Zubair Abdullah
Principal Enterprise Cloud Security Architect/SME/Trusted Sr. Technical Advisor
Public Trust
**************@*******.***
19+ years of Information Technology experience in multiple areas such as Senior Solutions Architecture (Private, Public, community, Hybrid, IaaS, PaaS, SaaS base Clouds and DevOps/DevSecOps solutions), Project Management, and Development. Extensive experience in AWS and Azure with hands on experience in Private and Public clouds (AWS, Azure, Oracle, GCP, and others) to support enterprise adoption of the managed cloud service offerings along with AWS, Azure, Google, IBM, Oracle Cloud (EC2, EBS, VPC, RDS, ELB) IaaS, PaaS, SaaS and working on the governance and corporate polices and establish the practice to maximize the benefits of the enterprise level. Define cloud architecture, design and implementation plans for hosting complex application workloads on MS Azure. Led multiple Dynamics 365 implementations. Led analysis, design, and rollout of Dynamics 365 solutions throughout the full software development lifecycle. As a Chief Solutions Architect, Mr. Abdullah designed solutions while leading the solution delivery process. Performed security assessments, identified the gaps in existing security architecture, and recommended changes for improvements. Designed security architecture elements to mitigate threats. Created solutions that align enterprise security architecture frameworks and standards including the SABSA, NIST 800-53, ISO 27002, with overall business and security strategy and implemented the network access, identity, and access management process including the public key infrastructure, Oauth, OpenID, SAML, SPML, single point of authentication enforcement, data anonymization, DLP scanning, SSL security, Implement OpenShift clusters, workload migration from Middleware WMB to OpenShift, Kubernetes, Manage the container platform ecosystem including the installation, upgrade, patching, monitoring. Perform Root Cause Analysis and produce reports for critical issues of the OpenShift Container Platform. Expertise in GCP environment including the PaaS, IaaS, Google Data Products Big Query, Big Table, Dataflow, Dataproc, AI Building Blocks, Looker, Cloud Data Fusion, Dataprep, Streaming Batch, Cloud Storage, Cloud Dataflow, Data Proc, DFunc, Big Query solutions architecture and evaluate architectural alternatives for private, public and hybrid cloud models, including IaaS, PaaS, and other cloud services, technical governance, cloud architectures, deployment, and operations. Expertise in AWS Redshift to Google Big Query or Snowflake to Google Big Query and migrating data from on-premises RDBMS/Data warehouse/Hadoop to Big Query. Expertise in security and compliance frameworks including the NIST, CIS, ISO 27001/2, SOC 2, HIPAA, GDPR, and Global Cybersecurity Compliance audits including the SOC2 Type, ISO27001, FDA CFR21 Part 11, TISAX, for SaaS software products. Expertise with multi-cloud architecture, cloud computing, cloud storage, and cloud support operations and technology systems, as well as expertise in designing and migrating applications to the cloud. Expertise in cloud storage technologies including AWS EBS, S3, S3IA, Glacier; Azure Blob, Azure File; Google Cloud Storage, Filestore, and the security, cost, and performance differences and implications. Expertise in application development platforms for private, public, hybrid clouds with AWS, Azure, GCP, and Oracle cloud services offering. Expertise in scalable architecture using Azure App Service, API management, serverless technologies, container and orchestration including AKS, Kubernetes, Red Hat OpenShift, Pivotal Cloud Foundry, microservices. Expertise in software development practices including the DevOps and CI/CD tool chains including the Jenkins, Spinnaker, Azure DevOps, GitHub. Expertise in integrated development environments including Visual Studio, Visual Studio Code, Eclipse, XCode, WebSphere. Expertise in scalable architecture using Azure App Service, API management, serverless technologies, container orchestration including the Kubernetes, Cloud Foundry, API management, microservice frameworks and continuous integration technologies including Jenkins, Azure for DevOps, Chef, Puppet to deploy Infra as Code. I have expertise in architecture frameworks including FEAF, TOGAF, AAF, UAF, DEF, MBSA, MBSD, DSS and Zachman. Provided the architectural solutions for several infrastructures related to web applications, identity management and the components surrounding these