Sr. Information Protection Specialist Resume Profile
Mt Laurel, NJ
Security Architect
Results-oriented IT Security Policy and Systems Architect with more than 20 years of IT experience. 16 Years invested in architecture, design, and management of secure enterprise level systems based on industry best practices. Expert developing policies and procedures from the ground level. Tech-savvy advocate for continuing systems improvements.
Areas of Expertise
|
|
Technical Proficiencies
Operating Systems: | Red Hat, MS Windows NT/2000/XP/W7/2003/2008, Novell eDirectory |
Identity Management: | Microsoft Active Directory, Novell Identity Management |
Firewall / IPS: | Checkpoint Firewall, Juniper Firewall, IBM SiteProtector, Checkpoint IPS |
PKI / Multifactor Auth: | RSA Certificate Authority, RSA Authentication Manager SecureID |
Encryption: | Symantec Endpoint Encryption, Checkpoint Pointsec, Vormetric |
Proxy / URL Filtering: | Bluecoat Proxy, Websense, Surfcontrol, Cisco Ironport |
Scripting Languages: | PERL, VBScript, Powershell |
Firewall Auditing: | Firemon |
DLP: | CodeGreen |
Database: | Microsoft SQL, Microsoft Access |
AntiVirus: | Symantec Endpoint Protection, McAfee |
Vulnerability Scanning: | Nessus, Nmap, IBM Internet Scanner |
Other: | Cyberark Passwordvault, VMWare, Microsoft Office |
Professional Experience
Confidential
Security Architect
Sr. Information Protection Specialist
Design system and network infrastructure in compliance with security policies and procedures. Identify vulnerabilities and opportunities for improvement. Serve as the in house security subject matter expert to project teams for new architecture and design initiatives. Conduct systems audits for new and existing technologies to ensure appropriate levels of security. Support, administer, and maintain enterprise security tools including firewalls, sensors, servers, scanners, logging tools, user and group permissions tools, antivirus programs, and web content management systems. Provide rapid response and remediation to incursions and threats. Train and mentor users and technical team members in security procedures and policies.
Key Achievements:
- Installed and configured NetIQ Security Manager to enable real time alerting, forensic analysis, and log consolidation of critical Windows and UNIX Server events.
- Implemented ISS SiteProtector including network sensors, server sensors, and internet scanners that provided real time analysis and correlation of events for Internet and partner DMZ environments.
- Implemented Cyberark Passwordvault to secure passwords across the network including Windows administrator, Unix root and service accounts. Eliminated hardcoded application passwords using the Cyberark API.
- Installed and managed the NetIQ Directory Resource Administration System which provided a delegated administration model and reduced the number of administrators required.
- Represented Information Protection and served as the technical lead for integrating smaller companies systems into the corporate network and server environment after acquisition.
- Rolled out Windows authentication functionality to all UNIX servers using Vintela and Centrify ensuring compliance with applicable security regulations including SOX and GLBA by centralizing login and password controls.
- Implemented corporate wide laptop encryption.
- Key player in Identity Management migration from Sun One LDAP to Novell Edirectory, working on all aspects of approach, configuration and administration.
- Created scripts to automate several manual tasks including dormant account processing across B2E, B2B and B2C directories.
- Developed best practiced based hardening procedures with supporting documentation for the Windows Server platform.
- Conducted vulnerability analyses and security audits on outsourced vendors to ensure compliance with policy requirements, laws, and best practices.
- Earned two awards for Customer Service Excellence.
Confidential
IT Security Engineer
Managed Checkpoint Firewall infrastructure, the corporate disaster recovery program, and email and web security in a mixed Windows, Novell, and AS/400 environment. Installed, configured, maintained, and enhanced the Windows Server environment consisting of mail, file, print, and application servers. Trained users and IT staff in new policies and procedures.
Key Achievements:
- Advocated the necessity of a strong security policy to senior management. Developed corporate policies and standards and implemented practices across the enterprise.
- Served as key resource for creating the Information Security Department.
- Developed disaster recovery policy and procedure documentation including application and server recovery/rebuild practices.
- Implemented core security technologies including the URL Filtering solution WebSense, Symantec Mail Security for SMTP, and GFI MailEssentials.
- Deployed the company's first firewalled high-speed internet connection.
- Created a web hosting environment that eliminated reliance on an external service provider.
- Built and implement the Windows 2000 server environment. Migrated the Novell 5.0 network to Windows 2000.