Michael Robert Lawrence

Information Security Engineer

Phone: C: 317-909-2009 ,H: 817-438-0677
Address: 1710 Oak Creek Lane # C
Bedford Texas (Dallas/Fort Worth Area)
76022
Website: https://www.linkedin.com/in/itsecmichaelrlawrence
Email:

Professional Profile

Executive Summary :Highly Motivated Network Security Analyst/Engineer, Competent Network Administrator & Engineer, excellent customer service skills, dynamic individual, can motivate teams to complete complex projects using my tenacity, drive for excellence, leadership abilities, & motivation skills to exceed my employer’s expectations & achieve ultimate success. Project management, asset management, logistics & operations, Windows Unix/Linux Mac & integration of mixed environments. Windows or Unix/Linux (BSD including Mac OS 10) various types of routers Cisco (GUI/Basic Cisco admin.) or Nortel Microsoft Office, Corel, Open Office. Intermediate Spanish & Italian, basic Japanese. I also know enough to spot common mistakes with auditing tools for Security Threats hidden within Source code base. My Specializations are: Network Administration and Security Windows/Unix, Hardware ,Routers Generalist Functionality  I also Adapt quickly to software I have never used before , and Gain profligacy often in minuets to hours depending on complexity . Specialties: Network administration Windows , Linux , Information  security , Ethical hacking, Computer Forensics , network forensics.

Offensive Security / Sec-Research, ARM64 , Pentesting , IOT-Pentesting builds,(Rock64/RPI3 SBC's for covert offensive security testing) Vulnerability assessments, OS Patching & Hardening.  Virtual Machines, Windows/Linux Scripting. Compile and generate security reports on system and network access as required. Pentoo/Gentoo/Sabayon Linux forensic imaging, xmount,  autopsy/sluethkit, EDD. 

opensource Forensics/Ediscovery tools.

Experience

Trace3

Security Systems Engineer

August 2018

CLIENT : AIG Insurance  , Contract Short Duration. 

CIS STIG of Machines , Audit / Work With Chef Engineer to Ensure builds are CIS top 20 Compliant. , Vulnerability Assessment.
https://www.cisecurity.org/cis-benchmarks/
Security Audit of Machines , and improve Machine provisioning automation, to CIS compliance.  work with DevOps to Deploy improved CIS Templates.

Apex Systems

IT Systems Engineer- Co-lead - Temporary

JAN 2018 -March 30th, 2018

APEX Systems / Dell Contract , Client: United States Air Force & Texas AIR National Guard, 136th Communications Flight , (http://www.136aw.ang.af.mil/Units/)  NAS JRB /Carswell,  Fort Worth , Texas

Duties: Assist in the Windows 10 Deployment And Migration, as per contract specifications , requests , and troubleshooting, Imaging of Client Systems and remediation.  Active Directory Migration assistance.

Technical lead: provide technical Leadership as required.


Atos

Information Technology Security Engineer

June 2017 - August 21 2017

Deployment of Information Security Technologies, MacAfee "Nitro" SIEM Solutions, McAfee SIEM 10.x.  Endpoint Management, SIEM Active Directory/ LDAP, Identity accesses  management , Phantom incident response orchestration, carbonblack, Automated Incident Response, Identity Automation, RSA,Centrify, YubiKey multi-factor tokens , Identity accesses  management , vulnerability impact assessments, Bluvector, Anomali STAXX, Phantom incident response orchestration, Automated Incident Response, Identity Automation. DLP,Proxy Server, OWASP TOP 10/SANS Top 20 Critical Security Controls /STRIDE & DREAD models

Atos

Information Security Analyst II

February 2017 - June-2017

Security Operations, (Managed Security services provider to end clients) monitor SIEM for events, handle T1& Tier-II escalations , vulnerability impact assessments , Network Forensics.Security Operations, (Managed Security services provider to end clients) monitor SIEM for
 events, handle Tier 1 & Tier-II escalations , vulnerability impact assessments , Network Forensics. keep up Incident response Documents updated on shared folders. Hawk SIEM, Nitro-SIEM Active Directory/ LDAP, Identity accesses  management , DLP, Proxy Server, OWASP TOP 10/SANS Top 20 Critical Security Controls /STRIDE & DREAD models

Hewlett Packard Enterprise

Information Security Engineer ,contractor (Mphasis)