technologies Specifically IBM Security Access Manager including SharePoint, WebSphere, IIS, Tomcat, Apache, EpiServer, Proxy Internet Access, Oracle Access Manager, Java, Spring, Angular, Spring Boot, REST API, Webservices, AWS services, CMS Systems, Federation Services, navigate IP subnetting, Network Security Groups, routing, Azure CLI PowerShell, ARM Templates, Azure Networking, Azure DevOps configuration and Management, Azure Log Analytics, Azure Monitor, and Application insights Monitoring, setting up the security policies, network security, data security, F5 Content Switches, Web Access Management services including Ping, IBM ISAM, Federation Services, Snowflake Architecture, Azure, Data Bricks, ADLS, ADF, Multi domain. Data injection, Parallel processing. Python and PySpark. CDC, ELT, ETL, API gateway, Realtime streaming data (Kafka / MQ) and Spark. Experience delivering and configuring operational security products such as SIEM, Vulnerability Management, PKI management, and Application Whitelisting solutions. Oracle Cloud security includes role design, lifecycle management, Oracle Cloud Infrastructure (OCI) security, installation, configuration, back-up recovery, and migration within Oracle Cloud. Managing Oracle Cloud implementations and configurations including the security and control, application security, process optimization, Oracle Security, Controls and RMC Advanced Access Control, and Oracle Security implementations and controls integration in multi-cloud environment. Worked on projects with large, complex, user centered systems utilizing a microservice architecture, distributed transactions across multiple microservices, custom workflows and UI using REACT, UCD design, JAVA Spring Boot in a microservice architecture framework, Elastic Search, Kafka, Postgres, Splunk, New Relic, Grafana, Prometheus, Docker, Kubernetes, Rancher, Jenkins, and JSL CI/CD pipelines using Groovy. Experience with security and privacy regulations impacting financial services such as SOX, GDPR, and security frameworks, ISO, COBIT, NIST, HITRUST. Expertise in Privilege Identity Management, In-depth knowledge, and expertise in CyberArk Privileged Access Management (PAM) solutions, with a focus on CyberArk Conjur Secrets Management. Proven experience in deploying and managing CyberArk Conjur clusters for high availability and scalability. Proven experience in integrating Conjur with CyberArk privileged cloud and CyberArk PAM software for vault sync and password rotation. Proven experience in setting up and managing CyberArk PAM and Conjur policies for human and non-human identities. Expertise with CyberArk and Conjur Rest APIs. Proficiency in scripting languages such as Python, PowerShell, or Ruby for automation of CyberArk, Conjur tasks and integration with DevOps tools. Experience in developing custom scripts to enhance and automate security processes within the Conjur environment. Extensive experience with DevOps methodologies and tools beyond those mentioned, including version control systems including the Git, build systems, and continuous integration platforms. Expertise in cloud platforms such as AWS, Azure, or Google Cloud, and the ability to integrate Conjur securely in cloud-native environments. Expertise in IaC, CI\CD tools and source control management tools - Git & Git-Hub, Jenkins, Ansible, Terraform, Kubernetes. Palo Alto policy management (making changes to the ACLs, Objects, policies), ASA policy management (making changes to the ACLs, Objects, policies). In-depth knowledge of cloud security best practices, principles, and technologies, including IAM, encryption, network security, container security, and serverless security. Hands-on experience with cloud security tools and services such as AWS Security Hub, AWS native security services, Cloud Trail, guard duty, security groups, and Cloud Watch. Expertise in the design and implementation of secure AWS cloud architecture solutions, including VPC configurations, security groups, IAM policies, encryption mechanisms, and logging and monitoring for the AWS cloud environment. Conduct vulnerability assessments and penetration testing on AWS infrastructure and applications. Develop and implement remediation plans to address security vulnerabilities and weaknesses. Expertise in security compliance requirements and frameworks including the GDPR, HIPAA, SOC 2, ISO 27001, OPA, Red Hat ACS, Kyverno, implementing controls and measures to achieve compliance. Setting up virtualization, containerization, microservices, and serverless