ตัวอย่าง Resume วิศวกรความปลอดภัยเครือข่าย (Network Security Engineer) ฉบับที่ 206
Resume Example Network Security Engineer #0206 ประมาณ 1709 คำ
เรซูเม่ฉบับนี้เป็นตัวอย่างสำหรับตำแหน่ง Network Security Engineer / Honeywell - Coon Rapids, MN ระดับมืออาชีพ มีประสบการณ์รวมประมาณ 4 ปี เรานำมาวิเคราะห์เพื่อให้เห็นว่า โครงสร้างมีจุดเด่นอย่างไร และส่วนใดนำไปปรับใช้กับข้อมูลของคุณได้
จุดเด่นของฉบับนี้ แสดงประสบการณ์ทำงาน 5 ตำแหน่ง พร้อมหน้าที่และผลงานของแต่ละช่วงอย่างเป็นลำดับ
สิ่งที่ควรสังเกตในตัวอย่างนี้
- ประวัติงานต่อเนื่อง 4 ปี เห็นการเติบโตของตำแหน่งได้ชัด
- ประสบการณ์ 5 ตำแหน่ง ไล่ระดับจาก Junior ขึ้นไปจนถึงตำแหน่งปัจจุบัน
- Professional Summary กระชับ ใช้คำที่สื่อความสามารถได้จริง
- มีทักษะแยกเป็นหมวด 40+ รายการ ให้ HR เห็นสเปกครบถ้วน
Professional Summary
4+ Years of IT related experience in daily operations, technical support, and troubleshooting. Track of good interpersonal & communication skills. Have good experience of working in big, complex, and challenging technical environment. Currently working in IT Security team for "Board of Public Utilities" at Kansas City, Kansas - Heavily experienced in Checkpoint Firewalls in terms of clustering upgrading Migrating and troubleshooting - Expertise in implementing Multi Context Firewalls using checkpoint solutions for URL filtering, DLP, HTTPS inspection, IPS, Anti-SPAM and Anti-Malware. - Experienced in deploying Remote Access Solution with redundancy and integrating it with AD login with using MFA. - Assisted in Redesigned network infrastructure in terms of security posture to provide very restricted access and implemented DR solution for the whole utility. - Assisted in Designing and Deploying Access roles for access to specific systems which helped the process of VLAN segmentation and routing all traffic through Firewall and IAM. - Implemented F5 (EXPERT in LTM, AWAF and ASM) and Akamai WAF (Property Manager, CDN, Web Security Policies and Site shields) technologies to protect web facing servers. - Expertise in building Security baselines and policies for EDR solution for endpoint security using M365 ATP. - Strong expertise in the areas of Routing, Switching, security and troubleshooting. - High performing and self-motivated, extensive professional experience in designing, implementing, and managing a network, and in providing network support. - Perform assessment and security evaluation for systems, network and perimeter controls, log and event correlation, and system and network component baselining. - Partner with groups within the organization to ensure successful deployments of Endpoint Research and document security best practices for Endpoints to continually improve endpoint security. - Experience in administrating VMware for security servers deployed in VMware. - Develop workflows, process, and automation procedures. - Provide security consultation as needed for product development and industry marketing solution.
Experience
Position
- Antivirus- Trend Micro, Crowdstrike and M365 Defender ATP Endpoint Web Security: Forcepoint, Checkpoint Harmony and M365 Defender
PositionNetwork Security Engineer, 09/2022 - Current Honeywell - Cleveland, OH
- Migrated from Open Servers R80.40 to Checkpoint Appliances R81.10.
- Upgraded firewalls with JHF and version.
- Deployed HA cluster for the checkpoint firewall.
- Segmented various Zones for the Checkpoint Firewalls.
- Implemented Access roles under Firewall Policy to allow User based access instead of IP based.
- Provided and Deployed IPSEC site to site VPN solution for various projects which saved over a Million dollars for the company.
- Implement URL Filtering, HTTPS Inspection and Application control through Checkpoint.
- Analyze the Security & Business risk for any rule which gets added in the firewall, implementing new rules in the firewall by following documented process.
- Managing interfaces and bonding interfaces for redundancy.
- Implement ISP redundancy solution to have 0 downtime.
