Alex Carvajal
Las Vegas Nevada, 89101
****.********@****.***
http://www.linkedin.com/in/alexcarvajal
Information Technology Security Specialist
Solutions-oriented IT Security Specialist with notable success directing a broad range of corporate IT initiatives while participating in planning and implementation of information-security solutions in direct support of business objectives for over 13 years of cross platform experience in Information Technology as systems administrator including analyze, design, implement, and maintain solutions as well as troubleshooting server hardware & software related problems.
Professional Objective: Seeking a position with a company for growth where I can utilize my skills in security, and administer a network and allows me the opportunity for further advancement.
Core Competencies:
• Network & Systems Security; Business Impact Analysis, Risk Management & Safety Regulatory adherence; Data
Integrity/Recovery; Disaster Recovery Planning; Contingency Planning. Information Systems Management & Security, Cyber security, Operational & Enterprise Risk Management & Project Management, Solid understanding of PKI infrastructure and cryptography methods. Research & Development; Risk Assessment; Cost Benefits Analysis excellent problem-solving skills,IPS/IDS,
(ACL) (GPO's) PCI 3.0 standards. Securing a windows & Lunix Server Platform, Security Policy Implementation, System Forensics Investigation & Response, Internetworking Infrastructure and Operations, Microsoft Server and desktop Infrastructure design and deployment. MDT, SCCM Outstanding troubleshooting skills with the ability to isolate computer problems and Devising a Course of action by updating procedures and security policies.
• Platforms: UNIX, Linux (Red Hat, Enterprise), Fedora, CentOS, Debian, Fedora, Ubuntu, Kali, in depth knowledge of, CRM, ERP Windows NT/2000,Windows 2003 Server, Windows 2008 server R2, Windows 2012 server R2 Essentials, Datacenter,Standard, XP, Win, 7
& 8,10, IMac Apple OS X, CLI, Sun Solaris, IBM-AIX, HP-UX, Server, MS-DOS, Android, SDK, iOS SDK.
• Mail: Exchange Server/2003/2007,2010, 2013/ POP/IMAP/local Exchange/hosted Exchange, Zimbra, Novell Netware, GroupWise, Intermedia/hosted Exchange.
• Networking: TCP/IP, UDP, DHCP, DNS, WINS, FTP, SFTP, RDP, RAID, SAN, NAS, CAS, Novell, PXE, ERP,
MRP,NAT,DFS,LDAP,ISO/OSI, IIS IPX/SPX,SMS/, VPN, SSL, SSH, PGP, PKI, BGP, Experience with routing protocols, OSPF, RIP, and EIGRP IAS, Windows Print Servers, WSUS, SCCM, SMTP, IMAP,POP SNMP, PPP, SOAP,Telnet,
LAN/WLAN/WAN,MAN,CAN,PAN,GAN,INTERNETWORK,
IPSec,VPN, Apache, J2EE, Tomcat, lighttpd, nginx, Samba, Print Server.
• Database: SQL, SQLite, MySQL2005/2008, MSSQL, T-SQL, Pervasive PSQL, MS Access.
• Languages: C/C++/ Powershell scripting, VBA, VB.NET, Html, Batch Files Scripts Files, Crystal Reports, Registry files, My SQL Query2005/2008, PHP, Delphi, PhpMyAdmin, JavaScript, Python, HTLM, MS Access, Visual basic, Java
• Wireless: Active RFID, Bluetooth, WiFi, ZigBee, NFC,DAS.
• Hardware
Storage: DELL/EMC AX4-120, DELL/EMC CX4-120, DELL/EMC CX3-10, DELL PV MD 3000 DELL PV MD1000, IBM Fast T-200, WD My Cloud EX2100, Western Digital DL4100 8TB, QNAP HS- 210, QNAP TS-421, QNAP TS-469L
Firewall: CISCO PIX 525, CISCO ASA 5510, Dell SonicWALL TZ300 Wireless,TZ400 Wireless, TZ600.
