HonYin Kok
** ****** **** **********, ** *****-**13 +1-917-***-**** ******@*****.*** www.linkedin.com/in/honyin PROFILE
Information Technology (IT) professional with extensive experience designing, building and supporting various distributed non-homogenous systems and networks by integrating the best-of-breed technologies to build state-of- the-art tactical and strategic enterprise infrastructure. Deep knowledge delivering full lifecycle solutions – assessment, design, research, planning, testing, implement, migrate, consolidate, document, troubleshoot, administer, manage, operate scalable, secure and functional solution utilizing variety server technology and cloud services, scalable networks and voice/telecommunication system. Deployed and support backend infrastructure like SQL, virtualization, service-oriented architecture, security and compliance systems technologies and business continuity. TECHNICAL SKILLS
OS: Microsoft Windows Server (since NT 3.5),
UNIX: Linux (various), Sun Solaris
(Sparc/x86); BSD, SGI, VAX/VMS
Virtualization: VMWARE VSphere/ESXi;
Microsoft Hyper-V, Citrix XenApps, Oracle
VirtualBox
Network and Firewall: Cisco Routers and
switches, Arista switches, Juniper Firewall,
Bluecoat Proxy, VPN (PPTP,L2TP,IPSec),
IBNS (802.1x), RADIUS
Telco: Nortel, Asterisk (open source), Ring
Central (cloud-based PBX), Twilio
Server Hardware: HPE Proliant, IBM System
xSeries, DELL PowerEdge; and many
reputable white boxes vendors
Storage: EMC Clariion, NetApp,
Tegile/WDC, Nutanix, LTO/DLT Tape
Libraries (various vendors), High
Performance SSDs
Data Integrity, Backup & Recovery: CA
ARCServe, Symantec Backup Exec, EMC
Legato, Kaspersky Antivirus, Symantec
Antivirus
Scripting and Programming: Microsoft
PowerShell, VB script, DOS Batch scripting,
Perl, Python, Unix/Linux shells,
CGI/FastCGI, C/C++, JAVA
Cloud: Amazon AWS, Microsoft Azure,
Google GCP, Okta IDaaS
Platform: Active Directory, Group Policy
Management, Exchange Server, Fax Server
(various), Microsoft Office Communications
Server, SharePoint, Microsoft SQL Server, IIS,
Apache, Tomcat, DHCP, DNS, DFS, Microsoft
System Center Configuration Manager
(SCCM/SMS), Microsoft System Center
Operations Manager (SCOM), Enterprise
Certificate Server Services and PKI, Remote
Desktop Server services, Citrix, NIS, NFS,
LVM, LDAP, SSO/Kerberos, SSH, SSL
Mail and Antispam: Sendmail, Postfix, Spam
Assassin, Symantec Mail Security
Performance Tuning & Capacity Monitoring:
Performance and Reliability monitoring,
SNMP, WMI, Nagios, Cacti, etc.
Debugging: Wireshark/tcpdump, Windbg,
and various open-source tools
Archiving & Compliance: EMC EmailXtender,
IMLogic, business continuity & planning
Physical Security: Video Surveillance (various
CCTV), Keycard Systems
Contract Negotiation & Vendor Management:
Microsoft Enterprise Agreement, Telco and
Data Vendors like Bloomberg, Reuters, etc.
PROFESSIONAL EXPERIENCE
HARTREE PARTNERS (Formerly HETCO, New York, NY)
Co-Head Quantitative Research & Trading, Director of Quantitative Infrastructure 2013 – Present
Architected, build and deployed a fully automated, high available low latency and high frequency trading and execution platform (greenfield project) at CME collocated datacenter to trade on CME and ICE Exchanges. The QEP platform disseminates real time market data to all 11 Hartree’s offices using Solace Pub/Sub messaging architecture, CentOS 7 (on baremetal, virtualized and containerized) and the entire infrastructure and platform is monitored 24/7/365.
Successfully delivered a fully functional and scalable trading system in 4.5 months making us not only the fastest Solace’s customer that go live from development to production but also bested the vendor’s application performance benchmark. The platform is written in C++, Boost C++ and Python that a VAR based risk management system and is monitored 24/7/365 using an internally developed heartbeat and event monitoring system tool, Nagios, SNMP and Twilio.
Home-grown a continuous integration and continuous deployment (CI/CD) system that completely manages the platform lifecycle from development to production that include daily build, unit-testing, end-of-day processes for platform and algo trading and developed a post-trade kill-switch (DEFCon) that is event based and data driven, monitors and govern all QEP real-time trading activities based on exchange drop copies
Worked with various trading groups to help automate tasks, data wrangling from vendor data sources and store them to SQL database (Microsoft, PostgreSQL, MySQL, MongoDB) for various custom in-house applications access to make real-time trading decision
Manages a team of four developers that focus on algo development efforts, backtesting historical data, front-end development and various integration effort to the QEP platform.
Helped negotiated many contracts and deals with various hardware, software and data vendors.
