Summary
Overview
Work History
Education
Skills
Certification
Work Availability
Timeline
Generic

Williams Armah

Summary

Decisive Engineering Manager highly effective at operating in dynamic, high-pressure environments. Successfully handle multiple simultaneous responsibilities while exceeding objectives and satisfying tough clients. Detail-oriented Computer Systems Engineer committed to improving system design and operations for reliable workflow management. Researches and implements budget-conscious security and encryption solutions to protect user privacy and increase overall network health. Creates easy-to-follow guidelines and troubleshooting documentation for non-technical staff.

Overview

11
11
years of professional experience
1
1
Certificate
1
1
Language

Work History

Information Infrastructure Security Risk Analyst/Engineer

Pacira Biosciences, Inc, Aerotek
Parsippany, USA
05.2019 - Current
  • Reviewed violations of computer security procedures and developed mitigation plans.
  • Monitored computer virus reports determining when to update virus protection systems.
  • Serving as the Technology Information Security Officer for 4 large portfolios with over 50 applications.
  • Coordinating with several teams to address information security concerns, helping them design solutions and follow through with implementation.
  • Acting as the single point of contact for remediating Third Party Information Security Assessment issues for 20+ vendors. Currently closed over 20 issues for 3 major resource vendors.
  • Supporting Group Information Security Officer in the project management capacity, leading, coordinating, controlling, and reporting on key initiatives within GFTS.
  • Providing strategic support for Information Security functionality. Most recently recommended a strategic application to control system IDs and entitlements that will solve two audit-identified issues as well as bring GFTS into compliance with future Pacira Biosciences policies.
  • Managed Incident Reporting, Fault Diagnosis, and problem isolation in the Massaging and Windows platform achieving an MTTR9 mean time to resolve) of 98%.
  • Collected metrics for the team's incident response performance, batch runtimes, and inventory breakdown which were used to determine team staffing levels.
  • Oversaw portfolio of risk mitigation projects required to maintain or remediate security, regulatory, and compliance policy adherence.
  • Developed a deployment framework using python for application deployments to the production and staging environments.
  • Has strong knowledge of hand-coded HTML, CSS, JavaScript & JQuery. JSON, AJAX and XML knowledge.
  • Network monitoring, Capacity, and Configuration Management. Administer and maintain network management tools. Designed Enterprise Information system schema for web applications.
  • Developed and maintained incident response protocols to mitigate damage and liability during security breaches.
  • Participated in the creation of device hardening techniques and protocols.
  • Conducted security audits to identify vulnerabilities. Developed team communications and information for security controls "for new projects" review meetings.
  • Investigated and corrected or escalated project problems, and closely collaborated with project members to identify and quickly address problems.
  • Built and utilized reporting database reporting system to keep customers and business management in the loop with the latest information.
  • Executed Encrypted Key Secret Management program across global cloud computing environment Managed Incident Reporting, Fault Diagnosis, and problem isolation in the Massaging and Windows platform achieving an MTTR9 mean time to resolve) of 98%.
  • Collected metrics for the team's incident response performance, batch runtimes, and inventory breakdown which were used to determine team staffing levels.
  • Configured ASP.NET application authentication and authorization properties to maintain ASP.NET web application security.
  • Planned, configured, and deployed Imperva 6500 and 2500 web application firewalls in all datacenters.
  • Tested and analyzed equipment design and performance

