System Administrator Resume Profile
Technical Summary
- Extensive working knowledge of HP Network Automation NA v. 7.6
- Extensive working knowledge of HP Network Node Manager NNMi v. 7.5 9.1
- Extensive working knowledge of HP Service Manager SM v. 9.3
- Extensive working knowledge of HP Service Manager SM v. 7.11
- Extensive working knowledge of ISS Proventia Ver 2.9
- Very Extensive working knowledge of HP SiteScope SiS 11.20
- Very Extensive working knowledge of HP Business Service Management BSM 9.20
- Extensive working knowledge EnCase Ver 6.1x
- Extensive working knowledge of Nessus Vulnerability Scanner Ver 4.2.1
- Extensive working knowledge of Wireshark Ver 1.4
- Extensive working knowledge of the management and configuration of Cisco routing and switching devices
- Working knowledge in the configuration of LAN/WAN devices for client remote access including but not limited to VPN over SSL , RADIUS, TACACS, Telnet, SSH, WebVPN, ping, tracert, netstat -a and nslookup
- Extensive experience operating, administering and managing NetApps Network Storage Solution NAS within network infrastructure
- Extensive working knowledge of HP Toolsets Problem Management/Knowledge Management/Change Management/Configuration Management/Site Scope/OpenView/Operations Manager/Network Automation
- Extensive working knowledge within Application and Hosting Environment
- Has extensive working knowledge and direct involvement in the network design and implementation
- Has extensive knowledge of the configuration and management of ASA and PIX Devices
- Extensive working knowledge of Cisco Adaptive Security Device Manager ASDM
- Working knowledge of Intrusion Detection and Intrusion Prevention
- Working knowledge of Solaris 10 and Red Hat Enterprise Linux 5.7/6.1 and Windows Operating System Platforms
- Working knowledge of Alarmpoint/xMatters v. 4.0 Integration with IT Management
- Working knowledge of McAfee's e-Policy orchestrator and web content filtering
- Extensive working knowledge of the management and administration of Window's Active Directory objects
PROFESSIONAL EXPERIENCE
Confidential
installs and manages HP OpenView Network Node Manager NNM Versions: 7.1 and 7.5 and NNMi version 9.1 within an Application and Hosting environment. Manages customer expectations to during deployment of HP Network Automation migration from versions 7.6 to 9.1. Deployed HP Operations Manager i Integration within a BSM Architecture while standing up Three-Tiered Architecture Web, Application, and Database . Configures kernel parameters and Oracle environment for the installation of the Oracle 11g Database. Manages customer expectations and deliverables for Web, Application and Data Tiers on Solaris 10 platform utilizing 64-bit architecture within production enclave. Built and deployed postgresql database and Oracle Database 11g Server including current security patches. Identified hardware and software requirements needed to stand up the following: Application, Data, and Web Tier environments. Modified ipfilters for Solaris 10g and Red Hat Enterprise Linux v. 6.0 firewall utilizing iptables and ipfilters for data flows for full integration of HP OpenView. Utilizes Wireshark to capture TCP Dumps in order to inspect IP packets for successful delivery and to further troubleshoot network traffic failures, IP Packet Drops from source and destination hosts to identify potential DoS Attacks or other vulnerabilities. Uses ISS Proventia to help to isolate root cause for unidentified signatures that may have the potential for network security vulnerabilities. Continually updates vendor signatures within the Cisco IDS/IPS Appliance to ensure maximum protection against malicious threats. Installed and configured server certificates during PKI implementation in order to provide secure access using user certificates while leveraging SSL over VPN solution via customer campus network. Created appropriate security groups and users as required for application, database and web tier in order to apply Roles Based Access Group RBAC permission. Modified system kernel configuration parameters in order to improve system and database server performance. Administered and managed mandatory MIB Tree Structure for all servers in order to streamline server administration, installation and configuration. Modified and applied appropriate security group and user permission's as required for application, database and web tier in order to streamline the installation and configuration process. Deployed primary and secondary servers on the application and web tiers in order achieve and meet customer requirements for High Availability HA standards mandated by customer requirements. Managed efforts with Tier 3 group to leverage HP OpenView in capturing interface utilization on infrastructure network devices for packet analysis. Installed Oracle 10g and 11g on Solaris 10, created table spaces , database user accounts and assigned permissions.
