Security Engineer with proven expertise in Information Assurance and Risk Analysis at Bank of America. Successfully managed Cisco Firepower deployments and established comprehensive security policies. Skilled in utilizing Splunk for troubleshooting and enhancing network security. Customer-focused individual with a passion for delivering exceptional service. Strong interpersonal skills with a talent for effectively addressing concerns. Committed to improving customer satisfaction and driving positive outcomes.
Overview
30
30
years of professional experience
Work History
SECURITY ENGINEER | Cyber Security and Data Architecture & Engineering
INSIGHT GLOBAL – CISCO SYSTEMS / Bank of America
College Park
01.2014 - Current
Manage all Cisco Firepower’s deployments, firmware upgrades, image updates, replacements, and daily monitoring of the device health. Assist with policy and procedures documentation.
Handle all aspects of Public Key (PKI) Cryptography key exchange process, including but not limited to Import, Exporting, Installing and Removing Digital certificate on Cisco Routers, ASAs and Firepower’s.
Execute the maintenance window changes for multiple locations, performing troubleshooting of Cisco routing, switching, and ASA Firepowers issues.
VPN (Virtual Private Network) connection terminating within the DMZ. Enforce Operations Security, devices Security and user Authentication within the DMZ.
Manage all DMZ devices security valuations of unauthorized Access Control List (ACL) entries, creating NCD (Network Change Documents) for any approved change on devices within the DMZ and accurate Firewall access request. The use of Splunk for troubleshooting network access issues.
Worked as part of Change Control Process, responsible for Peer Reviewing and approving all Network Change Documents. Also responsible for IOS Compliancy, certification, and updates on all DMZ area devices.
Oversee the design, installation, and management of organization wide area network.
Performing security audits of VPN connections to ensure encryption standards are met and perimeter routers ACL’s are up to dated and Risk Assessment processes on DMZ devices.
Lead DMZ engineer on Project for implementing 88 new Cisco ASA Firepowers across four Data Centers successfully.
TECHNOLOGY CONSULTANT III / DATA SECURITY
HEWLETT-PACKARD / Bank of America account
College Park
01.2001 - 01.2014
Instrumental with solving problem in reference to IPsec VPN connections, IP routing issues, NAT translation issues and project scoping. Also worked with testing and certifying updated software package for routers, switches, and ASA devices.
Configure Cisco Routers, Cisco Switches and Cisco ASA devices for B2B IPsec VPN connections.
Deploy the Monitor Cisco Secure ACS for unauthorized user failed attempts, assisted the IDS and PIX firewall team in tracking down unauthorized users on network.
McAfee Data Loss Prevention (DLP) for locking down USB data port transfer on workstations. Created security procedures, security baselines and user documentation. Worked with Risk Assessment.
Manage Authentication, Authorization, and Accounting (AAA), Cisco Secure Access Control Server (ACS) and Terminal Access Controller Access-Control System (TACACS) and Active Directory.
Managed all remote Virtual Private Networks (VPN) connections for Bank of America business partners.
NETWORK SUPPORT
PHELPS DODGE CORPORATION
West Caldwell
01.1998 - 01.2001
Created company policies and procedures governing corporate security, email and Internet usage, access control, and Incident Response and the Risk Management process.
Handled all aspects of LAN administration and network security, created users, granted user rights, and set up network print servers.
Implementation of Local Area Network (LAN) in two locations. Monitored network alarms from SMTP devices, take action if needed.
SYSTEMS ANALYST/DESKTOP SUPPORT
UNITED STATES BANKRUPTCY COURT
Trenton
01.1995 - 01.1998
Chosen to lead the effort that completed the first training facility in Trenton, New Jersey for the United States Bankruptcy Court, and assisted with the installation of complex Fiber Optic runs from the US Bankruptcy Court to the US District Court’s Computer room.
Trained court staff and Judges on PC’s and new applications used by court system.
Provided LAN Network management, Desktop Support and Laptop Support and worked closely with Court Judges to provide one-on-one training for various software applications and hardware installations.
Education
Masters of Science - Information Assurance
Regis University
Denver, CO
Bachelors of Science - Network and Communications Management
DeVry University
Decatur, GA
Master Certificate - Information Security Management-Government
Villanova University
Villanova, PA
Skills
Information Assurance
Risk Analysis
Splunk
Tracert
Cisco Debugging
Packet Capture
Cisco Secure Access Control Server (ACS)
Terminal Access Controller Access-Control System (TACACS)
IPSEC
Cisco AnyConnect Client
Public Key (PKI) Cryptography key exchange process