Routers: CISCO 1720, CISCO 2600, CISCO 2800, 3 Cisco Smart WS-C3750-48TS-S switch, Cisco 3800 Router, Netgear Prosafe 48 port Gigabit Smart Switch, layer 2
Switches: CISCO 2950, CISCO 3560, 3 COM 4100, Brocade Switches, HP Switches 2920,5800 POE.
DELL: R410,R510,R710,Power Edge 2850, Power Edge 2900, Power Edge 1955 blade Server, Power Edge 1800, Power Edge 1850, Precision workstation 670, 390.
HP: HPProliant 360, HP Proliant G6 390, HP 9000, L Class, RP Series, HP Integrity IA64, HPProliant, HP 4100 Workstations. SUN: Sun Fire V 240, V 120, Sun Sparc Ultra 2, Ultra10, Sun E450, Sun Ultra 400, SUN Blades 2500.
IBM: IBM E Series, IBM X Series with Xeon Servers SMP Servers, IBM Power 5 Series, IBM - Infinity Series 3500, 5000, 5100& 5500.
• Virtualization: VMware ESXi 4,ESXi 4.5,VMware ESX 5, VMware vCenter Server, VMware vSphere 5,VMware VMware ESXi 5.5 & VMware vSphere 5, vCenter Server 5.0, VMWare iSCSI, VMWare ESXI 5, with SANs - Equalogic Config and replication, SRM, DRS,devices vSphere operations Mnagement, Microsoft Hyper-V on Windows Server 2012, Virtual Box, Microsoft Virtual PC, VMware VDR, vRanger 5.3, Parallels Desktop for Mac, Qemu for Linux, OpenVZ, Citrix XenDesktop Administration, XenServer Virtualization, Citrix XenApp, XenDesktop, HVM with PV drivers, PVHVM (HVM with PVHVM drivers), PVH (PV in an HVM
container) and PV (paravirtualization).
• Voip & PBX: Mitel SIP,VOIP,PBX, Cisco IP Phones, Avaya IP and PBX Phones, Nortel IP Phones, (SIP) SIP appliances, communicator and ECC.
NEC Systems, Intermedia Hosted PBX, Nextiva PBX, SIP,TDM.
• Backup/Image/Clonning: DELL PV TL4000, DELL PV TL2000, DELL PV 124 Acronis, Veeam, Storagecraft, Appasure, Symantec, Acronis True Image, Macrium Reflect, Drive Image XML, CloneZilla, Paragon Backup and Recovery, Novell Zenworks imaging tool, Boot Camp Apple & Windows
Tools Xamp & Mamp, Esri Tools, ArcGIS applications, such as ArcMap and ArcGlobe, Google maps, Blade, HP Open View, IBM Tivoli, Tripwire, Snort, Lotus Notes, Amadeus, Smart Term Office, Sabre, CRM, Novell client for Windows, Microsoft Office 2000 thru 2012 Raritan, Logmein123, Rescue, Central, Join. Me, Team Viewer, WebEx,, VNC, Chrome Remote Desktop App, GoToMyPC, McAfee/Norton Virus, Trend Micro, Dell Server administrator, Desktop Authority, ConnectWise, Spice, Ticket System., Office365, Solar Winds, Wireshark. Dropbox, Google drive, OneDrive, Box, Amazon Cloud Drive, O365, SharePoint 2010 administration, InfoPath Forms Development, Raritan KVM Over IP.
Work Experience:
Mitsubishi Cement Corporation - Network Engineer
12/2015 - Present - Henderson, Nevada
Provide support Level II, III in the IT Infrastructure, for 4 plants in the Nevada area engineering team member supporting enterprise networks. Oversee network and equipment upgrades to include IOS, CatOS image upgrades, and configuration changes.
Document network problems and changes working in diverse management environments. Quickly resolve all IP network issues to reduce waste and downtime. Provide tier 3 and 4 support for commercial clients on a 24 x 7 pager rotation schedule. Ensure thorough network documentation, including maintaining each account’s network matrix, backup configurations and network diagrams. Performed network documentation and created disaster recovery plan. Setup Cisco Entercept IDS and Cisco Works for Windows for network monitoring. Oversaw migration of WAN links to new service provider, designed full mesh WAN, set up TFTP server to backup, and restored configuration and IOS image files for the PIX, Cisco routers, and Catalyst switches.