computing; Risk Management, RHCOS security, container security, Kubernetes security, IAM security, network security, auditing, encryption, secrets management, data protection, securing CI/CD, static container scanning Trivy, Snyk, Syft/Grype implementing Zero trust architectures. Setting up the racing/Metrics/Logs/Logs and Dashboards for Platform and Application workloads include Promethius, Grafana, Vector Openshift logging. Expertise in security standards including NIST CSF, SOX, SOC2, FEDRAMP, CIS Controls, cyber security controls frameworks and regulatory requirements including NIST 800-53, NIST CSF, CSA CCM, SOX, and Privacy regulations. Expertise in Azure public cloud, O365, Azure DevOps, Azure cloud native design, microservice architecture, containerization and Azure ARM Template including the Terraform, Biceps, PowerShell and Azure CLI. As an Enterprise Architect, he created the Data and Advanced Analytics creation, maintenance and management of Enterprise Information architecture models and their lower-level components. Led the establishment and documentation of technology direction and standards for data platforms, involving all aspects of information access and retrieval, integration, middleware translators, utilities, tools, and languages for use by information technology groups. Expertise in WAF, IAM policies, KMS, AWS Backup, IaC based on CloudFormation, AWS CDK, VPC, Elastic Load Balancing, CloudFront, S3, ECS, EKS, RDS and DynamoDB. Expertise in NIST SP 800-30 rev 1, 800-37 rev 1 or 2, 800-53 rev 5, 800-60 Vol 1 revs 1 & 2 rev 1, and 800-171 rev 3 implementing systems in a FedRAMP, FISMA, and SOX compliant environment, risk assessments, Plan of Action and Milestones (POA&M), and remediation plans. Compliance, including OMB requirements, FISMA, FedRAMP, RMF, and CSF. Expert-level experience in Terraform, Ansible, EKS, patching process with Qualys/ Prisma, TERRAFORM, ANSIBLE, CHEF, OPENSHIFT/KUBERNETS/AKS/EKS, Dockers. NIST SP 800-53 guidelines, FedRAMP requirements, and organization-specific needs. Expertise in security tools, vulnerability scanners, security information and event management (SIEM) systems, and security assessment and authorization (SA&A) processes, system security plans, risk management frameworks, and expertise in deployment of highly scale, highly managed application by using the OpenShift, Helm Chart Management, Kubernetes, Docker’s Image management, container troubleshooting and PV/PVC, Application Performance Monitoring, debugging, scaling strategies, load testing, capacity planning. Architect solutions using MS Azure PaaS services such as SQL Server, HDInsight, and service bus and have the cybersecurity designs for systems, networks, and multi-level security requirements for processing multiple classification levels of data. Expertise in emerging technologies including Zero Trust architecture, EDR solutions, incident response planning, varying sizes, executing cybersecurity strategies, NIST 800-171. Follow the verify Explicitly – Use strong authentication and least privilege access for all users and devices, Least Privilege Access – Restrict access based on roles, time, and context, Microsegmentation – Divide networks into secure zones to minimize lateral movement, Continuous Monitoring – Use AI-driven analytics to detect and respond to threats and Assume Breach Mentality – Enforce strict controls and monitor for anomalies. Implement the Multi-Factor Authentication (MFA), Single Sign-On (SSO), and Privileged Access Management (PAM), Software-defined Perimeter (SDP), Next-Gen Firewalls (NGFWs), and Network Access Control (NAC), EDR/XDR solutions for continuous monitoring and response, Data Loss Prevention (DLP), encryption policies by Defining a structured approach to Zero Trust, Federal guidance for implementing ZTA, and Cloud-specific implementations. Expertise in ATO/RMF process, NIST 800-53, 800-171, 800-190 as well as Fed Ramp, CMMC, PCI and HIPAA.
Microsoft Power Platform + Dynamics 365 Core, Microsoft Dynamics 365 Customer Service, Microsoft Dynamics 365 Field Service, Microsoft Dynamics 365 Sales, Microsoft Dynamics 365 Marketing, Microsoft Power Apps + Dynamics 365 Developer,
Provide technical oversight and guidance during DoD client’s engagement execution.
Provide Cloud / Azure thought leadership through regular speaking engagements.
Provide Azure technical expertise including strategic design and architectural mentorship, assessments, POCs, in support of the overall sales lifecycle or consulting engagement process.
