NAVID BARADARAN, (PMP, CISSP, CCDP, CCNP, VCP) CYBERSECURITY, IT INFRASTRUCTURE & GRC PROFESSIONAL navid@baradaran.net | navidb@uw.edu | +98.912.349.1161 | PO Box# 16765-1691, Tehran, Iran Highlights: • 16 years continuous Information Systems career experience in different capacities, from bottom of technology to senior management. • Experienced in Project management and Operation management in Cyber Security, Data Center, Infrastructure, Governance • Coupling Management & Technical expertise to drive business value and opportunities for continuous improvement & IT alignment • Proactive, dedicated, visionary, dynamic, self-motivated, creative, result-oriented, team-player, leadership in multiple roles. • Carefully planned & invested on development of my skills with technical and management dual career path approach, for years. SUMMARY OF PROFESSIONAL EXPERIENCES, ACCOMPLISHMENTS AND OUTCOMES ================================================================= __ARYA SASOL POLYMER (joint venture between Sasol & NPC), Assaluyeh, Iran (aryasasol.com) 11/2016 to Present __Department Manager – IT Infrastructure (full-time) Led team of 12 experienced and senior IT professionals focused on resilient operation management, project management, development, automation, innovation and knowledge management according to business demands such as (but not limited to): ** Build Disaster Recovery facilities for HOT/Warm/Cold Recovery & Offsite Backup facility to meet security objectives. ** Design and building NOC / SOC / CERT and security response coordination to incidents and security incidents ** Review / Reengineer and Modernize Data Center Edge Firewall / Campus Network Block design. ** Implement industry standards for secure messaging platform such as DKIM / DMARC according to NIST 800-177. ** Deployment of Cisco ISE / FTD / StealthWatch beside SEP Endpoints for a Defensing in Depth layered security design. ** Technical configuration management and Service architecture analysis for Business Continuity planning. ** Modernize the IT service portfolio by Telecom / Video Conference / WEBEX / Telepresence / Jabber platforms. ** Backbone developments including 10G upgrade in Campus Lan and 40G in DC Blocks utilizing vPC and LACP. ** Deploy technical documentation process for knowledge management using Trello / Telegram / Manage-Engine Tools. ** Deployment of BGP and obtaining P/I Autonomous System Number (ASN) for Multi-Home BGP deployment. ** Vast cybersecurity improvements by managing privileged accesses / vendors / staff to IT systems. ** Deployment of SIEM / Log Correlations to automate and integrate security content and evidences. ** Major upgrades of EMC VNX / VMware ESX 4.1 to 6.5U1 in 4 geolocations with least service downtime. ** Managing deployment of VM Replication / Tape Library / Backup & DR Policy & Procedure & Operational Controls. ** Modernize Internet distribution system for multiple customer locations for around 2000 employees and contractors. ** Managing deployment of different Condition Monitoring Systems for Data Center / UPS / Chillers / VMs / Services. __Arya Sasol Polymer (joint venture between Sasol & NPC), Assaluyeh, Iran. (aryasasol.com) 7/2012 to 11/2016 __Department Manager - Information Governance, Risk & Compliance – GRC Manager (full-time) Led team of 7 experienced IT professionals to initiate and manage corporate information systems in the context of IT strategic planning, program and project's management, risks management, contingency plans, compliance and reporting activities. Below, there are a list of my implemented processes/projects/systems (but not limited to): ** Founder of IT GRC. Joint-Venture Board briefing for IT GRC in the company and obtaining establishment approval (2011) ** Initiate implementation of IT Governance Frameworks (COBIT5) ensuring IT & business alignment. ** Initiate implementation of Information Security Management system according ISO 27001:2013. ** Implementation of Project Management processes (IT PMO), procedure and discipline for financial