Sample Template Example of Beautiful Excellent Professional Curriculum Vitae / Resume / CV Format with Career Objective, Job Profile & Work Experience for Freshers & Experienced in Word / Doc / Pdf Free Download
Download Resume Format
Jaya Sanchez
309 27th Ave NE
Seattle WA 98109
(206) 715-9876
jaya.sanchez@gmail.com
OBJECTIVE
I am seeking a challenging position that offers
extensive contact with game-changing services and technologies, requires me to
consistently deliver results in information security, and summons my special
ability to effectively motivate and clearly communicate; I want to work hard, have
fun, and get paid well in the process.
SUMMARY
I am a motivated - creative – and versatile IT
professional, with the highest level of technical fortitude, standards for
integrity and passion for quality. I
have multiple publications that include FAA certification submittals and Boeing
security policies. I am recognized by
the Texas House of Representatives for my academic achievements and I’m proud
of the fact that I received my Master of Science in Information Assurance from
a private military.
I have earned 12 years of experience in
information security, system administration, system engineering, system
testing, business development, and leading teams. Here is the breakdown:
•
11 years of experience defining
and delivering measurable results while working broadly defined projects.
•
9 years of hands-on MySQL DB
administration and SQL crafting.
•
8 years of network pentesting and
application security testing.
•
7 years of system development
and test automation experience.
•
5 years of security testing
complex airplane systems and ground support systems for safety critical
vulnerabilities.
•
4 years of security testing
business critical data centers and network operations infrastructures.
•
2 years of intense network
operations experience.
PROFESSIONAL SKILL OFFERING
•
Lead projects with competing
priorities, while neck deep in chaotic development environments.
•
Refined public speaking - with
an at-the-edge-of-your-seat charisma, especially when presenting to large
technical audiences; I motivate and energize.
•
Leadership: I guide others to
make the best decisions, get onboard with the vision and execute the plan; Guide business users
in developing product visions and roadmaps
•
Client Management: work closely
with clients to evaluate and define detailed requirements, develop value
proposition, and develop client acceptance criteria
•
Write effective, concise
business correspondence, training manuals, and product specifications.
•
Ability to lead a team,
including task planning, test procedure reviews and code reviews for test
system development; Proven ability to mentor and guide other people’s day to day work
•
Data Analytics: Excel at
assignments that require data evaluation, statistical analysis, custom database
schema development, and data-driven recommendations.
•
Design and build automated
security test systems (test harnesses)
•
Project methodologies: SCRUM, Waterfall, and
ad-hoc methods
•
Experience working with all levels of an
organization from support staff up to C-level executives
•
Down-to-the-RFC-level expert
knowledge of Internet technologies and protocol.
•
Rock-solid
scripting/programming skills in BASH, PHP, PERL, Java and C.
•
System Administration:
Linux/Solaris/AIX/Windows
•
Application Testing: Smart
Fuzzing, !exploitable, Peach Fuzzer, gdb, WinDbg, CrashWrangler, Bitblaze, IDA
Pro, MuDynamics, Sulley
•
Pentesting/Network
Scanning/Vulnerability Scanning: Metasploit, CoreImpact, nCircle, Nessus, nmap,
hping3, (too many tools to list).
•
IDS/IPS: McAfee Network
Security Platform, Snort
WORK EXPERIENCE
Security
Team Lead
For two years in this position at Boeing: I
owned and drove, to completion, the airplane-level cyber security test projects
for the Boeing 747-8 airplane development - developing
and documenting entirely new process along the way; I wrote, from scratch,
an unheard of 400+ pages of airplane security test plans, test cases, and test
system design documents; I lead a cross-functional team of four, performing
task planning, test procedure reviews, and code reviews; I contribute
technically to security test projects, while working closely with ten airplane
system management teams, ensuring security testing covers all cyber security
risks to airplane systems; I mentored junior members of the team (because they
are Boeing's future); I leverage my knowledge of internet technologies,
protocols and applications to optimize security testing;
Security
Testing
As a security test engineering at Boeing for
three years: I verified and validated cyber security requirements on large
scale airplane software development and deployment projects, as I pioneered and
built an automated security test system and test management system that
calculated misuse cases and attack scenarios; I optimized and automated the
testing of complex system-of-systems and, in the process, created a
first-of-its-kind automated test harness (a Linux test system with 32 Ethernet
interfaces and 8 wireless interfaces that simultaneously tests every wired and
wireless interface of the Boeing 747-8 aircraft, pushing past the limits of
Linux policy routing); I systematically found new vulnerabilities in
applications quickly, efficiently, and effectively; I isolated and tracked security defects in
software design, system design, and system configuration.