Support the development and growth of DoD’s Cloud Services and Consulting Practice
Azure API Management, Security, Cloud-to-Cloud Integration (Public, Private)
Windows Azure (Website, web role and worker roles)
Play a critical part of our core team that is defining and launching exciting “Next Generation” services, along with SailPoint, CyberArk, Microsoft Purview and Archer.
Responsible for collaborating on and setting cloud vision; providing thought leadership in cloud infrastructure and cloud services architecture to meet operational objectives for cloud solutions.
Educate customers of all sizes on the value proposition of managed services on Azure and participate in architectural discussions to ensure solutions are designed for successful deployment in the cloud, along with SailPoint, CyberArk, Microsoft Purview and Archer.
Advanced knowledge of databases (SQL Server and MySQL) Advanced knowledge of relevant web services, mail, backup, and application monitoring
Act as a liaison between customers, sales, service engineering teams, and support.
Define cloud network architecture using Azure virtual networks, VPN, and express route to establish connectivity between on premise and cloud.
Assist leadership with the ongoing development of policies and procedures for the purpose of consistent product delivery.
Develop custom features in Visual Studio based on specifications and technical designs.
Develop PowerShell scripts and ARM templates to automate the provisioning and deployment process.
Participate in internal and customer meetings assisting with the ongoing evolution of technology offerings.
Provide technical guidance on building solutions using Azure PaaS and other services.
Troubleshoot and identify performance, connectivity and other issues for the applications hosted in Azure platform.
Designed Microsoft Azure infrastructure and networking. Implementing Microsoft Azure Infrastructure Solutions
Azure Global Foundation Services (GFS) data centers and Azure data center architecture, regional availability, and high availability
Designed Azure virtual networks, networking services, DNS, DHCP and IP addressing configuration.
Designed the On-premises Active Directory, deployed Active Directory, define static IP reservations, understand ACLs, Network Security Groups and Design Azure Compute
Designed Azure virtual machines (VMs) and VM architecture for IaaS and PaaS; understand availability sets, fault domains and update domains in Azure.
Experties in the Azure virtual private network (VPN) and ExpressRoute architecture and design
Experties in Azure point-to-site (P2S) and site-to-site (S2S) VPN, understand the architectural differences between Azure VPN, ExpressRoute, and Azure services.
Azure load balancing options, including Traffic Manager, Azure Media Services, CDN, Azure Active Directory, Azure Cache, Multi-Factor Authentication and Service Bus
Led the design, implementation, and expansion of the organizations enterprise computing and cloud solutions providing high performance and available enterprise and cloud computing services in the following.
Experties in Cloud management platforms - Designed and implemented robust cloud management implementation including orchestration and catalog capabilities.
Expertise in multi-tier architecture: Load Balancers, Caching, Web Servers, Application Servers, Networking and Databases
Expertise in multiple Microsoft Competencies including the SailPoint, CyberArk, Microsoft Purview and Archer, Cloud Platform, Cloud Productivity and Azure products including the Compute, Web, Analytics, Networking, RESTful Web Services, XML, JSON, Identity and Access Management, Role-Based Access Control, Single Sign On, OAuth / OpenID / SAML, Web Access Management, Web Services Security, LDAP, PKI/PKM, Encryption, Federation, Firewall, IPS, AV, Micro-segmentation, Zero-Day attack, Cloud security group management, Secure Access Service Edge, Remote Access VPN, Authentication servers/MFA, event messaging rest, web services/SOAP, EDI, message queuing.
Hands on experience working with ISO 17799, CobIT DS5, Sarbanes-Oxley security requirements, PCI Data Security Standards, HIPAA compliance, and other regulatory standards. Hands-on experience with configuration management software Puppet/Chef/SaltStack. Systems development and implementation experience on high-scale distributed systems (such as HADOOP), and implementation of ETL and reporting applications and developing the Cassandra Architect.
