Wilson Nyah
*************@*****.***
SUMMARY:
• Dynamic System Engineer with over 7 years of experience leading teams in multiple projects such as monitoring, Storage, and migration. system maintenance, Database designing, and security. Expertise in implementing comprehensive monitoring solutions and automated processes significantly improving operational efficiency. Proficient in Linux VMware ESXi, and Windows administration and scripting, ensuring robust system security and streamlined updates. Committed to fostering collaborative environments while delivering high-quality technical support and innovative solutions. Aiming to leverage these skills in a systems Engineer role to drive impactful changes in system architecture and performance. TECHNICAL SKILLS:
• System security, monitoring, patching & Live upgrade. Yum repository management and maintenance.
• Manage firewalld on Linux 6, 7 & 8 based systems. Manage DNS server for enterprise environment with change mitigation.
• Create LVM, Esxi and Vcenter Change Request Management (Pac2000, Service Now, Remedy, Jira, Rally) Identity application, hardware/OS problem Create and Manage Virtual machines on Esxi and Vcenter Knowledge AWS including IAM policies, creating E2 instances and S3buckets update security group,
• Deployed OVF templates to ESXI host. NetApp SAN and NAS, Cloud, Storage, and Backup
• Apache Virtual Hosting (Vhost), Password-less SSH and Kickstart expertise. Monthly query run on oracle database 18c (MySQL) Syslog, Windows Server STIGs, Building ISOs, Export VMs on ESXi, Patching systems, network configurations and network troubleshooting.
• Expertise in patching and scanning systems.
• PowerShell Scripting.
• Multifactor Authentication installation.
• Log management, directory collaboration, manage Firewalld, Chronyd, NFS (Network File System), ACL (Access Control List), LDAP, and SCP, SFTP services on Red hat and CentOS based system.
• Nagios system monitoring, security checks – Scap-Workbench expertise User account management, Crond jobs, system processes and containers.
• Microsoft Office expertise.
PROFESSIONAL EXPERIENCE:
Snyder Homecare - Eagan MN Jul 2024 — Present
System Engineer/Lead Linux Admin
Responsibilities:
• Hands-on administration of Linux/Unix systems Design of secure, robust, flexible, and scalable systems infrastructure solutions, enhancing system performance and automating deployment and configuration processes using tools such as Kick start file, Cockpit Image Builder, Ansible, Terraform, and Bash Scripts, reducing setup times by 30% and minimizing manual errors.
• Created an automated system for system patching and updates that improved system reliability and security for RHEL 6, 7, and 8, Oracle Linux 5, Developed and implemented a data backup and recovery system( Veeam Backup & Replication solutions and Remote synchronization with Rsync, create snapshot secure copy files across server and director machines, ensuring consistent backups and quick recovery times.
• Responsible for ensuring the production infrastructure server components stability, integrity, and efficient operation'
• Optimized backup schedules and retention policies, improving storage efficiency and reducing backup windows by 5% increasing data security and reducing downtime in the event of a system failure Designed Network Configuration (Create Network on VMware Create Network on VMware) Set up physical NICS, Create virtual switch, Create port groups and add VM to port groups.
• Led a team of system engineers in a successful system migration of a database server, migrated legacy applications into Docker containers, enhancing portability and simplifying software delivery pipelines.
• Developed and implemented a comprehensive monitoring system Built an interactive Nagios + Grafana dashboard to monitor a mixed environment of Linux, containerized environments and Windows servers. dashboard tracked CPU usage, disk space, network activity, and service statuses. Integrated automated alerts to display critical failures directly on the dashboard. As a result, the team could respond to issues 40% faster compared to relying on text-based Nagios alerts alone.
• Lead the organization in building an effective VMWARE/Storage and backup infrastructure
• Planned and allocated Network Appliance (NetApp) storage for standard UNIX, database and Windows systems, as well as, storage for Vmware and Windows ESX virtual systems
• Implemented secure communication between containers by configuring overlay networks in Docker Swarm.
