Over 15 years of network & network security infrastructure and data center operations across onprem, colo, and cloud data center infrastructure.
Ability to create and deliver solutions to effectively optimize and secure data center infrastructure.
Excellent organization and leadership skills to effectively manage teams and projects.
Self-motivated and excellent communication skills to work diligently on my own or support team members.
Overview
14
14
years of professional experience
1
1
Certification
Work History
Senior Network Security Engineer
McKesson
11.2016 - Current
Optimized firewall configurations to improve network performance while maintaining stringent security measures.
Analyzed security incidents to determine root causes and implement corrective actions effectively.
Documented SOP for all projects
Provide training programs and knowledge transfer to MSP and junior colleagues to ensure best practices are followed.
Maintained up-to-date knowledge of emerging security threats, recommending appropriate countermeasures to management.
Established secure remote connectivity options for employees, enabling secure access while working remotely or traveling abroad.
Supported incident response efforts during high-priority events, collaborating with internal teams and external partners as needed.
Participated in regular tabletop exercises to evaluate the effectiveness of existing security strategies and identify areas for improvement.
Develop and maintained automations playbooks with Cortex XSOAR and Python scripting
Architected and Maintained Palo Alto Next Gen Firewalls for On-Prem, Google Cloud, and Microsoft Azure.
Deploy and manage Network infrastructure projects in Azure and GCP Cloud.
Architected and maintained Prisma Access Global Protect VPN.
Collaborate with Security Architecture to develop security standards requirements.
Migrate and onboard McKesson external facing website applications to Imperva Web Application firewall solution
Architected and maintained Zscaler ZTNA infrastructure
McKesson DR support –bi-yearly DR exercise of a full fail-over to standby data center
Network Auditing & Compliance management with tools such as Skybox, HP Network Automation, and Palo Alto Network XSOAR.
Provide technical guidance and mentorship to junior team members and escalation point of contact for impacting issues.
Led network security initiatives to protect sensitive data across multiple platforms.
Developed and implemented security protocols to mitigate vulnerabilities and enhance system integrity.
Conducted comprehensive risk assessments to identify potential threats and recommend remediation strategies.
Collaborated with cross-functional teams to ensure compliance with industry regulations and standards.
Network Administrator
Samuel Merritt University
11.2015 - 11.2016
Managed Cisco Routers, Switches, and ASA firewalls
Monitored and maintained network performance to ensure optimal system functionality.
Planning and designing network infrastructure deployments on campus and remote campus with addition to providing technical network support
Supported business growth, planning, and executing network expansions to accommodate new office locations.
Documented network configurations, policies, and procedures for reference and training purposes.
Led initiatives to upgrade hardware and software systems to enhance network reliability and speed.
Implemented cost-saving measures without compromising network performance or security by optimizing resource allocation across various departments.
Monitored campus network infrastructure using Solar Winds Orion Network Performance Monitoring
Proactive maintenance with our remote campus network in Sacramento & San Mateo, CA
Developed lab environment of Cisco Unified Communication Manager
Cisco VoIP system upgrade from analog phone system.
Configure SolarWinds tools such as CatTools to automate network changes on configuration interfaces, vlans, and reboots.
Systems Engineer
Valley Network Solutions
01.2014 - 03.2015
Provided Technical Solutions and IT Support to a wide variety of businesses throughout the Central Valley
Primary responsibilities include overseeing infrastructure operations for clients’ datacenter,
Provide monitoring and maintenance services for existing infrastructure and integration of a wide variety of network and server solutions
Responsible for all Datacenter implementations using VMware vSphere & vCloud with Nimble / EMC / HP SAN storage solutions
Deployed and Managed Cisco Routers and Cisco & HP Switches, and Aerohive Wireless Access points
Provided Firewall/VPN, Anti-Spam, and Web filtering solutions
Provided Pre-sales technical consulting as well as documentation to justify sales proposals
Active Directory & Exchange Messaging solutions and Load Balancing IIS Web Servers
Managed / Trained all new System Engineers and debriefing them on all aspects of clients’ networks
Provided technical assistance to other engineers to facilitate deployment of their projects and the resolution of issues with other clients
IT Analyst
United Business Media, UBM
03.2012 - 01.2014
Provided technical support over 1,000+ end-users via Service-Now ticketing system
Managed on-site Data Center backup with ArcServe backup and off-site with Iron Mountain
LANDesk 9 management and administration for software install, release windows patches and securities updates, remote support, inventory dashboard reports, and data replications
Collaborated with cross-functional teams to streamline processes and improve help desk support.
Developed technical documentation for system procedures and user guides, ensuring clarity and accessibility.
Build MSI software install packages and wrote batch files to automate packages for LANDesk software Distribution remotely
Build & Automate company standard OS images for laptops and desktops using sysprep
Assist Network team for network & server troubleshooting and data recovery
Windows Server Administration and Mail Exchange 2010 administration
Education
Bachelor of Arts - Science And Technology Studies
University of California, Davis
Davis, CA
2010
High School Diploma -
Sunnyside High School
Fresno, Ca
2006
No Degree - Computer Networking
Center For Advance Research Technology
Clovis, CA
2005
Skills
Security by Design
Security incident response
Network troubleshooting with Wireshark
Identity and Access management
Firewall installation and management
Scripting - Python, PowerShell
Active directory
Network monitoring - LogicMonitor
Firewall configuration
Disaster recovery planning
Cloud security
Cloud Infrastructure - Azure and GCP
IP Management - InfoBlox
Risk assessment with Vendors
Continuous improvement
Web security - Imperva WAF
Enterprise Architecture - LEANIX
Security Audits
SIEM Logging - XSIAM, Splunk
Accomplishments
Deployed Zero Trust Network Infrastructure using Zscaler Zero Trust Network Access for the entire McKesson Enterprise.
Developed automation playbooks with Cortex XSOAR to streamline Firewall audit reports and NGFW Upgrades.
Developed and implemented TLS/SSL Certificate Auto-Renewal for Palo Alto Firewall Management using Keyfactor PKI management.
Deployed & managed Palo Alto VM Firewalls in Azure Cloud
Developed security policy standards across Palo Alto Firewalls and Zscaler
Developed a automated process and XSOAR playbook for blocking IOC in Palo Alto and Zscaler.
Deployed Security posture standards to multiple Palo Alto Prisma Access tenants with over 25k users.
Migrate legacy 500+ Juniper Firewall to Palo Alto Firewalls