InfoSec Professional (BS Comp Sci, CISSP) Looking in San Diego Area

From: Terrence Martin (twm139at_private)
Date: Fri Nov 01 2002 - 12:09:25 PST

  • Next message: Jennifer Drury: "Exciting Opportunity for Senior level InfoSec Engineer in Reston, Virginia"

    Hello,
    
    My name is Terrence Martin. I am an information security professional working in
    Calgary, Alberta Canada. I work as a security consultant who has a multi-faceted role
    that includes information security, quality assurance, Unix/Linux network/system
    administration, J2EE multi-tiered web applications, software development, system
    architecture, and system integration.
    
    Please consider me for positions even if they do not have a relocation budget since I do
    not seek or require relocation assistance.  I also do not need any assistance with
    regards to my visa to work in the US beyond an employment contract as I will be handling
    the TN-1 visa details myself at my own expense.  I already have a place to live in La
    Jolla, CA and an address.
    
    Attached and below is my resume with updates. I will be in the San Diego area from the
    15th of November till the 25th of November. During that time I would like the
    opportunity to meet with any recruiters or employers who might be interested.
    
    If anyone knows of any conferences, fairs, or security/IT gatherings that I could
    attend while I am there I would much appreciate it. I am also available for
    coffee if anyone wants to share some experiences about the San Diego IT/Security
    industry.
    
    While in the San Diego area I will have transportation and can travel anywhere within
    100 miles or so of San Diego.
    
    Thank you very much for your time and consideration. I look forward to hearing from
    you.
    
    Sincerely,
    
    Terrence Martin
    
    My resume is availabe in word format at the following link.
    
    http://www.daedalus.ca/resume/TerrenceMartinResume-Nov012002-sec.doc
    
    RESUME
    
    Terrence Martin BS, CISSP
    1200 6th St SW, Apt# 2209
    Calgary, AB
    Canada
    T2R1H3
    Phone: (403) 262-4366
    Cell: (401) 701-1558
    twm139at_private
    
    7693 Palmilla Dr, Apt #2304
    La Jolla, CA
    92122
    Phone: (858) 535-0898
    
    Note: Sponsorship and/or relocation assistance not required. I intend cover any costs
    and paperwork with regards to the TN-1 visa.
    
    GOAL
    
    To work in a security focused role with an organization that allows me to use my
    skills, initiative, and knowledge to find innovative and creative solutions to their
    IT security, and business needs. To work with skilled and intelligent people in a team
    oriented environment.
    
    TECHNICAL
    
    Extensive in-depth technical and professional experience in application and  network
    security audits, information security, software security analysis and  design, system
    integration, multi-tiered application server environments, Unix/Linux/Windows network
    and system administration, software development, quality assurance test design,
    performance test design, project leadership and  databases. Proven expertise quickly
    analyzing and working with complex systems.
    
    TEAM LEADERSHIP
    
    A dynamic team leader with proven success in mentoring and motivating  multi-faceted
    teams. A dedicated employee who as played a critical role in the MONTAGE.DMC eSecurity
    and ESI practices as a senior consultant.
    
    COMMUNICATIONS AND RELATIONSHIP BUILDING
    
    Highly skilled at developing and maintaining relationships with senior  management,
    clients, colleagues, vendors, subcontractors and the public. A  confident public
    speaker, skilled at presenting technical topics to technical and non-technical
    audiences.
    
    INDUSTRY EXPERIENCE
    
    Extensive and in depth project experience in Telecommunication, Real Estate, Oil  &
    Gas, Post Secondary Education, Financial Services, Utilities, Government,  Health
    Care, and Pharmaceuticals.
    