• implemented vMotion on VMware VCenter, vSphere, VMWare ESXI to migrate virtual machines between hosts with zero downtime, enabling seamless hardware upgrades and maintenance, Conducted server consolidation and virtualization using VMware infrastructure, incorporating VMware ESXI, Developed real- time operating system (RTOS) applications to manage system log, setup using Rsyslog to configure multiple servers on a centralized system to monitor logs. Visualize key performance indicators (KPIs) Troubleshoot user account issues and network-related connectivity issues.
• Utilized Network Appliance Data OnTap storage manager to support production NAS storage operations for UNIX and VM systems.
• Attached Network Appliance systems to SAN attached storage over Cisco 9500 and Brocade M-Series Storage Area Network (SAN) switches.
• Create, and manage users/groups, set passwords, permissions, account expiration, reset user passwords, administer user's account security through monitoring login logs for repeated failed authentication attempts on both Unix/Linux Servers Restrict access to files and directories using Access Control List of permissions.
• Developed and enforced infrastructure security policies and implemented Security Technical Implementation Guides (STIGs) to ensure compliance with DoD security standards across Linux, Windows, and VMware systems, improving system hardening and minimizing vulnerabilities by 30%.
• Configured firewall, SELinux, and Appar Mòr to restrict unauthorized access, and enhance system security. Implemented multi-factor authentication (MFA) and role-based access control (RBAC) policies, strengthening access management, and reducing unauthorized access incidents by 30%.
• Oversee change management and configuration management of the production environments, secure the web server with SSL/TLS/AES/proxy to enhance security, and maintain data integrity across networks.
• Collaborated with the network team to secure network infrastructure, enhancing protection against DDoS attacks, and improving overall network resilience. Monitored system logs and security alerts, responded to potential threats, and conducted a forensic analysis to mitigate risks. Trained team members on security hardening techniques and best practices, improving the organization's overall security posture.
• Implemented robust data protection measures, including RAID configurations and snapshot technologies, enhancing data integrity and reducing the risk of data loss. Collaborated with application and infrastructure teams to align storage solutions with business requirements, boosting performance, and enhancing user satisfaction.
• Developed and implemented a comprehensive network file-sharing system and collaborated with cross- functional teams to plan and execute data storage solutions, including SAN, NAS, and NFS technologies, ensuring data availability and integrity.
• Administered storage systems and managed data backup and recovery processes, ensuring data integrity and high availability in SAN and NAS NFS environments to enhance data accessibility and reduce latency by 20%. And monitored storage infrastructure, troubleshot issues, and maintained a 99.9% uptime..
• Manage SWAP space from partitions or logical volumes, make file systems as needed; xfs, ext4, swap, vfat, manage partitions creating physical volumes, volume groups and logical volumes Resizing & extending ext4 file systems.
• Conducted Linux kernel and memory upgrades, administered swap areas, and executed Red Hat Linux Kickstart installations. Configured DNS, DHCP, NTP, NFS, and other network services in Red Hat Linux Actively and consistently support all efforts to simplify and enhance the customer experience.
• Optimized IT operations by automating software deployments, patching, and compliance checks using Tanium, reducing manual efforts by 5% and improving SLA adherence.
• Create detailed design documents and functional specifications for new applications, services and enhancements to existing systems and services.
VOA - Anoka MN Feb 2023 — Dec 2023
Systems Engineer/Sr Linux Admin/Window Engineer
Responsibilities:
• Installed, configured, and managed Virtual machines, VMware'EXSI and Vcenter.and Web Server Virtualization proprietary Unix/Linux and Windows server applications.
• Active Directory/Domain Controller. Set Active Directory on Windows servers. Create users and groups, add printers, and servers, and set policies restricting access to systems, files, and directories to appropriate users. Domain: Controllers (DC) across multiple locations, ensuring high availability and redundancy, resulting in a 40% reduction in authentication-related issues. And enforced group policies (GPOs), standardizing security settings.