Confidential
Configures, installs and manages HP Openview Network Node Manager I NNMi Versions: 7.5 and 9.1 , Service Manager Version: SM7.11 and HP Network Automation 7.6 within an Application and Hosting environment including but not limited to: Knowledge Manager, Help Server, Web Tier, and Connect-It on Virtual Machines for both RHEL 5.3 and Windows 2008 Operating Systems, utilizing 64-bit architecture, within an Integration and Testing INT enclave. Built and deployed Oracle Database 11g Server including current security patches. Identified hardware and software requirements needed to stand up the following: Application, Data, and Web Tier environments. Modified Red Hat Enterprise Linux v. 6.0 firewall utilizing iptables . Installed and configured server certificates during PKI implementation in order to provide secure access using user certificates while leveraging SSL over VPN solution via customer campus network. Created appropriate security groups and users as required for application, database and web tier in order to streamline the installation and configuration process. Modified and applied system kernel configuration parameters in order to improve the performance of the database, application, web and load balancer servers using Putty to access the system's operating system services. Created and managed mandatory directory tree structure for all servers in order to streamline server administration, installation and configuration. Modified and applied appropriate security group and user permission's as required for application, database and web tier in order to streamline the installation and configuration process. Modified system files in order to enable Service Manager Components to communicate with the application, database and web tiers of the Service Manager 7.11 enclave. Deployed primary and secondary servers on the application and web tiers in order achieve and meet High Availability HA standards mandated by customer requirements. Worked with appropriate external groups and vendors to acquire and apply appropriate access and security hardening parameters to Service Manager 7.11 enclave. Conducted weekly status meetings to identify progress or potential delays in installation, configuration or deployment of the Service Manager 7.11 application in order to determining appropriate short or long term actions to maintain project deliverables. Installed the HP Network Automation Smart Plug-In iSPI to enable faster discovery of LAN/WAN device information via Simple Network Management Protocol SNMP . Installed HP OpenView System Performance SPi and Metrics Application to maximize Configured and Administered the SNMPv 3 within the HP Openview enclave to improve the security posture of the infrastructure.
Confidential
evaluates suspicious activity, unauthorized attempts and attacks at boundary points and within customer network. Monitors host based signatures captured within IDS. Identifies new signatures based upon threat levels from constant security monitoring of McAfee security website and recommends appropriate handling procedures including security tuning. Creates Daily Activity Reports DAR to capture activities during shift such as IAV Alerts and Notifications, detects signatures that may warrant further analysis and in-depth investigation utilizing EnCase. Applies Protection Levels to classified systems based upon need to know and level of access. Utilizes BigFix to search for hosts within customer network via IP address or hostname. Utilized e-Policy Orchestrator to create and configure tasks for a group of hosts or individual hosts to automate the installation or update of DAT files. Created rule sets to aid in traffic and content filtering. Deployed boundaries within customer network to isolate one-way traffic destination. Perform in-depth analysis on possible Personal Identifiable Information PII while stepping through the remediation process. Escalates PII incidents to appropriate office for further counseling and remediation steps such as a request to exmerged a users' mailbox.
Confidential
ASA 5520 and 5540 Appliances. Configures, deploys and manages Access Control Server Version 4.0 for the Cisco TACACS and administration for remote access. Manages and Administers Cisco Catalyst Switch 6009 and 6509 Series. Architects and Designs IT infrastructures and specs out data centers based upon current, present and future needs. Monitors LAN/WAN Devices via HP Openview. Write policies for Performance and Functional testing for devices to deploy in production environments. Installed, configured, and administers McAfee ePolicy Orchestrator 4.5 server for protection against the following: Malware, Virus, Trojans, and worms. Deploys IDS Sensors to client to identify potential attacks at client level. Escalates application level virus to management and designs plan to deploy latest S DAT, patch or security update to address the vulnerability in OS, Application, or BIOS, or IOS. Applies security filtering to Windows Active Directory AD User and Computer objects via Windows Group Policy or GPO. Enables and administers VPN resolutions for ASA 5500 Series Firewalls and Check Point Appliance s . Configures, Deploys and Manages Cisco 4200 Series Intrusion Detection System IDS and Intrusion Prevention System IPS to aid in the detection and prevention of external attacks against the following: Malware, Virus, Trojans, and worms on the network. Assesses protection level state for each host within the network to ensure the correct antivirus engines and DAT files have been installed. Create reports out of e-Policy Orchestrator that displays graphs and charts of the security posture of the host antivirus software installation progress. Receives IAVA's and acknowledges only those alerts that are applicable to the systems that are managed. Applies software Fixlets to detected servers within the network via BigFix to minimize vulnerabilities and maintain a high level security posture throughout the network.
