Principal Architect Resume
SUMMARY:
- Subject Matter Expert (SME) with nine years of experience in configuration, design, implementation, and maintenance of Windows and Solaris servers and desktops.
- Over 10 years of experience with Confidential including ePO, HIPS, DLP, VSE/VSEL, PA, ACCM, and Rogue System Detection.
- Extensive experience working with Confidential ePO 4.6/5.3, Solaris (oracle) 9, 10, and 11; Windows Server 2003 /2008/2012 R2 for DNS, DCHP, exchange, Active Directory, SCCM.
- Created testing station to allow for upgrades of servers and systems, to test functionality and ensure customers would be able to access their applications and data.
- Ensures user accounts were in correct groups to allow access to share drives, or profiles if using a thin client.
- Extensive experience with desktop configuration builds and maintenance; Windows XP, 7, 8, and 10 for handheld devices.
TECHNICAL SKILLS:
Databases: Oracle 10/11g/12c, Sybase, SQL 2014
Operating Systems: Solaris 9/10/11, Windows Server 2003, 2008 R2, 2012R2, VMWare, ESXi
Hardware: Sun SPARC, Sun V 440, Sun, Oracle T - 3, Dell Power Edge 2950
Applications: Confidential USAF Asset Configuration Compliance Monitor (ACCM), Confidential Agent(MA), Data Loss Prevention(DLP),Virus Scan Enterprise (VSE), Virus Scan Enterprise Linux (VSEL),Host Intrusion Prevention System (HIPS), Policy Auditor(PA)ePolicy Orchestrator (ePO)4.6/5.3, SuperAgent Distributed Repository (SADR), Agent Handler (AH), Rouge System Detection (RSD), and Advance Threat Defense (ATD)) Confidential Endpoint Security(ENS), Datalayer exchange (DXL),, Oracle 10g/11g/12c, Exchange, HP Asset manager, Cisco Network Assistant, Wireshark, Remedy, Active Directory, Assured Compliance Assessment Solution (ACAS), Retina, Oracle WebLogic, Oracle IDM, Oracle IAM
PROFESSIONAL EXPERIENCE:
Confidential
Principal Architect
Responsibilities:
- Responsible for creating and testing hotfixes, new products, or emergency fixes before implementing into Ops
- Preconfigured ePO, SQL, SADR, and AH for deployment to 6 remote sites to reduce installation time requirement
- Designed and implemented a vulnerability scanner solution to each site to remediate vulnerabilities discovered
- Created test plan for disaster recovery and fail over for Continuity of Operations in the event of a catastrophe
- Provide lab testing/Federated testing and development for problem resolution, new product reporting, or technical functionality.
- Performs Vulnerability scans using ACAS, completes remediation of IAVM’s and items identified.
- Coordinated development of an enterprise system architecture to support assets across the LandWarNet and an architecture that will support new module functionality, enhanced features, system stability, and enterprise NetOps requirements to include system management and data rollup of asset data for enterprise reporting
- Constructed the deployment, installation, configuration, testing, and remediation for operational and IA compliance, as well as the documentation of the changes to the current ePO, MS SQL and/or associated servers, interconnecting hardware and the respective software in accordance with the SDP and Confidential architectural changes required
- Provide engineering analysis, design and support for firewalls, routers, networks and operating systems. Performs vulnerability scans using vendor utility tools.
- Monitors security audit and intrusion detection system logs for system and network anomalies
- Perform product evaluations, recommends and implements products/services for network security.
- Validates and tests security architecture and design solutions to produce detailed engineering specifications with recommended vendor technologies
Confidential, Aurora, CO
Sr. UNIX System Engineer
Responsibilities:
- Monitor and control the storage of data on disk to ensure efficient performance and space utilization
- Troubleshoot, isolate and resolve complex systems issues including: system failures, conflicts and slow-downs caused by hardware, servers, operating systems, data systems, software, connectivity issues, viruses and malicious code.
- Review vendor proposals, contracts, system hardware and software configurations, and maintenance support agreements for technical accuracy, and provide recommendations.
- Design and Implement first testing environment for software development and software upgrade process documentation.
- Install Solaris 11 virtual clients using Oracle VM VirtualBox, to reduce footprint of required hardware for cost saving efficiency.
- Plan, configure, test, implement, troubleshoot and support servers, storage and software on 42 Physical servers with Solaris 10/11, Oracle Database 11g/12c, Oracle WebLogic 11g/12c, Windows Server 2012 R2 Enterprise(Active Directory and DNS), and Linux Red Hat
- Perform backups of all systems and workstations, store them in central location for ease of accessibility and security
- Coordinated LDAP replication to Geographically separated sites to ensure user account control was implemented
- Configured windows application Pgina for user access to non-domain windows systems
- Designed upgrade plan from Solaris 10 to Solaris 11 using a Solaris Automated Installer (AI) server for reduced impact time of upgrades
Confidential, NE
Systems Administrator
Responsibilities:
- Administered VLAN segregations, monitors Routers and switches to ensure proper communications between sites
- Installed, configured, integrated, and maintained Confidential components and deployment of Agent modules and approved policies.
- Performed troubleshooting of Confidential components and applications when ePO policies are preventing application operations.
- Maintained the latest Confidential configuration to address known exploits using the Host Intrusion Prevention System (HIPS).
- Developed automated reporting dashboards within the existing ePO system to provide near real-time reporting of computer system compliance information and maintain overall visibility for all connected assets.
- Monitored the Confidential for alerts, assess and modify the Confidential operational parameters (filters, signatures, rules, etc.) when requested.
- Conducted analysis of malicious events and known exploits/vulnerabilities for the creation of custom signature rule sets for the accompanying modules, as necessary.
