KERRY THOMPSON kerry@crypt.gen.nz http://www.crypt.gen.nz PROFESSIONAL PROFILE Technology Consultant Security Specialist High Profile Organisations Overview and Core Competencies Highly experienced CISSP certified Security Specialist Very broad experience in security and networking technologies including both Cisco and Juniper, Unix and Linux systems, project implementations, security evaluations, troubleshooting, strategy, consultancy and policy development In-depth, hands-on experience with IT systems and networks at all levels 27 years experience in New Zealand IT industry covering many sectors and companies including Telecom NZ, Vodafone NZ, 2Degrees, Air New Zealand, and many others Career Snapshot 2002-present Consultant Open Systems Specialists Ltd ( OSS ) Consultancy specialising in Security, Network Design, Unix, Linux and open systems infrastructure. 1996-2002 Consultant Optimation NZ Ltd Consultancy specialising in development, security and integration 1990-1996 Systems Engineer Delphic Medical Systems (now Sysmex NZ Ltd ) Unix systems engineer & developer 1989-1990 Software Engineer GPT (GEC/Plessey Telecoms) Developer of SCADA control systems equipment 1987-1990 Development Engineer Systems Consultants Ltd Developer of electronic control and monitoring systems Certifications CISSP CCNA CCNA+Security CISS CCNP CADE CFSS ACWA JNCIA-Junos JNCIS-Sec ISC 2 Certified Information Security Professional Cisco Certified Network Associate Cisco Certified Network Associate, Security Specialisation Cisco IOS Security Specialist Cisco Certified Network Professional (Routing and Switching) A10 Networks Certified Application Delivery Engineer Cisco Firewall Security Specialist Aerohive Certified Wireless Administrator Juniper Certified Associate Juniper Certified Specialist - Security
KERRY THOMPSON PAGE 2 Employment Details and Key Achievements Open Systems Specialists Ltd Consultant Consulting out to many OSS client companies - Linux, Unix - Networks - Security Design and build DNS infrastructure for 2Degrees Mobile Ltd. Implementation of a Cisco ASA firewall and remote-access VPN for Twenty NZ Ltd. Enterprise network design, build and support for Bidvest NZ with a nation-wide IP wide-area network. Juniper SRX routers/firewalls Cisco IOS Juniper JUNOS integration Network & Security design Complex routing including OSPF & BGP Network & Security Design for Telecom NZ Ltd, designing network elements & infrastructure for a wide range of implementations within the enterprise and Internet space. Complex network design, analysis and troubleshooting Requirements analysis Security considerations Cisco-based infrastructure Network strategy development and IDS/IPS evaluation for Air New Zealand Security Operations position at Telecom NZ Ltd. Involved in managing core network devices ( Cisco switches, routers ) and firewalls. Network fault and connectivity analysis and problem solving. Included Design and Architecture work for new project implementations. Cisco device management Checkpoint Firewall-1 and Cisco PIX/FWSM firewalls Sun Enterprise platforms and Solaris O/S Many TCP/IP network protocols Implementation of Linux based file and print server for small enterprise. Seamless migration from Microsoft Windows server network to Linux network.
KERRY THOMPSON PAGE 3 Optimation NZ Ltd Consultant Consulting out to many Optimation client companies - Linux, Unix - Networks - Security Air New Zealand : design, implementation and management of the Border Management environment ( corporate Internet gateway ), including DNS servers, Mail servers, and ECommerce environment. Management and support for all firewall systems within Air New Zealand. Checkpoint Firewall-1 Sun Solaris Cisco PIX Automated server builds, secure backup and fast recovery Security policy development and monitoring Other clients miscellaneous integration and security related work, including: Security policy development Penetration testing Problem analysis and fault finding Delphic Medical Systems Ltd (now known as Sysmex NZ Ltd) Systems Engineer Developing and Installing Medical Laboratory systems - Linux, Unix - Networks - Security Employed as a software engineer to develop C software on Unix, this position rapidly expanded to becoming a systems engineer to include Oracle, TCP/IP networking, and integration. Also included travelling to a number of New Zealand sites and other countries to install the Delphic software suite in hospital medical laboratories.