Confidential
Systems/Network Administrators. Configures and administers interfaces on ASA 5510, PIX Firewall and Check Point 500 Appliance by assigning each interface with a security level respectively. Utilizing Microsoft's Group Policy Editor and SMS, I have deployed security patches and updates that were manufactured recommended and to assist in the deterrence of security vulnerabilities for .NET applications. Identified network security risks and provided recommendations for mitigation via CIO. Installed and deployed Syslog server to review IP traffic information gathered by strategically placed sensors on the network. Configuration Management Administrator of HP Network Automation HPNA where maintaining User Roles Permissions for groups accessing their appropriate network devices. Responsibilities also include building status, security and compliance reports for review based upon device groups in order to assess level of risk identified by Policy Rule. Reviews registered events within HPNA to determine policy compliance. Downloaded boundary security logs for further analysis via Wireshark. Deployed and installed client workstation agent for McAfee Antivirus server in order to minimize virus attacks on the network. Configured DHCP and managed the WINS within the core network. Utilized configuration files to deploy Cisco routers and Layer 3 switches on the network. Created VLANs to facilitate packet delivery of data destined for a specific host. Created ACL's on routers, core switches, Check Point Appliance and PIX Firewalls using CLI commands at device prompt for route determination. Configuration PIX firewall to include ICA Citrix plug-in client so that users could access multiple applications via remote connectivity to Citrix servers. Deployed xMatters as a Middleware Solution to solve the business continuity with HP OpenView Tool Sets. Configured NAT for Proxy server deployment and PAT for Web application access within the unsecured or DMZ network. Configured PIX and Check Point Appliances to deploy web content filtering for the following: Denial-of-service, Trojans, worms, and spyware. Configured the following types of Cisco Catalysts switches: 4006, 6009, 6506, 3524XL, and 3548 XL. Configured the following Cisco routers: 7009, 7206, 1721, 1751, 1751v, and 1900 Check Point Appliances: 500 and 570. Migrated and deployed Cisco VoIP with ISDN environment using Cisco Call Manager 4.1. Installed Windows 2000/2003 server build and UNIX server builds using SmartStart and JumpStart installation/boot disc.
Confidential
provider resources to fulfill customer requests based upon system requirements and configuration. Daily manages internal processes of customer expectations to ensure timely delivery of UNIX, Linux, and Solaris based applications through software development in managed and non-managed environments. Enable Lights-Out monitoring capability for continuity involving disaster recovery measures or for server access during a network or host Outage event. Monitors network resources including application and database servers. Administers domain user accounts for network connectivity and creates and maintains software application user accounts. Administers and manages backups for data and user shared directories. Creates scripts using, Visual Basic, to automate software installs and network printing migrations. Configured VPN SSL on proxy server ASA 5510 and Check Point 570 Appliance in order to address traffic and web content for users whom access web applications via secure connection. The solution also allowed the ability to role out Single-Sign-On SSO capability by invoking Active Directory Role-Based Access Control permissions to enable specific access to the appropriate network resources and web applications. Installed and configured Internet Information Service IIS on corporate web servers to allow the following web standards: ASP, HTML, and Java Script. Configured leased line T1 WAN Interface Card or WIC on Cisco router 3825. Configured Cisco ASA Firewall 5510 and Check Point Appliance for inbound and outbound traffic, as well as configured proxy server for traffic and content filtering. Responsible for the facilitation of service provider resources to fulfill customer requests based upon system requirements and configuration. Daily manages internal processes of customer expectations to ensure timely delivery of UNIX, Linux, and Solaris based applications through software development in managed and non-managed environments. Routinely manages tasks to deploy customer applications within both managed and shared environments to a common infrastructure. Chairs and conducts Project Discovery Team Meetings to discuss and vet customer requirements while leveraging support for successful completion of assigned tasks. Verifies and confirms deployment schedule for service providers. Manages the tasks associated within Change Requests submitted via, Remedy 6.0, to track changes within the corporate infrastructure. Schedules project team meetings to facilitate key technical groups to define scope of project based upon customer's request. Through integration, has working knowledge that has been instrumental during the deployment of the One-Way-Transfer OWT systems into current infrastructure
Confidential
