COAST CONSULTING

 















PROJECTS


These are a sample of the variety of successful projects I have completed.

  • Helped an E-Commerce company pass their security audit from VISA.   This involved locking down ports and making changes to their web application.
  • Application Security Audits -- Audited all new applications for appropriate security, and made changes where necessary
  • Incident Response – Had incident response plans in place for security incidents and viruses.
  • Security Break in - A former employee gained access to a domain admin account and created a few new accounts. I traced it back to the source, then gathered evidence and log files, and presented to the legal department. They took legal action.
  • Disaster Recovery - Wrote plans for Disaster recovery of the MS Exchange and Active Directory environments. This plan assumed that the main data center was no longer available.
  • Password change: Implemented a mandatory 60 day password change policy for Active Directory accounts. Originally, there was no password policy in place. Many users and accounts did not have their password changed in over 5 years.
  • Firewall rules – Implemented Firewall rule reviews on a monthly basis. Reviewed why each rule needed to be in there, and could we make the rule set tighter. Changed several rule sets from ANY \ ANY down to specific ports.
  • Sarbanes Oxley – Assisted with Sarbanes Oxley controls and procedures.
  • Help desk Level 4 - Was a resource for the help desk engineers.
  • Data center design – Assist with Data center layout, including rack placement, power, and cooling requirements.
  • Estimated Electrical and Air Conditioning requirements for a room with 170 Rack mount servers.
  • Office Move – Assist with moving 300 servers in one weekend to a new building and data center. Assisted design with Data center, in a brand new building.
  • Moved equipment and offices at 10 other locations.
  • Ordered phones and DSL lines for a new home construction site.   Sounds easy, but the job site had no official address yet; the homes were still being built.  Made the phone company install the lines at a place with no address.  
  • In one weekend, moved 80 people to a new office, and migrated them from Novell to Windows NT, at the same time.
  • TCPIP – Design TCPIP subnets for a 2000 computer switched network.
  • Deposition – Interviewed at a deposition.
  • Batch files – wrote batch files to connect to every machine on the network, to start Symantec Antivirus, change the clearcase password, find and remove viruses. (Yes, a batch file to get rid of a virus, which Symantec had no definition of.)
  • Viruses: Submit virus to Symantec and Trend Micro, that was unknown by both companies. Install Symantec Anti virus managed server. Trend Micro Scan Mail for Exchange and Interscan Virus Wall. Trace viruses back to the original infection point. Determine cause of infection. Pushed Anti virus client to 1300 workstations.
  • Approve patches and Service packs into production use. Keep informed on the latest security exploits and patches, take action when necessary.
  • User accounts – Audit user accounts on a regular basis, and remove all unneeded accounts. Removed 300 accounts on a system with 1400 accouts. Inform HR of missing term notices.
  • SMS 2003 – rolled out SMS 2003 to 1200 workstations.
  • Domain admin accounts – Reduce the number of domain admin accounts from 60 to 30. Find alternate ways to allow what needed to be done, while reducing the permissions. Example – a number of people needed to add machines to the domain. Put them in the group Domain Additions. Reduced a number of people to Account Operator status.
  • Security Awareness – Purchaced Security awareness posters and put them in public places in both USA and Europe. These had a good impact; several executives changed their password.
  • Install NFR Intrusion detection and monitor.
  • Upgrade Exchange 5.5 to Exchange 2000
  • Perform email migrations at 80 different companies. Migrations from MSMail, ccMail, POP3\SMTP to Microsoft Exchange.
  • Manage 4-person desktop and server patching project. Applied service packs and hot fixes as needed.
  • Deal with numerous viruses, including SQL Slammer, MUMU, So-Big, and Blaster. Implemented virus prevention measures including anti-virus software, patching, and policies. Develop Incident Response plans for all security incidents.
  • Active directory policies: Create AD policies to enforce Antivirus usage, SMS usage, retaining local admin rights.
  • Active directory Organization Units. Organize AD into OUs by location.
  • Convert files from RM Format (Real Media) to WAV files, then split the WAV files into many small files, (individual songs) for playing on a CD.





 

Certifications


WhiteHat




2005. (c) All rights reserved.    │   Email   │     

 

Design downloaded from FreeWebTemplates.com
Free web design, web templates, web layouts, and website resources!