Analyzed expanding network, ran fiber, and implemented wireless communication. Designed configuration and layout of WAN to include IPT Internet facing VPNs and wireless subnet.
Migrated network from full mesh frame relay to Point-Point T1 on larger sites, and implemented IPsec VPN on smaller sites.
Administered multiple PIX firewalls throughout WAN to ensure LAN integrity from external threats.
Monitored bandwidth and network activity by analyzing information provided by MRTG to ensure both efficient and effective network operation. Configured and supported multiple remote site installations. Working on PIX (506, 515, 525, 535), ASA (5505/5510) Firewalls. Implementing security policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA
(TACACS+ & RADIUS).
Dealt with monitoring tools like network packet capture tools like Wire-shark, etc. Installation, Configuration and Administration of Windows Servers 2000/2003, Active Directory, FTP, DNS, DHCP, TFTP, Linux OS under various LAN and WAN environments.
Migration of existing IPSEC VPN tunnels from Pre-Shared key to Certificate. Network redesign for branches / Campus Locations.
Changing both the voice and data environment.
Replacing branch hardware with new 2851 routers and 2960 switches. Performing security audits of perimeter routers, identifying missing ACL’s. Troubleshooting of complex LAN/WAN infrastructure, including routing protocols EIGRP, OSPF & BGP.
Lab testing & validation prior to implementation of Nexus 7K, 5K & 2K connecting to blade servers.
Settings of the networking devices (Cisco Router, switches) co-coordinating with the system/Network administrator during implementation. Configuring network access servers and routers for AAA Security. Documentation and change control.
Working on troubleshooting of complex LAN/WAN infrastructure. Work Experience:
Prince Law Firm - IT Manager\Project Implementation Specialist 06/2011 – 10/2015 - Miami -Fl
Implement and Infrastructure Designed Business Intelligence reports for front end user and back office purposes, according to client specifications using Active Reports and C#. Core expertise in design, implement, migrate (P2V, V2V) and maintain virtualization environment using VMware vSphere and VMware vCenter Suite.
• Executed data base scripts in support of client systems using Microsoft SQL Server, T-SQL.
• Designed and implemented new functionality within data intensive applications.
• Performed data import and data transformation activities.
• Solved recurring issues, documenting and promoting best current practices
• Implemented features, providing technical expertise and training, and facilitating knowledge transfer to new clients.
• Liaison between Developers, Business Analysts and clients, resolving business and
• technical challenges for successful transition to client led systems.
• Participated in onsite meetings with clientele throughout the project cycle and into support
• Conducted end user training, database administration, and web server configuration as the software back end subject matter expert
• Configured and reengineered software to fit the needs and wants of the customer
• Analyzed, updated, and improved internal/external knowledge base guides and technical
• Design, implement and administration of VMware ESXi and VMware Essential for test environment.
• Design, implement and day to day administration of AD, DNS, DHCP, File servers for DC.
• User ID, e-mail ID creation, deletion for DC users.
• Upgrade the child domain controller to Windows server 2008 in co-ordination with client’s team.
• Windows TFS 2010 proxy server installation, configuration and administration.
• Audit the servers to ensure compliance in terms of established standards, policies, and configuration guidelines.
• License Management for DC’s.
• Administration of Windows 2003 and Windows 2008 servers.
• System Administration of Symantec Antivirus server.
• Patch management for DC servers and Desktops using WSUS 3.0.
• Level one server and network support.
• Administration and support the production VMware environment which consists of DELL R710, DELL 2950 and SAN Storage DELL CX3-10 using VMware vSphere 4.5 suite.
• Implementing features like clustering, HA, DRS VMware vCenter Server.
• As a part of datacenter movement, migrate the production servers on VMware infrastructure from the datacenter. This migration was from VMware vSphere 4 to VMware vSphere 5 environment as well.
• Migrating servers from P2V, V2V and across platforms using VMware vCenter Converter.
• Performance monitoring for ESX servers and VM’s and installation of ESXi server.
