Senior Network And Systems Engineer Resume
Aliso Viejo, CaliforniA
WORK EXPERIENCE:
Confidential, Aliso Viejo, California
Senior Network and Systems Engineer
Responsibilities:
- Assist with configuration, integration, and resolution of Cisco WLC and Microsoft NPS implementation.
- Conducted surface - level network footprint and intrusion analysis.
- Reviewed existing PRTG alerts and configurations.
- Troubleshot PEAP.
- Reviewed existing VMWare Virtual Center 5.1 configurations for 3 Data Centers.
- Created external monitor of key web applications.
- Conducted vulnerability assessment of internal and external assets, resources, and infrastructure.
- Reviewed network configuration management and RANCID set-up.
- Conducted proof-of-concept testing with Snort IDS.
- Utilized Retina and Qualys to conduct vulnerability assessments.
- Reviewed existing router, multi-layer switch, and firewall configurations to migrate high availability and redundancy.
- Migrate static routing to EIGRP.
- Resolved Ubuntu permission issues.
- Conducted HIPAA assessment and site surveys.
- Installed Cisco UCS and configured network ports.
- Upgraded ESXi host and VM Tools from 5.1 to 5.5.
- Reviewed Knowledge Base products and conducted proof-of-concept testing.
- Projected storage requirements for backups.
- Prepped Cisco 2811 and 2821 for RAM upgrades.
- Created Knowledge Base solution with Google Apps, Zoho Sites, and Help Gizmo.
- Interface products with Google Custom Search
- Utilized Wireshark to assess network and security related events
- Configured 3750X to increase port capacity.
- Configured and work with third-parties to implement Cisco UCS blades for Call Manager migrations
- Pulled existing Cisco 2811, 2821, and VG224s in preparations for upgrades.
- Configured Snort IDS and Cisco Network SPAN for implementation.
- Utilized Microsoft MAP to conduct assessments and inventory.
- Assessed existing Silver Peak WAN accelerators and develop plans for implementation.
- Troubleshot Cybersource Point of Sales applications for migration.
- Configured network ports for Cisco UCS Servers
- Maintained IP addresses and allocation through PHP IPAM.
- Managed Silver Peak NX 1700 and 2700 WAN accelerators
- Managed NTOP and ARP Watch
- Troubleshot CentOS and Apache issues.
- Resolved Sonicwall Email Security Junk Box Notifications and MTA issues.
- Supported end-user move, add, and change in Active Directory and Exchange.
- Updated Exchange 2010 SSL Certificates.
- Participated in the selection process of the Director of Web Development and Business Intelligence Architect.
- Managed, configured, and upgraded PRTG to 14.4.12.
- Installed and configured IIS and FTP services.
- Assessed and configured Sonicwall Firewall notifications.
- Implemented VMWare VCenter notifications.
- Participated in the reconciliation of Microsoft License Inventory utilizing SCCM 2012.
- Added ESXi Hosts to VCenter in linked mode.
- Reviewed, assessed, and reconfigured WAN optimization measures. Reduced latency by three-hundred percent.
- Implemented QoS.
- Configured VPNs with Sonicwall Firewalls and access-list, content filtering.
- Configured iSCSI networks to Compellant, Equal Logic and NexSAN.
- Modified MySQL accounts and database.
- Supported Cisco Unified Communications Manager 9.
- Configured High Availability and redundancy through routing, switching, and Sonicwalls.
- Supported the maintenance and upgrade of over 100 laptops and Apple devices during the International Sales Meeting.
- Re-purposed legacy Cisco 7800 MCS servers for IDS and SIEM solutions.
- Configured Cisco 3850 to replace legacy switches, including VRF configurations.
- Racked, installed, configured, NexSAN E48 iSCSI SAN for long term archival of virtual machines and ESXi Hosts.
- Configured Storage Arrays, LUNs and volumes, presented to VMs and ESXi Hosts.
- Managed and deployed Symantec Endpoint Protection and Manager.
- Conducted in-place upgrades and new installations of Windows 2008.
- Configured .Net bug tracker application.
- Utilized Info Path and Share Point to create business forms to align with business processes.
- Added VEEAM Backup Repositories, resolved failed backups and implemented new backup jobs.
- Evaluated, configured, and deployed thin-client solutions, utilizing WYSE for Terminal Services.
- Configured Terminal Services security access groups.
- Designed, configured, and implemented Cisco 2504 Wireless LAN Controller and 1600 series Access Points.
- Designed and worked on request for quote on Cisco Nexus 5548UP.
- Upgraded Sonicwall Email Security Appliance 300 and 500. Designed upgrade plan with 3300 and 4300.
