Security Administrator Resume Profile
CAREER SUMMARY
A Computer and Electronics Engineer and an industry thought-leader with about 15 years' experience in securely designing, delivering and managing large, complex, Shared IT Service Projects and solutions in Government, Financial and Energy industries.
Proficiencies:
- Network Infrastructure LAN, WAN Voice Design, Implementation Management
- Software Development Application design and development SDLC
- Security Enterprise end-to-end Policy, Design, Implementation Management
- Project Management and Methodologies
- IT Governance i.e. ITIL Processes Governance
Core competence:
- The ability to understand, interpret and communicate complex technology concepts and scenarios to all levels of the enterprise.
- Building and managing High Performance teams and facilitating a team approach to achieving organizational objectives, increase productivity and enhance team morale.
- Holistic and analytical thinking that promotes root-cause problem solving.
TECHNOLOGIES MANAGED
Hardware: Cisco 7206, 7204VXR, 3600, 2800, 2600 series Routers, Cisco Intrusion Detection Systems IDS , Cisco Secure PIX, Cisco Adaptive Security Appliance ASA 5500, Juniper 6600 Series SSL VPN devices and Palo Alto Next Generation Firewalls including Imperva Web Application Firewalls WAF and MultiTech firewalls and proxy servers, Cisco VPN 3000/5000 Concentrators, ISA/ISM VPN Router Modules, Cisco Catalyst C6500, C4500, C3700, C2900, C3500 switches, CSMARS appliance, F5 Load-Balancers, Riverbed SteelHead WAN Optimizers, Infoblox IPAM/DNS, 3COM and Cabletron Switches, Checkpoint Edge Boxes S and X series, Nortel Switches, Tandberg Video-over-IP hardware solution, Alcatel 4300 Series Wireless Switches and Access points. Software: Windows OS, Red Hat Linux 6.X working knowledge , Oracle, .Net Framework, VMWare Infrastructure, Cisco's Firewall IOS and Cisco Routers and Switches, IOS/CatOS and MS Office, Visio, Cisco Host Intrusion Prevention solution CSA , Sophos AV, Palo Alto Networks PanOS. LAN/WAN Protocols/Media: Ethernet, Fast/Gigabit Ethernet, Fast Ether/Giga-Channel, Token Ring/IEEE 802.5, VLANs, FDDI, Frame Relay, HSRP/VRRP, RIP, IGRP, EIGRP, OSPF, BGP4, DNS/WINS, BOOTP/DHCP, TCP/IP, UDP Telnet, SNMP/RMON, VOIP, TACACS /RADUIS, FTP, TFTP, VTP, Spanning tree, NETBEUI/NETBIOS, HDLC/SDLC, L2TP/PPTP/MPPE, IPSEC/ISAKMP, Multi-layer routing/switching, Analog/DDS 56K, fractional T1, T1, T3. Frame Relay, digital leased lines, PRI circuits, cable and XDSL lines Management Tools/Test Equipment: HP OpenView Network Node Manager, MRTG Graphing and Trending tools, NT Site Manager, Cisco Works Resource Manager Essentials , Cisco Secure Access Control System CSACS v2.6 TACACS /RADIUS , Cisco Secure Policy Manager, Cisco Secure VPN Client, Cisco Resource Manager, Network General Sniffer and, KS-Soft Host Monitor and Solar Winds Orion NPM, NTA, Virtualization, Storage and APM , IPSwitch Network monitoring software.
PROFESSIONAL EXPERIENCE
Chief Security and Network Architect
Confidential
- Oversees and responsible for managing and maintaining the Agency's Citywide IT Network infrastructure and to ensure optimum delivery of services and operation of all Network systems and Data Centers Central, Site and DR .
- Project Management Agency lead on all Infrastructure projects and Portfolio triage and management. A few notables are mentioned below:
- Previous: Agency Lead Project Manager for 311 Heat Hot Water Complaints Submission Automation Project Project was delivered on-time and under budget. Project won the CityWide award for implementation and collaboration.
- Recent: Agency Lead Project Manager for CITIServ Consolidation Directive 140 Project was completed ahead of schedule. 500M in expected cost saving citywide over the next 5yrs.
- Vendor selection and management.
- Supervised and trained staff in Production network configurations, management and deployment. Also trained staff in Disaster Recovery and Crisis Management. Re-designed and implemented the upgrade of the Agency's Routing/Switching core backbone to the C6500 L3/L2 high performance core switches in the production data center. Also configuration and deployment of C4500 switches as upgrades to C4000 series access switches.
- Deployed and configured different network monitoring/trending tools such as CiscoWorks, Ipswich WhatsupGold, and SolarWinds Orion suite of Network Management Solutions for effective and proactive network management.
- Responsible for the redesign and overall management of agency-wide network and security infrastructure, which involved managing Routers, switches, Firewall, IPS, IDS etc.
