David LaPorte, CISSP
david@davidlaporte.org
http://www.davidlaporte.org
PGP Key ID: 0x4DC3E508
INDUSTRY EXPERIENCE
|
HARVARD UNIVERSITY – NETWORK AND SERVER SYSTEMS |
Cambridge, MA |
|
|
Network Services Architect |
July 2009 to Present |
|
á Deployed and managed QRadar SIEM monitoring over 5Gbps of traffic and ~1500 events/second
á Implemented highly-available and modular authentication architecture for 802.1x, NAC, and VPN interfacing with University identity management system
á Consolidated NOC resources using virtualization, automation, and configuration management technologies
|
HARVARD UNIVERSITY – NETWORK AND SERVER SYSTEMS |
Cambridge, MA |
|
|
Security Manager |
February 2005 to July 2009 |
|
á Facilitated creation of NOC Customer Portal – a unified, role-based interface to NOC services, statistics, and data
á Deployed network access control (NAC) across student networks
á Coordinated incident response and forensics within NSS
á Co-chair of ABCD Security Working Group
á Recipient of three ÒHarvard HeroÓ awards (2003 to Present)
á Architected PCI DSS compliant infrastructures to facilitate e-commerce and point-of-sale transactions
á Integrated two-factor authentication into existing business processes
|
HARVARD UNIVERSITY – NETWORK OPERATIONS CENTER |
Cambridge, MA |
|
|
Senior Network Security Engineer |
November 2000 to February 2005 |
|
á Provided security audits and vulnerability scans to University community
á Evaluated and deployed 802.11 wireless networking
á Implemented change management system for all network device configurations
á High-bandwidth, asymmetric anomaly and signature-based network IDS deployment
á Implemented and administered Harvard IPv6 demonstration network
á Technical contact on University VoIP pilot program
|
TAOS |
Cambridge, MA |
|
|
Systems Administrator |
August 2000 to November 2000 |
|
á Audited and secured UNIX systems.
á Defined and implemented initial system build procedures
á Mentored junior consultants and created training materials to enhance knowledge transfer
|
HARVARD UNIVERSITY – NETWORK OPERATIONS CENTER |
Cambridge, MA |
|
|
Systems Engineer |
November 1997 to August 2000 |
|
á Created security policies and procedures for Network Operations Center
á Wrote and maintained software to administer e-mail aliases for all Harvard employees
á Designed, implemented, and maintained university-wide IDS infrastructure
á Deployed VPN solution to Harvard community
á Built RedHat kickstart and Sun Jumpstart build environments
á Developed DNS zone management system for Harvard namespace
TEACHING EXPERIENCE
|
NORTHEASTERN UNIVERSITY |
Boston, MA |
|
Lecturer |
|
|
IA-5130: Computer Systems Security (in-class and on-line) |
September 2009 to Present |
|
HARVARD UNIVERSITY – EXTENSION SCHOOL |
Cambridge, MA |
|
Teaching Fellow |
|
|
CSCI E-170: Security, Privacy, and Usability |
September 2006 to Present |
|
CSCI E-132: Advanced Topics in Data Networking |
January 2003 to Present |
|
CSCI E-135: Computer Networks and Network Programming |
September 2002 to January 2003 |
|
CSCI E-131b: Communication Protocols and Internet Architectures |
June 2002 to January 2003 |
EDUCATION
|
NORTHEASTERN UNIVERSITY |
Boston, MA |
|
College of Computer Science |
September 2006 to May 2009 |
Masters in Information Assurance
|
NORTHEASTERN UNIVERSITY |
Boston, MA |
|
College of Computer Science |
September 1995 to June 2000 |
Bachelor of Science in Computer Science, 2000
TECHNOLOGIES
|
Languages: |
Perl, UNIX shell scripting, HTML, PHP, SQL |
|
Operating Systems: |
RHEL/CentOS, OS X, IOS, Windows Server 2003/2008, Solaris |
|
Software: |
Apache, MySQL, Postfix, Cisco Network Registrar, ISC DHCP/BIND, Infoblox DNS/DHCP, MRTG/RRD, RANCID, VMware ESX/vSphere, KVM, Puppet |
|
Security Devices/Software: |
Snort, Q1Labs QRadar, Splunk, Cisco WCS/WLC, Cisco ASA/FWSM/PIX, OpenLDAP, RADIUS/TACACS+ (Cisco ACS, Radiator), Arbor Peakflow, Nessus, RSA Authentication |
|
Networking: |
OSPF, BGP4, IPv6 deployment, high-performance network monitoring, wired/wireless |
PROJECTS
|
PacketFence |
Open-source network access control (NAC) solution |
|
Co-creator and lead architect |
|
|
|
Acquired by Inverse Inc., May 2008 |
CERTIFICATIONS
Certified Information Systems Security Professional
Red Hat Certified Engineer
PROFESSIONAL AFFILIATIONS
|
ISSA |
(Information Systems Security Association) |
|
InfraGard |
|