other devices within a Network Operations Center NOC 24x7. This also includes implementing remote access and authentication to the customer base. Follows steps to remediate suspicious activity discovered by IDS deployed agents via quarantine or the removal of host based signature threats including malware, Trojans, and adware. Lead a team of engineers during the migration of many web-enabled applications and appliances used to effectively secure customer's network. Configured Windows 2000/2003 servers and network devices Cisco routers, switches, PIX firewalls and Check Point Appliances to provide a secure network and acquire optimum performance. Utilized Nessus Vulnerability Scanner to conduct scans on the sub network for possible undetected vulnerabilities. Provided network design for the deployment of new servers and the creation of a new domain has deployed security updates and vulnerabilities, software installs via GPO, MSI or SMS also configured McAfee servers to update DAT files on both client workstations and servers and additional tasks. Monitored server farm and network devices within Network Operations Center NOC using HP Openview and What's Up Gold to provide High Availability HA for the applications requiring 24x7 access. Specifically deployed the following Openview applications on windows 2000 platform: Configuration Management 4.0, Asset Center 5.0, Storage Area Manager 3.0 and Network Node Manager 5.0. Played key role in the configuration and installation of the Availability Manager Data Collector to capture events for data collection and analysis. Administered and managed HP Openview Network Manager to monitor servers and network devices within the network. Extensive knowledge in the configuration of e-policy needed to manage critical security updates and patches for computer, domain groups and user objects and the deployment of other relative upgrades. Created Lotus Notes user's and group within the Domino Directory using Domino Administrator 7. Maintained notes user's and group accounts within the NAB. Created and processed corporate requests for specific user accounts and groups. Processed and reset user X.509 Web certificate requests for user's requiring access to specific corporate web sites by utilizing the web certificate management web site to push certificates for user authentication, key exchange distribution, and secure communication. Configured CA server to automate the push of certificates to users requiring access to secure web sites.
Confidential
2,000 faculty, staff and student users as well as over 200 user groups. Configured and managed campus network using Cisco deployed devices. Monitored infrastructure using HP Openview to troubleshoot WAN interfaces and LAN interfaces within the: Core, Distribution, and Access layers of the network. Configured, managed and deployed HP Network Automation NA to aid in the network device provisioning by applying baseline configuration and automating deployment. Administered the HP NA tool to ensure change and configuration management compliance for policy based configurations. This ITIL process approach allowed for appropriate changes to the configuration of these devices to improve network performance and minimize delayed provisioning. Was responsible for installation of Fiber-Optic Cable for campus connectivity between approximately 10 buildings and device configuration using the following protocols: PPP, RIP, TCP/IP, VTP. Deployed Citrix Metaframe Server 3.0 and administered ICA Client for user connectivity via thin-client, which enabled users to access network resources such as network printing services and Microsoft Applications. Manages and administers IP addresses for internal and external sub-networks. Provided support for Blackberry Desktop Manager using the Blackberry Manager utility plug-in. Configured and managed VLAN membership and Cisco VoIP using Call Manager. Managed the enterprise backup environment using CommVault Galaxy 5.0 for the administration and Spectralogic 920 Tape Library to store data which supports 4 ATI 3 tape drives and holds 120 tapes with storage for up to 12 TB of data. Supported and administered the Exchange 2003 environment. Spearheaded the integration of NetApps Network Area Storage NAS solution into Microsoft server platform. Created, Modified, Managed and administered Common Internet File System CIFS using the ONTAP operating system GUI. Instrumental in streamlining the creation process of data share objects within the Active Directory. Created and administered share directory permissions for users and user group with Active Directory using ONTAP. Implemented and deployed data back policies using SnapShot and Snap Vault to replicate data across server disks and throughout the network. Assigned recovery and backup policies to manage in excess of 14 Terabytes of corporate data and the Exchange Information Store database. Successfully recovered lost or inadvertently deleted email messages stored on the NetApps Storage Appliance. Installed and configured additional storage disks using Fiber QIP Architecture for faster through-put. Designed and implemented G-F-S strategies in support of Data Replication DR Capability and Data Archiving. Monitored virus attacks against mail servers using Trend ScanMail for Exchange 2003 managed full deployment within the current domain. Daily supported network users, groups and mailbox creation using Active Directory for User and Computers with Exchange enabled features created Global and distribution groups on the mail server. Managed and administered the network of 75 servers including Dell 1750's, 1850's, 2650's, 2850's and Compaq Proliant DL380's . Managed and administered three domain controllers, two internal and two external DMZ networks. Also daily support for user remote access via the VPN over SSL solution for Check Point 500 Appliance. Utilized Wireshark to manipulate raw TCP or syslog server dumps to identify possible unauthorized attempts to gain access from an external host in order to protect against possible attacks including: Denial of Service, spoofing, and unwanted downloads. Provided server support for installation and configuration of production database, DNS, WINS, web and file/print servers. Provided network management and support of e-Collab project which provided collaboration room and Microsoft SharePoint services and resources to customers. Specifically, managed and configured NT and 2000 servers for High Availability of applications required for customer access by creating multiple instances and deploying Round-Robin on an F5 load balancer.