- Provided subject matter expertise for applying STIGs and other Confidential operational requirements and configuration guidelines to the ePO security suite.
- Led three man team upgraded for Confidential ePO from version 4.6 to version 5.3
- Created Scan policies for VSE/VSEL to include/exclude certain files/folders to perform scans more efficiently.
- Created rules for DLP for system operating systems, as well as based on user account
- Configured Rogue Agents (RA) and created a streamline process to ensure systems on the network were supposed to be there.
- Performed regular required reporting, monitor applicable security resources for updated requirements and compliance directions including higher DoD/Army Task Orders.
- Participated with Cyber Team and Information Assurance personnel in reviewing current intelligence for relevant threats and assist in development of appropriate actions/response.
Confidential, CA
SCCM Management/DRA Admin/Data Center Manager
Responsibilities:
- Performed network admin duties for Edwards AFB No secure/Secure Internet Protocol Routed Network (SIPR)
- Created and deleted user and computer accounts, manages clients' profiles and maintains Group Policy Objects
- Deployed critical upgrades to 180 workstations in conformance with AFMC Time Compliance Network Orders
- Managed Microsoft Windows Server 2003/2008 for DNS, DHCP, Active Directory, and Mail exchange services
- Managed upgrade of 450 client systems from Microsoft Windows XP/Vista to Windows 7
- Created power shell scripts for patching 7K+ machines in prep for Base CCRI simultaneously
- Created solution for remote management of systems to ensure 24/7 patching was established using PowerShell and psexec
- Mastered scanning abilities using ACAS, to ensure security of desktops and servers
- Constructed Scripts and webpage front end for users using Java, XML(for configuration), and HTML
- Maintained SQL servers using Solaris WebLogic servers for data access of applications.
- Maintained Live data sync between Onsite and offsite SQL server for remote users
- Administered HP Computers, Printers, and Software licenses using HP Asset manager.
- Created Inventory Reports to present to leadership to ensure our items were properly licensed and updated
- Used HP Asset Manager to ensure compliance of software was fully utilized
Environment: Windows Server 2003/2008, DNS, DHCP, Active Directory, SQL Servers, WebLogic, Java, XML, HTML, HP Asset Manager
Confidential, CA
Database Administrator/System Engineer
Responsibilities:
- Ensured proper system load balancing on 14 physical systems/58 virtual systems
- Managed Confidential EPO server, monitored and corrected rogue clients that appeared on network
- Configured DLP for device address filter (usb/make/model, etc) and user accounts
- Created HIPS policies, and restricted access to opening of certain extensions (example .zip files)
- Managed server environment with Solaris 10 and windows server 2008r2/2012
- Created Network focal center, monitoring traffic to create network policies to protect the integrity of data and safety of users
- Remotely administered systems from home, using VPN services and putty
- Properly Logged items with Media asset management systems to ensure items would be properly accessible
- Coordinated system upgrade/consolidation to reduce power consumption of the data center
- Managed in house Openstack server to allow live time data duplications from oracle databases
- Patched Openstack server implemented real time access for users as well as allowing for offsite replication
- Constructed three SiteCore servers for service 140,000 users across the continental United States
- Provided technical support for customers accessing Microsoft Dynamic CRM 2011
- Guided customers to access outlook contacts through MS CRM and set up filter views for user to look at account information
- Managed security roles for different groups and user accounts
- Implemented data layout plan for the migration of CRM 2011 to CRM 2013
- Designed account forms to streamline a template to maximize information customers needed when dealing with an account in CRM 2011
- Resolved data end point issue, which was caused by incorrect security groups for 250 users, which restored access to over 1,000 accounts
- Configured Dynamics CRM 2011 for claims-based authentication and IFD
- Created relying party trust for CRM and configuring the claims rules on AD FS 2.0
Environment: Microsoft Windows Server 2003/2008 for DNS, DHCP, Active Directory, Microsoft Windows XP/Vista to Windows 7, HTML, Java, XML, SQL Server, Microsoft Dynamic CRM 2011, VPN, Solaris
Confidential
Windows/UNIX server Admin
Responsibilities:
- Configured/Administered Confidential for COP/I3 Windows clients Confidential Agent, VSE, DLP, HIPS, and RA
- Administered USAFE's $11M GCCS suite of 73 servers and 300 clients; ensures 24/7 C2 reliability and support oversees theater Common Operational Picture (COP) and Integrated Imagery and Intelligence (I3) C2 systems
- Ensured system uptime of 99.999%, with the availability of a hot COOP site to take over loads during times of upgrades and server maintenance
- Managed Windows 2003-2010/UNIX(Solaris 9/10) Operating Systems and C2 software on 199 PCs & 42 servers throughout USAFE
- Appointed as primary GCCS-J COP/I3 SME in support of Operation Odyssey Dawn
- Maintained two physical servers/ten virtual servers including WebLogic and oracle database servers
- Ensured automation of backups of GCCS-J Top Secret servers via Unix shell scripting and SAN administration
- Maintained Oracle 11g Database, ensured proper data replication between 4 main sites worldwide updated Confidential VirusScan Enterprise on Windows servers and workstations
- Monitored tables and data pool sizes to ensure proper efficiency of database usage
- Lead administrator for four upgrades, supervising a three-member team
- Managed WebLogic for user account attributes ties to Active Directory for single log in process
- Administered Sybase SQL database
- Constructed first ZFS Storage backup solution and central repository for software/logs
- Utilized Windows 2003-2008 Active Directory/Server admin for 300+user
Environment: Windows 2003-2010/UNIX (Solaris 9/10), Active Directory, SQL, SAN, COP, C2 systems