    ENVIRONMENTS
    
    Unix, Linux, Solaris, Windows (NT/2000), Tru64Unix, Irix, Application Servers (iPlanet
    App Server, WebLogic, Tomcat, Netdynamics), Web Servers (Apache, IIS, IWS), Databases
    (Sybase, Oracle, MySql, Postgres, Dbase, MS SQL)
    TOOLS AND TECHNOLOGIES
    
    BSD and SVR4 Unix Systems and Tools, NAT, Firewalls, Routers, Encryption, PKI,
    Embedded Systems, HTML, TCP/IP, HTTP, Security Auditing and QA/Performance Testing
    with Automated Tools, Win32, JSDK, Java, J2EE, Ant, Perl, C/C++,  Sed/Awk, Unix
    Shell(Bash, Ksh, Csh), Bugzilla, Anthill, PHP, JSP, Intrusion Detection(Snort,
    Tripwire), VPN, IPSEC, QA Partner, LDAP, SNMP, X400, SQL, MS  Office, Visio,
    WordPerfect, OpenOffice.
    
    EDUCATION
    
    B.S. Computer Science 1997, University of Saskatchewan
    
    CERTIFICATIONS AND TRAINING
    
    CISSP (Certified Information Systems Security Professional) 2001,
    ISC2.
    
    Checkpoint Firewall-1/VPN NG (CCSA, CCSE)
    
    WORK EXPERIENCE
    
    Senior Consultant - Montage.DMC a Division of AT&T Canada
    February 1998 - Present
    
    Over 4 and a half dedicated years experience with Montage.DMC as a Senior IT and
    Security Consultant. Roles included:
    
    - Quality assurance and performance test design and execution.
    - Enterprise multi-tiered systems experience with development, build, test,
      management and systems integration experience.
    - Software development (Java, Unix Shell (Bash, Ksh, Csh), Perl, C). - Systems and
    network administration (Unix, Java App Server and Windows). - Thought leadership
    promoting Unix and Linux solutions.
    - Security Consulting, Auditing and Analysis.
    - Technical Documentation.
    - Computer System Forensics and analysis.
    - Technical leadership.
    - Technical support.
    - Project requirements gathering and scoping.
    - Application and Infrastructure design.
    - Client management.
    - Project Management.
    - Training and mentoring.
    - Technical sales.
    
    Unix Systems Administrator - Integritas Technology Solutions
    January 2001 - Present
    
    - Unix system administration support for a Linux based Internet services
      environment.
    - Developed security software in C to isolate proprietary server applications for
      increased security.
    - Deployed SSL web servers using both private and public certificate authorities.
      Administrated a multi-user Linux environment.
    - Deployed and Administrated web, mail, DNS and file sharing services.
      Assessed Information Security Needs.
    - Deployed of security updates to operating system and Internet services software.
    
    Web Developer - Yestv
    July 2002 - August 2002
    
    - Designed and developed an online survey system in PHP with a MySQL backend. -
    Deployed the online survey system to a Linux based web environment.
    
    Head System Administrator - Western Computer Link
    September 1995 - January 1998
    
    - Administrated a multi-user, multi platform environment for an Internet Service
      Provider.
    - Designed, implemented and maintained all networks, software and systems. - Designed
    and implemented a Real Estate listing system for the web. - Performed 24x7 Support.
    - Designed, developed and tested complex web applications.
    - Provided technical support for commercial and private customers. - Trained and
    supervised junior administrators.
    
    
    PROJECT HISTORY AT MONTAGE.DMC
    
    Security Analyst - Nexon
    October 2002
    
    - Wrote a document outlining some basic security preparations that can be
      performed prior to a roll-out of Windows XP professional using the Baseline Security
    Analyzer, the MMC with security snap-ins as well as third party tools.
    
    System Architect - Calgary Parking Authority
    October 2002
    
    - Architected a multi-tiered Apache/Tomcat/Oracle solution using a SAN backend. -
    Deployed the solution in a highly redundant environment using Open Source and
      proprietary clustering solutions (Jakarta, LifeKeeper).
    - Deployed an Oracle 9i database to Redhat Advanced Server 2.1 running on a Compaq
      DL380 server.
    - Deployed a clustered Apache/Tomcat environment to Redhat 7.2 running on 2 Compaq
      DL380 servers.
    - Configured an Apache cluster using LifeKeeper clustering software. - Evaluated and
    deployed Redhat Advanced Server 2.1.
    
