Chris Frighelis
Miami,FL *3173
**************@*****.***
Highly motivated professional seeking a position in the Information Technology industry where there is room to grow and continue learning within the Networking and Information Security realms. Possessing a strong background in troubleshooting and a passion for technology. I look forward to the opportunity to apply the skills I have acquired and continue to learn and grow within the technology industry while making myself a valuable member of a passionate technology team.
CERTIFICATIONS
CCNA, CCENT – CCNP
A +, Network +, Security +, MCP
CISSP in progress ( Sep Test Date )
TECHNOLOGIES
Operating Systems : Windows Server, RHEL, CENTOS, MacOS
Network : Deep knowledge of TCP/IP, OSPF, BGP, RIP, EIGRP,
Load-Balancing (ACE/F5 LTM) VTP/ VLAN’s, DNS, SMTP, SNMP, HSRP, STP,
Etherchannel, IPSec VPN, SSL/SSL VPN ( Juniper SA), QoS, NAT, ACL
Security/Monitoring: Splunk-SIEM, InTune, Rapid7, Nexpose, Metasploit Pro,
TCPDump, Tshark, Languard, SNMP – WhatsUp’ Gold – Solarwinds –
Nagios, ArcSight, Proprietary SNMP monitoring tools, VPN’s, Firewalls,
Cisco ACS, Cisco AGM/ADM, PaloAlto FW, Websense URL filtering
PROFESSIONAL EXPERIENCE
Home Builder June 2014 - Present
Sr. Network Security Engineer
Assess current security posture, build future roadmap based on assessment results
Review and update Security Policies when applicable
Design and implement SIEM technology ( Splunk ES ) – In Flight
Design and implement Threat Vulnerability Management program – In Flight
Design and implement Threat Intel lifecycle – In Flight
Build train and staff up NOC and SOC – In Flight NOC/Complete
Support, administer and maintain VPN endpoint devices
Support, administer and maintain firewalls and ACLs, NAT pools and routing
Build and staff up Information Security team
Implement DDoS protection at edge with vendor/partner
Implement WAF at edge for mission critical websites with vendor/partner
Participate in all architecture meetings as focal security SME to ensure corporate security posture
Is maintained throughout all ongoing and future projects
Assist network engineering with design/breakfix escalation when needed
Virtual Call Center June 2012 – June 2014
Sr. Network Engineer / Network Security
Support, administer and maintain network switching and routing infrastructure
Support, administer and maintain VPN endpoint devices
Support, administer and maintain firewalls and ACLs, NAT pools and routing protocols
Support, administer and maintain Internet content filtering systems
Support, administer and maintain network monitoring systems
Manage day-to-day relationships with data carriers and network equipment vendors
Architect, implement and administer solutions that support and enhance business objectives
Work as part of the Technical Operations team in support of business objectives, troubleshooting
issues and outages, program implementations and client requests
Manage trouble ticket queue, adhering to ITIL change and incident management processes.
Lead on Load-Balancing migration from Cisco ACE’s to F5 LTM’s for all Enterprise farms
Manage and configure enterprise to client connectivity via IPSec or Private Circuit
Support, administer and maintain SSL VPN concentrators (multi-site, clustered Concentrators)
Participate in external audits for PCI-DSS,SSAE-16 by providing supporting evidence
compliance as well as remediation if/when needed
Cipher Security Jan 2012 – June 2012
SOC Supervisor/Network Security Analyst
Leading initial team in charge of designing and managing a new Operations Center focused on
delivering security alerts, monitoring, and incident analysis to global Enterprise level clients
including but not limited to leading global financial institutions
Designing and managing Company and customer SIEM solutions (Arcsight) for the Security
Operation Center in Miami – Custom Correlations, tuning as well as PCI specific baselining
Build and provide guidance to the SOC on improvements to reports and correlation based on
client needs as defined by Security requirements and practices.