• Track record of maximizing the benefits of the enterprise level AWS, Azure Web services and AWS, Azure, Google, GCP, Google Cloud Platform Cloud technology administration, implementation, optimization, and customer workload support, GCP packages including Looker and BigQueary, establishing multi-zone resilient infrastructures that support production applications, IBM, Oracle Cloud and building the enterprise level architecture for archives, backups, disaster recovery, hybrid cloud, production, EC2, Elastic Beanstalk, S3, RDS, Cloud front, Cloud formation, Estaticache, RedHat Cloud Management Engine 5.3 OpenShift enterprise deployment, Red Hat Enterprise Linux OpenStack Platform, OpenShift, Red Hat Enterprise Virtualization (RHEV), Red Hat CloudForms, Cloud Formation Cluster, CfnCluster Tool, IBM Cloud Infrastructure with OpenShift, Docker and Red Hat Satellite. Hands-on experience with the HADOOP stack (MapReduce, Sqoop, Pig, Hive, HBase, Flume) and experience with related/complementary open-source software platforms and languages (Java, Linux, Apache, Perl/Python/PHP, Chef). Designed and deployed cloud-native enterprise applications in public, private, hybrid, community, and secret cloud. Deployed cloud solutions using PaaS (Cloud Foundry, Heroku, Elastic Beanstalk) and IaaS environments (Azure, AWS, Google) by following the Architectural Design Pattern, Transactional and Security Models. Developed Enterprise Web Applications using Java/JEE/.NET, SOA, ESB, Messaging, BPM, Events, Microservices. Propose reference architecture and technology solutions by understanding the business requirements. Present options and weigh implementation complexities and risks to recommend the right technical decision. Developed and Deployed the Cloud SOA, ESB, Messaging, RESTful APIs by using Spring/J2EE, Cameo, Magic Draw, BPM, Events, and Microservices by following the Microservices Design Patterns and J2EE Design Pattern and developed Microservices using Kubernetes and Dockers. Followed the FISMA, FedRAMP, ATO’s Common Criteria, GSA FedRAMP, and RMF. Expertise in security standards including NIST CSF, SOX, SOC2, FEDRAMP, CIS Controls, cyber security controls frameworks and regulatory requirements including NIST 800-53, NIST CSF, CSA CCM, SOX, and Privacy regulations. Expertise in Azure public cloud, O365, Azure DevOps, Azure cloud native design, microservice architecture, containerization and Azure ARM Template including the Terraform, Biceps, PowerShell and Azure CLI and SailPoint, CyberArk, Microsoft Purview and Archer.
As a DoD Principal Enterprise Cloud Subject Matter Expert (SME)/Cloud Security Architect/Trusted Technical Advisor, Mr. Abdullah introduced solutions-based on functional business framework for Enterprise Architecture (EA), Enterprise Integration Architecture (EIA), Service Orientated Architecture (SOA, TOGAF, DoDAF, ISEF, UAF, NAS2040, EAC, Zachman, EA Frameworks, AAF, UAF, DEF, MBSA, MBSD, DSS, and FEAF, Federal Enterprise Architecture Framework), Enterprise Content Management (ECM) & creating global approach along with the technology architect, technology design, & implementation value added technology for DOD community. Designed and developed Cloud-specific security policies, standards and procedures including the Identity and Access Management (SSO, SAML), and Privilege Management, Firewall management, SSL/IPSec, Encryption Key Management (BYOK), Security incident and event management (SIEM), Data protection (DLP, encryption), Vulnerability Management in partnership with Infrastructure Services, and Application Development by following the SOA, TOGAF, DoDAF, EAC, Zachman, EA Frameworks, and FEAF, Federal Enterprise Architecture Framework to developed Cloud Deployment/Architecture, Cloud Security and a Controls Framework aligned to security frameworks including CSA, CIS and NIST for multi-cloud environments by following the FISMA, FedRAMP, ATO’s Common Criteria, GSA FedRAMP, RMF, DOD and SailPoint, CyberArk, Microsoft Purview and Archer. Performed Cloud Security Assessments of Cloud platforms/environments using industry standard frameworks including ISO, CSA-CSM and NIST. Designed and implemented the cloud-native architectures and designs allow requirements to be met with a minimal degree of risk to Organization and with appropriate security controls present. Expertise in ATO/RMF process, NIST 800-53, 800-171, 800-190 as well as Fed Ramp, CMMC, PCI and HIPAA. Designed, developed and reviewed security architectures for cloud and cloud/hybrid-based systems by using tools including Privilege Account management (CyberArk), Security and Firewall technologies including (Cisco, Checkpoint, CloudFormation, Terraform, Puppet, Ansible, FISMA, FedRAMP, ATO’s Common Criteria, GSA FedRAMP, RMF, DOD. Infrastructure as Code Automation tools including the (Terraform), and implement the Container technologies including the (Docker, Kubernetes). Developed Cloud platforms-based solution for Amazon Web Services (AWS), Azure, Google Cloud Platform, O365. assessment, development, implementation, optimization, and documentation of a comprehensive and broad set of security technologies and processes (secure software development (Application Security), data protection, cryptography, key management, identity, and access management (IAM), network security) within SaaS, IaaS, PaaS, and other cloud environments. Expertise in LLM (Claude, DeepSeeK, Llama, Open AI o1, o3-mini, deepseek-r1),
Information technology executive leader with extensive experience leveraging technology to vitalize critical business operations. I am skilled at introducing solutions-based functional business framework for DOD Enterprise Architecture and creating a global approach for DOD customer experience, including interactive statements, architect, design, and implementation of core business strategies.