- Designed and provide plan of action to migrate Remote Access and SSL VPN appliances.
- Designed and planned migration of Sonicwall Next Generation Firewall E5500s.
- Coordinated with third-parties and vendors to ensure warehouse wiring infrastructure implementation.
- Created web development environment utilizing CentOS.
- Created alternative solution for the company to upload documentation utilizing web front-end.
- Coordinated implementation of Knowledge Base managed services solution.
- Took ownership of third-party survey application product and modified the product for company use, included CSS, modification of views, and user-experience.
- Reviewed existing Sharepoint configurations. Resolved access mapping issues. Created document libraries, list, form libraries, and list forms. Utilized Sharepoint Designer and Info Path for implementation.
- Plan, designed, and migrated from on premise Exchange and Email Security platforms to hybrid Exchange Online Protection, migration of FOPE, Exchange Online Archive and Data Loss Prevention.
- Purchased and implemented SSL certificates.
- Migrated over 1000 email accounts to Exchange Online Protection.
- Migrated SSL VPN to new infrastructure.
- Utilized Python 2.x and 3.x to automate firewall access lists, and parse JSON logs.
- Migrated DIDs from SIP to PRI and PRI to SIP.
- Conducted dry-run testing of Sharepoint 2007 to 2013 migration. Migrated Document and List libraries, Calendar, Forms, and Task.
- Restored SQL backup and reattached MS SQL databases.
- Monitored IOPS on MS SQL Databases.
- Installed CentOS and Redhat, added partitions and drives, including chron jobs.
- Managed Two Veeam Enterprise Systems, daily backup monitoring, job repair and set-up.
- Managed NexSAN, EMC VNX, Compellent, and Equal Logic.
- Increased redundancy with Distributed File System for replication
- Provided redundancy for Data Center Firewalls and web presence, implemented Sonicwall NSA 6600 Firewalls. Upgraded to latest firmware.
- Initiated PCI Level 3 Merchant compliance, generate artifacts, established boundary diagrms.
- Conducted openssl and heartbleed test against key systems.
- Conducted validation vulnerability scans after system upgrades.
- Built a temporary file sharing application, utilizing IIS and ASP.NET.
- Created Sharepoint Dashboard utilizing PRTG API.
- Implemented dropbox-like solution.
- Implemented XAMPP and Drupal 7.x development environments
- Integrated Cisco Switch and Wireless LAN Controllers with NAP.
- Utilized Metasploit Framework and Pro to conduct validation testing.
- Conducted scans with Nexpose.
- Utilized BeeF for social engineer attacks.
- Experience with Kali and penetration testing.
- Configured and tested Federation and Trusts for Active Directory and Exchange.
- Reviewed existing Lync 2013 implementation and integrated Remote Access and Federation. Setup reverse proxy and mobility.
- Utilized New Relic to troubleshot application issues and monitoring performance.
- Evaluated, configured, and implemented content delivery network and web application firewall utilizing CloudFlare to improve, optimize and secure web applications for ecommerce platform.
- Experience with configure EC2 instances and connecting to S3 solutions on AWS.
- Utilized Curl to gather data and update records on various vendor APIs.
- Utilized Power CLI for DR purposes.
- Utlized Powershell to connect to Office 365 for bulk uploading of white and blacklisting addresses
- Created calculations site utilizing PHP
- Modified various Sharepoint 2013 sites and new footers
- Conducted Brute Force attacks utilizing Python
- Created, designed, configured and tested hosted infrastructure utilizing Merak products, MR18, MR 32, MR 42 and MX64.
- Migrated VMWare instances to AWS EC2 Instances.
- Conducted initial Office 365 migration efforts.
- Created scripts to validate against known malicious host, IP and DNS databases to correlate and reduce attempted intrusions.
- Utilized Python to connect to ARIN, SPAMCOP, and SPAM RATS.
- Increased security measures and Data Loss Prevention capabilities by implementing Rights Management Systems throughout the Enterprise.
- Implemented Sharepoint 2013 Information Rights Management.
- Provisioned the infrastructure for a Global News Letter offering utilizing 3D Issue solution.
- Built Room Wizard Server and connect individual Room Wizards.
- Design, configured and integrated existing Active Directory to Azure Active Directory, Office 365 E3, and Dynamics 365.
- Connected to various APIs and manipulate data utilizing Python and Powershell.
- Design, configured and implement site-to-site VPNs with Azure.
- Design, configured and integrate Cisco Nexus 7004 VDCs, VPCs, and network consolidation.