Senior Information Security Analyst

SCYNEXIS, Inc, Aerotek Scientific
Jersey City, USA
01.2018 - 02.2019
  • Collaborated with cross-functional team teams across global technology to execute the cybersecurity agenda by implementing IPSec, SSH, sFTP, stronger MQ cipher, and CheckPoint firewall containerization decreasing infrastructure vulnerability by 60%
  • Performance Database and Clinical Trial applications resiliency tooling proof of concepts, improving ACH database resiliency and Clinical Trial patient database discrepancies by 20%
  • Minimized costs by devising the solution under Linux and low-end equipment supporting 802.1q
  • Inspected and examined required organization Wide Area Network system and its functional network infrastructure requirement specification design document
  • Supervised monitoring application and webserver to guarantee system functionality
  • Led application support and desktop and network connectivity automation
  • Supplied ad-hoc network system and application security controls enhancement request support for the current application and network devices
  • Presented Business Continuity Plan and IT Risk Management Plan development of the project to the IT Executive Committee for review and implementation
  • Successfully migrated dozens of servers and applications according to HIPPA and NPR 2810.1A requirements for Scynexis Inc and its healthcare subsidiary
  • Provided on-call support on a rotation base for 24X7 support
  • Installed and implemented NextNine Preemptive Monitoring Software which was the primary tool used to monitor all RIS and PACS customers
  • Worked closely with Vault Engineering and Technical Operations to support the existing release and change management process
  • Lead for technical architecture and implementation of eTMF, CTMS, and study Startup to keep clinical trial data and content management solutions on Medidata Rave, OpenClinica, OminiCom Trial Master, and Lotus applications
  • Collaborated with crucial Development and Quality Assurance partners in developing and executing a robust test and release process
  • Developed and maintained infrastructure built around Docker containers and implemented Docker-based Continues Integration and Deployment Framework
  • Worked on Application Deployments & Environment configuration using Puppet & Chef configuration management tools
  • Specialized in PKI, VPN, and Desktop Security, and Implemented Authentication and Authorization solutions
  • Developed Executive Total Cost of Ownership audits for integrating new and legacy technologies
  • Conducted thorough process flows/data sources review and recommended the most efficient technology architecture
  • Coded (C# and PowerShell) internal tools to push code and patches to appropriate environments automatically
  • Automated installation and configuration of SharePoint 2010 and 2013 using PowerShell
  • Created PowerShell scripts for automation tasks in SCCM like building and maintaining Distribution points
  • Improved disaster recovery solution; by providing IBM HACMP Clustered solution with local as well as site failover
  • Established a new colocation site to replace an aging data center/disaster recovery site
  • Managed the migration of eLicensing from Cisco to f5 load balancers and instituted disaster recovery
  • Defined SOA governance requirements and recommended security standards for ESB authentication and fine-grained role-based authorization
  • Co-led CIO SOA Data Security & Privacy pilot, which demonstrated leveraging new technologies/protocols
  • Worked on diagnosis and resolution of problems with Web Hosting, SOA, and BPM Applications and services.
  • Resolved product design, acquisition, and launch concerns to achieve customers' targeted business goals.
  • Communicated technical development stages and provided design support to stakeholders.
  • Resolved system test and validation problems to provide normal program functioning.
  • Participated with clients in discussion meetings.
  • Monitored computer virus reports determining when to update virus protection systems.
  • Reviewed violations of computer security procedures and developed mitigation plans.

Security Network Analyst

Covance Clinical Development Services, Joule Staffing, Carnegie Center
Princeton, NJ
11.2016 - 11.2017
  • Part of Engineering Development Group and worked on a wide range of areas like Parallel Computing Toolbox (PCT, MDCS), application Compliers from standalone apps, DLL, C/C++ shared libs, inter java interfaces
  • Worked closely with the development team to resolve over 85% of code-related issues, by performing initial analysis, then delegating to the appropriate developer to make the required code corrections
  • Provide support adhering to SLA parameters from quality, response, and resolution time in the SMSC environment
  • Responsibility for delivering EDC and SQL specifications within the scope of assigned projects to achieve project integrity, the delivery of on-time, quality data, and Meeting with the data manager on assigned projects to discuss contractual obligations and timelines
  • Apply Standards governance procedures as dictated by the business, create CIWS studies, and Grant/ Revoke CIWS Study Access with assistance
  • As required, participate in the ongoing review of the processes used by the ACIS group to ensure adaptation of best practices, participate in the development of global, harmonized SOPs and specific quality work instruction for study design and programming activities
  • Analyze all applications and recommend metrics for various production systems and patches and perform troubleshooting on all issues
  • Integrated Business Central tool with LDAP and database for user authentication and authorization
  • Involved in Chef and Other Configuration management tools to deploy infrastructure code across multiple environments and Automation purposes
  • Designed and implemented tiered Tenable Security Center infrastructure capable of providing vulnerability and PCI compliance for complete Target Infrastructure
  • Successfully performing Servlet Upgrades using Red Hat Linux Commands and SQL queries to learn current database packages and successfully resolve Java “Request 12 Error Massages” through Red Hat Linux Commands using “doCodeRoll” to restart servlets to successfully debug and analyze error logs to find the root cause
  • Prepared SCA deliverables beginning with the Security Assessment Plan, Vulnerability Assessment, Risk Assessment Plan, and Security Assessment Report •Conducted SCA assessments and worked with the client to assist in artifact collection for the assessment in the role of Certifier while leading a team of assessors.
  • Reviewed script outputs from various operating systems (Windows, Linux, Cisco IOS, Junos, Mac OSX, VMware, OpenVMS, AIX)
    •Review of system boundary diagrams and perform analysis of associated firewall and switch configuration files for compliance with ingress/digress policies.
  • Briefed senior executives on residual risk along with mitigation strategies for continuation or approval of ATO.
  • Managed application infrastructures to meet business service level agreement requirements, and release efforts, including code release and infrastructure changes
  • Conducted Assessment and Accreditation (A&A) and performed all continuous monitoring functions.
  • Oversight and development of POA&Ms as part of the Assessment and Accreditation.
  • Reviewed script outputs and various tools to ensure NIST Compliance (Tripwire, Nessus, QRadar, IBM Tivoli, ArcSight, Splunk)
    •Audited and provided guidance on security program that includes Governance (A&A,Continuous Monitoring, FISMA, NIST, DOC, and NOAA policies, and procedures).
  • Assisted the system administrators by describing weaknesses, creating the mitigation plan, and vetting potential solutions.

