CCIE Level network engineer looking to provide network architecture expertise across an enterprise level environment
SUMMARY
For the last 16 years, I have worked almost exclusively on companywide architecture design – with the main focus being on networking and security. I am very comfortable working in highly visible positions and enjoy building teams to accomplish company goals.
SKILLS
Well rounded professional that possesses the capability of working with many areas of an organization as required for project and infrastructure design work.
Soft Skills
Experience managing large infrastructure projects
Project definitions, scope, budgets, justifications, ROI calculation
Ability to lead internal and external resources throughout projects
Produce annual budgets plus project related cost estimates
Translation of PCI, SOX, and HIPPA compliance to infrastructure requirements
Checkpoint Firewall R55, R62, R65, R70 running on Nokia IPSO
Cisco VPN 3000 series concentrators
Cisco PIX, ASA, FWSM
Cisco IDS
RSA Authentication Manager 6 & 7
Cisco ACS 4.x
BlueCoat ProxySG
Juniper NS Series Devices running ScreenOS
Network Management
IBM Tivoli Netcool/OMNIbus
CiscoWorks LMS
SolarWinds Orion
Cacti,NMIS,MRTG,Nagios,Zenoss
EXPERIENCE
Emdeon Business Services
Nashville, TNSystem ArchitectI managed all network and security design for an airgapped network used to support a contract between Emdeon and the Department of Defense (DoD). This system supported all Pharmacy transactions performed at all Military Treatment Facilities in the world along with VA, Retail Pharmacy, and Mail Order. This airgapped network connected securely to the DoD NIPRNET
Position required Public Trust Clearance which required a ADP II background check
Architected and implemented a three site air gapped system to separate Emdeon’s DoD operations from its commercial business.
Components I designed and implemented were:
Created Out of Band (OOB) network, separate from the production network, in order to separate management traffic from production traffic
Established provider based MPLS wan to connect multiple locations. Had separate WAN connections for production and OOB.
Implemented CheckPoint firewalls on Nokia platform
Created two factor authentication infrastructure using Cisco ACS and RSA Authentication manager for network and security device management logins used by administrators and also used by all employees for VPN access. Both soft and hard (keyfob) tokens were used
Implemented Juniper Netscreen devices for both Site-Site B2B connections and others for remote access VPN access.
Implemented ZENOSS platform for monitoring the entire system
Worked with various divisions of the Armed forces, DISA, and other government contractors on B2B NIPRNET connectivity with Emdeon
Exhaustive focus on maintaining a secure network which included regular audits by JMIS to verify network is stable and secure. Very familiar with using STIG to harden/secure all networking and security devices.
6/2008 – 2/2010
Emdeon Business ServicesNashville, TNSenior Network EngineerEmdeon Business Services serves as a main artery for entire healthcare industry. The company’s main business function is to the healthcare industry what the credit card processors are to the financial industry. Hundreds of thousands of real-time and batch transactions are received and processed each day from submitters (doctor’s offices/hospitals) as well as the payers (Insurance companies). Other provided services include EOB printing and claim payment on behalf of the payers.
Worked on the Network Design Team, which worked solely on enterprise network and security architecture design. This group also responsible for all project related work.
Myself and a co-worker designed the network and security components in a 14,000 square foot tier 4 data center facility. Also personally performed most of the initial network implementation of core, distribution, and access layers while leading other implementation members to install remaining components.
The design of this data center included the implementation of an internal MPLS network that transported multiple VRF’s across multiple datacenters and office locations. Each of the datacenters was connected with private 1Gig and 10Gig long reach Ethernet connections using multiple providers. The internal MPLS was integrated into two other provider based MPLS networks, which supplies connectivity to the customers. This scenario allowed the most diversity and performance available in a multiple datacenter network.
Led network and security portions of the projects for moving 500 servers, 200 Frame Relay PVC’s, and 200 VPN connections out of datacenter being vacated and into the newly built facility. Most of this work was done transparently to Emdeon’s customers and was successfully completed.
