
Web Application Architect, Senior Application Security Engineer
Hawaiian Islands

Web Application Architect, Senior Application Security Engineer
Hawaiian Islands
11 years experience with all phases of the software engineering lifecycle.
Expert in the following technologies:
* Web Application Security and Secure Coding Methodologies
* Java Servlet/JSP programming (Struts, Spring)
* PHP and Drupal 4.7/5.0 programming
* Web technologies (xForms, HTML, (x/d)HTML, JavaScript, AJAX, CSS)
* Persistence layer development (Hibernate and Castor)
* Relational Databases Development (MySQL, Oracle, SQL Server, and PostgreSQL)
Experience with large-scale portal, content management and e-commerce web technologies.
Strong analytical, communication and leadership skills.
Instructor for web application security, Java security and secure programming methodologies for Aspect Security.
Administrator of the ajform.sourceforge.org open-source AJAX project.
Web Application Security, Emergency rapid-response troubleshooting, Drupal 4.7/5.0, Java web-based application development, AJAX, Web Application Security, Secure Software Engineering Methodologies
(Privately Held; 51-200 employees; Information Technology and Services industry)
August 2007 — Present (1 year)
Instructor for "Building and Testing Secure Web Applications", "Secure Coding for Java EE" and other Application Security courses. Application Security auditor. Struts, JSF, Spring and Hibernate enterprise developer.
(Privately Held; 1-10 employees; Computer Software industry)
May 2002 — February 2008 (5 years 10 months)
Cutting-edge website design. Application Security. Programming (Java, PHP, *ml, AJAX). Database (MySQL, Oracle, Posrgres). Software Engineering Management.
(Privately Held; 11-50 employees; Computer Software industry)
July 2005 — December 2005 (6 months)
* Played a key role on the Citibank project
* Responsible for mastering and integrating the object-relational mapping tool Hibernate
* Led the design and implementation of a web service data formatting component that had strict performance requirements
* Developed a Java training package for Plug Power
(Privately Held; 11-50 employees; Computer & Network Security industry)
August 2004 — July 2005 (1 year)
Senior software engineer and director for vendor sales team. ($2 million + in annual sales) Provide Business Development support to other Departments. Perform Vendor Floorshow Manager duties at all national conventions. Train and motivate sales staff. Provide in-depth metrics on department performance. Direct report to CEO. Instructor for the LAMP (Linux, Apache, MySQL and PHP) Track.
(Privately Held; 11-50 employees; Computer Software industry)
May 2002 — August 2004 (2 years 4 months)
5th-12th Grade Technology Educator, Physics Educator, Network Administrator, and Head of Technology Department for Elementary, Intermediate and High school.
(Self-Employed; Myself Only; Computer Software industry)
February 1997 — May 2002 (5 years 4 months)
Worked as independent consultant for GE, EchoStar, WebMD, Gazoontite, RateExchange, Fireman's Fund Insurance, Fortune 10 financial institutions and others.
Building and Testing Secure Web Applications 2007 — 2007
BS, Computer Science, September 1993 — May 1997
The SANS Institute August 2004
How to Maintain and Troubleshoot PC's August 2003
Enterprise JavaBeans (EJB) October 2002
Object Oriented Analysis and Design July 2002
Application/Software Security, Web Application Security, Extreme/Agile Programming, RAD software engineering, Open Source Software, Professional Networking, Yoga
ESAPI, OWASP, GNUCITIZEN, OpenMRS, Open Architecture Network
August/98 Recognition/Achievement award
December/97 Customer Service Award
August/97 Achievement award for server development
2002 Sun Certified Programmer for the Java Platform
2004/2005 4 quarterly awards for excellent