<?xml version="1.0" encoding="ISO-8859-1"?>
<?xml-stylesheet href="resume.xsl" type="text/xsl" ?>
<!DOCTYPE resume [
	<!ENTITY nbsp "&#160;">
	<!ENTITY eacute "&#233;">
]>
<resume>

	<name>Mark Kamichoff</name>
	<email>kamichoff@alum.rpi.edu</email>
	<address><![CDATA[14323 San Paolo Ln
Charlotte, NC 28277
Mobile: 908.227.8183]]></address>

	<objective>To utilize my network and systems engineering skills in a position involving network engineering, security, and architecture</objective>

	<skills>
		<skill type="net">Proficient in the operation and administration of Juniper SSG/ISG/NetScreen-based firewalls, Juniper SRX-series services gateways, Juniper J-series and M-series routers, Juniper SA-series SSL VPN appliances, F5 load-balancing products (LTM, GTM, FirePass), and various Cisco IOS-based platforms</skill>
		<skill type="os">Experience with various server operating systems including, but not limited to, GNU/Linux, FreeBSD, Solaris, IRIX, and Microsoft Windows</skill>
		<skill type="netmgt">Network management experience with Juniper NetScreen-Security Manager, Juniper Steel-Belted Radius, SNMP, MRTG, Cacti, and various FOSS tools</skill>
		<skill type="sysop">Unix systems administration experience relating to user and group management, rights assignments, scheduling and managing system upgrades, and reacting to system and product vulnerabilities</skill>
		<skill type="proto">In-depth knowledge of various network and application-level protocols such as TCP/IP, IPv6, BGP, OSPF, IPsec, HTTP, DNS, and others</skill>
		<skill type="app">Proficiencies in ISC BIND, Apache HTTP Server, MySQL, Quagga, Netfilter, PF, and various FOSS network tools including tcpdump, Wireshark, Nmap, arpwatch, scapy, socat, and others</skill>
		<skill type="ipv6">Broad knowledge and experience with IPv6 relating to addressing, routing protocols, LAN deployments, and various tunneling and translation techniques across several platforms</skill>
		<skill type="prog">Programming experience in PHP, Perl, SQL, C, various web programming languages, and the Berkeley sockets and OpenGL APIs</skill>
		<skill type="wit">Extensive troubleshooting experience focusing on analysis of the synergistic effects of enterprise applications, Unix operating systems, firewalls, intrusion detection systems, and load balancers</skill>
		<skill type="cert">Certifications - JNCIE-M (#632), JNCIP-SEC, JNCIS-ER, JNCIS-FWV, JNCIA-SSL, JNCIA-DX, GCFW</skill>
	</skills>

	<jobs>

		<job title="Network Architect" company="Time Warner Cable" location="Charlotte, NC" duration="December 2008 - Present">
			<details>
				<detail>Currently leading the migration from NetScreen-5000-series firewalls to Juniper SRX3600 services gateways in TWC's data centers</detail>
				<detail>Designed the address scheme, configuration, and network topology for implementing IPv6 on TWC's IT networks and data centers</detail>
				<detail>Architected and deployed a highly-available SSL VPN-based solution using the F5 FirePass product to allow users to securely access corporate web resources from both inside and outside the enterprise network</detail>
				<detail>Assisted in the redesign of the national corporate backbone from a security and firewall perspective</detail>
				<detail>Designed the network architecture necessary to allow several mission-critical applications to be available in the event a DR is necessary.  Utilized various technologies including MPLS L2VPNs, GSLB, and NAT to achieve quick failovers between geographically-separate data centers.</detail>
			</details>
		</job>

		<job title="Sr. Firewall Engineer" company="Time Warner Cable" location="Charlotte, NC" duration="January 2007 - December 2008">
			<details>
				<detail>Assisted with the design, maintenance, and troubleshooting of Juniper firewalls on the IT backbone. &nbsp;Provided support for complications experienced with BGP and OSPF processes on Juniper ISG-series firewalls.</detail>
				<detail>Served as an escalation point for firewall-related problems and issues on the IT network</detail>
				<detail>Developed and integrated the ESD software with several network management applications</detail>
				<detail>Assisted in the configuration of Internet connection redundancy between the data centers, utilizing BGP and multiple upstream providers</detail>
				<detail>Participated in the rapid migration and reconfiguration of 100+ VPN tunnels to compensate for the readdressing of all Internet firewalls in the Charlotte data center</detail>
				<detail>Enabled the Juniper NetScreen-Security Manager to be operational in a DR event</detail>
			</details>
		</job>