Confidential
Virginia. Responsibilities included management of six team members through the development and implementation and deployment of HP Service Center's Change and Configuration Management Modules, a database module designed to streamline a rather lengthy approval process and promote an automated process within the infrastructure ITIL procedures for the transmission of e-mail notifications and facilitation of internal and external projects. Utilized Clear Case by Rational formerly Pure Atria , which runs on a variety of network platforms Unix and Windows Administered system training for Peregrine Suite module deployment. Proficient in Microsoft Office 2003 Suite, which includes creating master project schedule within MS Project to track project deliverables and tasks assignments as well as task ownership. Provided key information in the redesign and proposed renovations to current data center by providing expert opinion in determining Power Distribution Unit PDU load capacity for devices within the infrastructure while identifying single points of failure within the infrastructure, building facility, and production server room schema. Prepared cost analysis reports to determine costs associated with downtime in the absence of Disaster Recovery Plan.
Confidential
as Project Lead and Senior Consultant for the Environmental Protection Agency EPA with budget in excess of 1.6 million for the management and network administration of four satellite offices in Crystal City, Virginia. Responsibilities included daily operation and maintenance of four NetWare 4.11 and three NT 4.0 servers in token-ring environment. Provided sound technical knowledge and permanent resolution to LAN/WAN related problems for more than 850 users. Responsibilities include, but not limited to the installation of NetWare 4.11 operating system, patches and support pack updates Ver: 7a/8 . Created and implemented Standard Operating Procedures SOP for infrastructure. Implemented and promoted network security for EPA infrastructure. Configured HP LaserJet printers utilizing Jet Admin Ver: 3.4 . Tested and replaced malfunctioning Multi-station Access Unit MSAU for optimum network performance. Performed differential and full tape back-ups on NetWare and NT servers. Installed Norton's Anti-Virus Protection software Ver: 6.0 on primary and back-up servers. Installed Back-up Exec for NetWare Ver: 8.0 and NT. Installed ARCserve IT 6.6 for NetWare. Configured interface cards for Ethernet environment on Cisco router 2503 and 1720 series . Configured Client 32 utilizing Automatic Client Upgrade ACU to install Client 32 on workstations that are currently running a copy of Novell's Client 32 or Microsoft's Client for NetWare Networks. Installed Compaq Support Software ROMPaqs for Novell Products.
Confidential
the installation and configuration of Novell Client32 , Client for Microsoft, and Novell Client for Windows NT. Technical knowledge includes but not limited to Novell and NT server upgrades and migration gateways, routers, repeaters, modems, hubs, and T1 lines coordinating line testing, loop backs and VTAM recycling . Administered and managed software applications, network accessibility and network printing on NetWare 3.12/4.11 platforms with NT, Win 95 and Win 3.1 operating systems. Administered and maintained IP addresses. Initialized and activated LAN drops. Installed and maintained network printers for Novell and NT platforms. Configured and installed Primary Domain Controllers and Back-up Domain Controllers, Exchange server, NetWare servers, WINS server, DHCP server, Print server, and File/Resource server. Partitioned PC hard drives and created logical drives for server configuration and setup. Installed operating systems Win 3.1, Win 95, Win NT 3.51/4.0 . Installed and managed network protocols, services and drivers for adapter cards for LAN connectivity. Utilized HP OpenView to monitor WAN links to satellite offices. Installed and operated Microsoft Back Office Applications. Configured network printer, cc:Mail server and Cisco 2503 series routers.
Confidential
the following printers: Tektronix 220i, 330, 550 HP Laser Jet's 4 Plus, 4siMX, 5siMX, and 5M including: Replaced DC Controller card's, fusers, fuser wands, pick-up rollers, toner cartridges LED's, and hardware power supply's. Partitioned hard drives and Created logical drives, created logical drives. Installed operating systems Win 3.1/Win 95. Replaced system boards and configured CMOS through setup utility. Performed memory upgrade to desktop PC's. Replaced/installed 3.5 floppy drives and installed CD-ROM's with multi-media with sound card. Partitioned PC hard drives and created logical drives for server on Windows NT 4.0 platform.
Confidential
accounts in Novell 3.12/4.11 and Windows NT 3.51/4.0 . Created and maintained user accounts on Exchange server. Installed and maintained network printers. Reset user passwords and intruder lockouts. Created and installed internal printer servers for Novell and Windows NT networks. Administered and provided technical support for server maintenance deployments.