Profiles search
Marcus Pruitt
IT Cybersecurity Specialist Splunk Administrator
Montgomery, AL, United States
Details
Experience:
2021 : Present
Defense Information Systems Agency
IT Cybersecurity Specialist
Implement, maintain, sustain and deploy Splunk infrastructure and application components. Work with asset administrators on client connection issues. Create necessary roles and users within Splunk. Create alert and report strategy based on policy and guidance. Provide sites with IAVA and STIG assistance with the Splunk product. Support requests for adhoc incident investigation. Check the Splunk Console is up and running and for any reports of message errors. Initiate and execute searches for statistics of the number of servers connecting and reporting daily.Create Splunk user account and verified customer access. Work directly with Splunk Professional Services to enhance and resolves technical issues with the Splunk Application. Provides software installation instructions and automated install options to System Administrators, confirms clients have proper connection and log monitoring strategy per guidance. Daily tasks include monitoring application availability, application performance, data loading queues, scheduled reports execution, adhoc report failures, data integrity checks, metrics collection processes, environment monitoring portals, and customer and SA ticket requests. Data integrity checks include checking transaction logs for errors and run queues for failed data loads. Engaged in Active Directory Management by creating groups and users, adding users the Splunk User group. Performs monthly archiving of data across the platform of any data older than one year to conserve storage and improve search response times of the application. Completed configuration changes for OS affected services like syslog-ng to allow the application to receive and process data via filters for UNIX type traffic. Developed documentation on client configuration steps, worked with field SAs to test/implement, created reports based on security threats and set up reporting channels to allow counter-response by security personnel.
2012 : 2021
DMI (Digital Management, Inc.)
IT Specialist (Splunk Administrator)
Monitor the movement of files through the File Managers, SPAs and Guards on the Cross Domain Enterprise System ensuring Data Movers and Virtual Guards are running at all times. Perform archiving of files on the virtual guards ensuring the saving and cleaning of the daily log and audit files. Create customer accounts for Global Combat Support System-Joint customers. Perform routine maintenance and provided a high-level overview of the functional status.
Perform account deletions of obsolete accounts. Provide specialized work experience that involves receiving and responding to customer support help center calls utilizing the Cisco IP Communicator and Agent Desktop system. Verify customer’s data information prior to creating customer accounts on the Juniper and Cisco Systems VPN for access into the DISA OOB network. Validate personnel accessing servers. Conduct informal training and technical guidance to customers and employees. Serve as System Administrator with the latest operating systems such as HP Unix, Red Hat Enterprise Linux, Solaris, Windows 2003 and 2008 platforms to support a broad variety of AF and DOD applications. Utilize BMC Blade Logic, VMware, vSphere Client and HP UNIX tools to create, modify and delete user accounts, ensuring only authorized users are allowed access to the servers. Utilize HP-UX visual editor (vi) to edit crucial system files, such as /etc/hosts, hosts, allow, sudoers, inetd.sec/netconf and others to prevent and defend against unauthorized access to systems, networks, and data. Maintain regionalize multi-user databases. Reset, reactivate and unlock user’s accounts on multiple systems via the System Administration Manager . Manage and oversee the Service Desk operations as Staff Duty Officer. Report to the appropriate agency any incidents that may impair accomplishment of highly critical mission and functions of supported applications and systems.
2009 : 2012
Defense Information Systems Agency
IT Support Specialist
Initiate TMS trouble tickets. Review and monitor opened trouble tickets. Follow-up, update and document actions taken using Remedy Trouble Management System to ensure complete resolution of any customer support calls. Monitor server performance using such tools as SiteScope and Managed Object Formula. Acknowledge critical and major status on servers. Acknowledge critical and major status on servers. Respond to server events. Document the event and respond as necessary. Escalate incidents to application managers and next tier technical support. Identify root cause. Initiate outage notifications and document complex problems in the Reportable TMS ticket. Diagnose and troubleshoot server accessibility and availability problems and initiates corrective actions by researching trouble tickets, contacting technical support experts, and informing the customer of actions taken. Advise supervisor when the problem becomes Reportable. Provide status reports for open calls with reoccurring problems. Collect and prepare data for Hot Wash reports to brief senior leadership. Represent the organization at various professional and technical meetings and conferences.System Analyst and Senior Functional Analyst for the Cargo Movement Operations System. Worked a wide variety of applications and equipment used in the Air Force Operations Support Team. Supports HP UNIX, Sun Solaris, Windows NT, 2000 and XP. Has Basic windows operation and Office usage SSH, both Putty, Tectia commercial client and hp-ux ssh server. Provide specialized work experience that involves receiving and responding to customer support help center calls utilizing the Automatic Call Distribution system. Install, configure and test software at customers' workstations remotely worldwide. Execute UNIX 11.0. Oracle 8i and 9i upgrades to servers Perform UNIX and Oracle database administration for 235 Cargo Movement Operations System sites remotely access utilizing SQL queries statement generation and functionality.
