Post Job Free

Resume

Sign in

Program Manager Cloud Security

Location:
East Brunswick, NJ
Posted:
March 07, 2024

Contact this candidate

Resume:

SAMIR HASAN

** ****** ** * ******** Junction, NJ 08852 email: ad36qx@r.postjobfree.com mobile: 732-***-****

Professional Summary:

•Senior Solution Architect/ Infrastructure, Cloud & Cloud Security, On Prem to Cloud Migration, Project/Program Manager with more than 20+ years of leading enterprise-wide, multi-million-dollar projects and business processes.

•SME on Cloud/Storage migrations, Implementation of Big Data Technologies, Object Storage such as AWS /Azure/GCP setup and migration from on prem to public/private cloud domain.

•Possesses a sound experience of leading AWS/Azure/GCP Devops Engineers and guiding them through projects related to IAAS & PAAS Cloud environments.

•Proficient at demonstrating value proposition of managed services on public cloud companies (e.g., AWS, Azure & GCP) and participate in architectural discussions to ensure solutions are designed for successful deployment in the cloud.

•Skilled Cloud Storage/Cloud Security professional specializing in managing and architecting Cloud/Block/File storage technologies using vendors such as DELL EMC, VMware, Netapp, IBM, Hitachi, AWS, Azure & GCP.

•Virtualization Architect with extensive hands-on experience in Cisco UCS, VMware virtualization, Vmware Tanzu,Azure/GCP.

•Architecting storage & cloud solutions, troubleshooting and monitoring large scale Cloud/SAN &NAS Islands, managing 200+ Pb of data in an Enterprise Cloud Environment.

•Master’s in Information Systems with a concentration in Project Management from Stevens Institute of Technology.

Technology Stack worked upon is AWS, Azure Migrate, GCP, Cloud Physics, Anthos, Docker EE, Kubernetes, Tekton, Containerization, Ansible, Python, CloudFormation, Terraform, Wiz.io, Buddy, Git, JIRA, DataDog, Prometheus.

Professional Experience:

Unifirst Corporation, MA Mar 2023 to Dec 2023.

Senior AWS/Azure Cloud Architect/Engineer

Worked on highly complex innovative projects that required in-depth expert technical knowledge of AWS IAAS/PAAS as well as Azure IAAS/PAAS cloud-based architectures and technologies that enhanced strategic business processes and outcomes.

Implemented a full scale migration of on prem data center servers to AWS & Azure cloud environments using Automation tools and scripting in Terraform .

Defined principles that guided technology decisions and the relationship between business strategy and cloud-specific technology innovations.

Identified dependencies and resource constraints, estimated network bandwidth/throughput and finalize migration approach and tooling.

Developed and communicated AWS/Azure security policies to the application and business teams. standards, guidelines, and procedures.

Reviewed and approved recommendations to architectural standards at the cloud services level.

Implemented Wiz.io to run vulnerability reports on all vm instances.

Coordinated exceptions to architectural standards at the cloud services level.

Ensured compatibility with existing solutions, infrastructure, services, and strategic requirements.

Supported the development of software and data delivery platforms with reusable components that can be orchestrated together into different methods for different business solutions.

Assisted in post-implementation continuous-improvement efforts to enhance performance and provide increased functionality as well as advised on options, risks, costs versus benefits, system impacts, and technology priorities.

Provided leadership, and technology guidance and mentored other teams throughout the cloud services domain.

Environment: App Services, Azure AD, MS Defender, Jenkins, Azure Data Factory, Azure Devops, Wiz.io, Amazon EC2 Auto Scaling, Amazon ECS, AWS Database Migration Service, Amazon API Gateway, Amazon VPC, Route 53, Cloud Frontm PrivateLink, AWS Transit Gateway, ELB.

PSEG, Newark, NJ Sept 2021 to April 2023

Senior AWS/Azure Cloud Architect

Worked with the Devops Engineers to get Applications setup utilizing AWS/Azure PAAS Resource Groups with the policies and procedures that were established in the organization.

