Eric Etheredge, MCSA, MCSE, MCDBA, CSSA, Security+ce
Seasoned Information Technology Professional
EXPERIENCE OVERVIEW
Mr. Etheredge is a Security Engineer with over 20 years of experience with computers, networks, operating systems and software. Extensive experience with Microsoft products and Operating Systems such as Microsoft Server, Microsoft Exchange Server, Microsoft SQL Server, SharePoint Server, Microsoft Office. Experience with other platforms including UNIX, Linux and Macintosh. Over fourteen years of
supervised experience designing, installing, configuring, and maintaining Local Area Networks and Wide Area Networks. Experience configuring and maintaining DNS, DHCP, WINS and other network protocols. Extensive experience using Active Directory administrative tools to create Primary and Backup Domain Controllers, create Domain Forests, manage users and groups, and assigning rights/permissions. Over fourteen years of experience configuring routers and switches, and performing troubleshooting tasks for connectivity, speed, and packet loss issues. Advanced Router/Switch knowledge such as managing and configuring boot image files, creating and configuring VLANS, and writing Access Control Lists for security purposes. Experience in programming languages including Visual Studio and others. Over fourteen years of experience working with different video conferencing technologies. Extensive experience in working with end users and managers to develop
collaborative solutions to enhance productivity and workflow. Over fifteen years of experience working with different network security solutions including but not limited to firewalls, intrusion detection systems, and malware detection and prevention systems.
PROJECT EXPERIENCE
Advisor, Vulnerability Scanning and Tools, BlackLake Security, 2020-Present. Currently, I am performing contractual efforts with Dell Technologies in the area of Vulnerability Management and specifically assisting the Vulnerability Scanning Team with process documentation, assisting with the divestiture of RSA, and performing other operational responsibilities. The main solutions used are Rapid7 InsightVM, Qualys, Prisma Cloud, and Tenable. The various tools used include nmap, PowerShell and Python for scripting, and several tools proprietary to Dell. Accomplishment Highlights
Designed, installed,
configured local and wide
area networks
Led and managed
collaborative efforts with
users to develop systems that
met their needs
Developed in depth
knowledge of firewalls,
intrusion detection systems,
malware
Education
M.S., Criminal Justice
Management, Sam Houston
State University, 1994
B.S., Business Administration,
Management, Texas Tech,
1990
Certifications and Training
Microsoft Certified Systems
Administrator (MCSA), 2002
Microsoft Certified Systems
Engineer (MCSE), 2002
Microsoft Certified Database
Administrator (MCDBA)
Certified Sonicwall Security
Administrator (CSSA), 2006
Security+, 2003
Security+ce, 2018
STACS Lead Cyber Security Analyst, ICF, 2016–2020. My role with the STACS project at ICF was to assist the clients with issues and questions by monitoring requests for assistance through the trouble ticketing system. I also researched solutions by reviewing product documentation and then discuss with the clients so they can make an informed choice about how to resolve their issues. I also facilitated remediation of issues associated with bi-weekly external network scanning by reviewing and prioritizing the most critical issues. This was usually done by developing remediation techniques and strategies to ensure a streamlined approach. To maintain accuracy and reliability of the scanning process, I also assisted in maintaining scanning profiles and settings. I also assist with the auditing function as needed. I assisted in the development and compilation of training materials for the bankruptcy trustee community and assist in delivering of training either in person at seminars and conferences, through written articles, or other delivery vehicles. I used a variety of tools to perform my duties, including Nessus, nmap, Qualys, Wireshark, Splunk, OpenVAS, and many others depending on the task required. Security Frameworks followed include NIST, CIS, ISO, HIPPA and FISMA. Technical Support Engineer, eFolder, 2014-2016.