• Implement the disaster recovery for highly critical production servers using vRanger Replicator.
• Backup administration using Symantec Backup executive 2010 R3, R2 and DELL Tape Library DELL PV TL4000 and TL124.
• Administration of the clustered server environment using software load balancer Adobe ColdFusion 9.
• Update the web content on cluster environment through change management process.
• Upgrade the office version to MS Office 2007 SP2 to support the auto server discovery feature for Exchange 2010.
• Upgrade the branch offices AD server to Windows 2008. This includes installation of AD DNS and preparation to upgrade the AD structure to Windows 2008.
• DHCP, Print server migration from Windows 2003 R2 server to Windows 2008 R2 server.
• Manage user accounts, permissions, email, and anti-virus solution.
• Implementing print server configuration and mapped personal folder using group policy.
• Install, implement, and manage Windows server operating systems, and support software/services in Windows infrastructure.
• Installation and configuration of WSUS 3 for windows patch management.
• Support and maintain Windows Server, VM-Ware, and Terminal Services environments
• Administer local and MPLS networks and aid in infrastructure design in order to maximize throughput, scalability, and uptime
• Manage VoIP phone system and architecture
• Configure Cisco and ProCurve switches and coordinate firewall changes
• Monitor the performance and deliverability of key business systems and mobile applications
• Develop processes and procedures to overcome challenges or increase efficiency across various lines of business.
• Expertise on Powershell scripts for automating tasks and process for end to end automation using different Embedded technologies like .net, WMI, different Adaptors etc. Integration between AD/Exchange
• Installed, Deployed and maintenance of Enterprise Applications on Tomcat, IIS,Apache.
• Load Balancer with Web servers to provide scalability and reliability Installed and configured Sun ONE 6.x & Apache 2.x Web Server and integrated them with
WebLogic
Work Experience:
Dynamic Media Technologies - IT Support Miami - IT Specialist 01/2009 – 5/2011 - Miami -Fl
Provide Tier II & III desktop applications, hardware, and network support for all users, including local users as well as users at remote locations. Troubleshoot and resolve Software/Hardware/Networking issues. Provide telephone and/or desk side support for software applications. Train end users on use of equipment and software application functionality. Troubleshoot network connectivity issues.
Provide emergency coverage on short notice, and resolve the problem under pressure. Install and maintain network hardware and software. Install new users on Active Directory & Exchange Server Perform system backups and data recovery.
Resolve network communication problems independently. Superior client service experience helping users by telephone and remote control technology
support various levels of desktop Operating Systems (Windows XP, VistA, Windows 7,8, etc and
Microsoft Office Suites (XP, Office 2000 thru 2012) Configured and install Firewall (Sonic wall, Cisco, ) Windows Active Directory, Microsoft Exchange Server, IIS, MAC, Windows Operating Systems, MS
Office 2010, VPN, IP telephone hardware and software systems. Networking techniques to maximize flow of information: IP, DHCP, DNS, WAN, LAN, VPN,
Active Directory, Network Policies, SCCM.
VMware Virtual environments as well as storage administration. troubleshoot and fix hardware and software problems. Networking and server troubleshooting: bind IPs, lookup DNS information, run trace routes.
In-depth knowledge of Dell/HP/IBM/EMC/NetApp hardware platforms including Cisco and Fortinet hardware and software.
Use of Enterprise ticketing systems.
recover and rebuild a RAID on all major server brands Ability to patch, cables do runs over Cat5e and Cat6 cables. Cable/DSL/T1/Fiber Connections.
Network Infrastructure (switches/routers/firewalls/port-forwarding) Windows Server 2012 DHCP load balanced failover design. Citrix XenApp design and rollout.
Network Cat5e/6, RG-59/6
Message Trace Tools, MX and SPF Records, Block Lists, SPAM, Email Filtering and Virus Protection
Projects Carried out:
1. IPv6 Conformance: Implementing Changes to Network Stack(Host side) to make sure that our Network Stack is IPv6 compliant. As a part of this project bugs reported by ANVL (Automated Network Validation Library) IPv6 Conformance Test Suites were fixed. Mainly did changes to ICMPv6, NDP (Neighbors Discovery Protocol), DAD (Duplicate Address Detection), Stateless Auto configuration modules of Ipv6 Stack.