transparency. ** Implementation of Change, Configuration and Release Management processes, procedures including CMDB. ** Multimillion dollar annual CAPEX / OPEX budget planning and control for Benefit realization and Resource optimization. ** Developing or revising policies, controls, processes, procedures and workflows as per organization needs. __Sematec Institute, Tehran, Iran. (sematec-co.com.com) 10/2011 to 12/2011 __Official Data Center Course Instructor (part-time) ** Content generation, development, presentation, delivery and assessment of multiple Data Center Infrastructure design coursework according to ANSI/TIA 942:2005 International standard. __Arya Sasol Polymer (joint venture between Sasol & NPC), Assaluyeh / Bushehr, Iran, 2/2009 to 7/2012 __Server Systems Specialist / Infrastructure Specialist (full-time) Technical design, execution and delivery of a multimillion-dollar data center facility in alignment with the enterprise requirements of an international oil / gas leader; serve as information and communications technology (ICT) subject-matter expert (SME). ** Design, Manage Construction and Commissioning of Multi-Million Dollar 3rd Tier Data Center Project: - Provided expertise in server system design and implementation sized 1100 CPU/4TB Memory/FC Backplane/Tape. - Championed and led the server and storage virtualization effort, implementing VMware and consolidating servers at an 8:1 ratio; managed to launched the final product with zero unplanned downtime. - Implemented a centralized storage solution featuring HP StorageWorks, EMC VNX SAN, QNAP iSCSI NAS. - Developed an automated alerting system to enhance service level management. Managed critical P2V migrations such as migrating IFS ERP system to the virtualized platform for the first time. ** Execute Data Center Operation and Maintenance: Lead and manage data center services including: - Preventive Maintenance plans and Annual overhaul plans with considering minimum service interruption. - KPI based service and performance management, implementing a feedback-based management discipline. - Managed the budget, CAPEX and OPEX for data center operations including critical spare supply. ** Recipient of 2010 HSE Employee of the Year Award. SACMI IRAN, Tehran, Iran. (sacmi.ir) 7/2006 to Present Country Office IT Supervisor (part-time) ** Designed and implemented corporate server room with disaster recovery site located in another city. ** Collaborating with distributed teams to define enterprise requirements, including branch SAP ERP secure application access, and manage project scope, schedule, budget, quality, and deliverables. ** Developed best-practice security, backup, DR, change management, maintenance, and deployment procedures. Apadana Ceram, Tehran/Qazvin, Iran. (apadanaceram.com) 5/2005 to 2/2012 Infrastructure Specialist / Technical Consultant (full-time) ** Key contributor to the highlight projects such as Data Center, Wireless WAN and SAP (R/3) ERP Landscape. ** Spearheaded multiple enterprise implementation projects within one of the world’s top 10 providers of ceramic and tile products. ** Leading multimillion-dollar efforts with countrywide scopes within a PMI-modeled project management framework. Collaborated with and supervised cross-functional, multinational project teams and stakeholders. ** Introduced risk and change management strategies. Iran University of Science & Technology, Tehran, Iran. (iust.ac.ir) 6/2002 to 2/2006 Network Technician / Support Team Lead (full-time) ** Led team of four in provision of IT infrastructure / network support for the largest computing center within a campus of 15K students; supported workstation and server hardware and administered wireless network, Internet, and VPN connectivity. Education & Credentials ======================= Master of Science, IT Engineering, Networks, 2017 | SHARIF UNIVERSITY OF TECHNOLOGY - Top Student Distinction (SID:92252037) Certificate in Information Security and Risk Management, 2016 | UNIVERSITY OF WASHINGTON (SID:1412146) Certificate in Academic Information Seeking, 2016 | UNIVERSITY OF COPENHAGEN (Coursera Verified Certificate) Bachelor of Science, Software Technology Engineering, 2013 | ISLAMIC AZAD UNIVERSITY (SID: 901007032) CERTIFICATIONS =============== ** MANAGEMENT FIELD (ORDERED BY SIGNIFICANCE) . 