    Security Analyst - City of Edmonton
    September 2002
    
    - Performed a detailed source code level audit of several ASP based web
      applications for the City of Edmonton.
    - Provided written recommendations including code implementation and design
      changes to improve overall system security.
    
    Security Analyst - CDS
    August 2002 - September 2002
    
    - Performed a detailed application level audit of two web-based multi-tiered java
      applications for a securities clearing house.
    - Performed a detailed manual and automated Java source code audit to identify
      flaws in design and implementation that could result in a compromise of system
    security controls.
    - Performed an extensive runtime audit of two web-based applications to identify
      flaws that could result in a compromise of system security controls.
    - Contributed key components to the final report and gap analysis. Recommendations
      including code implementation and design changes to improve overall system security.
    
    System Architect and Developer- City of Grande Prairie
    July 2002 - September 2002
    
    - Designed and executed performance tests of the CMS and database systems. - Designed
    a secure network and system architecture for a Microsoft CMS (Content - Management
    Server) based content management system.
    - Architected a secure and efficient development environment for the content
      development team that mirrored as close as possible the final deployment environment
    in order to minimize integration issues.
    - Developed and executed a content conversion system in Perl to move existing web
      content to the CMS system.
    
    
    Senior Quality Assurance Engineer and System Integrator - Calgary Parking  Authority
    June 2002
    
    - Deployment of an automated daily build system in support of quality assurance
      and testing.
    - Designed, deployed and managed a multi-tiered development environment based on -
    Tomcat and Apache.
    - Mentored developers on techniques for unit testing Java based web applications. -
    Evaluated wireless technologies for the deployment of a tablet computer based
      inventory system for a car impound lot.
    
    Senior Security Analyst - Enmax
    August 2002
    
    - Executed a detailed and extensive technical security audit of a major   utility
      companies Application Service Providers environment.
    - Executed automated and manual security and penetration tests.
    - Performed security interviews and walk-arounds.
    - Reviewed and assessed detailed security audit results.
    - Provided concise and detailed recommendations and gap analysis for the
      improvement of security and system management practices.
    - Presented a gap analysis that showed where the ASP security architecture was
      inadequate and provided secure and cost effective recommendations to improve
    information security and bring it in line with industry and regulatory standards.
    
    Senior Security Analyst - Enmax
    July 2002
    
    - Executed a detailed and extensive technical security audit of a major utility
      company partner's information system.
    - Reviewed and assessed detailed security audit results from a manual security
      evaluation.
    - Provided concise and detailed recommendations and gap analysis for the
      improvement of security and system management practices.
    - Presented a gap analysis that showed where the partner IT systems were
      inadequate and provided secure and cost effective recommendations to improve
    information security and bring it in line with industry and regulatory standards.
    
    Senior Security Analyst - Montage.DMC
    June 2002
    
    - Development and preparation of request for proposal (RFP) and request for
      information (RFI) responses for key MONTAGE.DMC clients.
    - Wrote detailed RFP components on the approach and methodologies to information
      security assessments.
    - Developed detailed project plans and cost estimates. Provided expert technical
      expertise in the area of information security to sales and account management staff.
    
    Senior Security Analyst - Glaxo Smith-Kleine
    May 2002
    
    - Published a detailed and extensive technical security audit of a major
      pharmaceutical companies information system.
    - Reviewed and assessed detailed security audit results from a manual security
      evaluation.
    - Reviewed and assessed detailed security audit results from automated security
      assessment tools, specifically ISS and Retina.
    - Provided concise and detailed recommendations for the improvement of security
      and system management practices.
    - Provided a detailed architecture for a secure, segmented network.
    
    Senior Security Analyst - University of Calgary
    January 2002 - April 2002
    
    - Developed and implemented a security audit methodology for a major
      post-secondary institutions information technology Services department.
    - Completed an information security audit that included detailed summaries of
      findings.
    - Provide concise and detailed recommendations for the development of an
      Information Security Architecture (ISA).
    - Presented a detailed and extensive security audit of the Information Security -
    Architecture on behalf of the Auditor General of Alberta.
    
