Security Consultant Resume Template-72182
Security Consultant Resume Template-72182
Martin Voelk
Active IT Certifications
If you wish to check the validity of my current certifications with Cisco Systems,
please e-mail me and I will initiate a certification report to be sent to you from Cisco directly.
Networking Hardware
Routers: Cisco, Juniper, Huawei
Switches, Bridges, Hubs: Cisco, Juniper, Dell, HP
Load Balancers: Cisco CSS, F5 Networks (Big-IP), Foundry, Coyote Point
Application Orientated: Cisco ACE (Application Control Engine Module)
WAN Optimisation: Cisco WAAS, Riverbed Steelhead Appliances
Security
VPNs (Site-to-Site, IPSec, Remote Access, SSL, WebVPN, GET VPN, DMVPN, ezVPN), Cryptography, AAA,
Radius, TACACS+, Kerberos, Cisco CAR Radius Proxy, Cisco Authentication Proxy, Access Lists, NBAR, IOS
Firewall, IOS Security, 802.1x, CBAC, DDoS prevention, Cisco IDS, Cisco IPS, Cisco CSA, CiscoWorks Firewall
& IDS MC, PKI, CA, Cisco Secure ACS, Cisco VPN Concentrator, Cisco PIX / ASA Firewalls, Cisco VPN Client,
Cisco AnyConnect Client, Cisco CSM, Cisco NAC / CANAC, Cisco MARS, Cisco IronPort, Cloud Security
(ScanSafe, Cisco ASA 1000V), Cisco VSG, Cisco ISE, Cisco IP Video Surveillance and Access Control, Juniper
Netscreen Firewalls, Astaro Firewalls, Checkpoint / Nokia VPN-1/Firewall-1 NG, Fortinet Firewalls, Linux IPTables
Routing
Static Routing, RIPv1, RIPv2, RIPnG, IGRP, EIGRP, OSPF, IS-IS, BGPv4, ODR, GRE, MPLS,
IPv6, Traffic Engineering, Policy Based Routing PBR, Route Filtering, Redistribution, Summarization
LAN
Media: Ethernet, FastEthernet, GigabitEthernet, FDDI, CDDI, Token Ring, ATM LAN Emulation
Network Analyzers: Ethereal / Wireshark, Paketyzer, Radcom, Etherpeek and others
Load Generators: Spirent Smart Bits, iperf, IPTraffic
WAN
Leased lines 64k - 155Mb (PPP / HDLC), Channelized lines (E1 / T1 / E3 / T3), Fibre Optic Circuits
up to OC-48 speed, Frame Relay, ATM, ISDN, xDSL, Load Balancing, Multi Homing, Satellite links
Multicast
Implementations from medium sized to large environments (Videostream over Multicast). Auto RP, Bootstrap RP,
Anycast RP, IGMP, CGMP, Multicast Security, Shared & shortest path models
General IT Skills
Hardware
PC and Server hardware, TTL and CMOS, PLD Chip Programming, Real Time Interrupt Programming
Software
MS-Office Package (Word, Excel, Powerpoint, Outlook etc.), Netscape Suite,
MS-Frontpage, Adobe Photo Shop, Dream Weaver, Fireworks, Paint Shop, MS-Visio
Virtualization
VMware, vSphere, ESX Server, ESXi Server, Fusion, Microsoft Hyper-V
Professional Experience
Business focus is on strategic planning, direction, development and bringing new technologies to market. In
addition I am establishing strategic partnerships for Cyber Security and Network Consulting Services and engage
in Network Security Consulting and Penetration Testing Services for our customers.
Worldwide delivery of authorized Cisco training courses (CCNA (R&S and Wireless), CCNP (R&S, Security and
Wireless), CCDA, CCDP and CCIP tracks.) for the Cisco Learning Partner Fast Lane. Course Development of
Cisco Authorized Course Material. Network Consulting for clients of Fast Lane. Network Design, Support,
Implementation and Troubleshooting of complex Cisco based networks in addition to Network Security Audits.
September 2006
Nil Data Communications, Lisbon, Portugal
Senior Security Consultant
Complete Firewall migration from Cisco Works VMS Firewall MC to Cisco Security Manager (CSM). Setting up
virtual VMWare lab machines in order to test before migrating to the live system. Migrating thousands of network
objects, services, service groups, NAT translation rules, firewall rules etc. to the CSM. Fine tuning the CSM and
customer handover.