- GPOs for One Drive, Folder redirection, scripts to migrate user data to One Drive for Endpoint Data Backup
- Automate network device changes through shell script and Expect
- Design, configured and test Direct Access for client-less VPN.
- Built Azure instances for Domain Controllers and replication of Data.
- Designed and implemented Office 365 Hybrid, Exchange Hybrid and Skype for Business Hybrid, Azure Active Directory sychronization, Federation Services.
- Migrated users to Exchange Online and Skype for Business Online.
- Powershell scripts for importing users to Dynamics 365.
- Conducted site migration for Multi-site Wordpress e-commerce blogs to AWS Lightsail.
- Utilized AWS SDK to create snapshot scripts for Lightsail and EBS instances
Confidential, Irvine, California
Global Information Security Analyst - Consultant
Responsibilities:
- Support the information security infrastructure and systems of Confidential 40,000 employees in the United States, Asia, and Europe.
- Reviewed and assessed current implementation of third party managed security service provider. Assist with migration efforts to new managed security service provider.
- Responsible for the daily operations and maintenance of Data Loss Prevention systems
- Maintained and operated Websense supported 10,000 users and devices
- Maintained and operated Trend Micro Office Scan, ESET, and Tivoli Endpoint Manager.
- Conducted proof-of-concept testing with Logalyze and Splunk.
- Utilized Metasploit to exploit vulnerabilities.
- Utilized Burp Suite to conduct web application assessments.
- Participate in vulnerability and update analysis.
- Reviewed Cisco Nexus 7010 and ASA configurations.
- Conducted vulnerability assessment with Qualys.
- Utilized Acunetix and Maltego to crawl and map networks and domains.
- Installed, configured, and operated Splunk for security information event management and correlation.
- Created Python script to normalize logs and review firewall logs.
- Troubleshot F5 Load Balancer interface issues.
- Set-up external monitoring and alerting for the sites landing page.
- Utilized SET for phishing campaigns and awareness training.
- Created Python script for phishing campaign.
- Utilized Python to conduct validation testing of Iron Port Email Security Appliances.
- Created an Email Spam Bot.
- Lead the forensics during Email Spoofing event.
- Created phishing campaign websites utilizing HTML.
- Troubleshot and resolved Trend Micro Reputation Server issues.
- Troubleshot syslog for Nexus 7010, ASA 5550s, Cisco 3845 and Tripwire.
- Troubleshot a remote site DNS issue concerning Data Loss Prevention Servers.
- Created and automated virus and malware analysis utilizing batch and VB Scripts.
- Utilized Malwarebytes, Sophos, Autoruns, TCPView, Process Explorer, and Process Monitor.
- Researched, evaluated, installed, configured and validated a Phishing Awareness Training Program Proof of Concept solution at no cost to deploy or implement.
- Evaluated Open EMM and phplist as viable e-marketing solutions.
- Conducted analysis of remote intrusion and exploit attempts utilizing existing Firewall Logs.
- Trained Service Desk Manager in remediation of malware, virus, and worms.
- Submitted change management requests.
- Implemented ACLs on Cisco ASA 5550s.
- Isolated infected workstations and devices.
- Educated users on Acceptable Use Policies when violations were detected.
- Assist System Administration team with resolving end-user resource access.
- Deployed endpoint monitoring and policy for Data Loss Prevention.
- Remediated Windows 2000 Oscilloscope.
- Conducted Wifi Heat Mapper and analysis.
- Analyzed, gathered and created artifacts to create presentations indicated risk assessment of security events.
Confidential, Aliso Viejo, California
Senior Network Engineer
Responsibilities:
- Provided network engineering and operational support to over 2600 users, 37 sites within the United States, and over 100 network devices.
- Ensure wireless compliance through deployment of Cisco 2504 Wireless Controllers and 1252 LWAPP/CAPWAP.
- Troubleshot and resolved end-user web filtering issues.
- Installed and configured Cisco MDS switches and management. Assist with migration efforts to new VSANs, zones, and data moves.
- Suggested change management improvement technologies to increase efficiency and implementation through Solar Winds Network Configuration Management.
- Collaborated with Senior Systems Engineer to resolve installation and configuration of virtual appliances.
- Configured AAA inter-connectivity between AAA servers and MDS9100 switches.
- Upgrade Solar Winds Network Performance Manager and Server Application Monitor.
- Provided support to ensure NIST compliance utilizing Log and Event Manager and Qualys Policy Compliance appliance.
- Designed and configured Qualys Policy Compliance baselines.
- Generated migration and upgrade change requests and plan of actions to implement compliance requirements.
- Trained Network Engineers to identify and resolve misconfigurations remotely.