Assisted Hartree’s Global IT researched and project managed various ongoing digital transformation projects and initiatives to modernize the firm’s legacy infrastructure from on-prem to cloud services on AWS when possible. The efforts have saved the firms millions/year in capital expenditure (CapEx) and improved operation efficiency (OpEx) making IT services more agile and responsive.
ERNST & YOUNG, Secaucus, NJ 2012 – 2013
Enterprise Infrastructure Solution Architect, Consultant (Corp-to-Corp) Collaborative work with E&Y Global IT Strategy team on Data Center Consolidation deploying standard IT equipment to all 750+ and E&Y offices, reducing the data center footprint from many countries to 3 global data centers, 3 disaster recovery and 6 data rooms. Remediate and migrate all applications and from E&Y business partners’ countries and branch offices to centralized global data centers, meeting all the local country’s legal regulations and compliance requirements.
Responsible for timely and validate and execute strategic and optimize the IT process and implement standards, solutions and guiding principles that are aligned with TOGAF, ITSM/ITIL standards in discovery and assessment of 4000 servers and 10,000+ applications across 750 locations in 140 countries.
Provide technical leadership and consultation on various IT transformation projects deliverables using standard Enterprise Architecture framework, methodologies and artifacts by producing technical architecture blueprints, formal documentation and status reporting, road maps, proposals supporting IT operations delivery and enterprise lifecycle activities.
Define and create strategic infrastructure build specification and standards to meet production critical applications and data based on performance and capacity requirements, recommend remediation and exceptions for non-standards due to legal regulatory reasons. Ensure functional business requirements are align with IT goals with agreed processes, standards and service level agreement to create production critical fault tolerance, high availability and business continuity.
Interface with SME from E&Y project managers, DBAs. identity and access management, server, storage, and network engineering team to ensure successful rollout of infrastructure engineering led initiatives and ensure all solution designs meet project deliverables deadlines and SLAs TWO SIGMA INVESTMENTS, New York, NY
Senior Windows Architect, Vice President
2001 – 2012
Responsible architecting from scratch a highly available, scalable and secure Microsoft and Linux Infrastructure. Managed a team of systems engineers, and project lead a variety of projects that involve providing architectural solutions and delivery of services to internal and external clients supporting Two Sigma’s core infrastructure and trading platforms. Ensured that technical and functional design meet the given business requirements.
Senior Architect responsible for Server Infrastructure Design & Engineering deploys, manage, expand and optimize solution to ensure high availability of services. In-house Active Directory Services/Exchange Servers SME and supporting trading systems running on Linux environment.
Developed and engineered custom solutions and deployed application to increase task automation and operation efficiency, proactive systems health monitoring, alerting and remediation, metrics generation and collection both on Microsoft Windows and Linux servers. Define metrics collection for sizing and capacity planning. Performance tuning that involves tweaking Linux kernel settings and Microsoft Windows registry.
Developed and tested storage strategies and disaster-recovery plans for replicating data, delivering solution that guaranteed recovery performance and high availability.
Enhanced the end users’ experience by providing remote support; wrote many of the training and supporting systems and operations documentations, installation guides, debugging and troubleshooting procedures, and user-friendly training materials for administrators and new users. ZURICH CAPITAL MARKETS, New York, NY
Senior Systems Engineer
2000 – 2001
Lead the architecture and both tactical and strategic projects on Sun Solaris server hardware.
Developed and maintained financial trading computer systems including hedge fund trading and security lending trading application.
Coordinated and maintained the system network infrastructure and processes including intranet network design.
Analyzed software requirements to determine system design, developed system testing procedure to ensure proper operation and provided engineering and technical support.
Migrated Microsoft Windows NT to Windows 2000 Server and workstation environment.
Developed documented routines and processes for maintaining computing environments. UNITED ONLINE, INC (Formerly JUNO ONLINE SERVICES, INC) New York, NY Systems Analyst
1998 – 2000
Developed functions, scripts, manage and perform systems support operations that were instrumental to the success of firm daily activities.
Design and implemented a network consisting of multiple autonomous systems that provide a high level of redundancy, extended control of traffic flows and support for Variable Length Subnet Masking (VLSM).
Managed the Systems department supporting the office and development environments with Microsoft Systems Management Server (SMS) and unattended installation over the local area network (LAN).
Designed, built and deployed test systems that expanded into a scalable production environment. Ported DNS bind to use shared instead of statically linked resolver library.
Provided second-level support and participated in Windows and UNIX system maintenance.
Developed various automation tools written in Perl, TCL and C++ to perform systems maintenance. Also developed various HTTP/CGI web frontend tools to automate the data replication from Sybase and Oracle database servers and also to automate the daily procedures for supporting various departments in the company.
EDUCATION & TRAINING
UNIVERSITY OF NEBRASKA-LINCOLN, Lincoln, NE
Masters of Science in Computer Science
1994-1997
Thesis: Enterprise Distributed Client and Server Management and Monitoring using an object-oriented approach UNIVERSITY OF NEBRASKA-LINCOLN, Lincoln, NE
Bachelor of Science, Major in Computer Science, minor in Electrical Engineering 1990-1993
REFERENCES
References will be provided upon request