Re-design of Motorola's internal UK core network. Migrating from EIGRP and RIPv2 routing protocols to an OSPF
multiple area network design. Interconnect through BGP to the other existing departments. Upgrade from 3550
series switches to Cisco 6509 Catalysts. Design, implementation and support of the core network (Spanning tree
rd
re-design, Trunking, VLAN setup). 3 . level support for both LAN (Gigabit Ethernet) and WAN mainly consisting of
Frame-Relay and ATM circuits. Fault finding by means of sniffers such as Ethereal and Packetyzer.
Responsible for the overall network security including Intrusion Detection Systems (IDS), Cisco PIX Firewalls,
Checkpoint FireWall-1 NG Firewalls, Cisco ACS Servers and VPNs. Building a Cisco based IDS solution from
rd
nothing. 3 . level support and performance management for the entire network. Support and maintenance of
Cisco SSG, Cisco SESM, Cisco CNR, Cisco CAR, Cisco CSS Load Balancers and Cisco WLSE. Perl- and Shell
script development in order to automate daily backup and monitoring tasks. Design, implementation and rollout of
special event WLAN hotspot solutions. Implementation of roaming partners.
Core network redesign to move from IOS Access Points to an LWAPP based centralized solution.
Teaching in-house Cisco courses (CCNA, CCNP, IPv6, WLAN) to internal departments. Internal security audits
and penetration tests on small to large networks in order to tighten up network security utilizing the following
toolsets: IPScanner, Immunity Canvas, Metasploit, NMAP, Nessus, ISS Internet Scanner, GFILANGuard NSS,
Cisco Security Scanner, N-Stealth Scanner, CyberCop Scanner, Ettercap, Etherape and Linux Live Security CDs
such as "The Auditor", "PHLAK", "iWHAX", "BOSS", “BackTrack” and others.
Delivering CCNA, CCNP, CCIE and IPv6 training courses to various clients. Security audits and penetration tests
for some of England's most known online bookmakers. Making recommendations on how to close discovered
security holes. Wireless LAN security assessments. Securing Wireless LAN with WPA (Wifi Protected Access)
and AES. On-site consulting for clients on Cisco based network designs and configurations.
Design of a highly redundant WLAN core network. Recommendation on suitable products, configuration and
maintenance work on both Cisco kit as well as on Unix Server components. Development of automatic
Martin Voelk Page 4 of 7
CV / Resume – Martin Voelk
maintenance and monitoring systems. Setting up "CA" and "pre-shared key" based site-to-site VPNs to ensure
secure communication. Implementing QoS requirements in co-operation with local carriers. Design and
implementation of special temporary WLAN hotspots. VoIP and WLAN rollout projects.
Consultancy for the HVB Treasury Investment bank. Meeting tight deadlines and taking proactive measures in
order to guarantee optimal network performance for market traders. Time critical network support and
troubleshooting under pressure. Network, performance and security audits by means of cutting edge
technologies. Migration and Re-Design of external customer Banks networks to latest technologies in terms of
design, hardware and software. Personal on-site consulting for customer banks of HVB Info (such as the
investment bank HVB Treasury, Bethmann Maffei Bank, DAB Bank, Noris Bank and others). Operation and Re-
Design of the international WAN. Design, rollout and operation of one of the world's largest VPNs connecting 2
core sites to around 800 branch offices.
Project Manager for the "Backup of 800 branch offices" project. Conception, Design, lab pilot tests and rollout of
Backup solutions including ISDN, channelized E1 bundles, redundant ATM- and Frame Relay PVCs as well as
rd
satellite links to different ISPs. 3 . level troubleshooting support for the complete network (LAN and WAN)
including complex technologies such as Cisco’s CSS or F5 Network’s BigIP. Using protocol analyzers to locate
application specific network problems. Responsible for TCP/IP to X.25 converting systems running Linux on top.
Setup and maintenance of DNS Systems. Maintanance and further development of internal monitoring tools.
Migrating all services from ATM LANE to Gigabit Ethernet technology. Evaluation of new hardware or new
technologies in a high end lab environment. Making recommendations on where and how to use the evaluated
equipment or tool.
