John R. Webster CISSP
Royersford PA ***** Cell: 856-***-**** Alt: 609-***-****
**********@*****.***
Objective:
To obtain a position as a Security Engineer or Systems/Integration Engineer and continue my technical career
path.
Professional Employment:
MERLIN INTERNATIONAL Systems Engineer APR 28, 2014 To Jan 5 2015 Public Trust
clearance 6/14.
Worked mainly from home remotely except when hands on support was needed at the VA
Philadelphia Data Center.
EAV HIPS Systems Engineer – Veterans Administration McAfee AV HIPS
Acted as Local Philadelphia Datacenter Systems Administrator for the stand up of
the first Enterprise Wide VA IT project. I performed hardware prep of Cisco C240
and C460 servers. Maintained ESXi with vCenter Web Client – clustered Windows
Server 2008 r2. Remote installation and configuration of McAfee SADRs, running on
ESXi 5.5 hypervisor using vCenter exe and web client to configure the Windows
virtuals.
Assisted with Installs of MS SQL Server for failover clustered ePO Database Server
and teamed NIC interfaces
Worked with iSCSI, BIOS and Firmware upgrades, hardware driver installation and
configuration of iqn to LUNs
Installing Windows 2008 r2, Prep for clustering of Windows and SQL servers
Worked with routine tasks on NetApp, F5 LTM and GTM Load Balancers, Switch
replacement and configuration
Installation and configuration of Windows 2008r2 Server, Installation and
configurtation of ESXi servers with Wand vCenter Clients, Windows 7 guests.
Performed hardware driver installation and configuration of IQN to LUNs
Assisted with the DIACAP ATO remediation of NetApp FAS6220HA Cluster and FAS2240HA
Cluster NetApp V8. .3, NetApp Data, ONTAP OS V 8.x, using OnCommand System
1
Manager v3. .
1 1 I also wrote procedures for routine maintenance tasks for SE and
SA. Performed or oversaw hardware replacement tasks on servers and CISCO NEXUS 31
72T
switches with some routine configuration tasks. Oversaw Datacenter operations to
include using Cell Hot spot to connect pre live equipment for vendor login
support, and desktop sharing tools as needed. Performed and documented routine
tasks on F5 Big IP LTM 7200v FIPS
F5 Big IP GTM 2000s FIPS. Also responsible for implementation of OBM LAN, and
Nessus vulnerability remediation.
DSCA GLOBAL NET – Diverted to this task while awaiting VA paperwork for AV HIPS.
Worked independently/Remotely
Created AWS cloud instances using AWS Linux LAMP configured, to transfer an ILIAS
training server to.
My first cloud instances Amazon (RHEL) Linux – I had to learn it independently
online; Amazon Web Service – then stand up the new servers to changing customer
specs. Installed and tuned Apache Web Service, PHP, and MySQL Worked with
developers in tuning
COMCAST XBO Production Support Engineer SEP 23, 2013 To APR 25, 2014
(Temporary)
Through TechUSA Agency – W 2
Product Support Engineer – Network Excalibur Back Office Production Support
Monitoring and analysis of data transfer issues, general monitoring of system
status during batch operations and deployments. Persistent bus monitoring,
restarting and clearing queues, tier three support of customer issues leading to
scripting automation of widespread issues. Analysis of process flow interruptions.
Participated in deployments of software upgrades, occasionally overnight as needed.
I monitored queue performance and did some minor scripting to assist in the display
of queue depth and throughput, and participated in the migration from RESTful
ActiveMQ messaging to Amazon Cloud SMS/SQS message handling. Also did triage of
issues and validation of processes. I performed manual transfer of sessions and
accounts using Postman, cURL and supported QA on both the DB and Business Logic
departments of the SOA infrastructure two development teams in an Agile
environment structured around Confluence and Jira. Daily boards attended on
Campfire using Google Meeting and GoogleTalk for sidebars. Provided manual
migration and transfer of data between the CI Continuous Integration environment
and Production, or within Production, to resolve customer issues. Performed
individual modification, and mostly JSON and XML transfer, of Cassandra database
records. I was also tasked with representing the Production Support team (all 4
of us) for XBO, to monitor and give input on modifications for the next deployment.
I am currently working with Cassandra Database technology, JSON, XML, Python,
cURL, Cygwin, Postman, Confluence, Learning to manipulate flows of production
processes in a RESTful sw bus structure.
