Qualifications:
=============
Experienced in the IT industry within Commercial and Department of Defense (EUCOM, SOCOM, AFRICOM, CENTCOM, DISA, NATO), bridging IS and IT to enhance business value as a Computer Network Engineer as a Team Lead, Technical Lead and Project Manager and IT Technician on heterogeneous as a Network Engineer and Administrator, Security and Information Assurance Analyst (IA), SATCOM, WAN, LAN, SAN, Cloud computing and Information Assurance / Cybersecurity compliance.
Supported a litany of diverse customers, programs and projects, applications, methodologies, Hypervisor, virtualization, Failover-Clustering, MS-SCCM Endpoint Configuration Manager with SQL, Active Directory (AD), trouble-ticketing systems, networking, Server Farms-Data Centers, Cisco appliances, TACLANE, Encryption, Fiber-Optics, Cyber Security, Forensics, Fiber-Optics, Switching & Routing, DNS, DHCP, MPLS, VDI, Storage-Area-Networks, Helpdesk, Leadership.
Demonstrate a plethora of motivated skill sets from leadership, technical, communication, training plus prioritizing; thus, delivering top-level performance in a fast-paced diversified environment with solid skills and a professional work ethic.
EXPIERIENCE:
============
Field Support Network Engineer | SMX | 11-2028 - 2-2025
Responsibilities Support Counterintelligence Command (ACIC) with NIPR, SIPR, and JWICS desktop computers, KVM, Thin-Clients, and network communications. Catalog boxes of new components and computers. Build Desks, pick up and dump trash. Setup and PXE-Image desktops (via NetOPs on Clay Kaserme 30 miles out). Trouble-shoot computers, glitches (Cisco Secure Client TEAMS) apps, print failures; install IP-phones. Deduced PXE-NIPR OS image is corrupt as PCs repeatedly failed to join the domain. NetOps concurred. Acquired NIPR OS-image on DVD omitting PXE-boot imaging. Work in cahoots with the Stuttgart Army Airfield (120 miles out) via TEAMS and VTC. Train for migration to Army Unified Directory Service 365 (AUDS) and Special Access Program Facility (SAP) SCIF construction: ICD 705 | DODM 5105.X.
=======================================================================
System Network Admin & Engineer | SOSi, Inc.| 6-2020 -10-2024
Counterintelligence Cyber-Europe (CCE) - 2nd Military Intelligence Battalion, 66th Military Intelligence Brigade
• DELL/Microsoft Trusted -Custodian for CCE via U.S. Army Intelligence and Security Command (INSCOM).
• Manage, maintain, engineer, and administer network hardware, software, Hypervisor, Active Directory domains, Linux-reimaging appliances plus perpetually re-build and reimage a plethora of computer systems. Assist CCE staff.
• Manage Telecom Room (TR) maintain, update plus configure physical and virtual devices, appliances, hardware, software and operating systems: i.e. Stacked DELL switches, DELL PowerEdge VRTX with shared PowerEdge RAID 5, 6, 10 controller (6Gb PERC8) with DELL PE M640 Blade Servers with 50TB of SSDs, Failover-Clustering, Hyper-V, Active Directory (AD) DCs, Group Policy (GPO), SQL 2019 member server, Internet Information Server (IIS) , Virtual Machines (VM) with Win10x64 LTSC, MS Server 2016 Standard, 2016 Data-Center and MS Server 2019 Standard
• Build Engineering network: Install a DELL S3124 switches, configure VLANs via 10Gbps SFP VLAN-tagged LACP fiber-link via Win 2019 DELL R6515 server to a DELL switch S3124 10GB SFP out to all the walls.
• Rewire and split the CCE Forensic network 50% production with Failover Clustering and 50% engineering
• Build SQL-2109 server VM - for SCCM open Firewall ports 1433, 4022, via Hypervisor build SQL vHDDs.