April 2016 - December 2016 (9 months)
VMWare Linux IT Security Appliance builds , cloud computing security, Hytrust Cloud Control , , VEEM Backup, vmware servers, Redhat/Centos ,, Windows 2012, Gentoo/Pentoo/Sabayon CIS Framework Center for Internet Security & NIST compliance models , Cyber Security Incident Response and Network Security Actively Building Linux Virtual Machines/Security Appliances Based on Proven Open source partners Intrusion Detection Systems (IDS) and SIEM technologies , (ELK Stack) OSSEC-WAZHU , Alien vault, Suricata-ids, scirius Knowledge of Deep packet and log analysis Intermediate Forensic Skills , Cloud Forensics and Malware Analysis capabilities preferred Cyber Threat and Intelligence gathering , Evaluate Risk Levels. Excellent analytical , skills interact with team members, management ,brief and coordinate response activities with senior management Software Defined firewalls, web proxies, advanced malware detection , With Yara and other tools to find Zero day malware and contain it and submit to AV Vendors, share detentions. Carbonblack, RSA,Centrify,YubiKey multi-factor tokens. , Identity accesses  management ,  vulnerability impact assessments, Bluvector, Anomali STAXX, Phantom incident response orchestration, Automated Incident Response, Identity Automation, RSA,Centrify Mcafee EPO/Enpoint  Tenable USM SIEM (Nessus in siem)  
 nexpose ,  Metasploit , Katana Web-testing Linux.   Pentoo Linux, DLP,
 OWASP TOP 10/SANS Top 20 Critical Security Controls /STRIDE & DREAD models
 
 
 
 ­­
 
 
 
 

Barrister Global Services Network

Independent IT Consultant

June 2012 - February 2016 (3 years 9 months)
HP Computer warranty repair.. calls when I have time... for extra cash..... Occasional larger overnight projects for NCR, etc.

Proprietor & IT Consultant

Information Security Consultant, IT consultant

August 1997 - September 2015 (18 years 2 months)

Provided administration Heavy background in Linux; Windows/NT/2000/2003 Server Environments Reverse proxy and security audits, and use Webmin/Clustermin administration tool for System/cluster configuration Gentoo Linux environment. Build PC’s for clients & provided training on E-commerce, web-site site design, Information Systems consulting, servers installed, LANs installation, integration services Handled Security threats to Clients, forensic services, Ethical Hacking services, Have Installed and configured Various servers and environments and or migration projects. Have held Several local Corp to Corp contracts with local IT staffing Firms/Or site Firms , Including TRS. As well as for Direct employed on I-9 status or other temporary agencies major projects: (including academic) ITT Capstone Deploys of Secured wireless networks for 2 not-for-profit Entities. , Help desk security auditor, Zolrich Group , TRS field projects , IBM Connect. ,OWASP TOP 10/SANS Top 20 Critical Security Controls /STRIDE & DREAD models

Ascena Retail Group, Inc.

IT Systems Anyalyst/Engineer (contractor)

October 2014 - January 2015 (4 months)

Special research projects. and testing, , Windows 7/8 Imaging /LANDesk/Windows 2008/2012 , Active Directory / Administration, Systems Imaging. Wyse/Dell Thin-client Imaging.Windows-CE Portable RF Scanning Guns/Computers Imaging/Administration Wavelink Avalanche support for . Cisco-Meraki WIFI/ WLAN Administration/WIFI Network Operations General IT-Site support/Network/Systems Administration. , Forensic WIFI teardown to debug major issues. 

Verigent

Consultant

April 2014 - May 2014 (2 months)
Assisting deployment of VIOP Phone, cabling for , trouble shooting issues with the Cisco routers Bank of America temporary work.

WorldWide Tech Services

Field Service Engineer II

June 2013 - November 2013 (6 months)
This is a Managed Service Firm , handle Incidents on Behalf of Apple,Dell, etc. Fix , Pc's Servers' Mac Machines, Install Network Equipment, Cisco , or as per requirement of Incident ticket requires. I handle my Share of Incidents in the Greater Indianapolis Metro Market Area.