Other tools used on a daily basis, Java VisualVM, Op5, Hector, Putty, CygwinX,
filewhiz, notepad II, notepad++, IntelliJIDEA, NetBeans, Eclipse. JSON Formatter,
Elasticsearch, Visio, SPLUNK, and PowerPoint,
SEVONE May 13, 2013 To June 1, 2013 (Temporary)
7
Product Support Engineer – Network Management Appliances
24/7 remote support of Network Monitoring appliances in customer sites using Webex
remote, various VPN tunnel schemes Also worked on remote product. upgrades, SNMP
Device Certification, Report generating issues. SevOne product based on Gentoo
Linux, Desktop workstation was Ubuntu linux. Also worked with xubuntu, OpenSQL,
Linux Mint, BlackBuntu, BacTrack 5r2, MacBook, ChromeBook, php scripts, certifying
QA tickets for bug fixes, support VMs (VMware ESX) Backup/Failover issues, Cisco
NetFlow data collection issues – used Wireshark, nmap, NetSNMP, added new users to
SalesForce and SevOne vPAS, reported bugs to escalation for resolution by patching
and version upgrade. Recreated reports manually for Hawaii Telecom following
product failure. Tools for tracking and resolution included ZenDesk, SalesForce.
Only Open Source tools were allowed unless otherwise approved. OpenOffice
documentation, Mozilla Firefox, etc.
SevOne used the corporate web domain and VCenter, (ESX) running on Google Cloud
infrastructure.
Excellent Company! Purchased by Bain Capital on my first day a very wild ride.
COMPUTER SCIENCES CORPORATION 2001 2012 (ALSO 1995 1997)
LMP AND DTCI 2 11 2008 To 11 14 2012 LMP
IT 1/SSBI renewed 1/09 Secret expired Jan 28, good for renewal for two years – 1
28 2015
IASO Certification, (renewed May 26, 2011) per ********@***.***
Security Engineer Leader CISSP #357286 Responsible for security profile of All
400 Unix and Linux implementations for LMP and DTCI
Primarily responsible for Unix/Linux Security on 400+ Servers, for Army LMP and DoD
DTCI Web hosting programs. Solaris 8, 9, 10 Zoned, Red Hat Linux, SuSE, VMware
virtuals, Oracle Enterprise Linux.
Responsibilities include: Monthly SRR and Retina scans to monitor DISA STIG
compliance. Working with Army Auditors and Unix Group to resolve and mitigate
vulnerabilities for the full DIACAP periodic reaccreditation process. I managed
the dealings with the unix department regarding handling of Cat3 1f indings and
worked with the IASO to properly represent these in DISA Mitigation Strategy
reports, also pointing out False Positives and their cause as well as technical
detail on why certain findings could be excepted based on architecture and reasons
that did not apply to our environment. I worked with the Unix team to upgrade
from IATO to ATO within 60 days In doing so, I created a custom bash scripted
environment to push out updates, run scripts remotely, and retrieve results. I also
provided occasional ArcSight support.
I automated (cron) Monthly SRR runs by cron but also constructed the system to
allow custom pulls of most recent run and add results to repository servers. (not
just samples) for broader analysis. I ran initial SRR and Retina scan
certification of all new Unix/Linux hosts in the LMP and DTCI hosting sites.
Obtained IASO Certification, (renewed Apr 19, 2010)
Account Security: Enterprise Security Manager, Trusted Agent CAC PIN Reset
Approving primary site account requests based upon investigation and adjudication
data provided. Assisted other Security team members in the installation and
testing of McAfee Security products on Solaris, Oracle Enterprise Linux, SuSE
Linux, and Red Hat Linux. Installation and Update processes scripted and turned
over to the Unix Team to run. Studying for Certified Ethical Hacker CEH as time
permits. Also assisted with Retina and Gold Disk scans of the Microsoft
environment as needed. Currently documenting Unix processes to move on to Arcsight
monitoring custom rule scripting, and moving all Unix/Linux scanning to McAfee
HIPS, HBSS 4.5 and EPO per DISA requirements.
I was responsible for all Unix/Linux aspects of POAM, all Acceptable Risk
proposals with mitigations, and working directly with the auditors.
COMPUTER SCIENCES CORPORATION (CONTINUED)
AEGIS AND BMD PROGRAMS 8 25 2005 To January 11, 2008 Secret/SSBI
Software Engineer Leader – Operating Environment support CIIT Team Computer
Infrastructure Integration Team responsible for CSC representation on Aegis FMS
projects S2, Japanese, and KDX
Provided onsite engineering support for Aegis baseline development, primarily on
CR1 baselines, with some 6.3, BMD, and CR 2 support as needed.
Provided lab and testbed support involving “Anything that touches Aegis”
documented and operated various simulators for Anti Submarine Warfare, Air to Air
Combat Control, Missile engagement, resolved IRIG time, NTDS, RS442, OS, and Data
recording issues.