• Create DHCP binary vender-classes for BIOS and UEFI DHCP 66 and 67 PXE-boot option Type: 0, 7 and 9 RFC-4578
• Via Win-2019 DELL R6515 server Hypervisor, standup DC PDC & DHCP and SCCM servers. JSON, HTML, WMI, DISA STIG
• Awarded Microsoft Trusted Downloader Agent (INSCOM) - acquire MS SCCM license plus license CCE 2016 DCs
• Standup 2016 server SCCM Microsoft Endpoint Configuration Manager with Software-Center AD Domain Controller with Internet Information Server (IIS) Virtual-Machine (VM) then link to prebuilt SQL 2019 server.
• SCCM : Enable Management Instrumentation (WMI) and configure Component Services DCOM & DSDTC
• Create DHCP binary vender-classes for BIOS and UEFI DHCP 66 and 67 PXE-boot option Type : 0, 7 and 9 RFC-4578
• Next: via SCCM-Software-Center, constantly update, deploy and support numerous and large Forensics Analysis applications
• Gold-Image: create deploy Win-PE and PC images (+ drivers) via Linux System Deployment Appliance (SDA)
• Maintain and constantly update approx. 36GB hardware drivers for 65 CCE computers for auto-deployment via SDA.
• Certify and Accredit CCE Forensic LAN and processes; maintain CCE Forensic workspace Authority to Operate ATO Microsoft (MS) Active Directory (AD) forests. Build a Microsoft Active Directory Forest.
Uphold the Telecommunication Room (TR) plus its entirety per compliance and accreditation. PowerShell WMI.
• Streamline and optimize all processes to expedite overall throughput for maximum efficiency. DELL Server iDRAC.
• Author: CCE-ATO, Hyper-V Failover Clustering, SQL-SCCM-Setup, IIS Setup for SCCM, SCCM-Setup, SCCW - WMI, Update-SCCM (Offline) , Deploy Software-Endpoint Cfg Mgr, DHCP-PXE Boot & Failover Setup, etc., per DISA requirements.
• Assist/Train CCE Forensic staff with networking, licensing app-dongles, PC&App issues, SCCM and reimaging
DELL SERVERS - SingleRoot IO Virtualization SR-IOV | Intelligent Platform Management Interface (IPMI) = VMs/BIOS access
=======================================================================
Network Engineer & Field Service Engineer | General Dynamics | 12-2016 - 6-2020
1. Telecommunication Room (TR) and Life-Cycle Replacement (LCR) initiative
For AFRICOM : restore TRs to a 4-star command state in cahoots with 52nd and J65 C4S Systems.
Replace End-of-Life Cisco devices in 54 TRs fiber-optic: user/uplinks, Cat-6 to FOPP/CPP plus dress and label everything correctly in buildings throughout AFRICOM and throughout Del Din, Italy Make TRs 4-star complaint
Develop and manage portal site. Develop deliverables cataloging and documenting SIPR intellectual property within TRs specifically Cisco LCR routers blades and ports. Add TR anomalies, security compliance, configuration, installed devices, appliance specifics, connections, OSP, Riser and horizontal cable, cable management; inspect room power documentation, TGB-MTGB ground, HVAC (leaks) errors and issues, fire suppression, power-configuration, bus-ground,
Uninterruptible Power Supply (UPS) condition and errors, PDUs cable-tray/ladder S/NIPR, Coalition and power segregation, Asbestos, FOPP & CPP, interior networks plus overall TR condition. Fix everything.
• Maintain technical knowledge and Changes of system architectural design with an emphasis on Security Architecture.
• Review and maintain required deliverables to ensure Change and Security policy requirements are addressed.
• Provide guidance in establishment of detailed system security plans ensuring changes and security requirements are met.
• Provide supervision on all aspects of corrective training to peers and train new staff.
