Post Job Free

Resume

Sign in

Security Solutions Ci Cd

Location:
Belmont, MA
Posted:
August 20, 2023

Contact this candidate

Resume:

EBENEZER TAKPOR

*** ******* **, *** ** Stoneham MA 02180

781-***-****

ady2xe@r.postjobfree.com

https://www.linkedin.com/in/ebenezer-takpor-391a7181/

PROFILE SUMMARY

Results-driven cloud professional with vibrant experience in different cloud platforms. A passionate professional dedicated to leveraging cloud agnostic expertise to help transform clients' IT infrastructure, operations, and containerized applications. Proficient in utilizing Kubernetes with Docker orchestration to manage platform microservices. Specialized in architecting the most innovative, scalable, highly available, secured, fault-tolerant cloud ecosystems while ensuring cost-effectiveness. Well-versed in configuring Cisco Routers, Switches, Firewalls, and the administration of Active Directory, Windows and Linux Systems/Servers. Experienced in implementing Palo Alto VM-Series firewalls, securing applications with security groups, and establishing VPC-to-VPC connectivity via Transit Gateway. In-depth knowledge of Route 53 for efficient traffic routing.

Skills:

Cloud Platforms: AWS, Azure, GCP

Infrastructure as Code: Terraform, CloudFormation

Containerization: Docker, Kubernetes, EKS/ECR

Continuous Integration/Continuous deployment (CI/CD)

DevOps Tools: Jenkins, Git, Ansible, BitBucket, AWS CLI, AWS CodeCommit, AWS CodeBuild, AWS CodePipeline, AWS CodeDeploy

Scripting Languages: Python, Bash, Yaml

Networking: VPC, Subnets, security Groups, Transit gateway, Load Balancers, Endpoints

Monitoring and Logging: VPC flow Logs, CloudWatch, CloudTrail, ELK Stack, Prometheus

Database management; RDS, DynamoDB, MongoDB

Security and compliance: IAM, encryption, Palo Alto, ISE, CloudFront, Security Best Practices

Problem soliung and troubleshooting

Excellent Communication and team Collaboration

Operating Systems: windows and Linux

Education & Certifications:

Postgraduate Certificate in Cloud Computing (University of Texas, Austin) Feb 2022 (https://vrfy.digital/lgTVp)

Network Technology and Administration (Bunker Hill Community College) 2020

Bachelors in Political Science and Public Administration (University of Benin, Nigeria) Nov 2011

AWS Certified Solutions Architect (Associate)

Cisco Certified Network Associate (CCNA)

CompTIA Security+

Professional Experience

Cloud Network Engineer, Harvard Medical School Sept 2022 – Till Date

Define and deploy monitoring metrics, logging systems in multi-cloud environment including application and system log analysis using CloudWatch, and CloudTrail.

Utilize Terraform to implement Infrastructure as Code, leading to a reduction in deployment time and increased consistency.

Provision Istio service mesh and Calico to control ingress and egress traffic at layer 7 and layer 4 respectively.

Build Golden AMI and Docker Image with customized application for easy deployment.

Implement Kubernetes clusters for container orchestration, allowing seamless scaling and management of containerized applications.

Implementation of static and dynamic scan in CI/CD pipeline using OWASP ZAP, bandit(python) and other language specific scanning tools.

Ensure security best practices are followed, configuring IAM policies, Security Groups, and SSL/TLS certificates for secure environments.

Deploy pods to run applications in the FISMA Environment.

Experienced with Vulnerability management and patching using WAF, IPS/IDS, Tenable Nessus etc.

Management of WAF endpoint, CDN and sensor turning at regular intervals.

Create low latency website using S3 bucket fir content storage and CloudFront/Global Accelerator as Content Delivery Network (CDN).

Build infrastructure that enables fast disaster recovery and Data Loss Prevention (DLP) and point traffic with route 53 in AWS environment.

Experienced with secure configuration and troubleshoot Direct Connect connection to data center, secure Direct Connect with Site-to-Site VPN.

Configuring Palo Alto VM-Series and pairing them with GWLBE and IP address whitelisting to secure the applications ingress and egress traffic.

Create documentation on updating Palo Alto firewall and other network devices or nodes to the latest version.

Configure and update GlobalProtect VPN, create HIP object and Profile for GlobalProtect VPN.

Connect VPC to VPC (East-West Traffic) via Transit Gateway and Palo Alto Firewall VM-Series

Use AWS Boto3 python to create infrastructure

Create and manage IAM accounts and role-based. policies (RBAC)

for access to AWS services in alignment to creation and management of users permissions, directories, and files in Linux environment.

Hands-on experience on configuration of Cisco ISE for network device management and end device configuration.

Experience with both on-prem and Cloud Network configuration, automation and troubleshooting and using Python scripts aligning with Netmiko and Paramiko Libraries for networks automation projects.

AWS Cloud Engineer (Hanscom Airforce Base, MA) (Apr 2020 – Sept 2022)

Provision AWS resources using management console and hands-on experience and good knowledge of infrastructure as Code using Terraform, and Ansible for configuration management and applications deployment.

Strategic architectural Plan, build and configure network infrastructure within VPC with public and private subnets, configure routing tables, security group and internet gateway.

Configuring NACL, WAF, and IP address whitelisting to secure the applications ingress and egress traffic.

Securely manage connected services via transit gateway.

Create and manage IAM user accounts and role-based policies for access to AWS services. Create and manage users, permissions, directories, and files in Linux environment.

Implement and maintain monitors, alarms, and notifications for EC2 instances using CloudWatch and SNS

Creating of Lambda functions to trigger when there is an event in S3 bucket and in the DynamoDB table.

Defining and deploying monitoring metrics, and logging systems on AWS environment. Application and system log analysis using CloudWatch, and CloudTrail

Design, develop and implement high availability, backup and recovery strategy for applications and database.

AWS Cloud Administrator (Jan. 2019 – Mar 2020)

KayIT Solutions Inc., Brockton MA

Planning, designing and developing solutions on Amazon Web Services.

Analyzed threats and current security controls to identify gaps in current defensive posture.

Designed and implemented network security solutions, including firewalls, intrusion detection, encryption, monitoring, vulnerability scanning, and authentication.

Performed risk assessments, developed security policies, and supported 3rd party compliance.

Designed and implemented network security solutions, including firewalls, intrusion detection, encryption, monitoring, vulnerability scanning, and authentication.

Monitored CI/CD pipelines for vulnerabilities and managed secure access to pipeline.

Developed automated cloud security solutions to meet incident response and participated in security incident response.

Create Transit Gateway



Contact this candidate