- Designed VTP migration plan.
- Installed, configured, and implemented Solar Winds Log Event Manager and IP Address Management to increase security posture, oversight, NIST compliance and management.
- Participated in disaster recovery and business continuity testing.
- Configured Nessus Vulnerability Scanner, policies, and scans to meet NIST requirements.
- Utilize DBProtect to meet NIST requirements.
- Reviewed and assessed existing configurations to conduct migration for office moves. Submitted RFQ to purchase equipment. Generated configurations for Cisco 2921, ASA 5520, 3750x Stack-Wise, and 3560.
- Designed and configured VLANs, allocated IP addressing and space, NAT, access-lists, ASA Active and Passive, HSRP, static routing, BGP, route-maps, prefix-lists, AS-path manipulation and OSPF.
- Review, assessed, installed, configured and implemented Dell PowerVault Storage Array into existing Storage Network, iSCSI settings, and presented LUNs.
- Conducted training with Senior Security Engineers regarding Qualys and Nessus.
- Designed out-of-band management networks utilizing VRFs.
- Designed and planned data center migration efforts.
- Created inventory list, bill of materials, to migrate data centers.
- Designed new branch site to support over 2000 users.
- Experience with HP c7000, Cisco 3020, 4Gb and 1Gb pass-through interconnect modules.
- Migrated 50 user office consisting of 2700 square foot, provided dual internet and single MPLS connectivity, VLANs, servers, systems and storage migration, migrated IP Phone system, configured and implemented WCCP and Riverbed Steelhead, SPAN, RSPAN, iSCSI, Fibre Channel, iBGP, eBGP, multicast, sparse mode, and Speakerbus implementation.
- Resolved Polycom video conferencing issues.
- Generated rack elevations for new data center, RFQs, and equipment configurations.
- Wired, configured, and installed Quantum iScalar 2000 Tape Storage Systems.
- Analyzed SNORT logs to validate intrusions and false positives.
- Researched, created, and submitted request for quotes (RFQ), Bill of Materials (BOM), design, configuration and plan of action documentation.
- Experienced with designing and creating purchase orders for Nexus 7010 and FEX 2232PP, licensing, M and F series modules, fabric and power supplies.
- Reviewed, assessed, developed implementation plan and integrated user Branch VPN and isolated guest wireless.
- Implemented VRF to isolate network segments.
- Troubleshot content-filtering and branch connectivity.
- Provide knowledge transfer to Senior Network Engineer and Network Engineers.
- Implemented Cisco RV325 WAN load-balancing.
- Conducted assessments utilizing Net Surveyor, nMap, nSSIDer, airmon and aircrack. Optimized channel utilization on multiple standalone wireless networks.
Confidential, Santa Ana, California
Information Management Principal
Responsibilities:
- Supported the Orange County Network Transformation contract and converged network infrastructure project consisting of over 20 agencies, 240 sites and 20,000 devices.
- Provided design and recommendations for isolating various agencies throughout Orange County.
- Working knowledge of Brocade/Foundry MLX routers and switches, VRF configuration.
- Configured and implemented HSRP, VSS, and Cisco ASA 5525-X failover and policies.
- Provided support and diagram of existing Orange County Network infrastructure to provide oversight into migration efforts.
- Configured and implemented stack-wise and power-stack on Cisco 3850 switches to increase redundancy and availability.
- Configured and implemented Cisco 6506E, VLANs, spanning-tree, and route processor redundancy.
- Design, recommend and configured MPLS VPNs with redistribution of static, OSPF, EIGRP, and BGP.
- Implemented NetMRI and Infoblox applicances.
- Collaborated with engineers and architects to design migration of network CORE and data center segments to Nexus 7K utilizing VDCs and VPCs.
- Utilized Visual Basic for Applications to increase productivity and reduce resource utilization on data gathering and entry for Network Deep Discovery findings.
- Participated in the selection of Network Engineers and Network Architects through interview process.
Confidential, Newport Beach, California
Network Infrastructure Manager
Responsibilities:
- Worked in conjunction with the Executive Director of Information Technology and Manager of Information Technology to ensure the availability of network infrastructure and services.
- Managed third parties, vendors, submit request for proposals, request for quotes, deployed resources to branch sites.
- Generate network and system flow analysis, utilization, and steps to scale the environment.
- Develop standard firewall and network design including promulgating plans to the Information Technology team.
- Conducted various technical refresh implementation of network devices, systems, and power management including backup power supplies.
- Provided training to service desk personnel.
- Resolved Active Directory Replication issues for remote sites.
- Resolved DNS and DHCP updates.