Security Systems Engineer

Theradex Systems Inc
Princeton, USA
10.2015 - 08.2016
  • Participated in planning of Identity Management solution in addition to serving as a technical specialist with on-call rotation duties.
  • Developed and implemented a Certification and Accreditation (C&A) program to ensure compliance with Federal IT security requirements.
  • Developed and implemented perimeter protection, vulnerability management, incident response, configuration management, security patch and secure storage programs Wrot.
  • Enable the unification of identities and directories for simplified identity and access management.
  • Instituted a Project Management Framework (PMF) to prioritize and drive best practices for cyber security engineering projects.
  • Developed and implemented an automated process for identifying and rectifying FW&A and security vulnerability procedures within IMCEN.
  • Experience in deploying EIGRP/BGP redistribution and the changing the metrics for the primary and backup Paths for the packet prioritization and EIGRP tuning
  • Experience in migration of Frame-relay based branches to MPLS based technology using a multi-layer stackable switch like 6500 series and 2800 series router
  • Created procedures for Disaster Recovery and Business Continuity for critical business applications that resulted in consistent system reliability during unplanned downtime
  • Led SubLAN Subsystem test events to verify system integrity in response to engineering changes and new/updated hardware and software integration
  • Provided premier security expertise including all information security operations in designing, implementing, trouble-shooting and mitigating vulnerabilities.
  • Reviewed and assess information security events and logs via sophisticated security information/event manager.
  • Implemented end user security awareness training programs, testing the knowledge of security compliance in relation to areas of information technology.
  • Experience and knowledge of NIST SP 800-53A, ICD 503, FISMA, DCID 6/3, and FISCAM. Experience with DIACAP, DITSCAP SP 800-33, NIST SP 800-53, FIPS 199 and HSPD-12 standards
  • Reviewed and made recommendations for information assurance solutions based on knowledge of networks and existing application performance.
  • Reviewed and evaluated systems' security architecture COTS/GOTS products to determine the level of protection required to develop security implementations.
  • Performed Security Scans using HBSS and Retina software, Hardened; Servers, Routers, and Workstations with DISA STIGS
  • Analyzed and installed Apache-SSL to ensure the security of internal communications, while supporting the Firewall environment
  • Implemented Unified Threat Management System and Firewall designed to exceed U.S
  • Experience with building, maintaining, reviewing all configurations/settings/policies on Checkpoint Firewall
  • Route Redistribution has been performed among different Routing protocols in Different Autonomous systems
  • Redistributed of routing protocols and Frame-Relay configuration Networked Migration from RIP to OSPF
  • Applied leading theories and concepts to the development, maintenance, and implementation of information security standards, procedures, and guidelines.
  • Represented the company's technical security interests to partners to provide the bi-directional flow of technical information and best practices in information security.
  • Prepare a security assessment package recommending a system for or against the authorization to operate using DIACAP and RMF process.
  • Hardened Linux servers to prevent potential security vulnerabilities.
  • Configure network systems to published security standards, and perform periodic audits to ensure systems still meet security requirements.