- Troubleshoot various issues related to traffic let it be IPSEC VPN, Remote Access, Identity Provider, SecureXL, NAT, URL filtering, IPS, packet Size, response time, Clustering.
- Provided network Intrusion Detection System (IDS) and Intrusion Prevention System (IPS) management.
- Managing IDS policies, fine-tuning Signature policies to get protected from threats.
- Deployed CIsco ASA in azure cloud to establish Sitetosite VPN hosting Webservers for internet traffic
- Implemented FTD on the firewall so that Web servers have threat prevention.
- Defined High Sec zone on the firewalls for segregating database and webapp servers
- Expreience with NAT Route and Switch on Cisco routers and switches.
- Implemented various polices depending on zones on Cisco ASA's
- Configured IPSEC VPN tunnel on Cisco.
- Web Application Firewall and Load balancers (Akamai and F5)
- Deployed F5 LTM, AWAF, and ASM solution for web Facing Application and internal applications.
- Heavily worked with creating Virtual servers, iRules, policies, SNAT, Cookies and persistence profiles.
- Troubleshooting experience while working web acceleration profiles related to Virtual Server and gain proficiency understanding them.
- Designed network flow for F5 for issues related to SNAT to have transparency and not to use AutoMap.
- Deployed AWAF profiles like BOT Defense, DoS prevention, IP intelligence.
- Looked over the recommendations and provided remediation for various bot defense and injection profiles which help resolved data leakage issues.
- Heavily experienced in upgrading F5 virtual Servers.
- Experienced in migrating application to another F5 environment to segregate test and Prod environment.
- Remote Access and IAM
- Configured and maintained IPSEC and SSL VPNs on Checkpoint Firewalls and F5's.
- Integrated MFA over the VPN authentication (RSA and OKTA).
- Implemented Duo for admin accounts.
- Cyber Security
- Protected the enterprise from Email Bourne Cyber Threats by managing email filters for Inbound and Outbound SMTP traffic. (Exchange 365, Cisco Email Security, Symantec email cloud Security, Fire-Eye Cloud)
- Configure various policies at email security portal such as SPF Fail, Reject, reputation, Patten of text, Email Bomb, graymail etc
- Managed M365 ATP and Azure ATP
- Configured Security Baselines under Endpoint manager for M365 to protect the most for endpoint
- Automated the centralized detection of security vulnerabilities with scripts for Vulnerability assessment tools like M365 EDR
- Efficiently worked with Secure Score for M365 Defender ATP and Azure ATP and Implement ASR rules, endpoint security, Anti-Virus, Network Firewall
- Design, created and Deployed Access roles for access to specific systems which helped the process of VLAN segmentation and routing all traffic through Firewall and IAM
- Implement tasks/projects critical to the organizations Endpoint technologies (workstations, laptops, ATMs, mainframes, servers, etc.).
- Created Policies for Carbon Black App Control for various dlls, exe, USBs etc
- Vulnerability and Risk Assessment
- Perform Vulnerability assessment using various tools like Nessus and Arctic Wolf Scanners. Create ticket related to the severity and follow up weekly related to patches
- Perform analysis of events/incidents and provide remediation suggestions to relevant owners
- Use Bugcrowd penetration tests and provide bounty to researchers if any findings get validated
- Use Qualys for our external PCI scan
- Implemented Bitsight to help improve our external facing web applications and how to remediate the findings
- Quarterly meet with Mandiant for Vulnerability assessment and risk management
- Coordination of incident response activities, including written and verbal communication with other IT groups and IT management
- Assessed threats, risks, and vulnerabilities from emerging security issues and identify mitigation requirements.
Network Security Engineer / Honeywell - Coon Rapids, MN09/2021 - 08/2022
- Gained hands on experience on NAT (Network address translation) configurations and its analysis on troubleshooting issues related to access lists (ACL).
- Worked on firewall management on Palo 200 series with creating firewall rules, policies and remote access
- Firewall technologies including general configuration, risk analysis, security policy, rules creation and modification of Checkpoint R70 & R77 and Palo Alto.
- Upgrade of Check Point firewalls and management servers from GAIA R77.30 to Gaia R80.10.
