Unix Computer Security Experience
A Supplement to the Resume of Jeff Sheffel
February 11, 2002
Unix System Security
Secure Solaris Builds and Validations
· Installed system software according to secure build specifications that required audit certification
· Implemented periodic system security checks, corrected system vulnerabilities, and delivered reports
Secure Network Software Configurations
· Updated Firewall-1 and SSH configurations
Unix System Security Audit Implementation
· Served as the Unix department coordinator to ensure timely delivery of audit findings to management and implement corrective actions.
Member of Corporate-wide Unix System Security Audit Standards Team
· Documented guidelines for running a Unix system audit and completing the audit checklist
· Created and tested custom Unix scripts to assist with running the audit
Configured and Administered Oracle Web Server Interface to Proxy Server
· Wrote system specification for approval by corporate network security department
· Installed Secure ID login interface for root account
Designed, Developed, and Tested Hardware and Software Program for Unix System Monitoring of Classified Environment
· Integrated to custom C-program based on SNMP and RSH
· Resulted in a proof-of-concept approval by security department
Installed and Maintained Various Unix Security Tools
· Included Swatch, Cops, and Crack
· Verisign secure certificates
Installed and Administered Corporate Unix FTP Server
· Used secure shell features of WU FTP server
· Maintained on corporate external LAN segment
· Designed and maintained user password mechanism
· Designed and coded file system sweep algorithm
· Diagnosed and resolved user issues from third-parties around the country
Designed and Implemented Secure Unix Application Logins
· Implemented with secure restricted shell (RSH)
· Approved by corporate security team
Configured NIS+ and NFS
· Included Solaris, SunOS, and HP-UX operating system configurations
Installed and Evaluated Unix C2 Operating System
Related Experience
Held Top Secret Clearance for Thirteen Years
Administered Large-scale Unix Systems in Classified Environments
Member of Corporate-wide Unix Software Standards Team
Developed Operational Methodologies and Procedures for Unix Systems
· Including the development of documentation standards and interfacing with document control.
Installed and Administered X-terminals
Wrote Vast Amounts of Documentation
· Included user guides, operational procedures, and system documentation
Utilized Network Packet Sniffers to Diagnose Problems and Analyze Performance
(continued on reverse)