Accomplished Forensic Analyst with extensive experience in digital forensics, cyber investigations, and incident response. IT Manager and CFCE certified professional with over 23 years of IT and leadership background, complemented by 9 years in digital forensics and over 4 years in law enforcement. Demonstrated expertise in spearheading intricate forensic investigations and applying advanced analytical methods to reveal crucial digital evidence essential for legal proceedings.
Overview
25
25
years of professional experience
Work History
IT Manager, Digital Forensics Investigator, Sworn Deputy
Teton County Sheriff’s Office
01.2016 - Current
Forensic Duties - Investigate and perform in-depth forensic extraction and analyses for various crimes including but not limited to the online sexual exploitation of children, fraud, burglary, homicide, etc. Cell phone, hard drive, USB flash drive, and computer forensic imaging and analysis. Writing warrants and submitting them to the proper organizations and then analyzing the data returned for evidence. Involved with residential and business search warrants and the collection of physical devices for forensic imaging and analysis. Follow proper chain of custody protocols. Perform ICAC (Internet Crimes Against Children) investigations from initial tip to prosecution of suspect, and testifying in court as to the evidence found and how it was found. Write detailed reports on the processes taken during the investigation from beginning to end. Assist outside agencies by conducting forensic extraction and analysis on digital devices and recovering critical evidence. ICAC affiliate with Wyoming DCI (Department of Criminal Investigation).
IT Duties - Manage IT Department with 3 employees. Manage both large scale and small-scale projects from analysis to implementation. Yearly budget creation for the IT department of approximately $300,000. Responsible for infrastructure, virtual machine environment, camera and door access control systems, 911 call system, CAD and RMS systems, network infrastructure (routers, switches, and firewalls), vehicle computer systems and cameras, VPN, physical servers, O365 management. Active Directory, Group Policy and DNS administrator. Assist in planning a course of action for Disaster Recovery implementation. Cybersecurity protocols and physical security of the Sheriff’s Office.
Systems Administrator
Johnson Graduate School of Management at Cornell
01.2010 - 01.2016
Senior systems administrator with duties that range from managing the IT department to server infrastructure administration and project management.
Responsibilities include: Assume Associate Director responsibilities when he is out of office or unavailable. Manage department infrastructure including physical servers, virtual servers, software deployment and all utilities used by Johnson Graduate School of Management. Active Directory, Group Policy and DNS administrator. Develop and manage systems related projects from needs analysis and design to implementation. Successfully configured and managed SCCM resulting in increased productivity through automatic “Zero Touch” software deployment and improved reporting tools. Administration of file servers via DFS. Administration of print servers. Administration of all aspects pertaining to VMware ESX, VMware Server, VMware Infrastructure Client. Use various scripting methods to successfully automate processes. Administration of Windows Update Server and Microsoft Forefront Antivirus server. Installing, configuring, and administration of servers. Research new technologies and recommend approaches appropriate to meeting project plans. Technical Writing - Documentation of troubleshooting calls, installation, etc. Research, evaluate and recommend server hardware, software and operating system configurations. Implement security measures including windows firewall, IPSEC security rules, hardware firewall and Cornell/Johnson ACL configuration. Securing of confidential data. Assist in planning a course of action for Disaster Recovery implementation. Administration of SCOM monitoring software. Manage Johnson’s Sonicwall firewalls.
Key Projects Managed: Fileserver infrastructure – Upgrade from single Windows 2003 server to multiple Windows 2012 servers utilizing DFS. Microsoft SCCM – Implementation of Microsoft System Center Configuration Manager 2007 and client rollout. Upgrade of system and 300+ clients to SCCM 2012 within last 6 months. This resulted in all clients and servers of Johnson Graduate School of Management to be in a managed desktop environment. Microsoft SCOM – Implementation of Microsoft System Center Operations Manager for monitoring of production systems. Domain Controllers – Upgrade of Domain Controllers to Windows Server 2012. Software Deployment – Multiple software deployments to 300+ clients utilizing Windows SCCM. These include Office 2010, Adobe Acrobat Pro, Salesforce for Outlook, etc. Web Server – Migration of physical web and database servers to virtual machines. This resulted in a more managed and stable environment while taking full advantage of VMWare’s high availability functionality.
Senior Systems Administrator
Greek Peak Mountain Resort
01.2009 - 01.2010
Senior systems administrator with duties that ranged from core infrastructure administration and maintenance to project management and supervision of consultants and part time IT employees.
Responsibilities included: Manage corporate infrastructure including servers, switches, routers, operating systems, virtual machines, desktop hardware, and all utilities used by Greek Peak Mountain Resort. Active Directory, Group Policy and DNS administrator. Administration of file and print servers. Successfully planned, designed, and implemented VMware environment including VMWare ESX, VMware Server, VMware Infrastructure Client and VMware View. Automation of processes using various scripting methods. Administration of Windows Update Server and Viper Antivirus Server. Installing, configuring, and administration of servers and workstations. Research new technologies and recommend approaches appropriate to meeting project plans. Technical Writing - Documentation of troubleshooting calls, inventory, warranties, installation, etc. Research, evaluate and recommend server hardware, software and operating system configurations. Maintain hardware and software inventory while assuring compliance of all software licensing. Implement security measures including windows firewall, securing of confidential data, virus and spyware removal. Assist in planning a course of action for Disaster Recovery implementation. Administration of thin client hardware and management utilities. Successful implementation of Big Brother monitoring software and Untangle web filter resulting in a 70% decrease in computer infections, SPAM, and unauthorized web browsing. HP storage implementation and management. Configuration/administration and project lead for implementation of Proxim wireless quickbridges. Supervise contract workers for VOIP and network setup/configuration. Design and supervision of entire infrastructure setup.
