John LaRue
Mill Creek, WA
**.*****@*****.***
PROFESSIONAL SUMMARY
Accomplished, versatile Information Security Professional with over 20+ years of experience supporting large, high-usage enterprise technology environments. Proven expertise in risk management, enterprise system implementation, team integration, quick analysis of environment and application of previous knowledge in multiple platform environments.
Strong initiative and keen analytical/problem solving skills.
Bring an uncompromising approach to customer service and client satisfaction. Natural ability to build strong, trusting relationships with team environments. Exceptional customer service skills.
Results-driven high–achiever, consistently producing technical solutions that improve business efficiencies, increase service levels and contribute to revenue growth.
TECHNICAL SKILLS
OPERATING SYSTEMS: Windows, UNIX (FreeBSD, RedHat, Linux, Solaris, SCO)
DATABASE: Oracle, Unify, Informix, MySQL, MS SQL
APPLICATIONS: Office, Splunk, RSA Archer, Service Now, Maltego
SECURITY: App Scan, nCircle, Red Seal, Fortify on Demand, Qualys Guard, MSFT Purview/Sentinel (ISRM, DLP)
FTE PROFESSIONAL EXPERIENCE
T-Mobile USA, Bellevue, WA
Cyber Security Engineer 12/2022 – 6/2024
Assisted Cyber Security Operations Insider Threat team in identifying insider threats using Microsoft Purview, Maltego, Splunk and Service Now. Automated alert mechanism in Purview for ticket creation in Service Now. Created auto populated dashboards for DLP with configurable thresholds. Worked with law enforcement to decrease availability of Sim Swap on cell phone technology. Partnered with Cyber Threat Investigation, Cyber Security Operations Center and Cyber Information Response Team for escalation purposes to gather metrics of security posture for senior leadership.
T-Mobile USA, Bellevue, WA
Security Analyst 8/2009 – 6/2013
Responsible for supporting T-Mobile's information security and privacy policies, standards, and procedures to support the Vulnerability Management Advisory Services (VMAS) team in implementing the enterprise information protection strategy. Program manager responsible for T-Mobile's PCI certification. Attestation was achieved for three multiple assessments. Information feed from IDS/IPS team used for vulnerability assessment.
T-Mobile USA, Bellevue WA
Application Support, EIT 4/2006 – 8/2009
Manage, plan, direct and complete the analysis of technical business solutions. Provide technical assistance in identifying, evaluating and developing systems and procedures that are cost effective and meet the customer’s requirements. Partner with development and business units from concept phase through successful deployment of projects. Assisted with implementation of Splunk beta version. Capability to read logs from 1,000+ hosts at once proved extremely useful. Limited use of application as a manager granted access to higher level analysis tools. Able to deliver consecutive ASV attestation for PCI to the banking industry, T-Mobile record.
CONTRACT EXPERIENCE
Adobe, Inc.
Insider Threat Analyst 3/2021 – 8/2021
Assist Legal team with monitoring Intellectual Property using Proofpoint along with Microsoft Security and Compliance Center (ISRM)
Adobe, Inc.
Security Engagement Specialist 8/2019 – 3/2021
Security Engagement Specialist working on multiple projects, is strong in coordination of internal resources, managing schedule, project performance and measurement, working with customers.
• Support answering pre-sales technical and security questionnaires.
• Maintain Sales Security SharePoint site, database of security responses and supporting documentation: whitepapers, technical diagrams and other product security documents for the field to use.
• Develop, promote and support processes that streamline the sales cycle as it involves security.
• May be asked to represent security on sales calls with customers
• Support Corporate Marketing and product marketing agendas and campaigns as they relate to security.
REI, Bellevue, WA
Sr. Cyber Engineer, Security Engineering & Risk 5/2019 – 6/2019
Defined and lead programs, supporting alignment with cloud based online services strategy and engineer requirements for evolving information security services, mechanisms and safeguarding the Co Op.
Avanade, Seattle, WA
Sr. Security Operation Specialist 4/2016 – 2/2019
Responsible for malware triage program utilizing SCCM to Service Now incident process. Reduced backlog from 1,000+ incidents to 130 in three months by direct communication with the global user community and education. Working with VP and above to help enhance the corporate wide security stance. Involved in private preview of WDATP and integration into SEIM.
Microsoft, Redmond, WA
Security Analyst 1/2014 – 4/2014
Analysis of Qualys security platform for analysis risks to network communication for commerce banking. Penetration testing of lab space previous to production data center implementation. Remediation of vulnerabilities automated into big data cluster of SQL server and MSFT cloud technology.
Microsoft, Redmond, WA
Security Analyst, ECO Group 6/2014 – 4/2015
Research of customer data for compliance to company encryption methodology. Analyzed top 100 applications data, both at rest and in transit for vulnerability using Threat Modeling application, network diagrams and front to back data flow. Risk topology from multiple input reduced threat 20%.
Microsoft, Redmond, WA
Security Analyst, ISRM Group 5/2015 – 6/2015
Assist with analysis of Qualys vulnerability scanning for workstation and laboratory hosts in addition to all data center hosts. Goal to reduce scan time from 2 days to 6 hours accomplished, using in depth understanding of the TCP/IP protocol stack used internally. This allowed for much quicker risk analysis and remediation.
Apropos Retail Management Systems, Lynnwood, WA; 01/2004 – 4/2006
DBA
Reliably implement security upgrades to 100 client, 10,000 node network nationwide. Stability of firewall and VPN connectivity major management administrative task. Own tasks related to security for client sites authenticating from corporate gateway throughout national network for customer. Database administration of remote servers in all client locations, including database tuning/troubleshooting/upgrading. Support of client sites throughout U.S. and Canada. Significant contributor to internal. Documentation effort based on SQL backend. Configure and administrate Windows XP based Informix Point of Sale server configuration. VPN security update of all customer base under Linux O/S.
U.S. DISTRICT COURT, Seattle, WA; 02/2002 – 07/2003
Systems Administrator
Spearheaded successful migration from obsolete text-based court management system to a 15-server, 150-user Solaris SQL/browser-based administration system. Coordinated with Helpdesk and server support team to effectively manage daily systems operations.
Delivered thorough, reliable support to over 250 West Coast clients at multiple locations. Completed smooth migration on time and on budget.
MILA, INC., Lynnwood, WA; 10/1996 – 04/2001
Systems Administrator
Led a systems upgrade from Lucent Technologies Legend system to InterTel telecommunications switch, providing IP-based communications to remote offices in 27 states. Supervised over 150 direct reports.
Implemented migration from desktop to client/server environment using Citrix WinFrame based on Windows NT 3.51.
Installed UNIX servers for DNS and inbound/outbound faxing using FreeBSD and HylaFax.
Supported outside sales representatives using UNIX-based dial-in services.
Brought about high degree of clarity for state of the art security measures.
Capably managed upgrades and migrations, meeting all defined functionality/time/budget objectives.
EDUCATION
Shoreline Community College, Shoreline, WA
AATA – Computer Science
CERTIFICATIONS
Red Hat administration
Information Security Risk Management – University of Washington
Certified Ethical Hacker v7