Professional Summary
Performance-driven Senior IT Security Executive with 30+ years of progressively increasing responsibility in driving IT vision and strategy to enable companies to grow, compete and optimize their operations. Solutions-oriented with proven success in directing a broad range of software development initiatives while building and maintaining an ever-changing complex architecture of network security systems and devices in direct support of targeted business objectives.
Areas of Expertise
- DevOps / Continuous Development & Deployment
- IT Infrastructure & Standardization
- IT / Network Security
- Software Development Lifecycle (SDLC)
- Technology Strategies and Forecasting
- Agile Methodologies
- Business Continuity & Systems Security
- Global Vendor Management
- Performance & Process Improvement
Key Highlights
- Full lifecycle experience in scoping, designing, developing, deploying, and supporting enterprise-scale business applications and business intelligence software
- Full Stack Engineer from the packet level to the user interface; hands-on experience in Agile environments, application design, software development, and testing
- A natural leader with a proven track record of successful IT project management, from concept to completion
- Expert in network devices (routers, switches, load balancers, DNS, DHCP) with solid expertise in building highly complex network designs
- Excellent knowledge of Networking Infrastructure and Security systems (Cisco infrastructure, authentication systems, firewalls, VPN/encryption, etc.)
Professional Experience
Marriott International — Gaithersburg, MD (2017 - Present)
Director Application Security Architecture (Cloud), Security Technology Strategy and Business Partnership
- Work with Public Cloud (AWS, Azure, Google Cloud, Alibaba Cloud, etc) and Private Cloud to set security standards
- Created the Zero-Trust security strategy
- Set strategy and standards for SaaS solutions
- Integral part of the Software Design Lifecycle for security review
- Set strategy for cloud-based tools like CASB, DRM, DLP
- Set strategy and standards for emerging technology like IoT
Marriott International — Gaithersburg, MD (2012 - 2017)
Technical Consultant, Enterprise Security
- Developed and maintained network security policies, global firewall standards, and hardening guidelines
- Evaluated, installed and managed advanced security tools (FireEye, IPS, Sandblast)
- Achieved certification as a Reverse Engineering Analyst (CREA)
- Designed and created a central malware logging and tracking system
- Reverse engineered malware to determine action and risks
- Created security tool MCA for forensic information gathering
Marriott International — Frederick, MD (2008 - 2012)
Lead Technical Analyst, Global Network Operations Center
- Led S-NOC transition and daily operations
- Achieved Ethical Hacking and Certified Penetration Tester certifications
- Created automation tools for forensic activities during malware remediation
- Created pro-active monitoring tools and processes (MOSIS)
Marriott International — Gaithersburg, MD (2004 - 2008)
Lead Technical Analyst, Telecom WAN Engineering
- Responsible for Firewalls and Proxy Servers
- Part of the Core team designing the Marriott LAN and WAN core
- Configured and maintained Cisco Routers/Switches, VPNs and Checkpoint Firewalls
Marriott International — Gaithersburg, MD (2002 - 2004)
Lead Technical Analyst, Distributed Systems Engineering
- Firewalls and Proxy Servers, IBM Tivoli Access Manager
- Evaluated SIM tools and centralized logging options
PSINet — Ashburn, VA (1999 - 2002)
Senior Network Engineer
- Led hosting center network design and installation team
- Led backbone network engineering
- Built OC-192 backbone from Boston to Miami
Mobile Solutions, Inc. — Frederick, MD (1995 - 1999)
VP, Engineering
- Managed product designs, product roadmaps and 5 year plan
- Investigated and developed with emerging technologies
Technical Skills
Operating Systems: Unix, Microsoft Windows, Mac OSX
Languages: Node.js, JavaScript, Python, PHP, Shell Scripting, C/C++, Visual Basic, Objective C, C#, Swift, Ruby, Perl, Java, Assembler
Databases: MS-SQL, Oracle, MySQL, LDAP
Hardware: Checkpoint, Juniper, Sonicwall, Cisco Routers/Switches, Cisco VOIP, Cisco Wireless, Firemon, Extreme Networks, F5, FireEye, SourceFire, RSA, Ubiquity
Networking: Micro Segmentation, Zero-Trust, Routing, Switching, OSPF, BGP, Cisco Nexus, WAN Wireless solutions