Genesis10 Inc

Information Technology Contractor (Temp)

March 2012 - April 2012 (2 months)
April 2012 – (Contract filled) Install Retail Branch Point of Sale and Office support Pc’s, routers and switches, confirm final applications and layout, secure wipe old machines for data Confidentiality. Troubleshoot and fix any outstanding issues. Several locations serviced over a span of six weekends on PNC Bank’s off hours.

CompuCom Systems, Inc./ Walgreen's

Information Technology Contractor

July 2011 - August 2011 (2 months)
Frequent travel over a multi-state Roll-out project, Installed Servers, VPN Router, DNS, HIPPA concerns , TC/IP & TC/IPv6 requisite Cryptography modules. Data Migration, Blade center multi-serve unit set-up, Point of Sale (POS) Terminals. DHCP,

ITT Corporation

Information Technology Contractor

May 2011 - June 2011 (2 months)
Americas Active Directory & Exchange Messaging Server Team ; Fort Wayne IN. Ad Domains , The Company is splitting into 3 , The AD Forest Microsoft Said to rebuild anew.... , Their forest is very complicated several hundred domains , complexity most will never see , compartmentalized for security due to the Defense products divisions I not having much Enterprise Experience , and a bit rusty with Active Directory & MS Exchange doing mainly graduate school work ,smaller projects , and mostly Small to Mid-sized firms (historically) was put into this project , unfortunately due to the rapid speed of this project I was not a fit. a Mid-to Hi Jr. Levelthis position was not , a somewhat senior position. my only regrets is since dealing with small to mid-sized clients not have much opportunity to grow into this role, and hone some Enterprise class skills. had there been a few more weeks allotted in training I'm sure I easily could have met the demands, unfortunately a few days were allotted.

IT Consultant

February 2010 - January 2011 (1 year)
Installed some Lexmark Multifunction printers for A major Dialysis Service Group & clinics. Conducted Training operations for the staff Build rapport and trust quickly with clients and colleagues. Assisted users to identify and solve software problems. Assisted customers with inquiries and provided all pertinent information. Assessed client needs and recommended appropriate products or modifications. Installed Conducted Training operation for the staff Build rapport and trust quickly with clients and colleagues.

IT Consultant

2010 - January 2011 (1 year 1 month)
Installed some Lexmark Multifunction printers for A major US Government client. Conducted Training operations for the staff Build rapport and trust quickly with clients and colleagues. Assisted users to identify and solve software problems. Assisted customers with inquiries and provided all pertinent information. Assessed client needs and recommended appropriate products or modifications. Conducted Training operation for the staff Build rapport and trust quickly with clients and colleagues.

Bell Industries

PC/Network Bench technician

2010 - November 2010 (11 months)
Under contract for working on Pc's and network equipment for various manufacturers in this warranty servicing center.

Field Support IT Technician

July 2009 - November 2010 (1 year 5 months)
Smart-source/ Qualxserv / USA Gov’t. Roudebush Veterans Hospital ,Indianpolis,IN OCT 2009, Installed Lexmark MFP Copier/printer/Fax Machines as per Contract Smart-source /Insight IT/EDS/ Bank Of America (Sep 2009), Installed Cisco VOIP Phones, And Teleconferencing Equipment Dismantled legacy PBX , Assited in configuration and testing. Smart-source /Target Corp (July 2009) Installed New Point of Sale Equipment, System Refresh etc, For my Neighborhood Target stores as most Current Contract.

Netfor, Inc.

Support Analyst

July 2010 - September 2010 (3 months)
Help desk

US Census Bureau

Administrative Clerk

April 2010 - June 2010 (3 months)
Payroll Filing and some Human Resource operations , and Hire or Terminate Enumerators and or file contract extensions. while serving my country.

MurTech Consulting

IT Feild Consultant

February 2010 - April 2010 (3 months)
Murtech Consulting./CompuCom Inc. February 2010 IT Field. Consultant /On call for Xerox Connect & RR L. Donnelley Press , conducted an Audit of Printing equipment, gained Xerox Certification as a Xerox Data collector.