************************************************************************
2. DISA's (CLOUD) European Transport Initiative (ETI) Multi-Protocol Label Switching (MPLS) network upgrade
= Stand-Up the DISA MPLS cloud (Army 365) throughout Germany and Belgium plus Compose HOW to documentation.
- With DISA engineers, test, troubleshoot fiber-optic links and components to stand up sites, nodes, DCN employing :
• DISA Telecommunication Site Implementation Plan (TSIP)
• Viavi TBERD (BERT) MTS-5800 with 10GB LR SFP, Optical Time-Domain Reflectometer (OTDR) module Smart Link Mapper
• Fiberscopes, Digital Optical Power Meter, Visual Fault Locater (VFL) lasers
Support :
• Cisco ASR9006 PE routers • Cisco ASR 9001 Joint Base-Customer Edge JB-CE routers
• Cisco 3560 Catalyst DCN switches • Cisco 2911 Data Communication Network (DCN) routers
• Cisco 15454 M2-M6 DWDM Wire Speed Encryption (WSE) appliance
• Fiber Optic, Copper Patch Panels FOPP/COPP cable management
• iOS, SFPs, EAI-TIA 232 serial communications console management
• Ciena 6500-S32 OTN SONET/SDH OC-192-STM
In cahoots with DISA, power-cycle and install initial DCN router configurations, maintain and troubleshoot gear, MPO -
fiber and high-level dark-fiber links bringing sites/nodes online addressing a litany of errors like : no iOS, failed SFP, failed or broken fiber-optics or to blades modules not seated, EHWIC, RS-232 management, etc.
Conduct inspection, cleaning and testing of fiber and SFP endpoints, Ethernet and subsequent links. Maintain technical expertise in all areas.
Intensive Trouble-shooting when (MPLS SITE-to-SITE-to-SITE) failed
- Contacted directly by DISA's MPLS Lead Architect for the European Theater at Patch Barracks to fix everything. Success!
Employed Viavi TBERD (BERT) MTS-5800 with 10GB LR SFP, Optical Time-Domain Reflectometer (OTDR) module and Visual Fault Locater (VFL) lasers while simultaneously training new staff. DISA approved repairs on their new
MPLS network (aka Office 365) Included disconnecting AFN Army Radio for 2 seconds.
Next: Cisco 15454 M2, M6 DWDM Wire Speed Encryption (WSE) appliances which encrypts SIPR, were arriving WITHOUT an OS slamming the entire project to a halt. I got the fix from Cisco, applied the fix to 7 WSE appliances that morning, then contacted John Hutchcraft at DISA of this major Milestone. Upon approval the whole team left that same day to install WSEs throughout Germany standing-up the DISA MPLS Cloud.
=======================================================================
IT Consultant | CACI 4-2014 - 11-2016
Responsibilities Provide technical services, in Change implementation Management, cost estimating, technical specs,
and bench-marking as to provide secure voice, data, systems, and network services.
Assist with defining, securing, documenting and customer IT Federated Services for secure and non-secure voice, data,
and video. Administer and communicate Change and risk identification and management of IT issues for resolution via :
• Server Management (MS Server 2008) - Systems Administration - MS Exchange Administration
• Digital & Physical Security - Active Directory - Group Policy - VMware
• System Center Configuration Manager (SCCM) - NetApp
- Information Assurance (IA) Cyber-Security analyst, maintained IDS-IPS systems, configured HIDS, Antivirus/Malware
suites, Common Access (CAC) cards and certificates. Performed IT system audits and Information Assurance (IA) remediation via security information and event management (SIEM) , packet analysis for vulnerabilities.
Monitor systems within an agency's area office, district, or location (AOR) .
=======================================================================
SATCOM Engineer | Fulcrum, Inc. | 5-2011 - 10-2012
Responsibilities Support 150 S/NIPR DoD network nodes deployed throughout Europe and Africa (data, voice, and video & VOIP);
via Cisco 7604, 6504, 3845-VG, ASA, ASR routers, switches, VX-900, HAIPE KG-25x and TACLANE KG-175 Crypto, IP-xPEP accelerators plus Riverbed Steelhead WAN optimizer.