Implemented Cisco Unified Communications Manager for 1500 corporate users along with Unity that fully integrated into existing corporate Microsoft exchange environment. Several smaller remote offices were later activated using local voice gateways and centralized call manager infrastructure. PSTN connectivity included both the use of PRI and SIP trunking with telco provider.
Worked on several projects that included implementing F5 LTM devices to load balance mutli-tier applications:
Siebel 7.8
Applications built on top of IBM Webshere Application Server (WAS)
Some applications were housed in multiple datacenters for High Availability, which used the F5 GTM product for Global Site Load Balancing (GSLB)
3/2006 – 6/2008
Gaylord Entertainment CompanyNashville TNSenior Network Engineer
Served in the lead role for designing/integrating and managing implementation of all new major networking projects
Served as 3rd level support for the existing networks in the entire company. This included the LAN, WLAN, WAN, VPN, and dial access.
Overall Project manager for a company wide security remediation project. All managed resources were completely outside of my normal area of responsibility. The project started with contracting for a companywide multiple site security audit. The main component of the project consisted of the implementation of a new patch management solution (Patchlink) across the enterprise.
Designed, Planned, and managed configuration/installation of multiple networks in two new large 1400+ room Convention Hotels. Each hotel has a total of 15,000 Ethernet ports for various uses.
Created 100% of RFP used to solicit hardware and implementation of network
Led vendor implementation team for entire network that consisted of two separate networks. One used for administrative/staff and the other used for guest internet access.
Designed, configured, and implemented two new networks for and the existing 2800 room Opryland hotel, which included a replacement network for administrative/staff use and a brand new wired network for 2800 guest rooms and wireless in the convention centers.
Designed, Tested, and implemented a new company wide wireless authentication mechanism using 802.1x/EAP-TLS. This included converting 400+ wireless clients from a previously used static WEP authentication.
Implemented the first company VPN using existing hardware/software as a proof of concept. Later purchased and implemented appropriate equipment after a successful POC and the business case was made. This environment now supports 1000+ remote access clients and multiple site-to-site VPN tunnels.
11/1999 – 2/2006
TN Farm Bureau FederationColumbia, TNWorkstation Systems Programmer
Administer all Corporate NT Servers including all Intranet and Mail servers for the organization
Implement and Support both the Local Area Network and also all Wide Area Networks.
Responsible for Testing, Deployment automation, Documentation, and providing top tier support for all PC and Server Systems Software.
Designed, planned, and implemented a 2000 node Intranet for both the Home Office and 120 remote offices via a VSAT Network. This including introducing TCP/IP to a previous SNA only network.
Later integrated a new wide area network into the existing VSAT Network, which eventually replaced all 120 sites with Frame Relay.
Implemented Web, Mail, and Proxy Servers to allow employees new email capabilities and Intranet/Internet access through the corporate network
2/1994 – 10/1999
EDUCATION
Computer ElectronicsNashville Tech, Nashville, TNCertifications or Technical TrainingAll certifications were obtained via self study and every exam was passed on first attempt. Note: All certifications listed are in an expired status.
CCNA and CCNP obtained
CCIE Written passed
Microsoft MCSE 4.0
OTHER
Walkinghorsechat.com Server/Site Administrator for the last 10 years on the largest Tennessee Walking Horse destination in the world. The forums area is a paid member site with 3 million page views a month. The site also features 24×7 streaming media and covers most TWHA events live across the country.Owner/Creator of http://www.xpresslearn.comLinkedIn: http://www.linkedin.com/in/scottpilkinton
Scott Pilkinton – Resume
Download pdf
Jeffrey Scott Pilkinton
2889 Iroquois Drive, Thompsons Station, TN 37179 · (615) 714-0100 · scott@scottp.net
Nashville, TNSystem ArchitectI managed all network and security design for an airgapped network used to support a contract between Emdeon and the Department of Defense (DoD). This system supported all Pharmacy transactions performed at all Military Treatment Facilities in the world along with VA, Retail Pharmacy, and Mail Order. This airgapped network connected securely to the DoD NIPRNET