Jim Kuolung Kao
Oakland, NJ
https://www.linkedin.com/in/jim-kuo-lung-kao-66381b3a/
*******.***@*****.***
SUMMARY
Innovative information system professional with around 20 years of Infrastructure, Application, and Security Architecture, Engineering, Management experience. Specializing in architecting and designing solutions for large enterprise, and infrastructure for various technologies. Strong strategic thinker, team builder and player. Excellent management and communication skills. Enterprise and global organization working and administration experience.
AREAS OF EXPERTISE
Strong business understanding.
Exceptional analytical and problem-solving skills.
Responsible for identifying issues and risks and to escalate appropriately to ensure quick resolutions.
Ability to translate user and business requirements into workable, reusable, enterprise solutions, ensuring scalability for growth.
Principal role in architecting and designing solutions for enterprise-scale projects in financial, business and technology industries.
Global working and management experiences and mindset.
Broad and deep knowledge and experiences in software, hardware, security, and infrastructure.
Possesses strong interpersonal and communication skills and is effective with project managers, developers, team leads, and business users within the organization.
Technical Skills
Hardware and OS: HP and Dell, Unix/Linux, Windows
Software Development: C/C++/C#, Microservices, Container, Docker, Kubernetes, CI/CD, DevSecOps, .NET, Java, Script, SDLC
Database: MS SQL, Oracle, NoSQL, Hadoop
Infrastructure: Cloud (public/private, IaaS, PaaS, SaaS)/data center/DR, Virtualization, Network, Server, Mobile, storage, HCI
Platforms/utilities: MS Exchange, SharePoint, Documentum, VMWare, Citrix, Tableau, Spotfire, Power BI, Open Source
Security Technology:
oNetwork Security: IDS/IPS, NetFlow, DNS protection, Cloud Security Gateway, Firewall, Cloud Network Security, ZTNA, VPN
oVulnerability Management: Qualys
oEndpoint and Server: Broadcom AntiVirus/AntiMalware, Microsoft/Azure Defender,
oEmail Security: Proofpoint, Cisco, DKIM/DMARC/SPF
oCyber Defense: SIEM (Splunk, Sentinel), SOAR, UEBA, Threat Intelligence
oData Security: Microsoft Purview, HSM/Key Management (Thales, CipherTrust Vormetric), DLP, encryption (at rest, in-transit, TDE, KMIP), Azure Key Vault, MIP/AIP
oCompliance: Archer, Purview Compliance Center
oDevSecOps/CICD: Container Security (Aquasec), Open Source Scanning (White Source), DAST (Qualys WAS), SAST (Checkmarx, Veracode) and IAST
oIT Vendor Risk Management: SecurityScorecard, Bitsight
oIAM: Active Directory, SSO, Federation, Privileged Access Management, SiteMinder, CyberArk
AI/ML: Microsoft Azure AI Machine Learning, Azure Cognitive Services, Anomaly detection, Computer Vision, Cognition, Natural Language Processing, Conversational AI
Trainings
SANS SEC401 Security Essentials Bootcamp
SEC545 Defensible Security Architecture
Azure Hackathon and jump start training
Certifications
Togaf 9.2 level 1 and 2 certified,
SafeAgile SAFe certified Practitioner
AZ-900 Microsoft Azure Fundamentals Certified
AI-900 Microsoft Azure AI Fundamentals Certified
SC-900 Microsoft Security, Compliance, and Identity Fundamentals
Professional Development Academy – Enterprise Cybersecurity Leadership
EXPERIENCE
Global Lead - Security Solution Architecture Dec 2018 – March 2022
Ernst and Young LLP, Secaucus, NJ
Responsible for managing the global solution architecture team and providing the design for supporting the EY business.
Supported the EY Cyber Defense, Policy, Certification and Compliance, Risk and Vulnerability Management, Technology Consulting, and other Client Serving and Internal Security and Infrastructure services.
Projects responsible: UBA, SIEM, SOAR, Cloud Security Web gateway, Out of Band, Azure Information Protection, Azure Defender, End and Server security, IDS/IPS, NetFlow, Application Security (Java, C++/C#, Container/Kubernetes, DevSecOp, CI/CD)
Azure Government Cloud, China country network and security control segregation
Enterprise Solution Architecture Lead – GIS/Security Dec 2012 – Dec 2018
Ernst and Young LLP, Secaucus, NJ
Responsible for two major programs: Global Infrastructure Services portfolio, Information Security Services
Stakeholder management with GIS and Information Security organizations
Provided enterprise technical strategic direction, roadmap and solutions to the projects.