Manage FedRAMP, NIST, FISMA standards and develop direction for DOD business units that ensure the Cloud Solution alignment & technology architectural direction with corporate strategies, and (SOA, TOGAF, DoDAF, ISEF, UAF, NAS2040, EAC, Zachman, EA Frameworks, AAF, UAF, DEF, MBSA, MBSD, DSS, and FEAF, Federal Enterprise Architecture Framework).
Developed, Support and Delivered the distributed applications framework, data analytics platforms, database design, data warehouse, metadata management, search and text analytics-based application using SAS, R, S, BI, Apache Spark, Firehous, Snowflake, Redshift, Hadoop tools.
Cloud Infrastructure VPC, Vnet, Route53, Azure DNS, ELB, Azure LB, S3, Storage Accounts, Cloud Formation, IAM, RMS, Cloud Services, Engineering Technology Services, Support Infrastructure Services. Expertise in LLM (Claude, DeepSeeK, Llama, Open AI o1, o3-mini, deepseek-r1).
Cloud Platforms: (AWS GovCloud, AWS ECMA, AWS MILCloud, Cloudone, Dynamo, Lambda, S3, SNS/NQS, CloudFormation, CloudWatch, AWS CLI, VPC, IAM, EC2, S3, RDS and Jenkins, Cloudera, IBM, Azure, Google, Oracle) Cloud-Native Enterprise Applications in Public, Private, Hybrid, Community and Secret Cloud. PaaS (Cloud Foundry, Heroku, Elastic Beanstalk) and IaaS environments (Azure, AWS, Google, IBM, Oracle Cloud)
Analytics (Linux, Networking, MySQL/PostgreSQL/Oracle, Database Performance Tuning, ETL, Kinesis/Elasticsearch/Cloudsearch/Redshift)
Frameworks/Middleware Languages (Apache, Tomcat, Lucene/Soler, Elasticsearch, JAVA/J2EE, .NET, OPEN-SOURCE, Node.js, JavaScript (ES6), React.JS, C, C++, Fingle, Finatra, HA-Proxy, Kafka, Scala, Thrift)
Web based (Ruby/Rails, Java Script Framework, jQuery, MVC Java Script, Angular JS UI, NodeJS, PHP, FLEX, Spring Framework, Axi52, Web Service Framework, SOP, REST API, Spring Boot)
Big Data (Hadoop, Hive, Pig, Spark, HDFS, H-Base, Map-Reduce, VOHDB, Redis, Zookeeper, HBASE, Oozie, Presto, Hue, Yarn, HTFS, Cloudera, Mango DB, Sqoop, Python, shell scripting)
Databases (Oracle, MS SQL, MySQL, PostgreSQL, MySQL, XMPP, NoSQL, REST/Web Services, performance tuning, HA databases, database scaling, Network Operations. NetOps, IP Networking, Windows, RoR, Tomcat)
Developer & Mobile Services (Python, Ruby, PHP, Java, .NET, JavaScript, iOS/Objective-C/Swift, Rest API, inter-application meDoDging & queueing, develop mobile apps, version control systems, virtualization)
Linux Systems Administration (Linux/Unix (Ubuntu/CentOS/RedHat/Solaris; Networking; IPsec, VPN, Load Balancing, Iperf, MTR, Routing Protocols, SSH, Network Monitoring)
Enterprise Architect (SOA, TOGAF, DoDAF, EAC, Zachman, EA Frameworks, and FEAF, Federal Enterprise Architecture Framework)
Process Models (Governance, Policies, FedRAMP, FISMA, NIST, HIPPA, Risk, RMF, Security, Process Flow, Swimlane Diagrams, Conceptual Data Model, Logical Data Model, Physical Data Model, System Service Model, PCI, GDPR, SOX, ISV, HIPAA, FDA, GxP and GDPR. Functional and Technical Requirements Definition, TOC, Transition Plan, AoA, Architectural Design Pattern, Transactional and Security Models)
Networking (DNS; IPsec; BGP; Load Balancing; Configuring & troubleshooting software-based (IPsec & SSL) VPN solutions; experience with devices -Cisco/Juniper/SonicWall/ Fortinet, /Checkpoint, /Palo Alto/Yamaha)
Security (information security (application security, cryptography, threat modeling, penetration testing); web security and compliance (Firewalls, IDS/IPS systems, DOS prevention, PCI, HIPAA, FIPS, FISMA.)
