Sr. Network Security Analyst Resume
3.00/5 (Submit Your Rating)
PROFESSIONAL EXPERIENCE
Sr. Network Security Analyst
Confidential
Responsibilities:
- Assistance in Checkpoint and Cisco ASA to Palo Alto firewall migrations.
- Migration and implementation of perimeter SSL Decryption + Web security from Cisco IronPort to Palo Alto
- Management and upkeep of PulseSecure Client and Contractor MFA VPN
- Successful Migration from CA OTP MFA to Azure/Microsoft MFA, Radius configuration
- Successfully completed PulseSecure Administrative Training
- Coordination, documentation and configuration of Gas/SCADA network resiliency implementations
- Administration of 30+ Palo Alto Network Security Devices, 15 Checkpoint Devices and 15 Phoenix Contact mGuard SCADA firewalls
- Administration of IPSec VPNs between Phoenix MGuard devices and Cisco ASA
- Upkeep and Policy Administration of PaloAlto infrastructure via Panarama
- Streamlined configuration of Panorama managed devices via template stacking and
- Conversion of mGuard devices to Palo Alto 220R firewalls
- Assistance in documentation/realization of segmentation project.
- Management of IP Schemas via Infoblox
- Assistance in Security Risk Assessments and Reviews
- Engaged troubleshooting with Network Services and SysAdmins for determination of change necessity (Routing, port allowance, deliberation based on session end reason, webex screen share)
- Project assessment and development with team members via ServiceNow
- Change Management Assessment via Service now
- System analysis via Pen/Vol (DID) and WebScan (HP) utilities
- Documentation and import/export of keys into AMI/Itron meter environment
Sr. Network Engineer
Confidential
Responsibilities:
- Management and Configuration of 5x Dell R710 Servers + Dell FX2 Blade server.
- Administration of 100+ Servers and VM’s
- Creation of new virtual servers (Ubuntu Linux LTS 12 and Windows Server 2008/2012 R2)
- Administration of VPNs between Home, DR site and 4 remote/satellite offices
- Administration of client VPN connections for remote users via Sonicwall Global VPN client and PaloAlto GlobalProtect client
- Upkeep of PaloAlto infrastructure via Panarama
- Windows 2008/2012 infrastructure administration including Active directory and files share services
- Maintenance and upkeep of 60+ Catalyst 2960 Switches, 15+ 3850 Switches (with 2 acting as core)
- Routing and infrastructure strategy for best failover and uptime.
- Implementation and turn - up of IBGP based MPLS between all sites, including advertisement of routes, upkeep of tables, etc.
- End user support via bomgar, gotomeeting and teamviewer.
- New site planning and turnup for new office including standardization of equipment, PoC and execution
- Conversion from Sonicwall E5500 firewalls to PaloAlto PA-5050 platform, including all NAT translation, external authentication policies, security and NAT and OSPF areas between firewall and core.
- Documentation of internal programs, basic procedures for user end clients such as Outlook and VPN access as well as Disaster Recovery procedures, Site ‘run books’ and project scoping
- Oncall for 24/7 operation supporting 650+ end users.
- Upkeep and Implementation of Mimecast mail security product/solution and deployment of end user client
Network Administrator
Confidential
Responsibilities:
- Microsoft Exchange 2007 CCR cluster upkeep/maintenance
- Management and Configuration of 4x IBM server VMWare VCenter Cluster, including High Availability and DRS setup and orchestration.
- Administration of 30+ Servers and VM’s
- Creation of new virtual servers (Ubuntu Linux LTS 12 and Windows Server 2008/2012)
- Administration of VPNs between Home and DR site, maintain VPNs between Parent company (Norway) and clientele for LDM and satellite data
- Administration of client VPN connections for remote users
- Windows 2003/2008/2012 infrastructure administration including Active directory and files share services
- Managed conversion of physical infrastructure to VMCluster via tandem transitioning, in place virtualization and migration from individual ESXi hosts
- Maintenance and upkeep of 5x Catalyst 3650 Switches, 2x Catalyst 3750 (DMZ switches), Cisco CSS (content management switch/load balancer) and Cisco ASA 5505 (dual, w/ failover between units + ISP trackbased failover)
- Maintenance and upkeep of Bacula (tape based), Symantec BESR (hard disk) backups and implementation.
- End user support via Teamviewer, VNC or deskside
- Configuration and upkeep of IBM Storewize v7000 SAN unit (10 TB, connection via Fibre Channel)
- Configuration and Maintenance Fibre Channel switch (IBM Brocade series)
- Configuration of Riverbed 775 Wan optimizer for VPN traffic
- Documentation of internal programs, basic procedures for user end clients such as Outlook and VPN access as well as Disaster Recovery procedures.
- Oncall for 24/7 operation supporting 65+ end users.
Server & Network Professional Services Manager
Confidential
Responsibilities:
- Microsoft Exchange 2003SBS/ 2003/2007/2010 transitioning, migration, installation and configuration
- Multiple spam solution experience (Barracuda, Sonicwall, Postini)
- Managed and performed 700+ mailbox migration from Cloud to Internal Exchange 2010 environment running in a functioning high availability w/ redundant CAS, Hub and Mailbox servers set up in a Database Availability Group.
- Additionally have performed many cloud migrations outbound to Office365 w/ upkeep
- Supporting 3rd party and custom created software Server and Client side.
- Extensive hands on experience with Hyper-V and ESXi technologies, including: existing server virtualization, high availability setup (VMotion), and maintenance/upgrading
- Server build/configure from ground up (iLO configuration, pre-install setup)
- Enterprise Level AV rollout and administration (Trend Micro, Kaspersky, Symantec)
- Internal desk side support of Windows 7/XP/Vista machines, including script deployment, setup of phones & mobile peripherals, desktop clients
- Configuration of KEMP load balancers w/ SSL Offloading (LM2200/2600 and the Exchange line)
- Cisco Router/Firewall configuration and modification in addition to
- VPN Creation and maintenance (Sonicwall and Cisco ASA primarily)
- Cisco WLAN controller maintenance and configuration (adding new access points, QOS Policy, Grouping, etc.)
- Accustomed to larger user bases (100+ and up)
- Backup/Fault Tolerance implementation (BESR and Veritas primarily)
- ISCSI SAN configuration and connection to ESXi and Windows Servers (03/08/12)
- Project management experience (documentation, scheduling and scoping)
- Documented experimentations with Server 8/2012
- Remote management of offsite servers and user machines via Kaseya, TeamViewer, LogMeIn, VNC and join.me when necessary.
- 24/7 Oncall with quick and efficient follow up support
- Documentation of internal processes and procedures which were integrated into company guidelines
- Management of external DNS solutions via GoDaddy, Network Solutions, domain.com
- SSL Certificate upkeep for Exchange and Web servers.
- Desktop support of Win8, Win7, XP and prior as well as most of the recent builds of MacOS X