliance programs)
- RT53, DNS
- AWS region / multi-regions
- Run services on Docker using ECS
- PostgreSQL, MySQL, MongoDB, SQL Server, Amazon Aurora, or any other RDS Database
- Redis or Memcached
- AWS CodePipeLine or Jenkins
- S3 + CloudFront / Content Delivery Network (CDN) for static content
- Lambda functions
- Monitoring, Alerting, Log Aggregation using CloudWatch & Kinesis
- AWS S3, Glacier & EBS
TECHNICAL SKILLS:
Cloud Technology: AWS including EC2,RDS, S3, Route 53, AWS Cloudwatch, Monitoring Service (MMS), DMS, SCT, VPC, Lambda, Terraform, Cloudformation & Docker on ECS.
Cloud Security: VPC, NAT, ACL, KMS, IAM, WAF, Bastion/VPN, TLS/ACM, CloudTrail, Fail2Ban Qualys & Alert Logic
Cloud Source Repositories: GitHub, AWS CodeCommit and AWS S3
Applications and Tools: Qlik Sense (BI), Putty, Oracle SQL Developer, TOAD, SQL/Plus, MS Office suite, Jira & Confluence and HipChat.
Databases: Oracle, SQL Server, MySQL, AWS Aurora, Postgres and MongoDB
Operating System: Red Hat Linux Advanced Server 3-5, AIX and Windows Server.
Languages: Boto3, JSON, Shell Scripting, SQL & PL/SQLLinux Tools: VI editor, top, vmstat, iostat, ifconfig, netstat.
PROFESSIONAL EXPERIENCE:
Confidential
Sr. AWS Solution Architect lead, Security Engineer
- Deployed & Managed Apervita AWS Cloud & infrastructure automation where we leverage automation to deliver applications into a secured & private cloud as well as drive efficiency across AWS compute servers, S3 storage, security & networking.
- Worked closely with the Development & Platform team to deliver technical solutions
- Created a road map for their application migration & CI/CD using AWS CodePipeline, CodeDeploy & Cloudformation to automate the process.
- Managed & deployed a second layer of security on top of AWS Cloud environment using Qualys appliance to streamline security and compliance solutions
- Deployed as managed BI system on AWS using Qlik Sense
- Applied Qualys Agent on all 300 EC2 servers using Salt as well as on all internal users’ Laptops
- Prepared system security reports by collecting, analyzing, and summarizing data and trends
- Participated and led security solution meetings, prepared designed document and presentation for the business / IT groups.
- Identified IT security risks and identified, evaluated and proposed mitigation strategies.
- Worked directly with CISCO support and applied their weekly suggested security vulnerabilities
- Enforced compliance & security standards across the enterprise IT landscape.
- Managed NoSQL Clustered MongoDB and other BI databases including Qlik & AWS Aurora.
- Engaged with C-level executives to define Enterprise Cloud security & strategies.
- Developed a plan for disaster recovery and other backup contingencies
- Maintain NoSQL Clustered MongoDB and other BI databases including Qlik & AWS Aurora
- Provided input & suggestions to management in evaluating new Cloud technology & provided IT guidance for Enterprise Applications as well as Corporate infrastructure.
Confidential, Chicago IL
Enterprise Cloud Architect
- Provided leadership, direction and accountability for the technical infrastructure (data centers servers, Relational & NoSQL Databases) using Amazon RDS.
- Migrated & consolidated the existing Mariadb database systems on-promise into one environment in AWS which reduced the number of servers and licenses & contributed to licenses saving close to $85K yearly.
- Led the migration of Oracle database 11g to open source database AWS Aurora cluster to make the system less dependent on expensive Oracle DB and more adaptable to any open source DBs.
- Worked closely with DevOps to ensure successful applications implementation. Assisted & Reviewed code & SQL during development through deployment.
- Provided input & suggestions to management in evaluating new technology & provided IT guidance for Enterprise Applications as well as Corporate infrastructure.
- Implemented Disaster Recovery plan for IT systems and critical databases.
- Performed administration, diagnostics, and tuning of multiple databases such as Oracle 11g, MySQL & Mariadb
- Managed 24/7 On-Call support on a weekly rotation basis to ensure all production databases are up & running 24/7.