- Resolved access to network resources available through VPN.
- Supported 45 branch and remote sites to support the business objectives of operating Water Parks, Point-of-Sale systems, and Family Entertainment Centers.
- Coordinated with third-parties to ensure compliance is being maintained.
- Conducted external network scans and assessments, along with providing remediation and compensating controls.
- Isolated Web Sense related configurations, such as port-mirroring and configuration of Directory services, implemented new URL filtering and policies to allow access to resources, troubleshot and resolved end user issues that Web Sense blocked.
- Configured and deployed Cisco ASA 5505, SG200, SG300, HP ProCurve switches to segment networks to meet PCI compliance. Utilized BGP, EIGRP, STP, 802.1Q, and VLANs.
- Implemented Barracuda Web Filter 810 to improve application and content filtering capabilities.
- Supported Data Loss Prevention initiatives.
- Recovered loss data from file servers.
- Restored corrupted data and files from backup devices.
- Resolved Barracuda Backup problems on 690 and 890 appliances.
- Expanded storage space for production servers and conducted monitoring and maintenance.
- Restored and repaired failed HP ProLiant DL series servers including failed storage hard drives and array volumes.
- Resolved failed Microsoft Exchange 2010 Database Availability Group replication.
- Installed, configured, and documented Motorola 6521 Wireless Access Point to interface with various Point of Sales systems.
- Resolved issues with the interface of Gateway Point of Sales systems and Ski Data turnstile configurations.
- Repaired fiber connectivity at branch sites utilizing fiber and Ethernet test tools.
- Upgraded Solar Winds Orion Network Performance Monitor, Core, and Application Monitor.
- Configured and revamped Solar Winds Orion alerting functionality.
- Configured branch devices for SNMP and TACACS authentication.
- Provided key-level support during Citrix Xen App outage from outage to resolution.
- Maintained asset management and tracking of equipment.
- Worked with third-parties to implement the Core Cashless Point of Sales systems to ensure compliance with PCI including router, firewall, switch, and wireless access point configurations.
- Resolved Exchange and Outlook meeting notification issues for various business units.
- Managed External DNS resource records for more than 40 branch and core sites.
- Designed, configured, and deployed Meraki proof-of-concept wireless infrastructure to support point-of-sale networks and multi-user wireless environments, including security and content filtering.
- Deployed remote systems for the Chief Financial Officer.
- In coordinated supervision, trained, and developed three Service Desk personnel, monitor ticket and distributed service desk incidents utilizing Sysaid.
- Provided on-site support of Gateway POS and ticketing system. Troubleshot and validated wireless scanning devices.
- Designed, deployed, and implemented Solarwinds Log and Event Manager for security information event management (SIEM).
- Migrated servers to new networks.
- Generate plans and documentation for the migration of file servers, Active Directory Forest and Domains, and Exchange.
- Published Applications and content through Citrix XenApp.
- Resolved Public Folder replication and error issues.
- Deployed agents through LANDesk, Sysaid, and GPO.
- Re-designed and implemented LANDesk for centralized node management, scan and remediation compliance.
- Implemented wireless redundancy for Point of Sales, including configuration of network devices and coordination with service providers.
- Provided proof-of-concept testing for Cisco Wireless LAN Controller for centralized management of Access Points.
- Implemented Wireless LAN Controllers and Access Points to support an in-house Mobile Point-of-Sales, including QoS, and remote management.
- Generated plans to increase the security posture and reduced footprint of Branch sites.
- Restored failed Domain Controllers and File Servers.
- Created implementation plans for the complete overhaul of 26 Domain Controllers and plans for 26 new File Servers.
- Experience with deployment of HP DL360 and 380 Proliant servers.
- Reduced cost of network implementation by logical segmentation. Cost savings of 12,000 dollars for one park.
- Migrated existing DNS for consolidation.
- Participated in the scope and future implementation of Network Load Balancing and Cluster of critical revenue generating servers with the Director of Application Development.
- Prepared, planned, scoped the backup of critical Branch site data including analyzing cost and preparing systems for implementation. Systems include low-cost external USB drives, Barracuda 390 and 890 solutions.
- Performed email migration from mergers and acquisitions.
- Experience with DameWare and RAdmin management and deployment.
- Managed and maintained Phone Factor for two-factor authentication.
- Assessed, analyzed, tested, validated and implemented Active Directory Migration and Consolidation.
- Migrated file server and services.
- Configured security groups, permissions, and access control lists.
- Provided server redundancy utilizing NIC teaming.
- Implemented file system, auditing, and document history through Windows Sharepoint Services. Created sites, subsites, document libraries, and lists.