Employ Cisco Call Manager, Vx-1800 SIP, H.323, STU, STE, SCIP VoIP.
Set, configure and troubleshoot router configurations, SATCOM links, Cisco 6900 IP-phones plus user training and support.
Troubleshooting BGAN SATCOM antenna terminals, power (generators) , cables, systems, crypto-devices, router
configurations, switches, computers, email, Internet financial-WWW-sites re : S/HTML, XML, JavaScript, Certificates,
Zones, ActiveX, VPN, PKI, DNS, IDirect C/Ku/KaVSAT-Net bands satellite-modems and antennas, IP-phones, plus
Information Assurance (IA), IDS-IPS, HIDS, Antivirus/Malware suites, Common Access (CAC) cards and certificates.
Work with functional managers to evaluate the impact of proposed standards and procedures.
Recommend methods and procedures to coordinate corrective action to optimize hardware utilization.
Coordinate administrative matters to include standards management, acquisition and configuration management, risk management plus security and threat and attack methodologies.
Create and provide guidance and training to end users.
=======================================================================
Systems Engineer Administrator | Helpdesk | Smartronix | 9-2009 - 6-2011
Responsibilities EUCOM & AFRICOM where still married. Over 400 servers.
10,000 cables under the floor 110 and 220 power, Fiber, Ethernet, etc. Ancient Backup-robot and SQL-Portal Cluster both failed constantly.
Every day was a 911 Most dual power devices had one connection. EUCOM failed IA Audits.
AFRICOM: I was often sent to assist and train AFRICOM IT staff; closing over 200 tickets month.
Setup VTC for presentations for USA and NATO staff.
JOC (alone on graveyard shift) ALL TV feeds dropped = Climbed up to the roof clean snow of Sat-Dish.
JOC (alone on graveyard shift) JOC.mil IT staff request 911 action and support every night.
Reputation, Faith and Trust = the JOC Chief calls my cell on my days off for 911 support.
At EUCOM closed 200 Remedy Helpdesk tickets a month.
Configure and utilize SolarWinds Network Performance Monitor (NPM) to detect, diagnose, and resolve network performance problems and outages.
Support S/NIPR Net-Ops, Desktops; Users: employ Information Assurance (IA).
Apply working technical knowledge to perform complex tasks in troubleshooting and correcting information infrastructure problems on over 400 servers and user desktop systems at EUCOM NetOps & AFRICOM. to include, Microsoft Windows OS, Active Directory, Server OS 2003-2008, DNS, DHCP, Email, VTC, Hard-Software and an overall plethora of issues daily.
=======================================================================
CI Polygraph
Storage Area Network (SAN) SME | Raytheon Aerospace | 11-2006 - 8-2009 - CI Polygraph
Responsibilities Deploy a HP-XP2400 SAN-Fabric Storage Appliance refrigerator-sized unit from crate to SATCOM
Stand up a large HP_XP24000 Disk Array (SAN) appliance and migrate with clustered OpenVMS Alpha systems for the
US Air Force inside the Buckley Aerospace Data Facility (ADF).
Design and create logical devices (LDEV) with Marketing Array (RAID) groups hard-disk clusters as OPEN-V logical
unit number (LUN) followed with installing Multipath I/O (MPIO) and mapping LUN (disk) to 85 fiber attached systems thru the SAN fabric cloud.
Sr. Cisco SAN LAN Fabric Administrator via Cisco MDS 9509 Director class SAN-Fabric switches, create VSANs, enabling TACACS, Network-admin Role, creating zones, mapping server-hosts (groups) with their world-wide names, establishing communications to the HP XP24000-appliance SAN to LAN thru the SAN fabric cloud via ISL and IVR.
Zoned all Veritas backup servers and appliances together via fiber, XP12000/24000. Via the Cisco MDS 9509 Director switches-Fabric Manager.
