Curriculum Vitae
Total Page:16
File Type:pdf, Size:1020Kb
DJAN PHANG 6338 Sunset Cove Lane, Katy, TX 77494 281.693.0645 (home), 281.968.1619 (Cell) [email protected] SKILLS/TOOLS: Operating Systems: Cisco NOS, Cisco IOS, Cisco FTD, Cisco ASA 8.4.7 – 9.x, Cisco CATOS, RiOS, Windows XP/2000, Windows 2016,Windows 2012, Windows 2008, Windows Server 2003, Linux: RedHat, CentOS F5 TMOS version 11.6 – 12.1.2, F5 LTM, F5 ASM, F5 APM. Network Hardware: Cisco ISE 1.1 – 2.7, WebSense 7.8.4 Cisco Nexus, 7000, 6000, 5500, 2200 series Cisco routers, 7200, 4300, 3900, 3800, 3700, 2800, 1800, 2600, 1700, 2500 series Cisco switches 6500, 4500, 4000, 4948, 3800, 3750X, 3500XL, 2900XL, 1900 series Cisco Aeronet 340, 350, 1100, 3700 series Cisco ASA 5520, ASA 5540, and Cisco ASA 5512X, ASA5525X CUCM 8.6.4 – 12.5, IPhone 8800, IPhone 9700, IPhone 7200,jabber, sparks, softphone, Nortel Meridian PBX, Lucent Merlin Magic PBX Cisco Content Switching Module/ACE Cisco TACACS, and Riverbed Cascade Checkpoint (CrossBeam & UTM 3070), Juniper Firewall SSG2000 F5-BigIP, Riverbed 5050 ADVA (DWDM switches) Software: PeopleSoft, Maximo, ACCPAC CQG, TransEnergy, Streamline, Quicktrade, Reuters, Gas Nomination Software, OASIS/TradeWave Microsoft SQL 6.5, Microsoft Project, Microsoft 2016-2003 office Cacti (Windows, Linux), Apache, PHP SolarWinds, Tcpdump, Wireshark Network Connections: DWDM, DecaMAN, GigaMAN, DS3, ELANE, MPLS, Lease line T1, FrameRelay, VSAT, Satellite, Microwave, ISDN, VPN, Wireless Network Protocols VTP, Spanning-Tree, Trunking, VLAN, VPC, HSRP, GLBP, GRE tunnel, IPSEC, DMVPN Routing Protocols: EIGRP, RIP, OSPF, BGP SCADA Hardware: Clear Scada, 4RF radio, GE Harris modbus, PI Excel add-on TEACHING EXPERIENCE: Houston Community College January 2017 to Present • Teaching Instrumentation and Controls Engineering Technology Curriculum o INTC 2366 Houston Community College August 2015 to Present • Teaching Network Infrastructure for Computer Department • Teaching Microsoft Curriculum American InterContinental University June, 2013 – January, 2019 • Information Security – Bachelor ITT Technical Institute June 2011 to September 2016 • Teaching CyberSecurity Bachelor degree and Network Systems Administrator Associates Degree o Teaching Network Infrastructure using Cisco PacketTracer simulator o Teaching Systems Administrator in Microsoft Windows and Linux o Teaching Security appliance such as Nessus, Firewall, DLP WestWood College December 2005 – January 2011 • Teaching Bachelor of Network Systems Administrator o Teaching Microsoft and Cisco Academy LoneStar College December 2005 – June 2011 • Teaching Cisco Academy PROFESSIONAL EXPERIENCE: MidCoast Energy, LLC December 2018 – Present Supervisor, Scada Network Operations • Supervise Scada Communication team • Manage Scada Communication Network • Design Scada Communication Network using network separation and zero trust security implementation Calpine Corporation, Houston, TX November 1998 to May 2005 Scada Network Engineer • Supported Technical teams and Operators to do well site testing. Worked with Sensors, Transducers, and Actuators, Valves, and instrumentation controls instruments including Pressure, Temperature, and flow and level controls on site. • Designed electronics test fixtures • Supported engineering department • Developed control Instrumentation and test procedures including P&ID schematics for surface facilities equipment • Configured DCS, set-point for each pump, temperature, flow control, pressure sensor in Power Plant. Configured, identified tags using GE Harris ModBus • Configured Client DCS connection via PI excel add-on • Supported EMS (Emergency Management System) for Alert and Events in All Power Plant • Built a separate SCADA infrastructure parallel with Business Infrastructure by enabling Firewall in between • Designed/Implemented Network for Data, Voice for Power Plant • Worked with vendors (AT&T, Sprint, SBell) for ticket escalation, provision new network circuits • Replaced failed routers or switches, provided installation diagram and provided support for the installation remotely. • Worked with Remedy ticketing system • Provided IP addresses range, configured VLAN, configured trunking for new server and new VLAN segmentation • Supported Trading floor for network escalation issues Ensco PLC October 2013 - December 2018 Senior Network Engineer • Perform analysis of LAN/WAN requirements and architect and generate proper design according to business needs. • Develop technical networking standards within Data Center networking technologies. • Evaluate networking hardware, software and tools requirement and provide recommendation. Project 2017 • Upgrade F5 host, VCMP guest version 12.1.2 from 11.6.0 • Replace, Install and Configure ASA 5508X and ASA 5555X • Install FMC, Firepower module for all