- Has expertise in LAN/WAN technologies (fast Ethernet, Layer2 & 3 switched/routed LAN, and Frame Relay).
- Implemented and troubleshoot firewall rules in Check Point R77.30 Gaia and VSX as per the business requirements.
- Plan and support network and computing infrastructure.
- Creating small LAN network and install, configure network equipment such as router and switches.
- Maintained IPSEC and SSL VPNs on Palo Alto Firewalls.
- Configuring Checkpoint VPN site to site and end to end, authentication, and encryption.
- Configuring rules and Maintaining Palo Alto Firewalls & Analysis of firewall logs using various tools.
Network Security Engineer / Honeywell - Druid Hills, GA01/2019 - 07/2021
- Working on Checkpoint Firewalls in providing access to the customers or external vendor networks in reaching the internal servers.
- Hands on experience on NAT (Network address translation) configurations and its analysis on troubleshooting issues related to access lists
(ACL).
- Plan and support network and computing infrastructure.
- Creating small LAN network and install, configure network equipment such as router and switches and firewalls.
- Provided Layer-2 support by troubleshooting issues related to HSRP, VLANs, VTP, STP, RSTP, VRRP and TRUNKING.
- Assisted Network Security Administrator in daily technical and data support for 1500 users at various sites.
- Configured Dell, IBM, HP and MAC workstations and desktops for users' including Executives, Buyers/Sellers', and users throughout company.
- Configured IBM, HP, MAC workstations and desktops for new/existing users.
- Assisted in Installing/Configuring Servers for offices that migrated to our network.
- Accountable for network virus scans using MacAfee virus software on users' computers.
- Provided weekend support during system shutdowns for recovery/backup tests to prevent data loss during power outage situations
Education
- Master of Science: Computer Science, 05/2023
- University of Central Missouri - Warrensburg, MO · CompTIA Security + · Palo Alto Networks ACE
- Cisco Certified Network Associate (CCNA R&S)
- Cisco Certified Network Associate (CCNA-Collaboration) · CCNA Security (Trained) · Big IP F5 LTM & APM (Trained by F5) · Big IP F5 ASM (ongoing training) · Fire-Eye Email Threat Protection (ETP) certified. · Checkpoint Certified Trained (CCSA, CCSE, CCTA, CCTE)
Skills
Firewall: CheckpointPalo AltoAuthentication: RSA Secure IDOKTADUOAzure IAMVulnerability scanning: QualysGuardFirewallsBuiltdeployed and Migrated Checkpoint firewalls.Monitoring Tools: SolarwindsOPManagerProofpointCisco Email SecurityIPS & IDS: Trend MicroCheckpointRouting: OSPFBGP (eBGP & iBGP)EIGRPRoute SummarizationRedistributionSubnettingSwitching: VLANsVTPSTPRSTPPVST+MST and VLAN Maps.Protocols: TCP/IPUDPLAN/WANDHCPDNSFTPTFTPICMPSNMPARPSIPHSRP.
สรุปว่าจะได้อะไรจากตัวอย่างนี้
ตัวอย่างนี้ช่วยให้เห็นแนวทางการเขียนเรซูเม่สำหรับตำแหน่ง Network Security Engineer / Honeywell - Coon Rapids, MN ประสบการณ์ 4 ปี โดยเปิดด้วยบทสรุปที่บอกจุดเด่นของผู้สมัคร ตามด้วยประสบการณ์ทำงาน 5 ตำแหน่ง และข้อมูลการศึกษาที่จำเป็น พร้อมทักษะที่เกี่ยวข้องกับงาน คุณสามารถนำลำดับและวิธีนำเสนอไปปรับใช้ โดยเปลี่ยนรายละเอียดให้ตรงกับประสบการณ์จริงของคุณ
อย่างไรก็ตาม เรซูเม่ที่ชนะต้องเขียนให้ตรงตำแหน่งที่คุณสมัครโดยเฉพาะ ตัวอย่างนี้คือต้นแบบ ไม่ใช่สำเนา ทีมเรซูเม่ของเรารับเขียน Resume และ Cover Letter ภาษาอังกฤษให้โดดเด่นจากคู่แข่ง ส่งงานใน 2 วัน รับประกันความพึงพอใจ