Andrew A. Baker
240-***-**** (C)
E-mail: ************@*****.***
Professional Summary:
A strong information technology professional with a master’s and bachelor’s degrees in Information Systems from American Sentinel University. An experienced information technologist with over 25 years of experience in IT and has served various roles for financial services, shipping, insurance, college, telecommunications, manufacturing, and retail clients.
Professional Experience:
Westchester Community College Jan 2025 - Present
Adjunct Professor
Courses Lecture:
Cybersecurity – Ethical Hacking and Penetration Testing, Incident Response, Forensics.
Microsoft Office 365 – Microsoft Word, Excel, PowerPoint, Access, Publisher, Teams
Network Management – VLAN, IP Subnetting, Security Policies, Traffic shaping
Computer Operations - Introduction to Computers, Operating Systems, Software Applications, Hardware Components, Networking Basics, Data Management, and Security.
Provide oversight of the cybersecurity of the network operations of the faculty.
Using BrightSpace to Manage Classes, Faculty students
Using PeopleSoft to manage students' attendance and grades.
Using SIMnet Tools for interactive teaching of Faculty programs
The Clearing House, New York (Wall Street) Oct 2016- Dec 2023
IT Technical Support Manager
Key Responsibilities:
Oversee the IT operational Budget yearly for the operations
Develop system relations strategies, manage projects, and drive new business strategies and project developments with infrastructure teams across all platforms
Provide vision, leadership, strategies, and solutions for enterprise-wide IT issues for the Network Operations
Design, develop, implement & coordinate systems, policies & procedures for the division
Manage relationships and correspondence with external partners, Devlopers, SMEs, and MSPs for continuous IT services
Provide training and expert counsel to staff on the firm’s IT systems, technology tools, or issues
Responsible for identifying vulnerabilities and potential risks in the NOC’s hardware, software, and network infrastructure, recommending and implementing security measures such as firewalls, encryption, intrusion detection systems (IDS), and antivirus software to protect data and systems
Work with internal, external audits, and regulators in providing SOC 1, SOC 2 reports
Continuously monitor the organization’s networks for any unusual activity or security breaches.
Analyze and investigate security incidents and alerts to understand attack vectors and mitigate threats.
Manage Cybersecurity Incidents, changes, releases, and problem management) using Service Now in handling Sev1, Sev2, and Sev3 issues
Use CyberArk to manage service accounts for the different environments' servers (Bank Test, QC, Production)
Provide support for the CCTV Crestron security camera system
Provide security features to all Web applications, e.g., Office 365, AWS (VPC, Route 53), and Azure
Ensure that the security of infrastructure, data, network access & backup systems are operational.
Expertise in Cyber Security Operations Centers, including SIEM, SOAR
Develop and enforce security policies and protocols to maintain the integrity, confidentiality, and availability of data.
Conduct regular security audits and assessments to ensure industry standards and regulations.
Develop security Knowledge base articles and business processes for user functionality across all platforms.
Experience with security operations center, data analysis, and security event and incident management
Secure Cisco Webex and conferences, Gateways, and VGs
Manage and supervise a staff of 73 (1st level, 2nd level operational personnel Helpdesk). across 4 locations (NY, NC, PA, DAL)
Provide leadership to the Operations team to ensure all applications, Servers, and services (components) run efficiently on all platforms to ensure daily ACH settlements for all payment systems
Implement security hardening for CUCM Voice Unity for Voice Mail Network
Manage and support all LAN/WAN connectivity for VPN and MPLS networks (tunnels), manage security upgrade builds for all the major banks in America using BGP, OSPF, RIP, and EIGRP on Cisco 4300 routers. Support VLANs on Cisco 4000 Switches and Firewalls (ASA, Sonicwall, Palo Alto)
Secure and support F5 Load balancers for E-commerce applications
Review and assess security logging as delivered versus requirements and standards. Track compliance and escalate non-compliance of logging standards to executive leadership.
Analyze malicious code, packet capture files, and artifacts
Coordinate and manage the incident response process, including the identification, containment, eradication, recovery, and post-incident analysis of security breaches.
Develop and update incident response plans and conduct training sessions or simulations for staff.
Implement security hardening for Active Directory, Exchange, DHCP, DNS, and GPO policies.
Utilize tools such as Wireshark, Splunk, Solarwinds, SCOM, and Dynatrace for monitoring
Provide Identity access management for Active Directory, Azure, and AWS.
Establish technical best practices for security logging (event generation, delivery, storage) and minimum requirements across our infrastructure (cloud, network, databases), host & endpoints (workstations, servers), and applications.