Confidential / Tyco, IL
AWS Architect / Big Data Architect
- Provided leadership, direction and accountability for the technical infrastructure (data centers servers, Relational & NoSQL Databases) using AWS EC2 and Amazon RDS.
- Deployed Docker ECS EC2 Container Service to streamline deploying multiple microservice stacks across a cluster of EC2 instances using Docker containers.
- Re-architected & consolidated the existing NoSQL Mongo database systems into one environment which reduced the number of EC2 servers to 10 servers from 40 servers which contributed to a saving of about a quarter million dollars per year on AWS service fees.
- Led the migration of Oracle database 11g to open source database Postgres to make the system less dependent on expensive Oracle DB and more adaptable to any open source DBs.
- Designed and implemented high availability NoSQL Mongo cluster and implemented Replica Sets to maintain redundancy.
- Installed & configured MongoDB backups and monitoring Agents via MongoDB Cloud Manager
- Worked closely with DevOps to ensure successful applications implementation. Assisted & Reviewed code & SQL during development through deployment.
- Provided input & suggestions to management in evaluating new technology & provided IT guidance for Enterprise Applications as well as Corporate infrastructure.
- Implemented Disaster Recovery plan for IT systems and critical databases.
- Created batch Linux scripts to automate some processes such as temp & cache cleanup, Agents cleanup, Listener cleanup, dump cleanup including monitoring the growth of OS file system size
- Performed administration, diagnostics, and tuning of multiple databases such as Oracle 11g, MongoDB, MySQL & Cassandra.
- Managed 24/7 On-Call support on a weekly rotation basis to ensure all production databases are up & running 24/7.
Confidential, IA
Sr. Architect / IT Consultant
- Managed Amazon Web Services using Amazon Elastic Compute Cloud EC2, RDS & S3 to maintain servers, storage, databases, applications, and deployment services
- Assisted in database migration from SQL/Server to Oracle 11g
- Implemented well-documented, well-architected, high-quality code of all enterprise applications AWS/EC2 environment.
- Administer and manage Oracle Grid Control high availability RAC & ASM
- Maintained the back-end of Dice.com using Oracle database ensuring its high availability 24/7
- Installed and managed Dbvisit standby database on the main and on the standby servers to minimize downtime during migration. The standby database is also part of Disaster Recover (DR) in the event the main production database goes down
- Performed Oracle DB upgrades from 11gR1 to 11gR2 and from 11gR2 to 12c
- Installed & configured Oracle Agents on Windows & Linux servers to monitor oracle databases from OEM
- Helped speed up slow queries. Used Execution Plan, Performance Monitor such as ignite & statpack. Established Performance Tuning guidelines
- Successfully tested database failures using Dbvisit Standby to ensure we can switch applications over to the standby database in a matter of minutes
- Assisted the developers in migrating Oracle packages and procedures, and testing the process as well as enhancing their SQL queries to improve application performance
- Used CONFIO’s Ignite software to manage and monitor performance of Dice.com databases
- Used Datapump utilities, SQL, PL/SQL, RAC, RMAN backup & recovery, ASM and Linux shell scripting
- Conducted research into new technologies, strategies and best practices
- Maintained the back-end of ClearanceJobs.com site using MySQL database ensuring its high availability 24/7
- Involved in MySQL configuration and upgrades on Linux
- Defined and implemented MySQL replication, backup and failover solutions
- Tuned MySQL metrics and optimized queries for optimal performance
- Developed and deployed Data Warehouse infrastructure using SSIS for Data integration and SSRS to automate reports generations.
Confidential, IL
Enterprise Architect, ERP & EPM Technical Lead
- Managed overall ERP & EPM Systems/Operation & Support
- Led the architecture of ERP & EPM systems in the development of strategic architectures (application, technical, information and infrastructure)
- Technical Project Leader for critical systems ERP & EPM systems in end to end implementation of Hyperion and Lawson LSF9 financial ERP systems
- Delivered both systems on time and within budget.