- Designed and employed Windows Deployment Services for end-user system imaging.
- Experience with deploying, configuring, and administration of Solar Winds Network Configuration Manager for maintaining Routers, Switches, and Wireless Access Points.
- Designed, coordinated, implemented, tested, and validated MLPPP to increase redundancy, availability, and throughput.
- Designed, architect, and implement Barracuda Message Archiver 350 for data and mail store retention, and litigation discovery capabilities.
- Restored MS SQL database to alternate data store for recovery of vital accounting data.
- Migrated existing mail data stores from Hosted Exchange 2010 to on-premise Exchange 2010 including users, groups, and fat and thin clients.
Confidential, Sacramento, California
Network Engineer IV, Network Engineer - Consultant
Responsibilities:
- Evaluate client requests and requirements for feasibility.
- Provide IP addressing scheme for partner VPN connections and recommended VPN concentrator.
- Resolved voice dialing configuration.
- Collaborated with Systems Administrator to resolve network and system outages and degradations.
- Migrated critical servers and hosts to Colocation facility.
- Configured VM Hosts, VMNICs to existing infrastructure.
- Resolved VRF outages to restore ERP productivity.
- As Network Engineer IV I planned, designed, configured, and implemented three Cisco Aironet 1142N Wireless Access Points (WAP) to increase productivity of the campus infrastructure.
- Experienced in designing, configuring and implementing VMWare vCenter, creating Data Centers, Clusters, VMNICs, standard and distributed, implementing DRS (Distributed Resource Scheduler), HA (High Availability), and Fault Tolerance, resource pools and nested resource pools.
- Developed and improved network topology and logical diagrams utilizing Microsoft Visio.
- Conducted troubleshooting and resolved network outages and degradations.
- Reviewed client requirements and ensure compliance with regulations and standards.
- Configure, test, and implement log aggregation software utilizing Splunk.
- Generated documentation and training materials for completed implementations.
- Analyzed and conducted deep discovery of requirements and aligned results to business logic.
- Assist with Penetration testing and vulnerability detection.
- Installed, configured and tested McAfee Vulnerability Manager Appliance.
- Designed and implemented new Virtual Local Area Network (VLAN) to improve the security posture and reduced network congestion.
- Resolved existing voice quality issues utilizing Quality of Service (QoS) at one critical remote productivity and development site.
- Implemented conferencing capabilities through Cisco Unified Communications Manager (CUCM) to reduce cost of outsourcing conference capabilities.
- Implemented multi-site centralized call processing capabilities utilizing Cisco Call Manager, utilized MGCP, SCCP, SIP, and fallback for remote-sites.
- Configured the Cisco Unified Communications Manager (CUCM) backup capabilities for disaster recovery and continuity of operations.
- Created and removed users, access lists, and Network Address Translations (NAT) within the Cisco Adaptive Security Appliance (ASA).
- Maintained and operated a Cisco 3845, 1861, six 2811, and one 2911 router and fourteen Cisco 3750 switches.
- Configured and tested three new public facing websites to improve the company’s visibility and ease of access for users to unlock their passwords.
- Conducted network scanning and hardening of various systems, remote access devices, and reduced bandwidth consumption through class maps and service policies.
- Implemented Cisco Extension Mobility and IP Messenger, resolved LDAP to Cisco Unified Presence connectivity.
- Configured and tested SSL VPN functionality to increase company productivity and access to internal resources.
- Designed and procured equipment to increase bandwidth for a single branch site, including providing redundancy upon failure of the sites primary MPLS link.
- Installed, configured, tested, and implemented Microsoft System Center Configuration Manager to centrally manage, rollout updates, and ensure client compliance with company policies.
- Installed, configured, tested, and implemented Terminal Services, enhanced security posture of Terminal Server through Group Policies (GPO).
- Created and administered sites, subsites, document libraries, and permissions and groups within Sharepoint 2007.
- Administered and controlled permissions within Exchange 2007. Evaluated and sized Exchange 2007 Client Access Server. Utilized Symantec Mail Security for Exchange and Exchange 2007 content filtering to control inbound SPAM.
- Installed, configured, and implemented various Guest Operating Systems within ESXi hosts.
- Installed, configured and implemented Windows 2008 R2 Servers, Certificate Authority, Internet and Information Services (IIS).
- Researched and evaluated current technologies such as Alloy Navigator, Jira, OpenMeetings, new Storage Area Network (SAN) systems and LANDesk for implementation into existing infrastructure.
- Participated in the planning and development of the Oracle On Demand Enterprise Resource Planning (ERP) infrastructure and migrating the system in-house.