Manage and support the corporate APs and IDS within the network
Monitor security event logging of infrastructure using Splunk, Dynatrace, SolarWinds, Nozomi Network Guardian, Arcsight, LogRythm, Wireshark, Qualys, and Rapid7.
Identify vulnerabilities and potential risks in the organization’s hardware, software, and network infrastructure.
Recommend and implement security measures such as firewalls, encryption, intrusion detection systems, and anti-virus software to protect data and systems
Ensure all systems and software are up-to-date with the latest security patches and updates.
Provide security BCP site failovers using (firewalls, switches, servers, and routers).
Coordinate with IT teams to deploy patches in a timely and efficient manner.
Conduct gap analyses of security logs, help Cyber Operations teams prioritize, and influence engineering teams to close logging gaps. Using digital forensic tools, Volatility, FTK, and Autopsy.
Managed a team of 17 support engineers across 4 locations (NY, NC, PA, DALLAS).
Treliant Risk Advisors Jan 2016- May 2016
Network/Systems Engineer
Manage and maintain enterprise network infrastructure, ensuring peak performance, security, and availability across all sites
Configure and support EVPN and VXLAN for scalable, secure segmentation in data center and cloud environments.
Configure, monitor, and troubleshoot BGP and EIGRP; manage VLANs, spanning tree, and VRFs to enable segmentation and high availability
Administer Palo Alto firewalls and VPN configurations for secure site-to-site and remote access connectivity.
The Port Authority of Jamaica/Kingston Container Terminal Sep 2014- Jun 2016
Network Architect/Project Manager
International Seabed Authority Sep 2013- Sep 2014
IT Systems Consultant
ICD Group Mar 2012 – Sep 2013
Network Project Manager
The Shipping Association of Jamaica Aug 2008 - Feb 2012
Network and Operations Manager
Lascelles Demercardo – J Wray and Nephew Group Sep 2004 - Jul 2008
Network Manager
Technical Proficiency/Skills:
Project Management/ITIL/Applications: ServiceNow, SCOM, Splunk, Microsoft Office 365, Microsoft Teams, IBM BMC Administrator MQ, Connect Direct, WS_FTP Server, ADP, CA PPM, Dynatrace, IBM Clearpath for MCP, Secure CRT, BMC Control-M, XML parsing, Okta one identity, Jira, Microsoft Project, Dynatrace, POS Management system, Secure CRT, SolarWinds, Jira, Microsoft Project, CA-PPM, ADP
Cybersecurity: IT Governance (ISO 27001, NIST 800, HIPAA, GDPR, SOC 1 &2), Security Tools, Kali Linux, Nessus, Wireshark, ArcSight, LogRythm, Sumo Logic, Elastic Security, Splunk, Volatility, FTK, Autopsy, Burp Suite
Network and Firewall: Cisco 4000 switches, Cisco 4331 ISR routers, Cisco ASA 5512, 5520, Checkpoint, SonicWall, Palo Alto, Fortinet
IP Telephony Applications: Cisco Communication Mgmt. Server (CUCM 7 & 8), Avaya IP Office v8, Avaya Communications Manager, Cisco Unity Connection 7, Cisco Unity Server 6, Cisco IP Communicator, Avaya IP Voicemail Pro 8
Network Protocols: TCP, UDP, Multicast, RIP, BGP, MPLS, OSPF, VPN (Site-to-Site), EIGRP, LAN, WAN
Identity Management: One Identity, Okta, CyberArk
Enterprise Applications: VMWARE 5.5 & 6, Citrix/XenApp, Microsoft Exchange Server 2007/2010/2013
Accounting Applications: Platinum, Accpac Plus 6.0, Microsoft Dynamics 5.0, Daceasy,
Database Management Systems: Oracle 10g & 11g, Microsoft SQL Server 2005, 2008, 2012, 2016, 2019
Mainframes: IBM Unisys Mainframes,
Cloud Services: AWS, Azure (Azure Active Directory)
Microsoft Windows Services: Active Directory, DHCP, DNS, Remote and Routing Access, Clustering.
Operating Systems: Microsoft Windows 2016 & 2022 Server, Microsoft Windows 7, 8, 10, 11, Linux Red Hat 7.0, Unix, AIX, IBM AS400 System, Mac Enterprise
ERP: Microsoft Dynamics, Microsoft Axapta, Cosmos, NAVIS
Educational Qualification:
Doctor of Philosophy (PhD) in Cybersecurity from National University, CA (Anticipated Graduation Jan 2026)
Master’s in Information Systems and Management from American Sentinel University, Colorado, in 2018.
Bachelor of Science in Information Systems from American Sentinel University, Colorado, in 2013.