• Perform system monitoring; CPU, memory, I/O, hardware, jobs scheduling and processes management. Monitored Unix/Linux server's load average, iostat, vmstats and general server health.
• Troubleshooting & Maintenance network on Windows servers. Adding peripheral devices on servers as needed run security checks on Windows systems. User account management and group collaboration.
• Installed and configured network infrastructure components like routers, switches, firewalls, and VPNs.DNS server on both physical and virtual servers configured, and maintained enterprise-level Linux and Windows system.
• Designed, configured, planned and implemented Tier 1 block storage solution.
• Develop core code modules, unit test tools and release notes for and bug fixes with the help of Ansible, JavaScript and Vim editor Run security checks on Windows systems. User account management and group collaboration.
• Installed, upgraded, global storage management and monitoring software.
• Oversaw and structured the transition of Spectrum Control on-prem to becoming the SaaS offering Storage Insights, creating teams for Support, DevOps and infrastructure
• Open track and close trouble tickets as well as input trouble calls into ticket tracking system (Remedy) Administered Red Hat Systems managed backups and monitored CPU and Disk Usage.
• Planned and implemented NetApp Data OnTap version upgrades for 4 Network Appliance network attached storage (NAS) devices to the most recent hardware and software levels preventing any outages of key production systems.
• Implement File System (NFS) for Linux and Windows systems, Secure File Transfer Protocol (SFTP), Chronyd, Firewall, Network File Sharing System, and SAN Network File Sharing System. Collaborated with cross- functional teams to plan and execute data storage solutions, including SAN and NFS technologies, ensuring data availability and integrity.
• Collaborated with cross-functional teams to integrate MariaDB databases and SQL databases with front-end applications, ensuring seamless data flow and user experience.
• Performed data modelling and normalization, enhancing database efficiency and reducing redundancy. Monitored and optimized database performance, implementing indexing and query optimization strategies that improved response times by 30%.
• Design and implement change and control policies and disaster recovery plans lead troubleshooting efforts to restore functionality in event of outage Installed, configured and maintained a variety of systems and applications, including Windows and Linux.
• Implemented a system to monitor Linux servers and alert administrators of potential issues, resulting in a 5% reduction in service downtime integration of logging frameworks across multiple applications, ensuring consistent and reliable data collection.Analyzed log data to identify and resolve system performance bottlenecks, improving overall application performance by 25%.
• Deployed and maintained a virtualized environment with a variety of operating systems, including Windows and Linux.
• Implemented comprehensive monitoring and logging solutions using tools like Splunk, Prometheus, Nagios Log Server, and Cockpit session-recorded to enhance system visibility and proactive issue resolution.
• Use established change management processes, requiring operational procedures be performed with minimal client impact, (i.e. during the established maintenance window).
• Integration of Linux systems into an Active Directory environment using SSSD/winbind.
• Create work effort estimates for new features and bug fixes for use in prioritization and release
• Implemented secure container networks, managing secrets and maintaining isolation between services.
• Create detailed design documents(service now, conference, Jira, remedy and elog) and functional specifications for new applications, services and enhancements to existing systems and services, Configure and troubleshoot DNS /DNS client on servers to resolve IP address and hostname for reliable network services Conduct design sessions with appropriate participation from architects and engineers and Collaborate to create configuration designs and implementation of various environments. Create work effort estimates for new features and bug fixes for use in prioritization and release management. Git-Go Technology, Maryland Jan 2019 — Dec 2022
System Engineer/RedHat Linux /VMware Admin/Engineer Responsibilities:
• Configured and managed services such as Apache, Nginx, and Samba on Red Hat platforms for enterprise-level solutions.
• Automated system configurations and patch management using PowerShell Scripting (Ansible) reducing manual intervention by 40% Designed and implemented security policies for RHEL environments, including SELinux and firewall configurations.
• Configured and managed services such as Apache, Nginx, and Samba on Red Hat platforms for enterprise-level solutions.