Planned, designed and deployed Azure IAAS environment, Storage and Azure Vnets as a greenfield setup.

Worked on architecting cloud security controls and framework on Azure Security Center alongside with the IT security team to address IAAS & PAAS security concerns in Azure.

Worked with the Cloud Infrastructure team on deploying EC2 instances, EBS Volumes setting IAM roles and setting NSG as well as MKS Keys.

Daily scanning of all nodes running in the Devops environment being monitored using Wiz.io. Full scale license product service usability was made available.

Worked with the Windows Midrange team to close gaps in Azure AD Connect as well as some of the groups and divisions using Azure AD Connect and sync on Prem AD with Azure AD .

Supported multiple Devops Application teams to coordinate all efforts in the PAAS environment using Azure ADO and Azure Resource management.

Identified and closed security gaps in client’s greenfield Azure environment.

Engaged in sessions with Microsoft implement over all IAAS & PAAS services and their best practices.

Environment: App Services, Azure AD, MS Defender, Jenkins, Azure Data Factory, Azure Devops, Wiz.io, Amazon EC2 Auto Scaling, Amazon ECS, AWS Database Migration Service, Amazon API Gateway, Amazon VPC, Route 53, Cloud Frontm PrivateLink, AWS Transit Gateway, ELB.

66degrees (Google Partner), Denver, CO April 2021 to Aug 2021 Cloud Architect (Contract through YOH IT)

Planned, designed and implemented the whole Lift and Shift migration approach from on prem to GCP in a phased approach.

Setup and configure the F5 Virtual Appliances w.r.t different configurations and automated the same using Deployment manager, Terraform and Ansible.

Planned, designed and implemented custom load balancing solutions using Network Endpoint Groups to serve traffic w.r.t multiple applications hosted on the same VM.

Setup highly available private RFC-1918 connectivity between on prem DC and other public cloud providers to GCP and automated the same via IAC.

Integrated Terraform and Ansible to implement complete infrastructure provisioning and configuration management.

Implemented CI/CD pipelines with GitOps methodology using Jenkins, Packer, Cloud Build, Terraform and Terragrunt to automate and manage infrastructure.

Implemented IAC using Terraform, Terragrunt and Ansible to provision other infrastructure and foundation elements.

Built Vmware Tanzu using Vsphere for a customer running Kubernetes Cluster to manage workloads.

Planned, designed and implemented the secure migration of data from Amazon Redshift to Big query using the Big query data transfer Service over private RFC-1918 connectivity.

Collected metrics, logs, and traces across Google Cloud for applications.

Implemented and setup out-of-the-box dashboards and views to monitor the platform and applications.

Setup appropriate performance and availability indicators

Setup alerts and notification rules with their GCP Infrastructure setup as per the required SLOs.

Implemented and Automated the Cloud Operations Suite including monitoring, logging and alerting setup using Terraform and GitOps methodology

Environment; GCP, Cloud Build, Cloud SDK, GKE, CCAI, Big Query, Cloud Bigtable, Cloud Storage, Cloud Shell, Anthos, Cloud Functions.

Comcast, Philadelphia, PA May 2019 - Jan 2021

Private Cloud Engineer

•Ensured solutions that are well engineered, operable at large-scale, maintainable, and delivered on schedule. Developed, documents, and ensures compliance with best practices.

•Manage Azure subscriptions, resource groups, configure RBAC and ACL.

• Setting up firewalls, network security groups, application security Groups, application gateway WAF.

• Assisted in application moving to Azure, including Group Policy Administration, Replication and Deployment.

• Implemented and managed storage like storage accounts, data in Azure Storage and Configure Azure files and Azure blob storage etc.

•Worked on with the design and implementation of Azure AD hybrid identity, RBAC, PIM, Identity Protection, MFA, Azure App Proxy, SSO, and Condition Access

• Manage Microsoft Azure AD directory groups, Users, implement conditional access policies.