Support included acting as a stand in for operation of missile engagements,
capturing kernel trace, debug of C, C++, ADA code, Network Analyzer (NAM)
operation of ASW simulators, UYK 43 boot and operation, layer 1 3 network
troubleshooting of backplane, VMEbus, and cable issue determination. Worked with
the NightStar suite Ntrace, Ktrace, Niew, and later the RedHawk RT version of Red
Hat linux developed by Concurrent for kernel tracing and debugging of program
issues, on configuration and troubleshooting of various Unix and RT variants,
Participated on Lockheed Martin CIIT Team to track and resolve problems which slip
through the cracks and transcend baselines. Devised processes for distributed use
of X based applications, connecting multiple labs for flexible use of test
facilities, under FMS releasability restrictions. Assisted programmers for all
Aegis Elements with Programming issues involving Timing studies, logfile access,
Korean Font capability, Tactical display issues, Problem reproducibility and
resolution, Assisted in test shots including LINKEX, JAMEX, and occasionally
reserved lab time for my own test shots as needed. Some work on Mission Planner
video (X) issues.
Worked with Engineers, Managers, Programmers,
Computer Sciences Corporation Computer Scientist/Systems Engineer JCALS
Full active Secret – SSBI
Primary responsibility for Internal Citrix farm running civilian version of JCALS
(ACES) also provided primary support of Citrix farms fielded as part of NEXTGEN,
and JCALS Thin Client Web Servers. Devised process for remote login via Terminal
Services for remote management of DoD web servers, and was responsible for Security
scans and Maintenance drops run on CITRIX farms. Worked as UNIX SA on Sun Back
end to Citrix, DoD Interfaces – AFTOX, SATODS, ATOMS, reporting directly to base
personnel and management as needed. HP UX 11, Solaris 8, Solaris 2.6, Dec Tru 64
5., Citrix Metaframe XP
1, Citrix NFuse, Citrix CSG, Citrix Ticket Authority,
occasionally on loan to Unix Department for upgrades and example suite setup.
Worked closely with Networking, Engineering, and Security groups (as acting IASO)
to recommend and implement changes. Assisted Oracle DBA staff in running the
password change processes in flat files, databases, and dropping and creating
links, and hot backups.
Computer Sciences Corporation Level 2 Unix Support JCALS temp via TekSystems
later brought in full time perm. (above)
Full Secret/SSBI/ADP1 TS clearance 2/03
Interim Top Secret in effect – Investigation Ongoing.
3rd level support of JCALS Distributed Logistics Unix systems, DOD. Remote login
support.
(after Site SA and CSC Level 1)
Worked on HP UX, Dec Tru64, Sun Solaris, resolving Unix, application, and
functional issues as requested by site SA or JCALS Engineering. Duties include
remote support and upgrade, email configuration integration and troubleshooting,
DNS troubleshooting and domain changes, NIS troubleshooting, Hardware RAID
troubleshooting and configuration, and Software Volume Configuration, Veritas, JFS,
and ADVFS. Some travel to military bases for OS and Oracle upgrade. Also tasked
with Production Interface monitoring and manual assist of cron production
interfaces for SATODS, AFTOX, ATOMS, NLL, JEDMICS, CENTRA/CITOMS and others. Some
csh, ksh, and posix sh scripting to accomplish tasks, mostly troubleshooting by
tracing and modifying production scripts, SQLPlus Queries, filing Change Requests
as needed.
I took the initiative to conduct “Unix classes for Subject Matter Experts” as an
extra curricular.
PDC SOLUTIONS INC – SUN VENDOR AND INSTALLER CERTIFIED 3 2001 TO 7 2001
Sales Support Engineer
Pre Sales support for Inside and Outside sales organizations for Sun Enterprise
equipment and related peripherals including Tape libraries, Backup software,
Installed and configured internal and external RAID arrays, Performed Sun installs,
Veritas and DiskSuite support.
Demo Showroom support:
installed and configured Brocade SAN switch, demonstrated SunRay and Qlogic SAN.
OMICRON CONSULTING – SUN VENDOR CERTIFIED 5 1998 To 3 2001
(Employee Consultant)
Systems Engineer UNIX/NT Consultant – SUN Enterprise Workgroup Cluster Certified.
Served as HP Unix admin while certifying for SUN. Instrumental in Omicron’s Sun
Dealership Certification process – attained February, 2000. Also filled in for NT
Server, Novell, and Desktop occasionally
. Major placements include Foamex and MIIX
Group
POSTINGS:
MIIX GROUP
Sole responsibility for 9 Unix servers including the SUN E4500 business systems,
DNS, SMTP gateway, Overnight batch processing issues.
FOAMEX
First line responsibility for 16 HP UX Unix platforms including onsite installs in
Mexico and Canada.
