Summary
Overview
Work History
Education
Skills
Operational Management
Applied Technical Abilities
Acquisition And Deployment
Certification
Timeline
Generic

JEFFREY LEWIS

Columbia,IL

Summary

Innovative yet traditional Senior Network Architect who provides scalable and reliable connectivity for multi-site installations. Trusted to develop well-thought-out, secure infrastructure plans for all facets of the networking infrastructure. Accomplished in managing enterprise-wide networks for large-scale operations, who can plan, implement, and continuously improve infrastructure and controls to stay on top of changing operational and security demands. Heavy emphasis on IT security compliance, and an expert in disaster recovery and business continuity planning.

Overview

22
22
years of professional experience
1
1
Certification

Work History

Sr. Network Engineer/Architect

Datotel, LLC
11.2022 - Current
  • Architected new network topology to replace existing aging hardware with redundant Cisco Nexus 9508 chassis with redundant supervisor cards, redundant Cisco Firepower Secure Firewall modules
  • Lead Architect responsible for researching and determining if Datotel's cloud services will be migrated to vendor's cloud environment
  • Lead firewall architect and engineer, working with customers who require site-to-site VPN access through Cisco Firepower, Cisco ASA, Palo Alto, Checkpoint, and Fortinet
  • Designed and implemented approximately 25 customer networks at Datotel using traditional Cisco design methodologies and best practice
  • Promptly address network hardware and software issues and network emergencies.
  • Provide real-time weather maps of our current tri-dundant Internet drain network
  • Responsible for maintaining all virtualization and storage networking platforms
  • Significant experience with compliance, which allows me to lend knowledge to others performing compliance audits to better position customers for proper security posture

Sr. Systems and Network Architect

Allsup, LLC
11.2011 - 12.2018
  • Architected complete second copy of Allsup's network in zero-disaster data center utilizing Cisco routers, switches, and firewalls with gigabit connectivity between both sites
  • Implemented Cisco UCCE/UCS solution for VoIP while ensuring QoS was configured correctly to function across Allsup's multi-site configuration
  • Successfully stopped ransomware attack by creating honeypot, which led to finding private key needed to unlock encrypted files, leading to no data loss
  • Worked with Federal Government to create VPN connectivity between Palo Alto and Cisco firewalls for access to PII securely.
  • Acted as overall IT Infrastructure architect for systems, networks, and security systems
  • Completed over 100 customer security requests for information each year and led IT in remediation of any compliance that was not up to standard
  • Utilized Nessus Tenable to perform internal and external PEN tests.

Senior Network Engineer

ClearPractice "An Essence Company"
04.2010 - 10.2011
  • Leading design and implementation of electronic medical records application hosting solution
  • Design and implementation of four-node SQL 2008 R2 Cluster using iSCSI storage
  • Design and implementation of VMware ESX/ESXi 4.x-7.x solution hosting production EMR web and application servers
  • Implementation of Exchange 2010 in virtual environment consisting of two hardware load-balanced CAS/Transport role servers and two DAG-configured mailbox role servers
  • Storage design and implementation of redundant NetApp FAS3140 SAN for primary EMR storage and NetApp FAS2020 for disaster recovery storage
  • Networking design and implementation of redundant Cisco Nexus 5020/2148 fabric extender unified networking solution
  • Assisted with designing Cisco VoIP solution and managed third-party consulting firm to appropriately implement per best practices
  • Assisted with migrating or implementing all solutions in proper data center environment where full redundancy, power protection, adequate cooling, and dehumidification existed.

Senior Solutions Architect/Senior Network and Solutions Engineer

Datotel, LLC/The Trinity Companies, LLC
11.2001 - 04.2010
  • Architected traditional core, distribution, and edge networking solutions for two facets of Datotel’s product offerings, which include two Cisco 6509 edge switches configured as VSS, two Cisco 7609 distribution routers employed for OSPF to manage internal non-Internet facing routes, and iBGP for external routing to three ASR1002 routers connected to ATT, UUNET, and Netelligent
  • Designed new Managed Services storage and virtualization network, which included redundant Cisco Nexus 5K/FEX and Redundant HP 5400 series switches
  • Designed and implemented Cisco layer 3 VoIP/Data converged network solutions to ensure QoS for Datotel's VoIP customers
  • Created and implemented traditional network designs for Datotel Regional Exchange Point to allow State of Missouri, Ameren, STARRS, and REJIS to communicate securely and rapidly during state disasters
  • Designed and implemented redundant Cisco multi-context firewall solution to provide not only L4 security but also intrusion prevention services