2008 : 2009
Unisys Federal Systems
System Analyst II
Perform manual, automated test scripting and execution on the database server, web application utilizing the test tools Mercury Quick Test Professional 9.2 and Mercury Quality Center. Perform system administration duties, such as the installation of software on the Cargo Movement Operations Legacy System and Deployable Laptops and automated integrated technology equipment such as the Symbol and Intermec and Savi handheld and RF devices. Install complete and update loads with HP 11.11 Operating System, Oracle 10g database and OAS 10.1.3.1. Add and remove instances from the database, create user accounts and passwords through the System Administration Manager (SAM), install and reset the Test Database. Utilize HP-UX visual editor (vi) to edit crucial system files, such as /etc/hosts, etc/nsswitch.conf and etc/tnsname.ora. This also includes the development and updates to the Installation Load Instructions. Prepare and document all functional training materials for CMOS 8.0. Assist in the migration efforts of the Cargo Movement Operations System (CMOS) client interface to a Java/J2EE web-enable technology.
Responsible for helping the technical staff to understand functional requirements as well as provide unit test support and documentation for all testing cycles required on site and remotely. Have 18 years working knowledge and growth of the CMOS application. Highly knowledgeable of current Government procedures, regulations, manuals, technical orders, standards, and industry publications, that relate to Traffic Management functional area specialty.
2007 : 2008
Ingenium Corporation
Senior Functional Analyst (CMOS)
Defense Information Systems Agency
IT Cybersecurity Specialist
Implement, maintain, sustain and deploy Splunk infrastructure and application components. Work with asset administrators on client connection issues. Create necessary roles and users within Splunk. Create alert and report strategy based on policy and guidance. Provide sites with IAVA and STIG assistance with the Splunk product. Support requests for adhoc incident investigation. Check the Splunk Console is up and running and for any reports of message errors. Initiate and execute searches for statistics of the number of servers connecting and reporting daily.Create Splunk user account and verified customer access. Work directly with Splunk Professional Services to enhance and resolves technical issues with the Splunk Application. Provides software installation instructions and automated install options to System Administrators, confirms clients have proper connection and log monitoring strategy per guidance. Daily tasks include monitoring application availability, application performance, data loading queues, scheduled reports execution, adhoc report failures, data integrity checks, metrics collection processes, environment monitoring portals, and customer and SA ticket requests. Data integrity checks include checking transaction logs for errors and run queues for failed data loads. Engaged in Active Directory Management by creating groups and users, adding users the Splunk User group. Performs monthly archiving of data across the platform of any data older than one year to conserve storage and improve search response times of the application. Completed configuration changes for OS affected services like syslog-ng to allow the application to receive and process data via filters for UNIX type traffic. Developed documentation on client configuration steps, worked with field SAs to test/implement, created reports based on security threats and set up reporting channels to allow counter-response by security personnel.
2012 : 2021
DMI (Digital Management, Inc.)
IT Specialist (Splunk Administrator)
Monitor the movement of files through the File Managers, SPAs and Guards on the Cross Domain Enterprise System ensuring Data Movers and Virtual Guards are running at all times. Perform archiving of files on the virtual guards ensuring the saving and cleaning of the daily log and audit files. Create customer accounts for Global Combat Support System-Joint customers. Perform routine maintenance and provided a high-level overview of the functional status.
