Unix Computer Security Experience

A Supplement to the Resume of Jeff Sheffel

February 11, 2002

Unix System Security

Secure Solaris Builds and Validations

·  Installed system software according to secure build specifications that required audit certification

·  Implemented periodic system security checks, corrected system vulnerabilities, and delivered reports

Secure Network Software Configurations

·  Updated Firewall-1 and SSH configurations

Unix System Security Audit Implementation

·  Served as the Unix department coordinator to ensure timely delivery of audit findings to management and implement corrective actions.

Member of Corporate-wide Unix System Security Audit Standards Team

·  Documented guidelines for running a Unix system audit and completing the audit checklist

·  Created and tested custom Unix scripts to assist with running the audit

Configured and Administered Oracle Web Server Interface to Proxy Server

·  Wrote system specification for approval by corporate network security department

·  Installed Secure ID login interface for root account

Designed, Developed, and Tested Hardware and Software Program for Unix System Monitoring of Classified Environment

·  Integrated to custom C-program based on SNMP and RSH

·  Resulted in a proof-of-concept approval by security department

Installed and Maintained Various Unix Security Tools

·  Included Swatch, Cops, and Crack

·  Verisign secure certificates

Installed and Administered Corporate Unix FTP Server

·  Used secure shell features of WU FTP server

·  Maintained on corporate external LAN segment

·  Designed and maintained user password mechanism

·  Designed and coded file system sweep algorithm

·  Diagnosed and resolved user issues from third-parties around the country

Designed and Implemented Secure Unix Application Logins

·  Implemented with secure restricted shell (RSH)

·  Approved by corporate security team

Configured NIS+ and NFS

·  Included Solaris, SunOS, and HP-UX operating system configurations

Installed and Evaluated Unix C2 Operating System

Related Experience

Held Top Secret Clearance for Thirteen Years

Administered Large-scale Unix Systems in Classified Environments

Member of Corporate-wide Unix Software Standards Team

Developed Operational Methodologies and Procedures for Unix Systems

·  Including the development of documentation standards and interfacing with document control.

Installed and Administered X-terminals

Wrote Vast Amounts of Documentation

·  Included user guides, operational procedures, and system documentation

Utilized Network Packet Sniffers to Diagnose Problems and Analyze Performance

(continued on reverse)