Fiscal year budget planning and handshake
Talent recruiting and resources assigning, goal setting, performance review and rating.
Assisted portfolio architect to manage the team, acted as associate portfolio architect to take care of the day-to-day tasks, deal with the escalations and incidents/problems, build high performing team, work on improving the process, productivity, and quality.
Coordinated with strategic technology partners and vendors for setting up trainings, knowledge sharing, conferences, products evaluation.
Responsible for architecting and articulating the current and future strategy for enterprise architecture.
Assisted management to deal with some day-to-day tasks, such as setting up weekly team meetings, coordinated team events, managed team collaboration site, resource assignment, and socialized with teams in other organizations.
Researched, identified, and selected technology required for critical projects.
Participated in technology standardization, promoted the standards/policies/guidelines, and verified the compliance.
Enhanced/improved the process and methodology to increase the productivity.
Provided the technology guidance and resolved the challenges faced during the project work for team members.
Participated in some initiatives, such as cloud integration, enterprise key management, messaging and collaboration, mobile platform, external user security access and so on.
Solution Architect Architecture Team Lead March 1998 – Dec 2012
Ernst and Young LLP, Secaucus, NJ
Managed infrastructure solution architecture team
Built up a new team and managed the resources utilization.
Couched, mentored, and trained the team members for architecture mindset and emerging technology.
Collaborated with Engineering, Service Delivery and Operations to design the EY infrastructure and applications.
Participated and provided inputs in architecture and strategy decision making.
Architected the EY Guest Wi-Fi, Mobile application Management, Outsourcing vendor VPN, and mobile simulation environment.
Acted as chief architect for Tax and Global Markets/Knowledge portfolios.
Architect for the EY’s Knowledge Service and External Portal. Architected, developed, and maintained the applications and the infrastructure.
Migrated the EY external portal from Solaris to HPUX, and then migrated to the MS CMS.
Architected and developed the eRoom collaboration system for external and internal users.
Designed and Implemented SSO solution using CA SiteMinder suite to integrate the internal and external AD infrastructure.
Solution architect for the EY’s Enterprise Document Management system using Documentum suite, including the Captiva MFD utility integration using OCR and stored in the document management securely to meet the government regulatory.
Chief Architect/Technical Manager Jan 1996 – March 1998
Dow Jones Telerate, Markets, NYC, New York
Managed several development teams under the Dow Jones Rolling Thunder project.
Architected and supervised Dow Johns Newsroom Authoring system. Replaced the single user-based system with team collaboration-based system including the workflow. The system converts the live Plain-Text SGML feed into multimedia HTML with arts from centralized graphic library designed or created by the media team or the global news agencies.
Architected and supervised the Dow Johns Web Based Trading Floor system. IP Web based system extreme Java application, web plug-in and HTML, live ticker from stock exchange, live news feeds from Dow Jones and other news agencies, historical data from data warehouse. This platform is designed to replace the traditional text-based trading floor workstation.
Supervised the Database development team, technology includes Oracle, Sybase, and MS SQL.
Consultant – Web Technology Jan 1995 – Jan 1996
IBM, Thornwood, New York
Responsible for designing and developing the e-Commerce framework for IBM World Avenue project, administrating the web server, server, database, and application.
Research Assistant Sep 1993 – Jan 1995
Northeast Parallel Architecture Center, Syracuse, New York
Researched in the supercomputer architecture, Web, Internet and Java technology, search engine, data mining and parallel database computing performance.
Transactional Records Access Clearinghouse, Syracuse, New York
Responsible for administrating the lab: installing the hardware and software, configuring the network, and managing the backup and restore. Developed SAS program and shell script.
Gathered, consolidated, and analyzed the data from government agencies (Department of Justice, IRS, FBI, Immigration, Drug Enforcement Administration, etc.) for statistic and data analysis research purpose.
EDUCATION
Master of Science, Computer Science, Syracuse University, Syracuse, NY, 1994
Bachelor of Science, Applied Mathematics, Fu-Jen Catholic University, Taipei, Taiwan, 1989
LANGUAGE
Chinese