11336
Clayridge Dr. Tampa,
FL 33635-1558 |
Douglas A. Dietz |
813.230.1546 dadietz@netskillz.com www.netskillz.com |
|||||||||||
|
|||||||||||||
Objective |
A security/network
engineering position that allows me to utilize my creativity, expertise, and
experience to play an integral part, in an environment that promotes
continual upgrading of knowledge and skills, with strong opportunity for
advancement within the company. |
||||||||||||
Active Professional Certifications |
CISSP –
Certified Information Systems Security Professional CCNP
Enterprise - Cisco Certified Network Professional Enterprise CCNP
Security – Cisco Certified Network Professional Security Cisco
Certified Specialist – Enterprise Advanced Infrastructure Implementation Cisco
Certified Specialist – Enterprise Core Cisco
Certified Specialist – Enterprise Design Cisco
Certified Specialist – Network Security Firepower Cisco
Certified Specialist – Network Security VPN Implementation Cisco
Certified Specialist – Security Core Cisco
Certified Specialist – Security Identity Management Implementation Cisco
Certified Specialist – Web Content Security CCNA – Cisco
Certified Network Associate ITIL-F –
Information Technology Infrastructure Library – Foundation PCNSE –
Palo Alto Certified Network Security Engineer ACE –
Palo Alto Networks Accredited Configuration Engineer |
||||||||||||
|
|
||||||||||||
Employment |
Information Security Advisor ·
Created / trained new security team for
subsidiary that was recently acquired. ·
Managed all NextGen Fortinet Firewalls / IPS /
WAFs for subsidiary. ·
Liaise between subsidiary and Elevance
BISO/CISO to implement standard security controls (e.g., CyberArk / Illumio /
SymantecDLP). ·
Worked with internal/external
auditors/PenTesters to ensure subsidiary was complying with HIPAA
regulations. ·
Worked with Akamai to implement a HA/LB VPN
solution. ·
Implemented/Secured a ‘guest-wifi’ solution
for subsidiary. ·
Created numerous Bash/PowerShell scripts to
automate security functions. ·
Created custom dashboards/alerts for SIEM
(Splunk). ·
Created an external circuit monitoring
solution to verify ISPs were meeting expected SLAs. ·
Created/Maintained internal security policies
and procedures. --------------------------------
Sr. Network Security Engineer ·
Provide global managed network
security design / support (lifecycle engineering) to large multinational
enterprise companies. ·
Designed and implemented a
global proxy solution that spanned 5 countries utilizing BlueCoat Proxy/CAS
and F5 load balancers. ·
Re-designed and consolidated
dozens of datacenters into Secure NPHs (Network Performance Hubs) via
multi-context HA Firewalls. ·
Migrated and consolidated
centralized datacenter services into cloud-based services (AWS / Azure / VZ Cloud). ·
Work closely with industry
compliance and regulatory officers (PCI / ISO / HIPAA / SOX). ·
Designed / managed secure
communication points of entry for a plethora of vendors and remote offices
via RPPs (Regional Peering Points) via IPSEC DMVPN. ·
Perform MTO (Managed Take Over)
of thousands of retail security devices including, but not limited to: FW / IPS / Proxy / Load Balancers / (vendor
servers i.e. ISE /CSM). ·
Automate applicable tasks via
BASH / Expect scripts and AA (Automation Anywhere). ·
Experience designing and
managing SIEM / DLP / IPS solutions. ·
Member of ‘Incident Response’
teams. --------------------------------
Sr. Network Engineer ·
Provide global managed network design / support (lifecycle
engineering) to large multinational enterprise companies. ·
Designed and implemented a
distributed sniffer solution in three of Verizon’s datacenters. ·
Provide training to Network
Operations Center on commercial network infrastructure. ·
Managed several Solaris servers
for network monitoring tools to include HP NNM / Netcool / Webtop / NetQOS . ·
Installed / managed TACACS
servers used for AAA. ·
Provide hardware / software
upgrades to network devices to enhance network features. ·
Provide a robust front-end for
Web server farms and cache clusters utilizing load balancers from Cisco /
Citrix / F5. ·
Control network access for
external customers utilizing Cisco FWs. --------------------------------
Network Engineer ·
Administered security solutions to include Checkpoint FW, ACLs, and
NIDS. ·
Designed and implemented iBPG connections
between ICI and UUNET. ·
Designed and implemented network
wide re-IP to conform to WCOM standards. ·
Designed and implemented NAT
scheme to aid in ICI merge into WCOM. ·
Coordinated, managed, and troubleshot
VPN solution utilizing Time Warner’s ‘Road Runner’ broadband cable
technology. ·
Coordinated, managed, and
troubleshot corporate VIP ISDN connections utilizing BRIs / PRIs provided by
Verizon, and Cisco ISDN routers. ·
Designed, managed, and troubleshot
remote access solution (RAS) to over 2000 users, utilizing Cisco AS5200 /
AS5300 routers, and TACACS+ authentication. ·
Designed and managed corporate
dial-out modem pool solution. ·
Monitored and managed network
elements utilizing HP Openview. ·
Control network access for
external customers utilizing Cisco FWs. --------------------------------
Network/System Engineer ·
Planned, installed, organized, and monitored
a 97 server, 2,780 user, multiple domain metropolitan area network. ·
Provided electronic mail, file and print
services, and worldwide web access. ·
Monitored 26 local area networks at hardware
and operating system levels. ·
Provide technical solutions,
recommendations, purchase orders, requirements, and assistance to over 60
functional system administrators, workgroup managers, and entire metropolitan
area network. ·
Migrated 20 Novell NetWare 4.X servers to
Microsoft Windows NT 4.0. ·
Installed and configured six Data General
cluster servers for Microsoft Exchange, file and print services, and numerous
databases. ·
Installed and upgraded antivirus software as
required. ·
Monitored and maintained multiple RAID
systems. ·
Installed and configured systems and
circuits consisting of T1, E1, 256K, 10 Base T, 100 Base T, and Fiber for
metropolitan area network. ·
Troubleshot, isolated, and performed actions
to restore service to numerous critical communications systems, equipment,
and transmission media utilizing various testing equipment (Fireberd,
Oscilloscope, HP Openview, and advanced cable testers). ·
Identified and initiated actions to prevent
and correct conditions degrading circuit operation. ·
Performed quality control checks, measured,
recorded and analyzed data for test and acceptance certification. ·
Maintained outage logs, circuit data bases,
records, and topologies ·
Controlled Dial in Access (RAS). ·
Configured routers, switches, and hubs
Implemented the first Integrated Switched Digital Network (ISDN) connection
to the base. |
||||||||||||
Personal View |
Self-motivation,
initiative, and experience are the keys to success. |
||||||||||||
References |
Available
upon request. |
||||||||||||