Dense-mode Multicast design and rollout over new Gigabit topologies to grant video on demand services for
employees. Security Consultant of Wireless LAN pilot project. Selection of suitable RADIUS servers and protocols
to achieve the best solution. Testing Cisco wireless IP Phones. Maintaining Cisco’s Wireless LAN Solution Engine
and the Microsoft Radius / CA Server. Conducting site surveys. Mentoring internal workshops such as IPv6,
WLAN and VoIP to colleagues. Arrange meetings with external providers and carriers to evaluate performance
and SLAs. Open and manage Cisco Service-Requests (TAC) and attend regular telephone conferences w/ Cisco
Systems
March 2003
Networkers International PLC, Singapore
Senior Network Engineer
Short rollout contract role. Configuring Routers, Switches, VPN Concentrators and PIX Firewalls. Inter connecting
various client sites through VPNs. Carrying out function- and performance tests. Configuration of multi-homed
backup solutions. Failover tests.
Support, maintenance, upgrades, new installations and troubleshooting on the core networks consisting of both
Cisco and Juniper routers running OSPF, IS-IS, BGP and MPLS. Migration of other ISPs with all services into the
C&W network. Installation of new POPs and NCPs. Design, Re-Design, implementation and rollout of customer
networks. Development and consultancy of customized end-to-end solutions for customers. Supporting various
implementations of special and complex customer set ups. Delivering both English and German CCNA
certification and other networking courses to colleagues and the provisioning department as needed.
Registration of domains with NICs, administration, documentation and troubleshooting of domain processes,
maintaining customer NIC contracts. Supporting the domain robot. Maintaining, updating and troubleshooting the
company’s DNS servers. Occasional Team Leader replacement (Vice Team Lead). Responsibilities: Assigning
tasks within the shift team, supervision, escalation procedures, reports to the management and performance
management
August 2001
Telcel Telecommunicaciones, Guadalajara, México
Senior Network Engineer
4 weeks contract role for Mexico’s biggest ISP. Establishing a new BGP Internet Exchange utilizing both Cisco
and Juniper components. Configuring all devices from the scratch. Interaction with some 10 other service
providers. Carrying out tests and fine tuning the new setup.
Long term hands-on study-related project at the technical college in Munich. Sub-netting and IP addressing,
configuring Cisco Routers, Switches, PIX Firewalls for hundreds of schools in the Munich area. Goal was to
provide all schools with internet access and to build up a centralised management for all networking components
involved. Project was successfully finished in summer of 2001.
Contract role with leading bank in Australia. Fault management and support of the IT department. Daily tasks
included: Maintenance on network and server components, troubleshooting, user support, call and trouble ticket
management as well as on-site field engineer tasks.
Network / IT Consulting work with the following clients (Project scale 1 day – 3 months)
LAN Solutions Ltd. (United Kingdom), Singtel Telecom (Singapore), März Network Services (Germany), The
Hilton Hotel Group (Mexico), Banco Central de Costa Rica (Costa Rica), Cityfinc Corporation (USA), The State of
Peru (Peru), CanTV (Venezuela), Webinvest (Russia), Telcel (Mexico), WalMart (USA), Sysplain (Germany), TPN
The Public Network AG (Switzerland), SecureTronix (United Kingdom), Network Angels (United Kingdom), SDA
Partnership (United Kingdom), Nil Data Communications (Slovenia), Universidad de Manizales (Colombia),
Repton (UK), Intergence (UK), Coleman Research Group (USA), Think Equity (USA), NetDefense (UK) and
others.
Education
College
State Certified IT-Technician (equals U.S. Bachelors Degree in Computer Science)
Technical College, Munich, Germany (09/1999 - 07/2001)
Final exam grade: good
Vocational Training
Vocational Training as an Energy Electronics Engineer
German Railways Group, Munich, Germany (09/1993 - 02/1997)
Final exam grade: good
School
Secondary modern school
Successfully graduated in summer 1993
Communication Skills
My writing skills, both in German and English, are very good and I certainly am a clear speaker. Being
comfortable speaking in front of an audience I can easily facilitate meetings and brainstorming sessions. I simply
enjoy communicating with others.
Interpersonal Skills
As a friendly, polite person, with positive attitude I work well with others and in the past often have proven myself
to deal with difficult situations in a careful and considerate manner.
Learning Skills
I have a high capacity for learning, pick up new skills and ideas quickly, and generally thrive on challenges.
Enthusiasm and creativity give me an edge on difficult projects.
Business Skills
As a result of running my own business I have acquired sound knowledge around: Business environment,
Accounts and Finance, Current Business Issues, International Business, Managing Professional Development,
Business Psychology, Marketing, Business Context, Business Strategy and Organisational Dynamics, Small
Business Management and Entrepreneurship
Languages
Personal
Citizenship: German
Current Location: Guadalajara, Mexico
Hobbies: Travelling, Dogs, Latin Music, Sports, IT in General