		<job title="Firewall Engineer" company="Time Warner Cable" location="Charlotte, NC" duration="May 2005 - December 2006">
			<details>
				<detail>Performed routine configuration and management of Juniper NetScreen, ISG, and SSG-series firewalls</detail>
				<detail>Designed a network of Juniper J-series routers connected via GRE tunnels to provide head end networks access to certain corporate applications. &nbsp;Multiple routing instances and FBF were utilized to handle overlapping address space while eliminating the need for NAT.</detail>
				<detail>Developed and maintained ESD, an in-house CMDB-like device and inventory management system based on PHP, Perl, and MySQL</detail>
				<detail>Created a web-based interactive firewall policy request database to assist with auditing and compliance requirements</detail>
				<detail>Administered a customized performance and reporting suite of utilities based on MRTG, RRDtool, SmokePing, and drraw</detail>
				<detail>Performed routine administration of several Debian GNU/Linux-based monitoring servers</detail>
				<detail>Wrote custom backup scripts for Juniper firewalls, Juniper routers, and Cisco routers to be used for archival purposes and statistical analysis</detail>
				<detail>Assisted in the migration of firewall devices from NetScreen-Global PRO to Juniper NetScreen-Security Manager</detail>
			</details>
		</job>

		<job title="WAN Engineer" company="igxglobal on contract to Time Warner Cable" location="Charlotte, NC" duration="October 2004, January 2005 - May 2005">
			<details>
				<detail>Configured VPN tunnels between NetScreen firewalls and 3rd-party IPsec implementations</detail>
				<detail>Administered and troubleshot security policies and routing issues on the corporate IT network</detail>
				<detail>Managed firewalls via the NetScreen-Global PRO management system as well as by Expect scripts</detail>
				<detail>Assisted in the configuration and management of HP OpenView's Network Node Manager as it related to network infrastructure-related devices</detail>
			</details>
		</job>

		<job title="Security Operations Center Engineer" company="igxglobal" location="Hackensack, NJ" duration="July 2004 - December 2004">
			<details>
				<detail>Implemented security devices on-site and troubleshot various networking and security issues</detail>
				<detail>Provided consulting services to clients in the New York City metro area</detail>
				<detail>Worked with multiple VPN systems, including various Unix (OpenVPN) and IPsec (NetScreen) implementations</detail>
				<detail>Administered GNU/Linux-based mail (Postfix) and DNS (BIND 9) servers</detail>
			</details>
		</job>

		<job title="Systems Programmer, Operator" company="Center of Advanced Information Processing, Rutgers University" location="Piscataway, NJ" duration="Summer of 2003">
			<details>
				<detail>Developed a web-based computer administration system using PHP, MySQL, SNMP, and Perl</detail>
				<detail>Researched GNU/Linux-based security issues on private networks, including using IDS tools for auditing breaches</detail>
				<detail>Performed operator duties, wireless network administration, and Unix-based backups maintenance</detail>
			</details>
		</job>

		<job title="Web Developer" company="Center of Advanced Information Processing, Rutgers University" location="Piscataway, NJ" duration="Summer of 2001">
			<details>
				<detail>Created a web-based management system to track system performance of four Sun Enterprise 10000 servers</detail>
				<detail>Moved the CAIP Newsletter from printed to electronic format</detail>
			</details>
		</job>

	</jobs>

	<edus>

		<edu name="Rensselaer Polytechnic Institute" location="Troy, NY" graduated="May 2004">

			<degrees>
				<degree type="Bachelor of Science" title="Computer and Systems Engineering">
					<course>Microprocessor Systems Design</course>
					<course>Internet Protocols</course>
					<course>Signals and Systems</course>
					<course>Electric Circuits</course>
					<course>Computer Architecture</course>
					<course>Embedded Control</course>
					<course>Introduction to Engineering Design</course>
					<course>Computer Graphics</course>
				</degree>
				<degree type="Minor" title="Computer Science">
					<course>Operating Systems</course>
					<course>Network Programming</course>
					<course>Computer Network Security</course>
					<course>Data Structures and Algorithms</course>
					<course>Discrete Structures</course>
				</degree>
				<degree type="Minor" title="Psychology">
					<course>Motivation and Performance</course>
					<course>Social Psychology</course>
					<course>Leadership Theory</course>
					<course>Abnormal Psychology</course>
				</degree>
			</degrees>

			<projects>
				<project course="Introduction to Engineering Design">Used BASIC Stamps to create sensors for a ball testing machine</project>
				<project course="Embedded Control">Developed and programmed algorithms on the Motorola 68HC11 microcontroller platform required for the &quot;smart&quot; car project</project>
				<project course="Microprocessor Systems Design">Worked on various projects utilizing the Motorola 68HC12 microcontroller</project>
			</projects>

			<activities>
				<activity name="Rensselaer Chapter of the Association for Computing Machinery (ACM)">
					<position>Chairman of the Systems Administration Committee (SAC)</position>
					<position>Founding member of the Xicada community networking project</position>
					<position>Member of the Linux Special Interest Group</position>
				</activity>
			</activities>
		</edu>

	</edus>

</resume>