    
    Senior Security Analyst - Totem Building Supplies
    November 2001 - December 2001
    
    - Assisted in the design of a Checkpoint Firewall-1/VPN NG VPN and Firewall
      solution. Consulting on the design of a Checkpoint FW-1 NG based VPN.
    - Installation of Linux and Checkpoint Firewall-1/VPN NG for Linux. - Training of the
    clients technical staff on RedHat Linux with a focus on
      security.
    - Securing Linux and Solaris 8 servers.
    - Security analysis of the Linux systems after installation.
    
    Senior Quality Assurance Engineer and System Integrator - Transcanada Pipeline October
    2000 - October 2001
    
    - Designed, developed and supported a "single point architecture" to build,
      customize and deploy a large J2EE application to multiple target platforms (NT,
    Solaris).
    - Management and support of several application server database pairs based on -
    Tomcat, BEA Weblogic and iPlanet.
    - Quality Assurance test design, execution and automation.
    - Evaluation and selection of tools.
    - Performance test design and execution.
    - J2EE Java software development.
    - Release management.
    - Mentoring/Training of client technical staff.
    - Supervision of development staff.
    - Security consulting.
    - System integration.
    
    Technical Lead - Quortech Web Phone Project
    April 2000 - September 2000
    
    - Lead the Design and Development of an embedded Java based web phone as well as a
      XML based content management system that delivered content to HTTP and WAP devices.
    - Evaluated and selected software and systems for the development and deployment
      of the system.
    - Designed a content management system using Java and XML/XSLT.
    - Designed a secure network architecture for the content management system. -
    Delivered security analysis of the embedded software and hardware systems. - Performed
    client management.
    - Performed developer supervision and mentoring.
    
    Security Analyst and Quality Assurance Engineer - Dental Card Services December 1999 -
    March 2000
    
    - Designed and developed a dental insurance e-commerce application using open
      systems and Java.  Security analysis of hardware and software systems.
    - Executed quality assurance and testing.
    - Supported a multi-tiered application server environment.
    - Development of an automated Quality Assurance infrastructure.
    - Designed a Java and PHP based e-commerce web application.
    - Designed and developed Java security components.
    - Supervised, supported and mentored developers and other team members. - Performed
    release management.
    - Evaluated and selected the application service provider (ASP).
    - Performed a security audit of the ASP systems.
    
    
    Software Developer - Alterna
    September 1999 - December 1999
    
    - Designed and developed security components for a Netdynamics based treasury
      management system.
    - Integrated encryption hardware and software with the Java application
      environment.
    - Integrated a public/private key encryption system.
    - Developed a remote management interfaces for NT based servers.
    - Deployed the application on Solaris and HP/UX.
    - Supported Solaris and HP/UX Unix systems.
    - Designed and developed Java API's to integrate X400 and Advantis networks with
      the Java application.
    
    Security Analyst  - Blakes, Cassells, and Graydon
    August 1999
    
    - Lead a computer forensics analysis for the purposes of gathering evidence in
      ongoing litigation.
    - Recovered data from protected documents and databases.
    - Recovered deleted data from persistent storage devices.
    
    Security and Network Engineer - Montage.DMC
    January 1999 - July 1999
    
    - Lead network and systems administrator of the Montage Calgary Unix and Windows
      systems.
    - Designed the Montage.DMC corporate VPN.
    - Designed and deployed the Montage.DMC network and associated services in
      Calgary.
    - Supervised and mentored junior system administrators.
    - Consulted in the areas of security and network design.
    - Evaluated and selected of infrastructure projects for consultants between
      projects.
    
    Web Developer - University of Calgary Ancillary Services
    February 1998 - December 1998
    
    - Developed the University of Calgary Ancillary Services web site.
      Gathered requirements.
    - Designed and developed all web content and applications.
    - Performed quality assurance and testing.
    - Managed user acceptance testing.
    - Mentored and trained the live team responsible for ongoing web site maintenance.
    
    Performed client relationship management.
    
