To download my resume: CLICK HERE
Skills/Experience
(Scroll for more detail)
My core career focus has been in Systems and Cloud Engineering (2013 – Present) as a Systems Engineer and Cloud Administrator, collectively spanning over 12 years. This work has involved:
- Transition management
- I was the primary technical lead during the 2024-2025 transition from Gensler to N. Harris Computers
- Successfully migrated ~40 users/devices from on-prem Active Directory to Intune managed devices with minimal interruption
- Successfully built and secured new on-premise Active Directory environment.
- Migrated approximately 15 metal and 150 virtual machines to aforementioned Active Directory domain with no downtime
- Implemented temporary Active Directory Trust over IPSec VPN
- Migrated workstations from Microsoft Defender ATP to CrowdStrike Falcon Complete
- Migrated servers from Microsoft Defender ATP to Crowdstrike/Rapid7 via Ansible playbooks
- Reimplemented disk to disk backup solution from on-premise NetApp appliance to AWS FSx for OnTAP hosted solution
- Deployed new dedicated fiber internet and 5G-based backup circuits, along with auto-failover between links in case of outage
- Server and Virtualization Management
- Managing and maintaining approximately 200 virtual servers on VMware vSphere (versions 5.1 through 8.0)
- Modern versions of Microsoft Windows Server and Ubuntu/Rocky/Alma Linux.
- Managing vendor-built virtual appliances (ex. Dell OpenManage Enterprise, ESET Protect)
- Growing Experience in Docker/Kubernetes deployment and management
- Includes Containerization of pre-existing legacy applications
- System monitoring and logging platforms including: Zabbix, ElasticSearch/LogStash/Kabana, Splunk SIEM, LogRhythm SIEM
- Cloud Engineering and Disaster Recovery
- Managing and administering production and disaster recovery environments at public IaaS provider
- Stateful management of cloud resources utilizing Terraform & OpenTofu
- Designing and building secure cloud networks, utilizing Security Hub and Guard Duty, along with the following AWS components:
- Virtual Private Cloud (VPC), with EC2 & AWS Hosted service endpoints
- Secure remote access via VPC Transit Gateway with Transit Gateway S2S VPN
- Utilizing BGP Routing over IPSec
- Multi-tier hosting architecture (transit/dmz/private tiers)
- AWS hosted services (Elastic File System, FSx for OnTAP, Relational Database Service (Aurora MySQL/Postgresql), Backup, Elastic Disaster Recovery)
- Storage Optimization utilizing S3 intelligent tiering & EFS intelligent tiering
- Implementing comprehensive Web Application Firewall rulesets, along with regex-based exceptions
- Managing public DNS resolution via AWS Route53 & GoDaddy DNS
- Purpose-built microservices used to support workflows using AWS Lambda (Mail forwarder in NodeJS, CloudWatch Alarm consumer written in Python)
- Implementation of best-practice cloud logging standards via AWS Security Hub (AWS CIS Foundational Benchmark, AWS Foundational Best Practices)
- Ensuring data integrity and security with Elastic Block Storage (EBS) encryption utilizing Key Management Services (KMS) and logically air-gapped backups via AWS Backup
- Maintain product and system Service Level Agreements by implementing a Disaster Recovery as a Service (DRaaS) solutions (CloudEndure, AWS Elastic Disaster Recovery)
- Expertise in building and managing secure cloud networks at Amazon Web Services and Microsoft Azure
- Network & Security
- Proficiency with network infrastructure configuration and management, including:
- Cisco IOS/iOS-XE, Palo Alto Networks (PanOS), and Aruba AoS
- Experience on the following network hardware platforms:
- Cisco C2960x, C3500R+E, C9200(L), C9400R, ASR1001-X, ISR2900, ISR3900, Nexus 3K (iOS-XR), Nexus 9K (iOS-XR)
- Palo Alto PA-440, PA-850, PA-3200, PA-5200
- Aruba InstantOS/AoS 8.6, 8.10 (Access points)
- HP Procurve Managed Switches
- Ubiquiti Switches and Access Points (via web mgmt and virtual network controller)
- Proficiency with network infrastructure configuration and management, including:
- Applications & Support
- Installing and maintaining enterprise applications include, but not limited to:
- Microsoft SQL Server 2014/2016/2019/2022
- MySQL 5.5, 8.0, 8.4 LTS / MariaDB 5.5, 10.x, 11.4 LTS / PostgreSQL 13-17
- VMware vCenter Server Appliance
- Proxmox v8/v9
- Atlassian Jira, Confluence, BitBucket
- Microsoft Azure DevOps
- Gitlab Self-Hosted (Community)
- ESET Remote Administrator/Protect Server
- Installing and maintaining enterprise applications include, but not limited to:
- Programming and Scripting experience
- Proficient in PowerShell/PowerShell Core
- Proficient in Bash/Shell scripting
- Proficient in PHP Programming
- Proficient in HTML/CSS design
- Proficient in Terraform/OpenTofu IaC products
- Proficient in Ansible configuration management and automation
- Working knowledge with Python, NodeJS, Javascript/TypeScript
- Knowledge in debugging and fixing of Java, Classic ASP (VBScript), ASP.NET (VB & C#)
- Educational knowledge in C, C++, Go, Rust
Career History
(Scroll for more detail)
- University of Wisconsin – La Crosse
- Eagle Help Desk Student Worker | July 2011 – August 2013
- M. Arthur Gensler & Associates, Inc. | August 2013 – Sept. 2024
- Roles below in chronological order
- IT Support Specialist
- Systems Administrator/Application Support
- Senior Systems Administrators (Additional Responsibilities below)
- NorthCentral Region Senior IT Support Specialist
- NorthCentral Regional Network Administrator
- Firmwide Junior Network Administrator
- AWS/Azure Cloud Administrator
- Roles below in chronological order
- Apex42, a division of N. Harris Computer Corporation | August 2013 – July 2025
- Gensler La Crosse office acquired by Harris in 2024-09
- Roles below in chronological order
- IT Support Specialist
- Systems Administrator/Application Support
- Administrator of all the following:
- Virtualization (VMware/Proxmox)
- Storage (Windows FS/Netapp/AWS FSx OnTAP)
- Network (Palo Alto/Cisco iOS & iOS-XE/Aruba/Ubiquiti)
- Server Operating Systems
- Windows Server 2019/2022/2025
- Ubuntu 20/22/24
- Debian 12/13
- (Alma|Rocky)Linux 8/9/10
- Cloud Engineer/Administrator
- Amazon Web Services
- Microsoft Azure
- Lumen Edge Cloud (formerly Centurylink Cloud)
Education
- Hastings High School
- Hastings, MN | 2004-2006
- Isle High School
- Isle, MN | 2006-2008
- Central Lakes College – Brainerd Campus
- Brainerd, MN | 2008-2011
- Associates in Arts
- Associates in Applied Sciences – Network Administration
- University of Wisconsin – La Crosse | La Crosse, WI | 2011-2013
- Coursework in Computer Science and Health Information Management Systems