Key Projects Managed: New domain infrastructure implementation. VMWare – New virtual server and client environment which resulted in 60% server virtualization, 100% client virtualization for newly constructed hotel resort, and 50% client virtualization for ski resort. VoIP – Upgrade of 90% of ski resort and 100% of hotel resort from simple telephone system to VoIP using Adtran hardware. VMView – Design and implementation of VMWare’s VMView which allowed for connection through Wyse thin clients and web browsers. This allowed for staff to connect to their virtual desktop from anywhere in the world using just their web browser. RFID – Implementation of RFID technology in both resorts. This was used for vending machines, room doors, arcade charges, waterpark access, etc. Point of Sale – Rollout of new POS system for ski and hotel resort which resulted in guests being able to charge to their rooms from either resort using RFID wrist bands. Wireless Quickbridges – Researched and implemented wireless solution for multiple on site buildings. This allowed for key departments to utilize new VoIP phone system and fiber connected internet connection.
LAN Administrator
Zoot Enterprises
01.2007 - 01.2009
Senior systems administrator with duties that ranged from core infrastructure administration to stability and leadership.
Responsibilities included: Manage corporate infrastructure including servers, operating systems, virtual machines, desktop hardware, VPN, and all utilities used by Zoot Enterprises. Administration of domain controllers, Active Directory, Group Policy, file and print servers. Administration of all aspects pertaining to Windows System Center Configuration Manager. Automation of processes using various scripting methods. Functioned in a leadership/supervisory role to junior system administrator and helpdesk staff for project management and implementation. Imaging of new machines and data migration from old to new. Administration of Windows Update Server and McAfee Antivirus Server. Installing, configuring, and administration of servers and workstations. Research new technologies and recommend approaches appropriate to meeting project plans. Assist and maintain VPN connections of offsite and remote employees. Technical Writing - Documentation of troubleshooting calls (using Jira ticket system), inventory, warranties, installation, etc. Support users in remote locations over VPN. Purchasing of equipment and software. Research, evaluate and recommend server hardware, software and operating system configurations. Maintain hardware and software inventory while assuring compliance of all software licensing. Implement security measures including windows firewall, securing of confidential data, virus and spyware removal. Assist in planning a course of action for Disaster Recovery implementation. VMware configuration and installation. Corporate policy creation and enforcement of policies.
Assistant Director of Computer Services
Cornell University Athletics
01.2003 - 01.2007
Assistant Director with duties ranging from desktop deployment and server administration to management and supervision of student employees.
Responsibilities included: Support local area network, servers, operating systems, desktop hardware, and software applications used by Athletic and Physical Education Department. Installation of new machines and data migration from old to new. Installing, configuring, and administration of servers and workstations on various platforms. Research new technologies and recommend approaches appropriate to meeting project plans. Assist and maintain DSL connections at off-campus sites and other remote access connections. Technical Writing - Documentation of troubleshooting calls, inventory, warranties, installation, etc. Support users in remote locations. Assist in budget planning and purchasing of equipment and software. Research, evaluate and recommend server hardware, software and operating system configurations. Database creation and troubleshooting. Maintain inventory and diagrams of department LANs and assist in resolving network related problems. Assist in supervision of student employees. Implement security measures including firewalls (software and hardware), securing of confidential data, virus and spyware removal. Configure and support mobile devices (Palm and Windows based).
Lab Assistant
Carteret Community College
01.2002 - 01.2003
Responsibilities included: Assist students with computer and software related issues. Securing computer lab and five classrooms during working hours. Made sure hardware and software was in proper working order. Taught students how to use varying operating systems and software packages.
Co-op Work Experience
Carteret Craven Electric Cooperative
01.2001 - 01.2002
Responsibilities included: Networking computers and printers, formatting of PC’s and installing operating systems. Assist employees with computer and software related issues. Made sure computers were in proper working order. Installing software, service packs, and updates. Computer rebuilds. Creating logical and physical network diagrams for entire company using Microsoft Visio.
Education
Computer Information Systems -
Carteret Community College
Morehead City, NC
05.2003
Computer Science -
Tompkins Cortland Community College
Dryden, NY
01.2000
Skills
FTK Imager
Forensic Explorer
Paladin
Hex editor
Powershell and batch scripting
OS Forensics
Memory Capture
Cellebrite UFED/Premium
Cellebrite Physical Analyzer
Evidence Collection
Autopsy Forensics
Certificates And Training
CFCE (Certified Forensic Computer Examiner)
Undercover Chat - Certificate
Undercover Torrent Training- Certificate
CIT (Crisis Intervention Training) - Certificate
ICAC (Internet Crimes Against Children) Investigations – Certificate
Public Safety Telecommunications Operator / CTO at Saint John’s County Sheriff’s OfficePublic Safety Telecommunications Operator / CTO at Saint John’s County Sheriff’s Office