Perform account deletions of obsolete accounts. Provide specialized work experience that involves receiving and responding to customer support help center calls utilizing the Cisco IP Communicator and Agent Desktop system. Verify customer’s data information prior to creating customer accounts on the Juniper and Cisco Systems VPN for access into the DISA OOB network. Validate personnel accessing servers. Conduct informal training and technical guidance to customers and employees. Serve as System Administrator with the latest operating systems such as HP Unix, Red Hat Enterprise Linux, Solaris, Windows 2003 and 2008 platforms to support a broad variety of AF and DOD applications. Utilize BMC Blade Logic, VMware, vSphere Client and HP UNIX tools to create, modify and delete user accounts, ensuring only authorized users are allowed access to the servers. Utilize HP-UX visual editor (vi) to edit crucial system files, such as /etc/hosts, hosts, allow, sudoers, inetd.sec/netconf and others to prevent and defend against unauthorized access to systems, networks, and data. Maintain regionalize multi-user databases. Reset, reactivate and unlock user’s accounts on multiple systems via the System Administration Manager . Manage and oversee the Service Desk operations as Staff Duty Officer. Report to the appropriate agency any incidents that may impair accomplishment of highly critical mission and functions of supported applications and systems.
2009 : 2012
Defense Information Systems Agency
IT Support Specialist
Initiate TMS trouble tickets. Review and monitor opened trouble tickets. Follow-up, update and document actions taken using Remedy Trouble Management System to ensure complete resolution of any customer support calls. Monitor server performance using such tools as SiteScope and Managed Object Formula. Acknowledge critical and major status on servers. Acknowledge critical and major status on servers. Respond to server events. Document the event and respond as necessary. Escalate incidents to application managers and next tier technical support. Identify root cause. Initiate outage notifications and document complex problems in the Reportable TMS ticket. Diagnose and troubleshoot server accessibility and availability problems and initiates corrective actions by researching trouble tickets, contacting technical support experts, and informing the customer of actions taken. Advise supervisor when the problem becomes Reportable. Provide status reports for open calls with reoccurring problems. Collect and prepare data for Hot Wash reports to brief senior leadership. Represent the organization at various professional and technical meetings and conferences.System Analyst and Senior Functional Analyst for the Cargo Movement Operations System. Worked a wide variety of applications and equipment used in the Air Force Operations Support Team. Supports HP UNIX, Sun Solaris, Windows NT, 2000 and XP. Has Basic windows operation and Office usage SSH, both Putty, Tectia commercial client and hp-ux ssh server. Provide specialized work experience that involves receiving and responding to customer support help center calls utilizing the Automatic Call Distribution system. Install, configure and test software at customers' workstations remotely worldwide. Execute UNIX 11.0. Oracle 8i and 9i upgrades to servers Perform UNIX and Oracle database administration for 235 Cargo Movement Operations System sites remotely access utilizing SQL queries statement generation and functionality.
2008 : 2009
Unisys Federal Systems
System Analyst II
Perform manual, automated test scripting and execution on the database server, web application utilizing the test tools Mercury Quick Test Professional 9.2 and Mercury Quality Center. Perform system administration duties, such as the installation of software on the Cargo Movement Operations Legacy System and Deployable Laptops and automated integrated technology equipment such as the Symbol and Intermec and Savi handheld and RF devices. Install complete and update loads with HP 11.11 Operating System, Oracle 10g database and OAS 10.1.3.1. Add and remove instances from the database, create user accounts and passwords through the System Administration Manager (SAM), install and reset the Test Database. Utilize HP-UX visual editor (vi) to edit crucial system files, such as /etc/hosts, etc/nsswitch.conf and etc/tnsname.ora. This also includes the development and updates to the Installation Load Instructions. Prepare and document all functional training materials for CMOS 8.0. Assist in the migration efforts of the Cargo Movement Operations System (CMOS) client interface to a Java/J2EE web-enable technology.
Responsible for helping the technical staff to understand functional requirements as well as provide unit test support and documentation for all testing cycles required on site and remotely. Have 18 years working knowledge and growth of the CMOS application. Highly knowledgeable of current Government procedures, regulations, manuals, technical orders, standards, and industry publications, that relate to Traffic Management functional area specialty.
2007 : 2008
Ingenium Corporation
Senior Functional Analyst (CMOS)
Company:
Defense Information Systems Agency
Years of Experience:
17
Skills
Red Hat Linux, Software Installation, Splunk Administrator, System Administration, Technical Support, Testing, Unix