    
    REFERENCES
    
    Darren Boyd
    Montage.DMC
    darren.boyd@montage-dmc.com
    Developer, consultant and OO Engineer
    (403) 212-1946
    
    Mike Pellicci
    Nakoma Consulting Ltd.
    Consultant
    (403) 803-6930
    
    Percy Bloodworth
    Montage.DMC
    Manager ESS Practice
    percy.bloodworth@montage-dmc.com
    (403) 605-7551
    
    Bud Newman
    Dakine Consultants Ltd
    QA Lead on the Dovetail Project at TransCanada
    budnewmanat_private
    (403) 510-4889
    
    TECHNICAL SKILLS MATRIX
    
    PROGRAMMING LANGUAGES
    
    Ant 1+ Years - Expert
    Perl 6+ Years - Expert
    HTML 6+ Years - Expert
    Unix Shell (Bash, Sed/Awk, Csh, Ksh) 5+ Years -  Expert
    PHP 3+ Years - Expert
    Java 2+ Years - Intermediate
    Javascript 4+ Years - Intermediate
    XML/XSLT 1+ Years - Intermediate
    C/C++ 1+ Years - Intermediate
    SQL 3+ Years - Intermediate
    
    NETWORKING PROTOCOLS
    
    NFS/NIS 4+ Years - Expert
    TCP/IP 5+ Years - Expert
    NAT 5+ Years - Expert
    Routing 5+ Years - Expert
    NNTP 5+ Years - Expert
    SMTP 5+ Years - Expert
    HTTP 5+ Years - Expert
    FTP 5+ Years - Expert
    DNS 5+ Years - Expert
    Ethernet 5+ Years - Expert
    SSH 4+ Years - Expert
    SSL 5+ Years - Expert
    IPSEC 3+ Years - Expert
    SMB/CIFS 3+ Years - Intermediate
    X500 2+ Years - Intermediate
    X400 1 Year - Intermediate
    SNMP 1+ Years - Intermediate
    EDIFACT 1 Years - Intermediate
    
    OPERATING SYSTEMS
    
    Unix 5+ Years - Expert
    Linux All Versions 5+ Years - Expert
    Solaris 7.0/8.0 3+ Years - Intermediate
    Digital Unix (Tru64) 2+ Years - Intermediate
    HP/UX 1 Year - Intermediate
    Windows NT/2000/XP 3+ Years - Intermediate
    Windows 95/98/MW 6+ Years - Intermediate
    DATABASES
    
    Mysql 5+ Years - Expert
    Postgres 5+ Years - Expert
    Sybase 1+ Years - Intermediate
    Oracle 1+ Years - Intermediate
    MSSQL 1+ Years - Intermediate
    
    OTHER
    
    Bugzilla 2 Years - Expert
    Compuware QALoad 1 Year - Expert
    ISS Automated Security Scanning Tool - 1 Year Intermediate
    Retina Automated Security Scanning Tool - 1 Year Intermediate
    Nessus Automated Security Scanning Tool - 2+ Years Expert
    Security Scanning Tools 3+ Years - Expert
    Jlint - 1 Year - Intermediate
    WebProxy/Achilles/Whisker Web application auditing tools - 1 Year - Intermediate Linux
    Firewalls (ipchains, iptables) 4+ Years - Expert
    Snort Intrusion Detection System 2+ Years - Expert
    Mysql 3+ Years - Expert
    Postgres 3+ Years - Expert
    Emacs 6+ Years - Expert
    Apache Web Server 5+ Years - Expert
    Tomcat App Server 2+ Years - Expert
    ESRI ArcViewIMS 1 Year - Beginner
    GIMP(Graphics Manipulation) 1+ Years - Intermediate
    SQL Server 1 Year - Intermediate
    Sybase 1 Year - Intermediate
    Oracle 1+ Years - Intermediate
    Checkpoint Firewall-1 NG Certified - Intermediate
    Watchguard Router/VPN 1+ years - Intermediate
    IIS 4.0/5.0 1+ Years - Intermediate
    Netscape IWS 2+ Years - Intermediate
    IPlanet App Server 6.0 1 Years - Intermediate
    BEA Weblogic App Server 1 Year - Intermediate
    
    
    -- 
    



    This archive was generated by hypermail 2b30 : Fri Nov 01 2002 - 15:46:06 PST