- Design, configuration, deployment and management of HPD's Video-over-IP devices for Video Conferencing and distance learning sessions using the industry standard TANDBERG devices and protocols the TANDBERG Border Controllers Gatekeepers and MXP 1000 end devices etc .
- Responsible for the Designing, Configuration Piloting and deployment of HPD's Wireless Network using Alcatel OAW Wireless Switches and thin Access Points APs .
- Design and implementation of the following:
- HPD's VoIP solution using NEC UCS VoIP Gateways
- Application Performance Monitoring APM and Identity and Access Management IAM using Orion NMS.
- Network Security strategies as part of an Enterprise Security initiative which includes Project Feasibility and Planning stage :
- Network Admission Control NAC solution.
- Host Intrusion Prevention Solution HIPS
- Network Intrusion Prevention Solution NIPS
- Security Event Information Management SEIM system
Senior Network and Security Administrator
Confidential
- Responsible for managing and maintaining the Bank's Global IT network infrastructure and to ensure optimum delivery of services and operation of all systems and Data Centers. Managed and Supervised the Technology Support Group TSU which consists of 10 IT engineers, assigning and monitoring daily workflow, including quarterly appraisals.
- Trained staff in Production network configurations, management and deployment. Also trained staff in Disaster Recovery and Crisis Management. Designed and implemented core backbone between 1st, 2nd, 4th and Ground floor corporate offices and 3rd floor production data center. Designed and implemented Fiber Optic core backbone between the Corporate Head Office and the Victoria Island Off-site Office production Data Centers to provide Online Data Redundancy and HP SAN Storage Area Network Solution.
- Deployed and configured different network monitoring/trending tools such as HP OpenView Network Node Manager 6.22, MRTG, Cisco Resource Manager Essentials , Cisco Secure Policy Manager CSPM , Cisco Works with WhatsupGold, PIX Firewall Device Manager for effective and proactive network management.
- Redesigned and managed overall network security infrastructure, which involved managing 2 Cisco Secure PIX Firewalls in active fail over , 2 Cisco NetRanger Intrusion Detection Systems IDS and the Cisco 3000 VPN Concentrator. Deployed/managed Cisco Secure Access Control Systems for AAA/network device access via TACACS and remote access user authentication via RADIUS . Implemented full Internet redundancy by deploying multiple redundant Internet connections and configuring appropriate BGP failover/routing policies on the Bank's backbone/Internet routers.
- Redesigned and built Modern Standardized Data Center at the Bank's Head Office. Deliverables included drawing out Network topology diagram on Visio, supervising cabling contractors on the cables/patch panel layout, deploying new core switches Catalyst 6506 and extending 2Gbps backbone to the Off-site location via multiple fiber strands.
- Implemented migration on corporate network from public to private IP addressing scheme, RIP2 to EIGRP/OSPF routing protocols, single core router to multiple MSFC multi-layer switch cards for scalability and redundancy. Also implemented VPN connectivity IPSEC/3DES encryption to 39 Remote offices all over the country. Also maintained remote access via VSAT, Dial-Up on Demand and Frame Relay hub and spoke routers for Regional offices and large branches.
- Worked with various telecomm providers to ensure redundant voice and data WAN links between offices and data centers. Implemented VOFR Voice-Over Frame Relay connectivity between the Head Office Lagos and 10 remote offices. Other tasks included attending daily IT group meetings, liaising and providing assistance to other internal groups within the company including customer service, systems operations, Desktop Support. Also assisted in the company-wide deployment of Windows 2000 Active Directory Services and served as an administrator for Windows NT/2000.
Senior Network Operations Engineer
Confidential
- Provided IT Network LAN/WAN Design, Implementation, Deployment and Maintenance consulting services to a wide array of clientele ranging from Financial Services Banks, Insurance and Brokerage firms to Multinational Energy Companies Like Shell and Halliburton where network availability and reliability must meet the strictest of standards. Conducted User Acceptance Tests UART and trained users on first-level network support.
- Provided 2nd and 3rd level tech support for nationwide LAN/WAN infrastructure including VOIP Solutions using network management tools for problem detection and resolution for various clients.
- Managed and configure Cisco 3600 series, 4000 series, 2600 series routers running multiple concurrent protocols, Catalyst 5xxx, 3xxx and 29xx switches, MultiTech VOIP, MultiTech Complete 4000 Remote Access servers, Routers and Proxy Server Solutions for clients between their Central Sites and other remote locations.
- Troubleshoot communication circuits e.g. dial lines, VSAT, Leased Line circuits to maintain WAN connectivity and reporting outages to respective telecom/local carrier e.g. NITEL.
- Windows 95 / application software installation support on Client workstations in a TCP/IP network and provided technical support for users.
- Installation/ testing of UTP LAN cabling, LAN Ethernet cards, SCSI I/O controller cards etc.