• Monitored and optimized container performance using tools like Prometheus and Grafana to ensure system reliability,
• Troubleshot complex RHEL system issues, utilizing logs and debugging tools to resolve critical production incidents.
• Patch and manage rpm, manage permissions using ACL Directory Collaboration, Personal home built and configured Workstation on VMware ESXi, Windows Server and Mac OS Personal home built and configured WorkStation on VMware ESXi, Windows Server and Mac, Set up passwordless SSH to authenticate remote access logins on servers
• Played a key role in securing high-value customer account purchases of various storage software and hardware as part of new customer acquisition and retention efforts
• Created and managed users/groups, set passwords, permissions, account expiration, reset user passwords, and administered users' account security by monitoring login logs for repeated failed authentication attempts on both Unix/Linux servers. Restrict access to files and directories using Access Control Lists and files permissions.
• Performance monitoring and analysis global SAN/NAS infrastructure systems using EMC tools like ViPR SRM, Isilon InsightIQ, VMAX Unisphere Performance analysis, VNX reporting and monitoring tool.
• Configure and troubleshoot DNS and DNS client on servers to resolve IP addresses and host names for reliable network services. Conduct design sessions with appropriate participation from architects and engineers and collaborate to create configuration designs for the design an implementation of various environments.
• Designed and managed gloabl Unix/Storage environment
• Troubleshoot hardware failures, opened trouble tickets with Sun and worked with sun field engineers to resolve hardware problems. Use of Petri nets in graphical programming language for modeling concurrent system.
• Monitored system logs. Performance Monitoring and capacity planning in anticipation of system resource usage and needs.
• Active directory user account, password and profile management on Windows Server 2003.usage on both UNIX and windows-based servers.
• Configure hardware and software, installs Microsoft Windows Patches and updates, load computer with government furnished system images, perform computer re-images, and assist users with data backup and restore.
• Use remote tools such as remote desktop, DameWare Utility to analyze and resolve trouble issues.
• Monitor and assist in managing applications, device availability, network conditions and status, system reliability and performance, service and program maintenance and storage resources with Kubernetes.
• Perform additional duties related to this position as assigned.
• Develop project implementation documentation including all technical information needed for the successful implementation of a project.
UBA Bank - Cameroon Jan 2017 — Dec 2018
Systems Admin
Responsibilities:
• Implemented Nagios System Monitory for monitoring data usage and performance, resulting in a 5% increase in system speed.
• Created an automated system for system patching and updates that improved system reliability and security
• Developed and implemented a data backup and recovery system, increasing data security and reducing downtime in the event of a system failure.
• Developed a monitoring system to measure system performance and detect potential issues in a timely manner.
• Developed a backup and recovery system to ensure the availability of data in the event of a system failure.
• Created an automated system for monitoring system performance and generating alerts that reduced system outages by 5%.
• Developed real-time operating system (RTOS) applications to manage system resources and maximize system performance.
• Developed and implemented a comprehensive monitoring system that provided real-time insights into system performance and user activities.
• Remote synchronization with Rsync Create snapshot Secure copy file across server and directory.
• provisioning, security hardening, deployment and management.
• Manage partitions creating physical volumes, volume groups and logical volume Resizing and extending ext4 file systems.
• Collaboration and Communication: Highlight your ability to collaborate effectively\with cross-functional teams, communicate technical concepts clearly, and provide technical leadership when needed.\ EDUCATION: Bachelor's degree in computer science and information University of Buea - Cameron - Oct 2011
-Dec 2018.
CERTIFICATIONS: Current working on my Azure certification and Microsoft, (RHCSA). 8 - Processing), Ansible 1
(Processing), AWS (Processing), CompTIA Security Plus Should be able to complete it in the next six months, Processing 3 months' time for CompTIA Server.
ACTIVITIES:
• I am an intelligent and motivated individual who work well with others and learns objectives and tasks promptly and efficiently like diving into technologies and learning how they can be implemented and assimilated into everyday work environments.