- Improved the Network Monitoring and introduced Intrusion Detection Systems and HoneyPot to provide additional layers of defense and secure the companies users and infrastructure.
- Updated Vertex Sales and Payroll Tax data to bring the company in compliance with standards.
- Participated in the selection and interview process of the Information Technology Helpdesk Technician I position.
- Experience with Android administration, deploying phones to end users and resolving connectivity with Corporate Email solutions. Administered manual route creation with Microsoft 2008 servers.
- Provide information technology support and resolution response to Confidential ’s President, Chief Executive Officer, and Executive Vice President.
- Experienced with Qualys appliance for security vulnerability and detection. Configuring and scheduling scans.
- Served as point-of-contact to American Express and Chase Payment Tech to ensure compliance with PCI and Data Security Operating Policy.
Confidential
Information Assurance Engineer
Responsibilities:
- As Information Assurance Engineer I served as a member of the DoD Information Assurance Accreditation and Certification Process (DIACAP) Certification Team (DCT) and Systems Engineering.
- Developed test and validation plans and procedures for securing and hardening Windows XP Professional, Windows Server 2003, Windows Server 2008, RedHat 5.3.1 and 5.6, and Cisco 2950 and 2960 switches, 2901, 2911, and 3925 routers to support the accreditation and certification of the AN/TPQ-18, Core Access Concentrator Upgrade (CACU) and Oak Mountain Telemetry Systems.
- Created and updating existing Plan of Action and Milestone (POAM), System Identification Profile (SIP), DIACAP Implementation Plan (DIP), Vulnerability Matrix and the DIACAP Scorecard.
- Develop automated tools and scripts to increase productivity.
- Utilized Retina, Gold Disk, and SRR scripts for evaluation and analysis of UMSS (Unclassified Messaging System) and Oak Mountain Telemetry Systems.
- Completed non-relevant security change documentation for Western Range Operations Control Center (ROCC).
- Performed site survey and initial assessment of the Santa Ynez Peak (SYP) Video Link for physical technical controls.
- Provided peer review on Command Transmitter (CT-1) technical controls for completion of the Executive Summary Package.
- Provided initial budget estimates for the COMM POAM proposal project. Participated and coordinated travel request documentation, range operation scheduling, and software request to support the Pillar Point ICS project.
- Assessed and provided input and feedback to improve the Project Development Process.
Confidential, San Miguel, California
Circuit Implementations Coordinator
Responsibilities:
- Installed, configured, set-up, interconnected, tested, and managed the following circuits, trunks, and terrestrial communication links: 80-T1/ISDN/Primary Rate Interface (PRI)/CAS T1s to support voice and data; 3-T3 to support voice and data; 52-Serial/synchronous or asynchronous WAN connections to support voice and data; 24-OC3 (optical carrier) to support Core to backbone links; 14-Gigabit or Ethernet LAN connections to support Edge links, voice and data.
- Supported the Camp Roberts Technical Control Facility (TCF) and DISN MSPP, ATM, ADTRANs, DISA and DISN Nodes, and DISN Core terrestrial services.
- Conducted Beta testing for the Virtual Training Environment, virtualization based environment.
- Evaluated and provided recommendations for over 300 Telecommunication Service Request, Orders, and Work Orders for availability, feasibility and implementation.
- Conducted Trend Analysis on 173 terrestrial and satellite based communication links, trunks, circuit and electronic communications equipment.
- Performed and documented quality control and implementation on electronic communications systems.
- Coordinated with the Central Office (CO) or Local Exchange Carrier (LEC) and the Satellite Operations Center to ensure system availability.
- Fabricated and installed various communications cable such as Category 5/5e/6, Fiber SC/ST/LC/MTRJ, RS232, EIA530, RS449, and Proprietary CSU/DSU connectors; this included running and installing cable through overhead conduits, cable trays, under sub-level flooring.
- Organized and planned cable routes; lifting and transporting lightweight and heavyweight (greater than 50 (pounds) lbs) equipment.
- Submitted and evaluated: TSRs, TSOs, DSRs, IERs, RFUs, DD-1697-1, DD-1368, and completed Circuit Provisioning tracking databases.
- Maintained, monitored, and conducted periodic surveys on 6 Promina 800 Nodes, 2 SIPR and NIPR TAC IP and ITSDN Routers and IA Tools Suite, ancillary devices, cryptographic equipment, cables, connectors, and interfacing equipment.
