Post Job Free
Sign in

Engineer Security

Location:
Miami, FL
Posted:
June 05, 2015

Contact this candidate

Resume:

Chris Frighelis

**** *.*. ***** *****

Miami,FL *3173

786-***-****

**************@*****.***

Highly motivated professional seeking a position in the Information Technology industry where there is room to grow and continue learning within the Networking and Information Security realms. Possessing a strong background in troubleshooting and a passion for technology. I look forward to the opportunity to apply the skills I have acquired and continue to learn and grow within the technology industry while making myself a valuable member of a passionate technology team.

CERTIFICATIONS

CCNA, CCENT – CCNP

A +, Network +, Security +, MCP

CISSP in progress ( Sep Test Date )

TECHNOLOGIES

Operating Systems : Windows Server, RHEL, CENTOS, MacOS

Network : Deep knowledge of TCP/IP, OSPF, BGP, RIP, EIGRP,

Load-Balancing (ACE/F5 LTM) VTP/ VLAN’s, DNS, SMTP, SNMP, HSRP, STP,

Etherchannel, IPSec VPN, SSL/SSL VPN ( Juniper SA), QoS, NAT, ACL

Security/Monitoring: Splunk-SIEM, InTune, Rapid7, Nexpose, Metasploit Pro,

TCPDump, Tshark, Languard, SNMP – WhatsUp’ Gold – Solarwinds –

Nagios, ArcSight, Proprietary SNMP monitoring tools, VPN’s, Firewalls,

Cisco ACS, Cisco AGM/ADM, PaloAlto FW, Websense URL filtering

PROFESSIONAL EXPERIENCE

Home Builder June 2014 - Present

Sr. Network Security Engineer

Assess current security posture, build future roadmap based on assessment results

Review and update Security Policies when applicable

Design and implement SIEM technology ( Splunk ES ) – In Flight

Design and implement Threat Vulnerability Management program – In Flight

Design and implement Threat Intel lifecycle – In Flight

Build train and staff up NOC and SOC – In Flight NOC/Complete

Support, administer and maintain VPN endpoint devices

Support, administer and maintain firewalls and ACLs, NAT pools and routing

Build and staff up Information Security team

Implement DDoS protection at edge with vendor/partner

Implement WAF at edge for mission critical websites with vendor/partner

Participate in all architecture meetings as focal security SME to ensure corporate security posture

Is maintained throughout all ongoing and future projects

Assist network engineering with design/breakfix escalation when needed

Virtual Call Center June 2012 – June 2014

Sr. Network Engineer / Network Security

Support, administer and maintain network switching and routing infrastructure

Support, administer and maintain VPN endpoint devices

Support, administer and maintain firewalls and ACLs, NAT pools and routing protocols

Support, administer and maintain Internet content filtering systems

Support, administer and maintain network monitoring systems

Manage day-to-day relationships with data carriers and network equipment vendors

Architect, implement and administer solutions that support and enhance business objectives

Work as part of the Technical Operations team in support of business objectives, troubleshooting

issues and outages, program implementations and client requests

Manage trouble ticket queue, adhering to ITIL change and incident management processes.

Lead on Load-Balancing migration from Cisco ACE’s to F5 LTM’s for all Enterprise farms

Manage and configure enterprise to client connectivity via IPSec or Private Circuit

Support, administer and maintain SSL VPN concentrators (multi-site, clustered Concentrators)

Participate in external audits for PCI-DSS,SSAE-16 by providing supporting evidence

compliance as well as remediation if/when needed

Cipher Security Jan 2012 – June 2012

SOC Supervisor/Network Security Analyst

Leading initial team in charge of designing and managing a new Operations Center focused on

delivering security alerts, monitoring, and incident analysis to global Enterprise level clients

including but not limited to leading global financial institutions

Designing and managing Company and customer SIEM solutions (Arcsight) for the Security

Operation Center in Miami – Custom Correlations, tuning as well as PCI specific baselining

Build and provide guidance to the SOC on improvements to reports and correlation based on

client needs as defined by Security requirements and practices.