2. Bug fixes for supporting Virtualization and High Availibity support for storage device from networking point of view. Bug fixes relating to Address configuration, virtual IP(VIP), source address selection, protocol control block, DNS, DDNS, interface link events.
3. Dual stack support: A special environment where two TCP/IP Networking stacks had to co-
exist together making applications transparent of existence of two stacks. Resorts-Advantage - IT Administrator
01/2005 – 12/2008 - Miami -Fl
Give support to Miami office with over 60 users as well Mexico and Spain office with over 40 users in each site, maintain from windows servers to red hat Linux enterprized servers. The Novell Tree domain using 5 NetWare servers as well 2 Imac Xservers connecting to Raritan smart console, maintain and support DNS/DHCP console, Novell Netware tree Console, Give support Zeacom desktop manager for agents, maintain and give support Avaya Site administrator for the PBX phone systems as well the Intuity messaging system for Avaya, connecting and give support to are external vendors, connecting them to Citrix XenApp farm Citrix MetaFrame Server and Citrix Presentation Server support server components Citrix Xenn App SDK, Citrix Virtual Channel SDK, Citrix ICA Client Object SDK, Citrix Web Interface SDK, Citrix Simulation API SDK. Give support to the in-house pervasive client Module database also SQL database support, and Delphi client support for all users. Assist in maintaining the Purchase Order Register and tracking expenditure against purchase orders as required, Check invoice codes, Entering invoices received, Data entry of receivables, Registering incoming invoices and distributing to authorizers for approval prior to processing in the Matching invoices received with purchase orders Reconciliation of bank accounts and other accounts as directed, Follow up payable entries, Processing of accounts receivable invoices; and Processing of monthly data files and revenue invoices, creation and data entry, build from scratch proxy server squid, and implemented in the network.
• Two years of software development experience in host side kernel networking on a network stack based on FreeBSD. Familiarity in working with TCP/IP, IPv4, IPv6 protocols in a an environment which provides multithreading, multitenancy and HighAvailability support at Network Layer. Have filed for two patents in storage domain.
• Created strategic technology-transfer group to assist corporate efforts with TCP/IP. Delivered early flexible internetworking firewall and router products and network management administration tool
Palace-Resorts - Junior Admin
03/2002 – 12/2005 - Miami -Fl
Networking administration on how to install/configure WANs, LANs using TCP/IP, DHCP,
How to Setup (IIS) and FTP services and also excellent on Active Directory Install/Configure,
DNS, WINS, setting up RAID. 2000/2003 Active Directory Forest hosting four companies
with over three (3000) users.
Supported and Administer two (2) separate 'Two Nodes' Microsoft Exchange 2003 Server Cluster, with over five (5000) thousand mailboxes. Performed All Server upgrades and configurations in Forest, expert on PST, Archive, and nk2 files. Managed and maintain a sixty (6) Windows 2000/2003 Citrix Server Farm, Perform server and security audits, system backup restore procedures, and other recovery processes in accordance with the company's disaster recovery and business continuity strategies
Maintain up to 120 desktops & laptops in Miami branch including operating system from
Win 98, win 2000, XP Pro. Setup digital certificates maintain server printers & scanners,
Faxes, etc.
Educational Background:
ITT Technical Institute - Miami, Fl – IT ISS PROGRAM Bachelor’s of Science in Information System Cyber Security, 06/2015 ITT Technical Institute - Miami, Fl – IT CNS PROGRAM
(NETWORKING)
Associate of Science in Information Technology-Computer Networking Systems, 6/2005
Fast Train - Miami, Fl- MIS-PROGRAM
Degree – (MIS) Management Information System, 10/2009 Certifications
A+, 3G & 4G – CDMA, GSM, UMTS, iDEN, WiMAX, LTE Telecommunications Technology, 08/2008
CISSP (Training For Test)
Professional Affiliation - Member Information Systems Security Association Bilingual: English and S panish fluent
References: Furnish upon request