IT Field. Consultant

July 2009 - January 2010 (7 months)
Repair or service Leased computer systems, Point of sale , in stall office environments, Installed servers And satisfied any other Contractual per project requirements Smart-source/ Qualxserv / USA Gov't. Roudebush Veterans Hospital ,Indianpolis,IN OCT 2009, Installed Lexmark MFP Copier/printer/Fax Machines as per Contract Smart-source /Insight IT/EDS/ Bank Of America (Sep 2009), Installed Cisco VOIP Phones, And Teleconferencing Equipment Dismantled legacy PBX , Assited in configuration and testing. Smart-source /Target Corp (July 2009) Installed New Point of Sale Equipment, System Refresh etc, For my Neighborhood Target stores as most Current Contract. Go-2-IT -

Go2IT Group

Field Technician

September 2008 - July 2009 (11 months)
Go-2-IT –Group September 2008- present (Employed as L.W.E.) For Dell/HP/IBM Connect Regional Vendor. IT Field. Consultant Repair or service Leased computer systems , in stall office environments, Installed servers And satisfied any other Contractual per project requirements

IT Field. Consultant

September 2008 - July 2009 (11 months)
2009, Installed Lexmark MFP Copier/printer/Fax Machines as per Contract Smart-source /Insight IT/EDS/ Bank Of America (Sep 2009), Installed Cisco VOIP Phones, And Teleconferencing Equipment Dismantled legacy PBX , Assisted in configuration and testing.Smart-source /Target Corp (July 2009) Installed New Point of Sale Equipment, System Refresh etc., For my Neighborhood Target stores as most Current Contract. Go-2-IT -; Repair or service Leased computer systems, Point of sale , install office environments, Installed servers And satisfied any other Contractual per project requirements

Technician Consultant

August 1998 - June 2003 (4 years 11 months)
Technician assigned to Various TRS Clients for assignments ranging from complete infrastructure installation to mainframe migration, network administration, site repair backup operations complex projects, Novell, Unix, Migrations, Windows, domain migrations/mergers/forest, Lotus notes, web server, email LDAP, directory services migration & emergency recovery operations

Army National Guard

77F10 Petroleum Engineer

August 1998 - May 1999 (10 months)
Left after being Injured Performed maintenance on petroleum equipment, tanks, pumps, brumes, pipe-lines & supply operations. Assisted in vehicle maintenance such as tankers. Cataloged & performed asset administration.

US Army

77F10 Petroleum Engineering

March 1996 - August 1996 (6 months)
Was discharged for Asthma From fuel exposure , And knee Injury. Performed maintenance on petroleum equipment, tanks, pumps, brumes, pipe-lines & supply operations. Assisted in vehicle maintenance such as tankers. Cataloged & performed asset administration.

Education

ComputerMinds.Com

IT certifications , IT Ceritifications,

2015 - 2016
Keller Graduate School of Management of DeVry University

Some Graduate classes., MSM Information Systems Management With Information Security concentration

masters program,

2014 - 2016

Techskills

Certifications, Infomation Technology, Infomation Technology, Infomation Technology,

2008 - 2009
ITT Technical Institute

Bachelor of Science, Information Systems Security, Information Systems Security, Information Systems

Security,

2002 - 2005
ITT Technical Institute

Associates of Applied Science, Computer Network Systems, Computer Network Systems, Computer Network

Systems,

2000 - 2002

US Army Quartermaster School

military professional training certificate, petroleum engineering and logistics,

1996 - 1996

Certifications

Associate of (ISC)²

(ISC)² License 554646

May 2016
Associate of (ISC)²



Associate of (ISC)²

The Associate of (ISC)² status allows an individual to demonstrate competence in the field by passing the rigorous CISSP exam, and work toward gaining the experience required to become CISSP certified. The vendor-neutral CISSP credential confirms technical knowledge and experience to design, engineer, implement, and manage the overall security posture of an organization.

Issued By (ISC)²  Issued On 4 May 2016

Skills

CompTIA Secure Infrastructure Specialist

CompTIA

January 2016

CompTIA IT Operations Specialist

CompTIA

January 2016

Security+

CompTIA

License COMP001007758675 January 2016 to January 2019

comptia transcript

A+ Technician

CompTIA License COMP001007758675

September 2008 , CE date 2016-2019

https://www.certmetrics.com/comptia/public/transcript.aspx?transcript=E7E3FB1K2F4QCPR1