NOC- Engineer

Verizon Wireless NOC, Adecco Staffing
Bedminster , NJ
12.2014 - 09.2015
  • Testing of remote network elements in monitoring systems of the NOC
  • Installed and configured Cisco routers 2800 in two different customer locations
  • Troubleshoot and Worked with Security issues related to Cisco ASA/PIX, Checkpoint, IDS/IPS, and Juniper Netscreen firewalls, ASA/PIX, Checkpoint, VPN 3000 Concentrator
  • Utilizing fault management tools to prepare a checklist to record testing sessions
  • Maintain compliance with the network directive for testing standards
  • Monitored network alarms and performed fault isolation testing on radio and switching networks and peripherals such as Juniper Netscreen firewalls, ASA/PIX, Checkpoint, and VPN 3000 Concentrator, Creates and responds to work orders and trouble tickets by either conducting restoration efforts or dispatching the appropriate technician for resolution
  • Determine fault group and document reason for faults in failed tests
  • Escalates trouble tickets with third-party vendors such as power and Telco companies
  • Configure various routing protocols to ensure centralized network engineers can access remote routers
  • Restructured existing support methodologies to introduce development, system testing, and training protocols
  • Construct protocols for port security to prevent any unauthorized access to the network
  • Researched routing protocols, high-availability, black-hole routing, and other designs
  • Managed all troubleshooting and configuring tasks through the Remedy CRM Ticketing system along with providing friendly email and phone support
  • Schedule maintenance windows and execute accurately planned configurations with a high impact on network infrastructure
  • Performed network infrastructure reviews to determine if they met the defined business continuity objectives
  • Configured, managed, and supported Cisco network infrastructure and APC power management system
  • Utilize communication protocols including TCP/IP, NetBEUI, DHCP, DNS, and ADSL, to network components and workstations
  • Implemented VLSM Networks, Configured, Troubleshoot, and Resolved TCP/IP Issues Maintained Cisco Router 2600 series and 1600 series configurations
  • Deployed and managed Cisco's high-availability Local Directors, to cleverly load balance TCP/IP traffic across multiple servers
  • Used NETID to insert and update TCP/IP information and maintain an inventory of the equipment in the field
  • Provided support for troubleshooting and resolving customer-reported issues, and implemented the removal of redundant policies and addresses from internal and external routers, resulting in substantially increased network security
  • Provided technical evaluations and recommendations on network design, network security, and requirements to support multiple Network Cell Sites
  • Provided active and reactive network surveillance, troubleshooting, coordination, and restoration of service-affecting network events
  • Developed documentation on standards and troubleshooting processes to improve the overall efficiency and productivity of network operations personnel
  • Developed detailed Project Plans for the growth of the MIS, AVPN, and PNT networks
  • Configured all management stations and collection stations for SNMP traps and verified SNMP configurations with all Extreme, Juniper, and Cisco equipment
  • Configured and installed Juniper EX 3200, 3400 & EX4600 series switches
  • Managed VPN solution (both appliance and Cisco router) with PKI for Verizon
  • Implemented TCP/IP, UDP, SMTP, and POP3 server protocols in C language for Client-Server communication
  • Led successful upgrade of global firewall infrastructure utilizing Check Point Provider-1 and Firewall-1/VPN-1
  • Monitor optical system alarms and expedite deployment of fiber optic transmission team for quick troubleshooting
  • Coordinated Conference Bridge calls for issues that required immediate escalation, time-sensitive troubleshooting, and resolution.