Mapped HP MSL-6060 tape libraries + VTL 6840 Virtual tape libraries (2.4TB disk-arrays) to Veritas Master & Media
Managed 14 engineers included network teams (WAN), HP teams, and the Alpha System Administrators.
Diagram and document all per Authority to Operate (ATO) NRO/NSA/DoD deliverables
Perform IT system DOD audits - Identify and remediate security-related risks on SAN appliance(s) and IT systems
Support Certification and Accreditation (C&A) initiative policy and procedures audits
Provide supervision on all aspects of corrective training to peers; assist with training and update guidelines of operations including processes; coordinate with other Divisions to improve workflow and analysis.
Implement global requirements with applications for system administration access for LUN Management, Port Status, Alerts, Accounts, Syslog, Audit Logs, Configuration File Loader utilization, Reports, Tools, Control Panel, Environment Parameters, SNMP and troubleshooting.
=======================================================================
Storage Area Network (SAN) SME, Perot Systems – 3/2002 – 10/2006 ($6 mil each x6 throughout USA)
Stand-up HP XP12000 Disk Array appliances (SAN) logic to Cisco MDS 9509 SAN Fabric Director Class switches, HP MSL-6060 tape libraries and HP VTL 6840 Virtual tape libraries (2.4TB Disk Arrays) plus Decru FC Datafort Cryptainers 3000 miles apart over OC-192 WAN; with 1000+ (142TB) fiber-channel hard-disks.
- Design and create logical devices (LDEV) with Marketing Array (RAID) groups (hard-disk clusters) as OPEN-V logical unit number (LUN). Follow with installing Multipath I/O (MPIO) and mapping LUN (disk) to 85+ fibre attached systems, thru the SAN fabric cloud, including: Active Directory (Windows), SQL, Oracle, Solaris, plus Exchange 2003 mount-points and Public Folders via Cisco Fabric Manager, HP Remote Web Console and HP Storage Essentials 5.1, via fiber-channel (optics)
Sr. Cisco SAN Fabric Administrator via Cisco MDS 9509 Director class switches, create VSANs, enable TACACS+, Network-admin Role - create zones, mapping server-hosts (groups) w/their world-wide names, establishing communications to each SAN to LAN thru the SAN fabric cloud via ISL and IVR
Zone all Veritas backup servers and appliances together to Veritas Master & Media - LAN to LAN thru the SAN fabric cloud via ISL and IVR. Build and test HP SAN Blade servers with Win3K, ESX-VMware, Solaris 10, and Rapid Deployment Pack
Acting Team Lead for the OED Enterprise System Technology Activity Tech-Infusion team
Attend meetings with Area Processing Center (APC) Change Governance, system administrators, engineers, management teams and senior government staff regarding APC SAN-enclave milestone initiatives and documentation for the approaching the APC SAN-enclave Certification and Accreditation (C&A) deadline,
Develop, write and publish all APC SAN-enclave installation guides (1000 pages) for IA and training
Identify potential changes, Analyze change requests, Evaluate changes, Plan change, Implement changes, report.
Perform system evaluation, design, analysis, change and infrastructure assessments.
Perform comprehensive security analysis evaluation of the technical and non-technical security features of Top-Level Architecture (TLA) computer network segments. Ensure IT systems and other safeguards, made in support of the certification and accreditation (C&A) process, to establish the extent that a particular design and implementation meets DITS/DIACAP security requirements utilizing the four phase processes of Definition, Verification, Validation and Post Accreditation for the U.S. Army sites in the European theater.
Design, development, test, and risk evaluation activities utilizing DISA Security Technical Implementation Guides, (STIGs) DoD Directive 8500.1, and DOD Instruction 8500.2 for Certification and Accreditation
Ensure the integration of software, hardware, reliability, maintainability, and safety.
Submit formal documentation to Designated Approving Authority (DAA).