Microsoft Certified Professional

Microsoft

April 2009

MCPS: Microsoft Certified Professional

Network+ IT Technician

CompTIA

December 2008 ce January 2016 to January 2019

COMPTIA

IPv6 GURU

Hurican Electric he.com

May 2009


IPv6 Certification Badge for lonewolf359

Skills

VPN, Network Security, Network Administration, Networking, Active Directory, Security, Windows Server, Servers, Laptops, Routers, Wireless Networking, Unix, Linux, Computer Security, Help Desk Support, Computer Hardware, Windows 7, Cisco Technologies, Firewalls, 9 TCP/IP, Integration, Information Security Management, VoIP, Network Design, Computer Forensics, Information Assurance, Linux System Administration, CEH, Computer Network Operations, Linux Kernel, Samba, XP, Routing Protocols, IPv6, Windows XP Professional, Capillary Puncture, Sendmail, Linux Security, Ethical Hacking, voice over IP, Network Operations, Linux server administration, LDAP Administration, Vulnerability Assessment, TCP/UDP, Quality Assurance & Controls, DNS management, Penetration Testing, Security Audits, CISSP, Interests, Information Technology,Linux, Windows Server, Computer Forensics,Information Security,IPv6, IP, Networking,, ,Spanish, Japanese, Nitro-SIEM, HAWK-SIEM, ALIENVAULT-SIEM,  IT Threat Inteligance, 

Professional Memberships & Honors

Member

ISACA: Information Systems Audit and Control Association, Dallas/Fort Worth chapter

Member

ISSA: International Information Systems Forensics Association, Cowtown Chapter

Member

HTCIA High Technology Crime Investigation Association

Member

(ISC)2,

Member

CyberWatch

Member

AITP:Association of Information Technology Professionals Dallas Chapter

Projects

IOT_Pentoo Linux-Arm64 project

Volunteer , IT Security Engineer IOT ARM64 Security researcher (time permitting afterhours)

April 2017-current

Pentoo Linux, I have been porting Pentoo/(Gentoo Linux Pentesting)  to Arm64 builds for many common IOT Devices to be stealthy and Aid in Pentesting research IE Raspberry-pi3 and Rock64 and similar SBC's , as one can cause simulated havok on Blue team/Test Blue team Awareness , and or otherwise , can be easily disguised hidden , so finding them could be a challenge for blue teams...

for Professional Pentesting the are small powerful platforms usful as micro-jump boxes, and or a swarm to gather intel , and complete pentests faster and have better results. , as well TCO of owning vs renting IOT devices makes the easily imaged as well as expendable as next more powerful IOT upgrade hits..  

Many can Be Hidden for WEEKS with Cell modem and Batteriesin your ceiling tiles , thus allowing pentest team to go unnoticed for some time, or on your roof using weather resistive cases and a drone chopper to land it. 

Researching IOT as a CI-PEN-Integration device , IE Pentest+Dev-ops 

as FOSS/Open Source Concepts. , soon as new box goes live hack it, soon as dev-ops loads new software , prove it will not be compromised in a production environment. 

Vol for pentoo for 5-8 years , so seams firing to AID in porting to Arm64 for other Users.  package scripts/tools to test OWASP TOP 10/SANS Top 20 Critical Security Controls /STRIDE & DREAD models..  

Sabayon Linux Project

October 2008 to Present
Members:Michael Robert Lawrence, Joost Ruis, Fabio Erculiani
Doing some misc translation work on Sabayon Linux infrastructure items. <3 <3 love my distro , since I'm not rich i help were i can..... giving back..... Rigo , some #### Japanese translations using Google and manual translating ... etc.

Pentoo

March 2013 to Present

Time permitting , I package what I can and contribute what I can to the Pentoo team.

Languages

Japanese

(Elementary proficiency),

Spanish

(Limited Professional working proficiency),

Italian

(Limited Professional working proficiency),

Miami-Illinois

(Limited working proficiency , Tribal hertage.)

Volunteerings

miscellaneous contributor at Sabayon Linux

Linux Technology

February 2012 - Present
Doing some misc translation work on Sabayon Linux infrastructure items.11 <3 <3 love my distro , since I'm not rich i help were i can..... giving back..... Rigo , some #### Japanese translations using Google and manual translating ... etc. 3 team members

Volunteer at Leukemia & Lymphoma Society

Cancer

October 2013 - Present

IT security Resercher and Linux Spin developer at Spike Sabayon Linux

Linux technology

May 2014 - Present
http://spike-pentesting.org/ Sabayon. Linux Pentesting edition.