- Performed alternate node site coordinator duties for the Promina nodes, broadband shelf (BBS), various routers (Cisco 2811, 3745, 3845, 7609, and 7613), switches (Cisco 3550), firewalls (Cisco ASA), Intrusion Detection and Prevention Systems (Security), the Navy CT Core, DISA Ciena Corestream, MSPP (Cisco ONS-15454) and Optera 3500, Asynchronous Transfer Mode (ATM) (ASX-1100, TNX-1000) nodes, Timing Systems (Symetricomm), Perimeter Alarms (CIAMS), Extremely High Frequency Terminals (USC-38) and remote access, the DISN-TE (Tactical Edge), Commercial, Internet, Telephony, and Everything over IP (CITEE) suite.
- Supported one VTC (Video Teleconferencing)/DVS-G (DISN Video Services-Global suite.
- Implemented and troubleshot 3 DCN suites, MIDAS (AN/USC-63), 1 JFCOM and JNTC suite, 1 Bivio, 1 Juniper M-40E and 1 Juniper T-320, various KG-75, KIV-19, KIV-19A, KIV-7HS, KIV-7HSA, KIV-7HSB, KIV-7M, KG-175, KG-175A, CyLink, TellLabs T-Coder, and various DSX patch panels.
- Worked with various communications groups, entities, Department of Defense contractors, and facilities, to evaluate, implement, and design new communications infrastructure.
- Provided pertinent information to USAISEC and the Missile Defense Agency, in concert with various communications groups, entities, Department of Defense contractor and facilities, for designing and implementing communications networks.
- Assisted various Technical Control Facility sites and DISA Tier II with troubleshooting firewalls, circuits, trunks, and routers.
- Performed as a systems expert on the Cornet Matrix and PCU chassis.
- Resolved issues for more than 200 users and restored various circuits and trunks when the site’s Cornet Matrix and PCU (Port Concentrator Units) encountered power issues.
- Configured, installed, and maintained 6 ADTRAN multiplexors, including completing pre-installation preparations and initial testing and acceptance.
- Restored a failed ADTRAN controller card that potentially impacted 28 high priority service circuits.
- Created and maintained site timing diagrams and developed elevation records.
- Assisted with information assurance (IA) verification utilizing Gold Disk, Retina; and resolved issues during the DIACAP process.
- Managed 25 terminal and servers, updated passwords, credentials, reviewed, scrubbed and purged audit files and logs.
- Transitioned and restored TCCC circuits and terminal to full operational capacity on numerous occasions.
- Created, designed, and implemented contractor training for Technical Control at Camp Roberts; training was provided to more than 25 contractors, and several government employees and soldiers.
- Provided on-the-job training to various soldiers while troubleshooting and implementing more than 150 circuits and trunks.
- Supervised 3 Electronic Technicians to support Time-Sensitive missions and responded to outages and equipment failures or degradation.
- Provided assistance in the set-up and completion of over 1000 GMF missions for the United States Army, Marine Corp, Navy, and Air-Force utilizing military satellite equipment and commercial satellite equipment (I-Direct Hub Terminal and Generation II IP Suite; Linkway; AN/FSC-78, AN/GSC-52, AN/USC-38, EHF, UHF, RT-1828 UHF, UHF LOS, DAMA, Non-DAMA; L-band equipment, X-band, C-band and Ku-band).
- Provided maintenance assistance for the Master Station Log, Remedy and Mission tracking.
- Conducted maintenance on up-converters, down-converters, high power amplifiers, low noise amplifiers, site timing, fiber-optic modems, network and system management systems, multiplexors, hubs, and switches.
- Responded to and restored user outages and degradations utilizing electronic and electrical theories and principles, AC/DC theory and principles, digital communications theory and principles, spectrum analyzers, frequency counters, oscilloscopes, Bit Error Rate Tester (BERT), OTDR, TDR, and packet/protocol analyzers.
Confidential
Electronics Technician
Responsibilities:
- Operate and maintain Extremely Low Frequency through Extremely High Frequency radio communications equipment.
- Operate and maintain fiber-optical landline equipment.
- Operate and maintain electronic equipment.
- Served as the Work Center Supervisor; creating maintenance plans, provide training to junior personnel and ensure qualifications standards were met and within compliance.
- Created electronic surveillance measure plans.
- Created and promulgated radio communications plans
- Experience with operations and maintenance of GENSER message, SCI systems, ADNS, and NMCI terrestrial circuit and communications mediums.
- Troubleshot baseband digital switching, Cisco 2600 routers, switches, electronic keying material, and cryptographic systems.
- Operate and maintain AN/USC-42 and AN/USC-38.
- Served as the primarily radar operator in the Atlantic, Mediterranean, and Indian Ocean area of operations. Created radar navigation plans for international water operations.