•Architect and deploy GCP Cloud Security solutions to help accelerate firm’s public cloud adoption and migration.

•Perform production readiness reviews, provide consultation on architecture security to development teams across the various departments in Comcast.

•Prepared Terraform scripts for automating server provisioning as well as Ansible for configuration management of the existing BareMetal servers for a Private Cloud environment.

•Tested comparing continuous deployment Devops technologies Buddy vs Google Cloud Build reviewing dashboards and ease of setup vs container based and GCP integration.

•Completed a POC on Tekton with GKE to build, test and deploy across multiple environments since it provided.

a Kubernetes native open-source framework for creating CI/CD systems.

•Functioned as a key contributor, contributed to user experience strategy, project management of designs and proof of concept new architectures for futuristic storage products across multiple platforms.

•Analyzed customer feedback, usability, and researched user behavior to enhance existing products. Worked in collaboration with the broader T&P organization including other engineering teams and leaders.

•Monitored the availability, latency and overall system health.

•Collaborated with team members to accomplish sprint goals by actively participating in the sprint cycle, in code reviews, helped to build a learning organization.

•Monitored current and future trends, technology and information that positively affected organizational projects, applied and integrated emerging technological trends to new and existing systems architecture.

•Contributed to the overall system implementation strategy for the enterprise and participated in appropriate forums, meetings, presentations to meet goals.

Environment: Azure DevOps, GCP, Azure AD, Kubernetes, Grafana, Splunk, Prometheus, Docket, Terraform, Ansible, Terragrunt, GitHub

Citi Group, Warren, NJ / Irving, TX Mar. 2015 – Feb. 2019 Senior Solutions Architect

As key member of Global Cloud/SAN L3 team worked on various distributed platforms (DELL EMC, VMware, Hitachi, GCP, AWS), developed and drove large, multiple, and complex business solutions for internal clients. Provided in-depth solutions architecture capability based on identified needs.

Key deliverables include:

•Supporting L3 Global Cloud/SAN storage projects on distributed platforms within the various lines of business DELL EMC, VMware, HDS arrays, IBM XIV and Cisco/Brocade Fabrics, Redhat, AIX, Windows 2012/2016 servers.

•Drove automation on current storage performance metric using python scripts and Unisphere rest API.

•Built VMware Tanzu Application Service for VMs.

•Reviewed usage as well as create, revise, and report any new measurements required to tune in a distributed environment.

•Provided a comprehensive performance/capacity analysis on all CTI system platforms using EMC SRM, and Unisphere for VMAX/VNX performance and capacity management tool.

•Developed new processes and participate in evaluation of new technologies POC on future Hybrid Cloud solutions using EMC SCALE IO and Splunk

•Custom designed reporting features in EMC VIPR SRM and SPLUNK for senior management review.

Environment DELL EMC, SCALE IP, Hitachi, HP, Cisco MDS Brocade Fabrics Red Hat Linux, Windows 2012/16 Servers, VMware, IBM XIV.

Novartis Pharmaceuticals, East Hanover, NJ July 2014 – Feb. 2015 Senior Infrastructure Architect

Responsible for maintaining and administering the performance, integrity and security of Sans. Key deliverables included:

•Provision VMAX Storage to a Mixed Wintel/Unix Host environment.

•Performed POC on Flash Storage, IBM Flash, VIPR Controller and Performance monitoring tool VIPR SRM

•Hands on role on Storage Infrastructure Design in East Hanover and Fort Worth Data Centers.

•Architecting and implementing of Storage Solutions: Global SAN/NAS Design, High-Availability.

•Strategy, Disaster Recovery, large-scale infrastructure projects for global initiatives.

•Documented storage data migration procedures and proof of concept on replication and virtualization projects.