BELL ATLANTIC VERIZON CONTRACTOR PER TEKSYSTEMS
Systems Engineer Cross Platform Change Control Contract for Bell Atlantic in the
company wide heterogeneous environment. Conducting the weekly Distributed Systems
Organization change control bridge, ISO9000 environment.
TIMEBRIDGE TECHNOLOGIES – LOCKHEED MARTIN AEGIS CONTRACT
( DID NOT MATERIALIZE)
Systems Engineering Consultant/Sales Support
Distributed Environment Server Consultant performing Pre sales support including
Sun Enterprise server installation, Solaris 2.6 upgrades. DNS, NIS, GNU
downloads, DiskSuite and Veritas Volume Manager, Kernel Tuning for Oracle
configurations, multiple subnets, some scripting. JumpStart used for multiple
desktops. Pre sales configuration and some travel as required.
BOEING DEFENSE AND SPACE GROUP ROTORCRAFT DIVISION
Systems Engineer UNIX/NT 1997 1998
Senior UNIX Engineer in HP UX 10.20 and Solaris 2.5., some AIX and IRIX. Massive
1
cross platform distributed environment with 1800 networked Unix systems. Technical
solutions involved NIS, NFS, Automounting as one integrated system. Application
planning and support
COMPUTER SCIENCES CORPORATION (CONTINUED)
CSC Integrated Systems Division (ISD) Systems Engineer LAN/WAN Novell/NT/Unix
1995 1997
Employed as a Systems Engineer Certified Netware Engineer specializing in Windows
NT Server, Novell 3.15, and Unix Integration, and various Cisco Internetworking
issues.
Pinch hit with Desktop Support and some facility design involvement. ISD dissolved
shortly after my move to Boeing.
MEDCO BEHAVIORAL CARE INC.
Systems Support Engineer UNIX/Novell/NT
Employed as a Cross Platform Systems Engineer responsible for medium unix server
HP 9000/800h 250 users,
(HP UX 9.04), Novell 3.15, NT, and various Internetworking issues. Devised Remote
Access (LAN and Dial up) and high level backup processes to be carried out by
unix/Novell staff. Installed and evaluated first NT server for Programming staff.
Some field service from DC to NYC.
FORMATION INC – 2ND TIME AS EMPLOYEE
Systems Engineer Novell/UNIX/NT
Employed as a Systems Test Engineer on FIOS mainframe and later as a CNE in a
cross platform Engineering and laboratory environment. Computer Resources
Engineer specializing in Novell, various Unix versions, Macintosh, and Mainframe
connectivity primarily in support of FAA PAMRI and CIU contracts
EDUCATION:
CISSP ONLINE PREREQ ARMY SKILLPORT, CISSP FUNCTIONAL 717 09 MTT ARMY SIGNAL CENTER
ARCSIGHT CERTIFIED, ARCSIGHT CONNECTORS CERTIFIED
SEVONE NETWORK MONITORING CUSTOMER COURSE
CAMDEN COUNTY COLLEGE – 1 YEAR OF ENGINEERING/SCIENCE CURRICULUM
LYONS INSTITUTE: DIGITAL COMPUTER ELECTRONICS
SUN ENTERPRISE CERTIFIED, SUN WORKGROUP CERTIFIED, SUN CLUSTER, CERTIFIED
SUN ACCREDITED INSTALLER
NOVELL CNE
MICROSOFT CERTIFIED PRODUCT SPECIALIST
Numerous Product Specific courses in Applications, HP Servers
Macintosh, Networking, Printing,
X ray and Ultrasound for Field Engineers.
PERSONAL
Married, 2 children – 27 and 21, Excellent Health.
Moving to Royersford PA for family reasons, settlement is July 26 2013.
ACTIVITIES:
Assistant Scoutmaster BSA Troop 59 East Greenwich Twp. NJ
East Greenwich Ambulance Association NREMT certified EMT, Lieutenant, Squad
Secretary,
And Squad Representative to Gloucester County Ambulance Association.
First Presbyterian Church Gibbstown NJ, Deacon, Church representative to Helping
Hands Food Distribution,
Paulsboro Soup Kitchen, Jacob’s Storehouse, Gibbstown/Paulsboro NJ,
Soccer Coach (F License) Pine Hill NJ and East Greenwich NJ
HOBBIES/INTERESTS:
Woodworking, Guitar, Bicycling, Tropical Fish, Motorcycles, Home Improvement,
Coaching Youth Soccer, Scouting, Marksmanship, Ham Radio, Astronomy, CEH
REFERENCES:
Management, CoWorker, and Personal references available for any and all items in
this resume at your request.