Providing guidance and suggestion on initial incident response for the customer on the event of

an alert or suspected security incident

Managing escalation procedures with internal personnel and providing remediation guidance to

clients in the event of Security issues

Providing guidance to create secure transmission methods between Company and Client

Prolexic Technologies Oct 2010 – Jan 2012

Security Engineer

Detect,identify and mitigate malicious traffic patterns using Network Analysis tools

i.e.Tcpdump

Configure secure p2p BGP sessions for client traffic pass-through via BGP and GRE

Configure and maintain IPS/IDS zones on Cisco ADM + AGM for client Networks

Monitor client Network presence as pushed upstream to our infrastructure ( BGP )

Configure and maintain DNS zones hosted for client base

Configure proxy IP’s on Citrix Netscaler

Work with Sr Network Engineering team to solve link saturation issues on 30+ GBps DDoS

attacks, assisting in traffic manipulation for optimal routing

Perform day to day monitoring and mitigating duties relevant to SOC global presence/SLA

Mentor new recruits in monitoring, mitigating and verification of Network Presence via BGP

ShuaTEK Apr 2010 – Oct 2010

Consultant

Varied technology builds from Network systems to infrastructure support and design

recommendation

VENALI Apr 2007 – Feb 2010

Network Engineer

Assisted in implementing VPN authentication server, RADIUS, including RSA two-factor

authentication

Managed all Switches and VLAN’s in corporate office and Primary and Secondary DC’s – 2900

360*-****-**** and 6500 series Catalyst switches

Configured and installed Cisco PIX firewalls and ASA nodes including Physical installation and

setup, access list application and creation of customer VPN tunnels

Implemented Whats Up Gold monitoring system to monitor Primary/Secondary DC and all

WAN points

Assisted in the infrastructure design for a new DC

Assisted in the migration process of all inter-workings of proprietary processing systems to

new DC including migrating Public IP space for transparency to all VPN Endpoints

Managed Routing between DC’s and points of presence 2600 2900 / layer 3 module on 4500

and 6500 models for MLS

Evaluated security logs to ensure the security policies on ingress points are up to date and

functional

On call 24x7x365 for all Network related issues, maintenances and/or critical conference calls

Network Operations Center Manager

Personally managed and monitored staff of 9 technicians in a 24/7 environment consisting of

200+ servers spread across 9 WAN points globally

Implemented new policies and streamlined interdepartmental communications to bring

NOC’s uptime from 97% to 99.99%

Cross trained other staff in all NOC functions to allow redundancy

Designed Sharepoint site to centralize all documentation for department

Personally trained all technicians to a higher level technically to facilitate interaction with I.T.

and Development staff

Led troubleshooting with Telecommunications Carriers to resolve issues affecting WAN points

Network Operations Tech Lead – Tier 3 Support

Provide specialized technical maintenance and recovery support for services for the entire

network and centrally managed multi-platformed systems. Anticipate emergent situations for

all available data sources and assist in the resolution of all critical Network issues

Monitor all points of LAN/WAN environments via SNMP monitoring tools and troubleshoot all

technical aspects of proprietary software

Respond to and resolve all Tier 3 tickets within timely manner and interface with

Infrastructure and Development teams when appropriate

Network consisted of 10 WAN points across the globe and 200 servers, OS’s = Windows

NT/2000/2003 and Linux Apache.

CARNIVAL CRUISE LINES Feb 2007 – Mar 2007

Consultant

Part of a Team of 6 technicians, flown to Venice, Italy to assist in the deployment of 250 workstations

and point of sale systems for the new Carnival Freedom ship

Troubleshot Network issues across the ship

Deployed multiple network devices

This deployment was completed in a matter of 3 weeks

INDEPENDENT CONTRACTOR Aug 2006 – Jan 2007

Consultant

Involved in contract work for the Academy Of South Florida. At the Academy my responsibilities have been basic networking and cable management as well as client configuration and troubleshooting in a Windows Server 2003 environment

XP Troubleshooting

Built PC’s

Configured wireless networks

Troubleshooting TCP/IP – connectivity issues for LAN’s

GULF CAPITAL CORP. Mar 2002 – Aug 2006



Contact this candidate