•Completed a POC on NAS migration methodologies working with Netapp/VNX/Panzura

•Enterprise-wide storage capacity planning globally and performance tuning.

JP Morgan Chase, Jersey City, NJ Oct. 2013 – Mar. 2014 Senior Storage/ Cloud Engineer

•Implemented Cisco USC deployment collaborating with internal team members and line of business meeting strict deadlines for implementation and delivery.

•Worked on storage migration projects, deployments and provisioning on EMC VMAX 10,20K Provisioned storage on HP3PAR, Hitachi AMS//USP-V/HDP, IBM XIV.

•Managed LOB Request and comply with Change Management Tools and processes.

•Worked on command line for zoning Cisco/Brocade fabrics.

•Provided production support to Storage operations on EMC VMAX with SAS and DBA on troubleshooting performance issues on all OS platforms.

.

NBC Universal, Englewood, NJ Dec. 2009 – Oct. 2013 Senior Engineer/ Architect

As part of the firm’s Global Operations – Compute Build team, responsible for management, design and build of all infrastructures globally. Key deliverables included:

•Maintained total storage footprint of 6 PB of Enterprise Storage supporting Oracle RAC Clusters & SQL Clusters.

•Led $7M EMC Tech Refresh Migration Project consolidating 34 Legacy Clarions to 5 VNX/VPLEX 7500/5500 across multiple locations.

•Developed SAP Storage environment on Netapp 6080 core filers and EMC VNX 7500 and 5300 systems.

•Completed Netapp Dynamic Data Center migration from Panzura to new Netapp Enterprise class filers, utilizing snap mirror technology for remote replication.

•Managed storage availability, connectivity and provided L3/L4 support on performance issues.

UBS Financials, Weehawken, NJ May 2006 – Oct. 2009

Associate Director, Enterprise Storage Management

Responsible for planning and installing new storage products, teaming with engineering to roll out well designed supportable storage configurations. Key deliverables included:

•Functioned as local PPO (Principal Product Owner) for Centera, supporting tech refresh and data center migrations for multiple sites.

•Responsible for performance management & monitoring alerts through ECC on dedicated EMC frames for Exchange environment; created weekly/monthly performance graphs for leadership on storage utilization.

•Responsible for performing weekly changes, including storage provisioning, allocation, break fix, emergency issues on EMC Symmetrix 8830, DMX 2000, DMX 3, DMX 4 VMAX Clariion CX 600, 700, CX380, EMC NAS Celerra, Netapp R200 and F960 NAS filers, Cisco MDS & Mcdata switches.

•Responsible for driving weekly EMC work meetings working with the EMC CE, SAM, and Account Managers on requirement and follow-ups on outstanding storage issues.

Thomson Reuters Corporate, New York, NY Feb 2006 – May 2006 Storage Engineer

Lead in provisioning EMC & NetApp storage using tools such as ECC, SYMCLI.

•Backup administration using Netbackup working with infrastructure teams and using backup tools.

•Administering fiber channel SAN switches mainly Cisco MDS

•Worked on tiered storage and performed capacity planning for new storage requirements.

•Perform POC’s with vendors for business continuity and storage-based replication technologies.

Goldman Sachs, New York, NY Feb. 2004 – Dec. 2005 Workplace Technology Consultant

Responsible for working with SA’s and Network Service Engineers on technology specific requirements to define best fit and performing move coordination’s.

Key deliverables included:

•Responsible for supporting FICC & Equities business division, working with divisional Systems Administrators on defining migration requirements.

•Designed and planned trading floor equipment moves and relocations across multiple sites.

•Participated in Disaster Recovery testing, cutovers and migration plans.

•Developed applicable documentation for workplace technology policies & procedures.

Education:

MS, Information Systems, Stevens Institute of Technology, Concentration: Project Management, 2009

BS, Technology Management, DeVry Institute of Technology, 2006.

Certification

GCP Associate Cloud Engineer Aug 2021



Contact this candidate