Incident
Response
As a member of the Boeing IT Security
Incident Response team: I monitored and correlated security events from over
200,000 servers, laptops, routers, switches, IDS, and IPS devices (a
government-level effort); I developed and documented correlation tools and
techniques that increased team performance; I conducted thorough digital
forensics analyses and careful evidence collections for compromised devices; I
recovered and analyzed emerging malware and sneaky rootkits.
Product
Design
As a consultant for Crevate, I designed the
overall English content of Idea Card, a creative thinking business application
for the iPhone. Idea Card is currently
the number 2 business application on iTunes in Japan.
As a product designer for S1 Inc., I
gathered requirements and defined the product vision and strategy, and gained
experience developing Internet products and technologies that improved the way
banks accessed their security event data and enable banks to pass GLBA audits.
Business
Analysis
Boeing invests over 55 million dollars into
education programs, around the world annually.
Working for Boeing's Director of Education and Workforce Initiative, I
analyzed the performance of educational investments in the Middle East that
required me to understand Boeing's business needs several years into the
future, evaluate investment ROI, and deliver objective recommendations.
Client
Management and Business Operations
In my current position as the Founder and
principle consultant at Black Hammer LLC I deliver security testing and
assessment services to aerospace companies.
I develop comprehensive subject-matter expertise of customers’ products
and business processes. I work with
ambiguous client requests and define actionable requirements.
As the Founder of a small startup in 2003,
Digital Property Publishing LLC, I gathered requirements and defined the scope
of development projects; I was responsible for identifying and managing risks
and making sound judgments about software quality; I thought critically and
strategically about my business while managing a cross-functional team.
UNIX/Linux
Lab Administration
As a lab administrator at the University of
Texas at Austin's EE computer labs, I ensured the labs were running optimally;
I installed software, configured applications, and troubleshot PC hardware, Sun
hardware and network equipment while supporting EE graduate students with
proper system usage and reservation procedures.
Product
Management
While working at S1 Inc., I was responsible
for products throughout their development lifecycle, focusing specifically on
designing, analyzing, and tailoring S1's network security monitoring solution
to meet, the then, new GLBA regulations for over 500 community and regional
banks;
Network
Operations
While working at the University of Texas
Network Operations Center (NOC), I handled regular on-call duty while wearing
six hats as a first responder to NOC problems, a performance analyst, a system/database
administrator, an automation tool developer, and a system monitoring expert; I
performed technical troubleshooting and gained experience in a high-volume,
critical production/service environment.
WORK HISTORY
[06/2011 - Current] Black Hammer LLC,
Seattle WA
[09/2004 - 06/2011] The Boeing Company,
Seattle WA
[06/2002 - 08/2004] Digital Property
Publishing LLC, Rosenberg TX
[07/2000 - 05/2002] S1 Inc., Austin TX
[10/1998 - 12/1999] University of Texas at
Austin - Network Operations
[08/1998 - 12/1998] University of Texas at
Austin - EE Computer Labs
EDUCATION
•
Master of Science, Information
Assurance, 2007, Norwich University
•
Bachelor of Science,
Mathematics (Focus in data and statistical analysis), 2002, University of Texas
at Austin
CERTIFICATION HISTORY
- CISSP - Certified Information Systems
Security Professional, 2006
- CCNP - Re-certification, Composite Exam,
2003
- CCNP - Cisco Certified Network
Professional, 2000
- CCNA - Cisco Certified Network Associate,
2000
- "Managing Cisco Network Security",
2001
- AIX 5 for IBM eSERVER pSERIES System
Admin., 2003
- SCSA - Sun Certified Systems
Administrator, 2002
- MCP - Microsoft Certified Professional,
1997
- MCSE, 1998
VOLUNTEER WORK
[2010 – Current] As a Big Brother in the Big Brothers Big Sisters of Puget
Sound nonprofit organization I meet with
my Little Brother multiple times per month and stay one step ahead of the
random logistical disruptions.
SUPERVISOR COMMENTS
Mostly good
RECENT PUBLICATIONS AND
TALKS
•
Boeing 747-8 Airplane Network
Security Test Plan: An FAA submittal for airplane design certification that describes
how Boeing will use limited security test resources in the lab and on the
airplane to verify and validate that security requirements adequately protect
the airplane from cyber-attacks.
•
Boeing 747-8 Airplane Network
Security Test Cases and Procedures: 180 test cases that systematically test
every airplane system and interface by airplane security architecture
layer. Test cases are prioritized by a
risk calculus that I defined in the test plan.
•
Boeing Commercial Airplane
Services (CAS) Crew Information Systems (CIS) Software Security Development
Policy: a first-of-its-kind Boeing document that describes CAS CIS secure
software development policy and secure coding strategies
•
Security Tool: "Covert
Session" injects bytes into a TCP stream that remote operating systems
discard but IDS sensors do not. If used
correctly, an IDS TCP based signature never matches
•
Shmoocon 2011 - Presenter -
Hacking the Business Capability Stack
Download Resume Format
0 comments:
Post a Comment