CISSP, Network Architect, Engineer, & IT Team Manager
Greater Seattle Area
CISSP, Network Architect, Engineer, & IT Team Manager
Greater Seattle Area
Leadership of teams designing and implementing end-to-end multi-discipline Information Technology (IT) solutions.
Experienced in designing, securing, deploying, and operating network infrastructures. Includes multi-city wireless data networks (optical and RF) and large corporate networks. Connectivity included dark fiber, private networks, Internet access, and Virtual Private Networks (VPNs).
Flexibility to tackle a wide spectrum of problems by drawing on my diverse background that includes (but is not limited to) Windows/UNIX/Linux systems deployment and operations, network design and operations, IT security, project management, end-to-end application optimization, disaster preparedness, finance (budgets, cost models, bills of materials, etc.) facilities build-outs, and so on.
Fully capable in both technical management and senior individual contributor roles.
Problem solver with the ability to accurately assess issues, to recommend solutions, and to execute on the resolution.
US Patent 6341304, Data acquisition and distribution processing system. Antonius Engbersen, Jason Hernandez. {IBM}
US Patent 6633539, Device, method and article of manufacture for call setup pacing in connection-oriented networks. Claude Basso, Philippe Damon, Jason J. Hernandez, Bernard Putois. {Cisco}
Director/Manager of IT Teams, Network Architect - concept to operations and everything in between. CISSP certified security professional.
(Public Company; 51-200 employees; Information Technology and Services industry)
September 2006 — Present (3 years 3 months)
IT Architect for multiple clients' network, server, and services infrastructure as well as responsible for IT security.
(Information Technology and Services industry)
2006 — Present (3 years )
(Information Technology and Services industry)
2004 — Present (5 years )
(Educational Institution; 5001-10,000 employees; Information Technology and Services industry)
May 2003 — September 2006 (3 years 5 months)
Manage the team responsible the architecture, operations, and security of the Seattle University campus wired and wireless networks, Internet and site-to-site connectivity, IP security virtual private networks (IPSEC VPNs), approximately 50 core servers (Windows, Solaris, Linux, AIX), and the application services on those servers. Direct hands-on with network and firewall deployment and operations. Additional responsibilities include schedules, budgets, project plans, documentation, etc.
Accomplishments:
1. Created the environment for the team to execute campus-wide projects.
2. Executing on the strategy for replacing obsolete network equipment and servers. Total project cost is ~$1,500,000.
3. Reduced the number of separate email systems down to one. Added the anti-SPAM and Anti-virus gateways to the email system.
4. Driving centralized desktop update/patch management and centralized antivirus installation/updates.
5. Focused on stabilizing existing infrastructure and services.
(Privately Held; 11-50 employees; Information Technology and Services industry)
October 2001 — November 2002 (1 year 2 months)
Managed the team responsible the operations and security of the Returns Online IT systems and networks. Scope included test & production Windows 2000 servers, the services that execute on those servers, most corporate IT projects, security, schedules, budgets, and so on. Directly owned the architecture and operational responsibility for the corporate and production networks including Internet connectivity, IPSEC VPNs, and private networks (Frame Relay). Additional responsibilities included IP address administration and creation of processes required for ongoing operations.
Accomplishments:
1. Successfully managed employees in two states separated by three time zones.
2. Created the Corporate Security Policy that was adopted as a corporate ISO standard document.
3. Formalized and enhanced IT security including the definition of the network security policy and the multi-site deployment of tools such as hardware-based firewalls and logging servers to support the security policy.
(Privately Held; 501-1000 employees; Internet industry)
March 2000 — September 2001 (1 year 7 months)
Creation and development of templated network designs for multi-market deployment. Included all phases of design starting with evaluating different concepts, architectural documentation, test plans, testing, and initial deployment. The development process required project management, cost/benefit modeling, technical documentation, technical presentations, vendor issue resolution, creation and execution of test plans, etc.
Accomplishments:
1. Multi-point Transparent LAN Service (TLS) architecture, design, and testing.
2. System architecture & design of the Multi-Tenant Building (MTB / MTU) site requirements and customer premises equipment.
3. Created and managed the Seattle metropolitan area network (MAN) bill of materials (BOMs). Total value was in excess of $7,000,000.
4. Drove the initial technology assessment and justification for the use of Dark Fiber as a backbone transport.
5. Customer Premises Equipment cost reductions projected to save >$1,500,000 in the next year.
(Information Technology and Services industry)
2000 — 2001 (1 year )
(Public Company; 51-200 employees; ARTT; Internet industry)
May 1999 — March 2000 (11 months)
Creation, development, and prototype construction of fixed wireless RF-based metropolitan area network designs for deployment in multiple markets. Projects included concept, architecture, lab prototyping, and initial field deployment and testing. Skills utilized in these projects included project management, budget creation and execution, creation of Bills Of Materials, technical documentation, input into network fault and performance measurement, Tier 4 support, etc. ART was a Cisco Powered Network.
Accomplishments:
1. Successfully took the overall network architecture and design from concepts on a whiteboard through a successful implementation in San Jose.
2. A team consisting of a Cisco consulting engineer and myself constructed a complete metropolitan area network (MAN) in the lab for proof-of-concept, functionality testing, stress testing, and replicating field problems. The final configuration was the template for the field deployments.
(Public Company; 10,001 or more employees; IBM; Information Technology and Services industry)
August 1990 — May 1999 (8 years 10 months)
BS , Electrical and Computer Engineering , September 1985 — May 1989
Cutting edge technology, Apple Computer, Linux, BMW Z4 car, family, IT security.
ISSA, CISSP, ISSAP, ISSMP
Certified Information Systems Security Professional (CISSP).
• Information Systems Security Architecture Professional (ISSAP) Concentration.
• Information Systems Security Management Professional (ISSMP) Concentration.
Patents
• US Patent 6341304, “Data acquisition and distribution processing system”. Antonius Engbersen, Jason Hernandez. {IBM}
• US Patent 6633539, “Device, method and article of manufacture for call setup pacing in connection-oriented networks”. Claude Basso, Philippe Damon, Jason J. Hernandez, Bernard Putois. {Cisco}
• “Determining Network Site Reachability.” Jason J. Hernandez, Rachele S. Kurtz. Status: Filed in U.S. by IBM.
Publications
• “Proximity Activated Computer Console Lock” Richard Fogg, Jason Hernandez. IBM Technical Disclosure Bulletin, Vol. 35, No. 6, Nov. 1992.