ASA in Data Center and Business Unit • Upgrade Cisco ISE 2.2, Configure Guest Sponsor Portal, Configure EAP Chaining for Wired and Wireless 2016 • Designed Corp, Guest and MDM wireless using ISE 2.1 and redirect to MobileIron for register and compliance • Migrated TACACS for ACS 5.5 to Cisco ISE 2.1 • Designed, Installed and configured OpenDNS replacing Websense as url filter • Upgraded and configured Cisco ISE version 2.1 in High Available Pair 2015 • Installed and configured Cisco ISE version 1.3 in High Availability Pair • Installed and configured WebSense version 7.8.4 in replica mode and multi distribution policy server • Installed and configured Cisco Wireless Controller 5508 with HA SKU for 10 floors and 100 AP • Installed and configured Cisco 6509 in VSS mode 2014 • Built, Installed and configured Disaster Recovery Data Center in Austin o Installed and configured F5 in HA mode o Installed and configured Nexus 7016, Nexus 5596, Nexus 2248 • Mitigated security vulnerability for remote access, weak cipher SSL per IT Audit • designed, Installed and configure PVLAN for third party connection in Drillship network • Designed,Installed network refresh with new subnet in a manually summarized network T-Systems, Houston, TX March 2010 to October 2013 Senior Network Engineer • Perform analysis of LAN/WAN requirements and architect and generate proper designs according to business needs. 2 • Develop technical networking standards within Data Center networking technologies. • Evaluate networking hardware, software and tools requirements and provide recommendations. • Provide 3rd. level support for switching, firewall and load balancing technologies. • Perform customer network assessment and due diligence and provide recommendations. • Lead and coordinate technical projects involving remote virtual teams. • Delegate tasks and project related work to associate level team members. • Provide technical support in multi-suppliers environment. • Support and maintain Dark fiber between 3 Data Center via ADVA DWDM. Project o Build new Data Center Expansion ▪ Design/Implement Data Center using Cisco 6509 (Core), Nexus 5500 (Distribution) and 2200 series (Access). ▪ Design/Implement with Cisco framework for vPC and FEX. ▪ Design WAN connection With ATT via DWDM. ▪ Design/Implement Nexus 7000 series for storage connection using Context/Virtual. o Lear ▪ Design customer network in virtual environment (VMWare and Vsys) ▪ Create Network and implementation document ▪ Execute an implementation - virtual system in Juniper Firewall SSG2000 ▪ Execute an implementation – vrf on Cisco switch 6509 and switch 3750 stack ▪ Execute an implementation – Checkpoint firewall for adminlan access ▪ Execute an implementation – NetApps Filler connectivity ▪ Execute an implementation – VmWare ( Windows 2008 servers and Linux RedHat) connectivity o Vitro ▪ Design customer network in virtual environment (VMWare and Vsys) ▪ Create Network and implementation document ▪ Execute an implementation - virtual system in Juniper Firewall SSG2000 ▪ Execute an implementation – vrf on Cisco switch 6509 and switch 3750 stack ▪ Execute an implementation – Checkpoint firewall for adminlan access ▪ Execute an implementation – NetApps Filler connectivity ▪ Execute an implementation – VmWare ( Windows 2008 servers and Linux RedHat) connectivity o BP External DNS ▪ Review design network and make recommendation ▪ Implement the design network • Create an AdminLAN access – Checkpoint Firewall • Configure ADVA switch - DWDM connection • Configure InfoBlox and Cisco 3750 stack switch • Configure Virtual Systems in Jupiter Firewall for Customer access o Mattson Migration ▪ Implement Netapps Filler Infrastructure installation ▪ Configure Brocade 5100 for DWDM connection ▪ Configure Virtual Systems in Jupiter Firewall for Customer access o Philips Electric ▪ Review design network and provide recommendation ▪ Implement the design network • Create an AdminLAN access – Checkpoint Firewall • Configure ADVA switch - DWDM connection • Configure Cisco 3750 stack switch and 6509 switch • Execute an implementation – NetApps Filler connectivity • Execute an implementation – VmWare ( Windows 2008 servers and Linux RedHat) connectivity o Shell ▪ Review design network and provide recommendation ▪ Implement the design network • Server migration from Classic to VMWare environment • Server consolidation 3 • Infrastructure expansion such as NetApps Filler Baker Hughes, Houston, TX January 2010 to March 2010 Senior Network Engineer (Contract) • Implemented MPLS connection using BGP as Backbone and EIGRP as Internal protocol • Implemented VPN tunnel as a backup connection via GRE tunnel • Implemented VLAN for VMWare installation project LPS – RealEC Technologies, Houston, TX September 2008 to December 2009 Senior Network Engineer