Providing guidance and suggestion on initial incident response for the customer on the event of
an alert or suspected security incident
Managing escalation procedures with internal personnel and providing remediation guidance to
clients in the event of Security issues
Providing guidance to create secure transmission methods between Company and Client
Prolexic Technologies Oct 2010 – Jan 2012
Security Engineer
Detect,identify and mitigate malicious traffic patterns using Network Analysis tools
i.e.Tcpdump
Configure secure p2p BGP sessions for client traffic pass-through via BGP and GRE
Configure and maintain IPS/IDS zones on Cisco ADM + AGM for client Networks
Monitor client Network presence as pushed upstream to our infrastructure ( BGP )
Configure and maintain DNS zones hosted for client base
Configure proxy IP’s on Citrix Netscaler
Work with Sr Network Engineering team to solve link saturation issues on 30+ GBps DDoS
attacks, assisting in traffic manipulation for optimal routing
Perform day to day monitoring and mitigating duties relevant to SOC global presence/SLA
Mentor new recruits in monitoring, mitigating and verification of Network Presence via BGP
ShuaTEK Apr 2010 – Oct 2010
Consultant
Varied technology builds from Network systems to infrastructure support and design
recommendation
VENALI Apr 2007 – Feb 2010
Network Engineer
Assisted in implementing VPN authentication server, RADIUS, including RSA two-factor
authentication
Managed all Switches and VLAN’s in corporate office and Primary and Secondary DC’s – 2900
360*-****-**** and 6500 series Catalyst switches
Configured and installed Cisco PIX firewalls and ASA nodes including Physical installation and
setup, access list application and creation of customer VPN tunnels
Implemented Whats Up Gold monitoring system to monitor Primary/Secondary DC and all
WAN points
Assisted in the infrastructure design for a new DC
Assisted in the migration process of all inter-workings of proprietary processing systems to
new DC including migrating Public IP space for transparency to all VPN Endpoints
Managed Routing between DC’s and points of presence 2600 2900 / layer 3 module on 4500
and 6500 models for MLS
Evaluated security logs to ensure the security policies on ingress points are up to date and
functional
On call 24x7x365 for all Network related issues, maintenances and/or critical conference calls
Network Operations Center Manager
Personally managed and monitored staff of 9 technicians in a 24/7 environment consisting of
200+ servers spread across 9 WAN points globally
Implemented new policies and streamlined interdepartmental communications to bring
NOC’s uptime from 97% to 99.99%
Cross trained other staff in all NOC functions to allow redundancy
Designed Sharepoint site to centralize all documentation for department
Personally trained all technicians to a higher level technically to facilitate interaction with I.T.
and Development staff
Led troubleshooting with Telecommunications Carriers to resolve issues affecting WAN points
Network Operations Tech Lead – Tier 3 Support
Provide specialized technical maintenance and recovery support for services for the entire
network and centrally managed multi-platformed systems. Anticipate emergent situations for
all available data sources and assist in the resolution of all critical Network issues
Monitor all points of LAN/WAN environments via SNMP monitoring tools and troubleshoot all
technical aspects of proprietary software
Respond to and resolve all Tier 3 tickets within timely manner and interface with
Infrastructure and Development teams when appropriate
Network consisted of 10 WAN points across the globe and 200 servers, OS’s = Windows
NT/2000/2003 and Linux Apache.
CARNIVAL CRUISE LINES Feb 2007 – Mar 2007
Consultant
Part of a Team of 6 technicians, flown to Venice, Italy to assist in the deployment of 250 workstations
and point of sale systems for the new Carnival Freedom ship
Troubleshot Network issues across the ship
Deployed multiple network devices
This deployment was completed in a matter of 3 weeks
INDEPENDENT CONTRACTOR Aug 2006 – Jan 2007
Consultant
Involved in contract work for the Academy Of South Florida. At the Academy my responsibilities have been basic networking and cable management as well as client configuration and troubleshooting in a Windows Server 2003 environment
XP Troubleshooting
Built PC’s
Configured wireless networks
Troubleshooting TCP/IP – connectivity issues for LAN’s
GULF CAPITAL CORP. Mar 2002 – Aug 2006