During my time at eFolder, I was tasked with assisting partners with resolving issues associated with data backup and recovery. This assistance ranged from the mundane to the heightened level of an emergency. Each engineer is assigned at least one area of specialty and in most cases more than one in supporting various backup technologies. I was assigned to the Dell AppAssure team originally, but due to demand, I was reassigned to the StorageCraft Support Team while still maintaining an emergency coverage for the AppAssure team. Within a few months, I was elevated to a position of the Backup Team Lead for StorageCraft which meant when the Team Lead was away, I filled in for those duties including assisting junior engineers with issues which passed their capabilities. During the sixteen months I worked for eFolder, I was also assigned to work on the “On call” team which provided emergency support after business hours. One week out of every month, you would make yourself available to respond to any emergency disaster recovery situations involving our partners and their clients. The average call from a partner would involve remote access to the problematic system and then guiding them through the process of resolving the issue. We also had the capability of creating emergency virtual machines in our cloud storage for them to configure access for their clients so they could operate on a temporary basis. We also worked closely with StorageCraft on issues which might require their input and guidance. This was also true for other data backup vendors as well. This position required close interaction with many different teams across the organization including development, accounting, licensing, customer service, sales, internal support, training, and executive management. Frameworks followed include HIPPA and FISMA. Director of Information Technology, Office of the Standing Bankruptcy Trustee, 2000-2014. When I started in January 2000 working for the Standing Bankruptcy Trustee, their network was based on an elaborate peer-to-peer structure. The case management system was running on an antiquated version of AIX on UNIX and each client system would access this system via terminal emulator. The email system was non-existent because most of the key staff including the Trustee, utilized AOL, Gmail or Hotmail for their email communications. I was tasked with streamlining all of this into a cohesive and contemporary network structure. In order to extract data from the case management system required an export of data and then analysis in Excel or Lotus 1-2-3. Within the first three months, I planned, implemented, maintained, monitored and tweaked a Windows Server 2000 Active Directory Forest for the office including a cohesive email system using Microsoft Exchange Server 2000. The new network allowed removed the former peer-to-peer network with a client-server based meshed network. This allowed users access to network resources on a new file server as well send and receive email. During this same period of time, we also evaluated moving away from the UNIX platform for the case management system to a Windows based system using SQL Server and eventually we converted within the next year. The Trustee also tasked me with making us more service oriented and he wanted a web presence. I also built our first website which was mainly static, but did allow for the downloading of pertinent forms and other information. This original website was built on the file server. Over time, I continued enhancing the web offering to include file upload from the website for debtor attorneys we shared information with on a regular basis. I also designed a MAN to allow our banking institution to access our systems to input debtor payment information while they deposited debtor payments. This included restructuring the network to allow for site-to-site VPN connections. This involved new firewalls and secure connections between the bank and our office. Not associated was the adoption of using IP based traffic for video conferencing as we had previously used ISDN lines which incurred long distance charges to four remote sites scattered within the Northern District of Texas. Each of these sites ranged in distance of 120 to almost 300 miles in distance and we implemented firewalls and site-to-site for each location as well so we could utilize these connections for video conferencing. This reduced our overall costs by eliminating the need for the ISDN lines and long-distance charges. During my tenure, I also upgraded all seven firewalls at least three times along with implementing other security solutions including email security, antivirus, and intrusion detection and intrusion prevention. I also implemented Geo-IP protection on all firewalls to prevent traffic from foreign countries as well as Botnet filters. I also ensured each firewall was able to pass the needed traffic for the services which they were intended to provide. Vulnerability Management solutions used included Qualys, Nessus and OpenVAS. Frameworks followed include NIST, CIS, COBIT, HIPPA, SOX, FIPS and ISO. EMPLOYMENT HISTORY
BlackLake Security Advisor, Vulnerability Scanning and Tools
2020-Present
ICF Senior Technical Specialist 2016–2020
eFolder Technical Support Engineer 2014–2016
Office of the Standing Bankruptcy
Trustee
Director of Information Technology 2000–2014
Computer Transition Services Inc. Technology Consultant 1999-2000 Self Employed Technology Consultant 1998-1999
Aus-Tex Printing and Mailing Data Custodian 1997-1998 Dell Computer Corp Server Support Technician 1997-1997 Texas Health and Human Services
Commission
Budget Analyst 1993-1997
Texas Youth Commission Management Auditor 1990-1993 Contact Information:
Eric Etheredge
Email: *************@***.***
References Available Upon Request