Network Support Analyst

Medtronic Inc, Tech Observer Staffing
Elizabeth, NJ
12.2012 - 11.2014
  • Firewall management using Provider-1 to manage the internal farm of CheckPoint Firewalls\Management of PIX/ASA and FWSM 3.X using both Cisco Adaptive Security Device Manager (ASDM), Cisco Security Manager (CSM), and CLI
  • Provided Cisco ASA and PIX firewall remote monitoring, alarm troubleshooting, and diagnosis of security logs for network remediation and the response to network threats and attacks
  • Assisted with the migration of over 2,000 users and computers into new Active Directory domains, using Microsoft Identity Integration Server (MIIS) and Microsoft Identity Lifecycle Manager (ILM 2007)
  • Manage users in Active Directory and Exchange 2007/2010 mail attributes through Exchange Management Shell (Power Shell)
  • Manage/ administer permissions to network shares and mailboxes 2000/2003 Active Directory and Exchange 2007/2010
  • Currently assisting with migrating from MS Exchange 2010 to Exchange 2013 on Server 2012
  • Maintain /configure requirements for Smart DLs and Dynamic DLs within the 2000 and 2007 Exchange environment
  • Created using Microsoft Identity Integration Server (MIIS) to migrate computer objects to new domains
  • Created and maintained Cisco ASA and Barracuda configurations
  • Tightened network security by converting a large Cisco ASA firewall port-based rule set to Palo Alto's next-generation application-based firewall
  • Configured ASA active-active & active-standby configuration, Configured and deployed various Network Security & High availability of Cisco ASA
  • Provide business application and mobile device support onsite or with remote access
  • Installed and maintained PC Anywhere and Reach Out remote access terminals, Isolated network outages utilizing HP Open View, and remote access into Cisco series routers to analyze logs and performance
  • Supported configuration/programming of routers, switches, and other complex network equipment
  • Added the Cisco routers and the switching matrix for routing and also the transport link for the circuits to travel
  • Maintained and administered a network of 12 Windows 2003 servers, one Exchange server, and one Blackberry server
  • Provided training to Call Center Agents in the use of Windows on PC and MS Outlook e-mail
  • Implemented Linux kickstart for the installation of Redhat, Centos, Ubuntu, and VMware over PXE
  • Performed network administration, monitoring, and user support for Windows clients and Cisco Network Connections
  • Managed all incoming firewall requests for internal and external customers, generating 782 per month for the networking department
  • Managed (Remote Access Server) environment on a co-location server to streamline management and deployment of business-critical applications
  • Worked and manipulated network bandwidth Working knowledge of OSPF and BGF protocol helped to choose from one route to another.

Education

Master of Science - Information Assurance and Cybersecurity

Capella University
Minneapolis, MN
09.2020

Bachelor of Science - Information Technology Management

Berkeley College
Little Falls, NJ
05.2018

No Degree - Computer And Network Support

Lincoln Technical Institute - Edison
Iselin, NJ
09.2014

Bachelor of Science - Marketing

Central University College,
Greater Accra Region
06.2010

Skills

  • Proven track record ensuring communication remains unhindered and deliverables meet constrained deadlines
  • Expert knowledge of networking, cloud computing, application development, and system development
  • Organized Communicator: pride myself on keeping my teams thoroughly informed of all stakeholder needs and changes in operational strategies
  • Skilled with industry-standard tools used to perform Vulnerability Assessments, identify attack vectors, develop remediation plans, and enhance security procedures
  • Excellent deductive reasoning abilities
  • Outside-the-box” thinking skills provide above-average success rate for solving network outages
  • Mentor; “go-to” professional for new hire training and sharpening of skills for peer professionals
  • Vast experience with a multitude of network analyzers and servers
  • Greatly Skilled in Microsoft SQL and Windows Server, Active Directory, Unix, Linux
  • Project Management experience
  • Qualified Analytical, results-driven Compliance Analysis professional with significant experience relating to bank regulatory compliance
  • Active Listener”; Strong ability to translate customer needs into measurable results
  • Adaptive Learner”; adjusts to new environments and quickly applies newly gained knowledge
  • Cloud Migration Expert
  • Vendor sourcing
  • Storage virtualization
  • Firewalls, VPNs, and security products
  • Compliance understanding
  • Cloud services
  • Network security
  • Network infrastructure administration
  • Technical Analysis
  • Scripting skills
  • Technology integration
  • Persuasive communication style
  • Public speaking ability
  • Interdisciplinary collaboration

Certification

CISA® (ID 211608083)
CISM® (ID 2157230)
CISSP Just Passed

Work Availability

monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse

Timeline

Information Infrastructure Security Risk Analyst/Engineer

Pacira Biosciences, Inc, Aerotek
05.2019 - Current

Senior Information Security Analyst

SCYNEXIS, Inc, Aerotek Scientific
01.2018 - 02.2019

Security Network Analyst

Covance Clinical Development Services, Joule Staffing, Carnegie Center
11.2016 - 11.2017

Security Systems Engineer

Theradex Systems Inc
10.2015 - 08.2016

NOC- Engineer

Verizon Wireless NOC, Adecco Staffing
12.2014 - 09.2015

Network Support Analyst

Medtronic Inc, Tech Observer Staffing
12.2012 - 11.2014

Master of Science - Information Assurance and Cybersecurity

Capella University

Bachelor of Science - Information Technology Management

Berkeley College

No Degree - Computer And Network Support

Lincoln Technical Institute - Edison

Bachelor of Science - Marketing

Central University College,
Williams Armah