- Developed back-up and recovery procedures, including testing back-ups, data integrity and Disaster Recovery (DR)
- Led and assisted in the design, development, deployment, and operational support of the Hyperion Financial Data Quality Management
- Designed, enhanced and maintained Hyperion Reports via Hyperion workspace
- Managed the metadata and data movement between ERP system and Essbase Hyperion system using ODI
- Participated in system upgrades, system scalability and applications migration for both ERP Lawson & Hyperion EPM systems
- Coordinated projects between the business owner and EIT team, prepared, presented and implemented proposals and projects linked to the Strategic Development Areas
- Assisted the Director of IT in setting direction of corporate applications including technologies used & budget
- Assisted in setting standards and guidelines for the IT organization's environment security, and technology governance
- Defined and maintained the overall vision and guidelines and implemented software architecture in the Business Support Systems/Operation Support Systems, integration, data, and ERP/EPM applications
- Proactively performed analysis including monitoring, troubleshooting and quickly tackled issues to find permanent resolutions.
- Provided systems architecture guidance to create high availability data warehouse systems
- Cultivate professional relationships with vendors, clients, IT personnel, and various departmental staff to exchange information, resolve issues, and improve services
- Assisted with the hardware selection and virtualization strategy
- Assisted in alignment of IT strategy and planning with company's business goals
- Coordinated troubleshooting between applications and infrastructure teams as well as with Oracle Technical Support “Metalink”
- Strong Problem Solving skills
- Provided ongoing evaluations of technology solutions and capabilities to ensure alignment with business objectives and identified areas of risk
Confidential, IL
Lead Oracle DBA
- Provided database administration for large and complex database system using Oracle9i, Oracle10g/11g, DB2 and MS SQL/Server.
- Performed performance & tuning, database design, database installation & configuration, DB patching, DB backup & recovery, technical support, and investigation of new security updates & new technologies
- Maintained LDAP/DB2 database including patches updates and upgrades
- Assisted development team with SQL queries tuning & data refresh from PROD to DEV systems
- Used Data Pump utilities, SQL, PL/SQL, SQL/Loader, Oracle OEM Grid, RMAN backup & Recovery, ASM and Unix shell scripting
- Developed back-up and recovery procedures, including standby database, testing DB back-ups, data integrity and Disaster Recovery (DR).
- Performed routine production support activities and provided incident and problem management support including weekends. Provided 24x7 support; On-call rotation
- Documented processes related to the database environment
- Maintained and managed Hyperion EPM back-end multidimensional Essbase database
- Provided communication and direction during outage situations, manages customer expectations, led investigations/post mortem teams and ensured continuous improvement
Confidential, IL
Adjunct Instructor
- Part time adjunct instructor
- Taught a graduate course CIS460. This class was built around Client/Server and Oracle.
- Through hands on teaching, assisted students in developing their own Object Oriented business applications using front-end tool Developer 2000 and prepared them for real world projects
- Assisted Confidential in configuring and installing Oracle 8i database which was used by all students and staff throughout the campus.
Confidential, IL 7
IT Consultant
- Developed Oracle procedures and packages programs.
- Used Execution Plan & Performance Monitoring tools to speed up slow complex queries. Established Performance Tuning guidelines
- Installed Designer/2000 and created repository for new application.
- Used Designer/2000 tool created and designed a new database and generated DDLs to create Oracle tables for Satellite system
Discover Card Corp, IL
IT Consultant
- Wrote specifications to combine programs together, to make the system more adaptable and streamline in the use of DB2.
- Changed the current batch environment from VSAM to a DB2 environment to make the data more accessible, thus allowing the entire system to become more flexible.
- Wrote programs using relational database concepts.
- Wrote DB2/SQL statements to access database.
- Created tables and views; queried calls to retrieve records to be listed, inserted, modified, and deleted
- Embedded SQL commands & PL/SQL Procedures in COBOL programs to retrieve data
Confidential
IT Consultant
- Embedded SQL commands in COBOL programs to retrieve data
- Primary responsibility was to develop on-line CICS/VSAM programs
- Secondary area of responsibility was production support
- Assisted analysts in migrating over 800 jobs to production including verification and execution of all Programs
- Identified items in MIGS ChangeMan for integration testing and in GATE ChangeMan for User Acceptance