KERRY THOMPSON PAGE 4 Education and Professional Development Kerry believes in continuous and ongoing professional improvement. With modern Internet technology growth comes greater demands for security and reliability which must be met by today's technology. CISSP Certified Information Systems Security Professional CCNA Cisco Certified Network Associate CCNA+Security Cisco Certified Network Associate, Security Specialisation CISS Cisco IOS Security Specialist CCNP Cisco Certified Network Professional CADE A10 Networks Certified Application Delivery Engineer CFSS ACWA A professional certification granted to only the highest levels of expertise within Information Security granted by the ISC 2. The CISSP is not associated with any vendor, and demands continual proof of up-to-date proficiency and a strict code of ethics. Kerry Thompson has maintained an active CISSP certification since 2001. Cisco's baseline certification, which qualifies the holder for professional work on most of Cisco's routing and switching equipment. The CCNA must be refreshed every 3 years. Kerry Thompson has maintained a CCNA certification since 2002. The Cisco CCNA+Security certification builds onto the CCNA and is the entry-level track for all network security professionals. Kerry Thompson has maintained a CCNA+Security certification since 2011. Cisco's CISS certification focuses on securing all Cisco IOS based systems including switching and routing platforms. This includes not only device management controls, but also such areas as IOS-based VPNs and IOS-based network security implementations. Kerry Thompson has maintained a CISS certification since 2012. The Cisco CCNP certification is the core qualification for Cisco routing and switching systems. Kerry Thompson has maintained a CCNP certification since 2013. A10 Networks provide high-end Application Delivery platforms which provide server load balancing and performance acceleration for the most demanding cloud-based applications. Kerry Thompson has maintained a CADE certification since 2013. Cisco Firewall Security Specialist. This is Cisco's (now retired) certification for the ASA firewall, including subjects such as access control, authentication, and high-availability. Aerohive Certified Wireless Administrator. Aerohive is the industry-leading vendor for advanced wireless networks. Their products are the solution of choice for many New Zealand enterprises.
KERRY THOMPSON PAGE 5 JNCIA-Junos JNCIS-Sec Security Industry Articles Juniper Networks Associate Junos operating system. This is Juniper's entry-level certification for their widely-deployed Junos operating system. This certification includes routing, switching, management, support, and high-availabilty for the majority of Juniper's products. Juniper Networks Security Specialisation. This is a focus on Juniper's SRX series of firewalls which are rapidly gaining ground in the network security space. SRX devices are widely delployed by many New Zealand companies. Kerry has written a number of technical articles relating to IT Security which have been published in a number of industry magazines and Internet sites.
KERRY THOMPSON PAGE 6 CISSP IT Security Domains Access Control Systems and Methodology Telecommunications and Network Security Security Management Practices Application and Systems Development Security Cryptography Security Architecture and Models Computer Operations Security Business Continuity Planning and Disaster Recovery Planning Law, Investigation, and Ethics Physical Security IT Proficiency Network Technology TCP/IP, IPv4, IPv6 VLANs and enterprise switching VPNs site to site and remote access IPsec, SSL Routing protocols: OSPF, EIGRP, & BGP Cisco IOS/CatOS based switches and routers Cisco Nexus 5500 series switches, FEX Juniper JUNOS based switches and routers including EX series switches A10 Networks application delivery platforms (load balancers) F5 BigIP load balancers DNS : BIND v8 and BIND v9 systems, dynamic DNS, DNSSEC secure DNS SMTP Email systems : sendmail, qmail, postfix Telnet, FTP, HTTP, NTP, etc. Samba file and print services on Unix/Linux Security Standards and Methodologies AS/NZS 4444/BS 7799/ISO 17799 : Code of Practice for Information Security Management NIST 800 12, and many other NIST Standards Open Source Security Testing Methodology ( OSSTMM ) System Security Engineering Capability Maturity Model (SSE CMM) Firewall Systems Juniper SRX security systems Juniper Netscreen Firewalls Cisco PIX, FWSM, and ASA firewalls Cisco IOS based firewall platforms Checkpoint Firewall 1 v3, v4, NG Network Associates Gauntlet v5, v6 Security Systems Kerberos MIT v5 Tacacs, Tacacs+, RADIUS authentication systems OpenSSH, OpenSSL PGP and other cryptographic applications Security/penetration testing : nmap, Sara, Nessus Intrusion detection systems : Tiger, Tripwire Security response procedures and systems Logsurfer real time log monitoring and alerting Operating Systems Linux Fedora, RedHat, SuSE, etc. Security Enhanced Linux ( SELinux ) Solaris v2.6, 7, 8, 9 Juniper Networks Junos Cisco IOS, IOS XE, NX OS E-Commerce Systems Apache web server Squid HTTP proxy Oracle RDBMS v7, v8 CGI scripting Programming & Scripting Languages C Perl TCL/Expect Unix shell scripting
KERRY THOMPSON PAGE 7 Other Interests Kerry Thompson is a keen private pilot, and is often spotted high over the Waitemata Harbour performing aerobatics. Further Information Further information is available on Kerry Thompson's personal web site http://www.crypt.gen.nz LinkedIn profile: https://www.linkedin.com/in/kerryt