Storage & Content Delivery (Content Delivery Networks; Streaming video/H264/MP4/WEBM/Smooth Streaming; Search Engines/Solr/Lucene; Storage protocols/iSCSI/NFS/CIFS/SMB; client/server & distributed systems architecture)
BI Platforms: (OBIEE, Cognos, SAP BO, Microsoft, QlikView, Tableau, Micro Strategy, Pentaho, Sisense, SAPcrystal)
Windows Systems Administration (Windows Server versions 2003-2012R2; Networking/DNS/TCP/IP). Proficiency in systems administration (Linux/Window), network administration (DNS, IPsec, BGP, VPN, Load Balancing)
Programming/ Design Patterns/Microservices (Perl, Ruby, C#, JS, PHP, Java/JEE/, Cameo, Magic Draw.NET, Spring, Spring Boot, Spring Cloud SOA, ESB, Messaging, RESTful APIs using Spring/J2EE, BPM, Events, and Microservices by following the Microservices Design Patterns and J2EE Design Pattern and developed Microservices using Kubernetes and Dockers)
Deployment/DevOps (Orchestration/Configuration Management and Continuous Integration technology; Git/Perforc/SVN/TFVC, Ansible, Terraform, Chef/Puppet/Docker/Jenkins/Ansible, Apache Tomcat, Nginx/Glassfish/Nagios/JBoss/Puma/IIS; Bash/PowerShell/Ruby/Python/ebextensions)
. ECS (Orchestrating Docker Containers), · EKS (Kubernetes), · CloudFormation, · Elastic Beanstalk. Developed Microservices using Kubernetes and Dockers
· CodeDeploy, CodePipeline, CodeCommit (Implementing CI/CD pipelines on AWS)
· OpsWorks (Automate operations with Chef). System Administration with Linux (Ubuntu, CentOS, RedHat) and Microsoft Windows/Active Directory, Exchange, CM tools including Ansible, Chef, Puppet, SSO, Multifactor Authentication, CASB, Cloud Gateways and (SOA, TOGAF, DoDAF, ISEF, UAF, NAS2040, EAC, Zachman, EA Frameworks, and FEAF, Federal Enterprise Architecture Framework)
. Networking (TCP/IP, DNS, routing, switching, firewalls, LAN/WAN, firewalls, LAN/WAN, traceroute, iperf, dig, cURL)
. Web and Application Server technologies (Apache HTTPD, Apache Tomcat, Nginx, Glassfish, JBoss, Puma, Passenger, IIS)
. Scripting language (Bash, PowerShell, Ruby, Python, ebextensions)
. Version control platform (Git, Perforce, SVN, TFVC)
. Virtualization (Hypervisors, VMware, Xen)
. Database Engines (MySQL / Oracle / PostgreSQL / MariaDB / SQL Server)
. NoSQL technologies (DynamoDB, Redis, MongoDB, and Riak
. Load Balancing (Iperf, MTR, netcat, network monitoring / troubleshooting tools)