Education

Associate of Applied Science - Computer Networking Technology

Ranken Technical College
St. Louis, MO
05.1997

Skills

  • 27 years of advanced Cisco routing, switching, and firewall security administration
  • 27 years working with VLANs, DHCP, DNS, TCP/IP, and IP subnetting
  • 25 years architecting data center class Cisco routing and multi-context Cisco firewalls
  • 25 years of implementing QoS for Cisco/Mitel L3 VoIP networks
  • 25 years of monitoring and troubleshooting network devices with Nagios
  • 20 years of experience implementing and administering Cisco NAC
  • 17 years of architecting multi-context Cisco ASA firewall solutions
  • 15 years of IT security compliance and remediation
  • 13 years of Cisco ISE Administration experience
  • 7 years of troubleshooting/administering customer Palo Alto Firewalls
  • 5 years of administering and monitoring Cisco devices through Cisco DNA
  • Varying years of experience with troubleshooting and administering customer Checkpoint, SonicWall, WatchGuard, and Fortinet firewalls
  • Working knowledge of GitHub for automation
  • 2 years researching and testing AWS as cloud solution

Operational Management

  • A typical day requires that I act as the primary liaison for the company's information security vision via regular communications with the senior leadership, department heads, and employees
  • Constantly maintain a risk-based process for assessing and mitigating any information security risk in the infrastructure consisting of supply chain partners, vendors, consumers, and any other third parties
  • Worked closely with the technology and product departments on corporate technology development to fully secure information, computer, network, and processing systems.
  • Developed, tracked, and controlled the security service’s annual operating and capital budgets for purchasing, staffing, and operations
  • Recommended and implemented security policy and practice changes per local or federal law changes
  • Managed and contained information security incidents and events to protect corporate IT assets, intellectual property, regulated data, and the company’s or customer’s reputation
  • Monitored external threats to our environment for emerging threats and advised relevant stakeholders on the appropriate courses of action
  • Developed and oversaw effective disaster recovery policies and standards to align with the enterprise business continuity management program goals
  • Coordinated developing and implementing incident response plans and procedures to recover business-critical services during a security event; provided direction, support, and in-house consulting in these areas
  • Facilitated and supported the development of asset inventories
  • Promoted and oversaw strategic security relationships between internal resources and external entities such as vendors and partner organizations
  • Remain informed on trends and issues in cybersecurity, including current and emerging technologies and threats. Advise, counsel, and educate executive and management teams on their relative importance and organizational impact

Applied Technical Abilities

  • Exchange 2013/2016/M365 hosting solutions with up to 4500+ mailboxes
  • Design and implementation of L2, L3, stacked VoIP/data converged network infrastructures
  • Enterprise-wide boot from fiber SAN server deployments with Microsoft, VMware, and Linux operating systems, as well as NAS-backed virtualization solutions
  • Multi-tenant hosted firewall solutions from Cisco, Fortinet, Palo Alto, Checkpoint, and SonicWALL
  • ISCSI SAN design and implementation
  • Hosted VMware solutions consisting of 500+ Virtual Servers
  • Hosted VMware Horizon Virtual Desktop solution hosting 1000+ customer desktops
  • Designed and implemented electronic medical records application hosting solution, hardware, and software
  • Load-balanced web farms using either hardware or software load-balancing technologies
  • SQL Server clusters of up to 8 nodes in a production, redundant, or data warehousing setting
  • Enterprise data backup and data vaulting solutions through many local and cloud vendors
  • Proven track record for setting business financial goals for Information technology and reducing overall IT operations expenditures by implementing newer cutting-edge technologies
  • Endpoint management application expertise, monitoring thousands of customer nodes daily

Acquisition And Deployment

  • Defined and communicated plans, procedures, policies, and standards for the organization for acquiring, implementing, and operating new security systems, equipment, software, and other technologies
  • Participated in risk assessments for software and systems under consideration for purchase and made recommendations
  • Ensured that any new software and integration into company systems met stringent security requirements
  • Traditional designs have been near perfect for acquisition and deployment. This ensures that our newest team members are operating under the same guidelines and principles as those who came before
  • I have participated in several acquisitions over my career that have led me to gain a profound understanding of their moving parts and then manage them in a compartmentalized fashion

Certification

If necessary, I am willing to acquire any certifications required.

Timeline

Sr. Network Engineer/Architect

Datotel, LLC
11.2022 - Current

Sr. Systems and Network Architect

Allsup, LLC
11.2011 - 12.2018

Senior Network Engineer

ClearPractice "An Essence Company"
04.2010 - 10.2011

Senior Solutions Architect/Senior Network and Solutions Engineer

Datotel, LLC/The Trinity Companies, LLC
11.2001 - 04.2010

Associate of Applied Science - Computer Networking Technology

Ranken Technical College
JEFFREY LEWIS