1. (ISC)2 Certified Information Systems Security Professional (CISSP) – CISSP No. 648836 (2018) [Mr. Rouzbeh Norouzi] 2. Project Risk Management Professional Training Course (PMI-RMP) (2017) [Rastak – Mr. Ali Vahedi & Mr. Rouzbeh Kotobzadeh] 3. Renew Project Management Professional (PMP) – PMP No. 1391349 (2017) [Self-Study] 4. Renew Project Management Professional (PMP) – PMP No. 1391349 (2014) [Self-Study] 5. ISO 22301:2012 BCMS Business Continuity Management Lead Audit by TUV-NORD (2014) [Mr. Tiger Teng] 6. ISO/IEC 20000-1:2011 IT Service Management System by ISC (ITSMS) – Internal Audit (2014) [Mr. Iman Baradari] 7. ISO/IEC 27001:2013 ISMS Lead Audit by TUV-NORD (2014) [Mr. Eiman Khorasani Rad] 8. Enterprise Architecture - TOGAF 9.1 Training (2014) NIS-CERT Group. [Mr. Andre Van Vuuren] 9. ISO/ANSI 21500:2011 Guidance on Project Management (2013) [PMI-REP SeasonTD] 10. Projects in Controlled Environments (PRINCE2:2009) Foundation Certificate (2012) – APMG [Mr. Iman Baradari] 11. Professional Scrum Master (PSM) Scrum Master 1 Certificate (2011) Scrum.ORG [Mr. Faisal Mahmood] 12. Project Management Professional (PMP) – PMP No. 1391349 (2011) [Mr. Hossein Osouli] 13. ISO 50001 Energy Management System Internal Auditor (2011) 14. Control Objectives for Information and Related Technology (COBIT 4.1) ISACA Certified (2011) [Mr. Alireza Noura] 15. Information Technology Infrastructure Library - ITIL V3 (2010) EXIN Foundation. [Mr. Keith Dawes] 16. ISO 9000 Quality Management System Internal Auditor (2009) 17. Integrated Management System (IMS) (ISO 9001-14001 & OHSAS 18000) Internal Auditor (2009) 18. Information Technology Infrastructure Library - ITIL V2 (2009) EXIN Foundation [Mr. Hassan Gardesh] 19. ISO/IEC 27001:2005 ISMS Lead Audit by British Standards Institute (2008) [Mr. Lee Allison] 20. ISO/IEC 27001:2005 ISMS Internal (2007) [Dr. Ali Abbasnejad – Ms. Behnaz Aria] ** TECHNICAL FIELD (ORDERED BY SIGNIFICANCE) . 21. Cisco Certified Design Professional (CCDP) CSCO No.12021540 (2018) [Self-Study] 22. Cisco Certified Design Associate (CCDA) CSCO No.12021540 (2018) [Self-Study] 23. Renew Cisco Certified Network Professional (CCNP) CSCO No.12021540 (2018) [Self-Study] 24. Renew Cisco Certified Network Associate Security (CCNA SECURITY) CSCO No.12021540 (2018) [Self-Study] 25. Renew Cisco Certified Network Associate (CCNA) CSCO No.12021540 (2018) [Self-Study] 26. MikroTik Certified Authorized Trainer (TR) ID: TR0427 (2016) [Mr. Kaspars] 27. CNSS 4013 Recognition by UW – Center of Information Assurance and Cyber Security (2016) [Dr. Barbara Endicott Popovsky] 28. MikroTik Certified Wireless Engineer (MTCWE) ID: 1604WE114 (2016) [Mr. Vahid Shahbazian] 29. Renew MikroTik Certified Network Associate (MTCNA) ID: 1512NA826 (2015) [Mr. Vahid Shahbazian] 30. Renew VMware Certified Professional (VCP5) – VCP ID: VCP141025 (2015). [Self-Study] 31. Designing Cisco Network Service Architecture (642-874) CSCO No.12021540 (2015) [Self-Study] 32. CNSS 4011 Recognition - INFOSEC Professional by Cisco Systems (2014) [Self-Study] 33. Cisco Certified Network Associate SECURITY (IINS 640-554) CSCO No.12021540 (2014) [Self-Study] 34. EMC VNX Unified Storage Deployment and Management (2013) [Ms. Teresa Ang] 35. VMware Certified Professional (VCP5) – VCP ID: VCP141025 (2012) [Mr. Ali Hamedi] 36. Cisco Certified Network Professional (CCNP) CSCO No.12021540 (2012) [Self-Study] 37. Troubleshoot and Maintain Cisco IP Networks (TSHOOT 642-832) CSCO No.12021540 (2012) [Self-Study] 38. Implementing Cisco Switched IP Networks (SWITCH 642-813) CSCO No.12021540 (2012) [Self-Study] 39. Implementing Cisco IP Routing (ROUTE 642-902) CSCO No.12021540 (2012) [Self-Study] 40. MikroTik Certified Inter-networking Engineer (MTCINE) ID: 1209INE001 (2012) [Mr. Behrouz Soleimani] 41. MikroTik Certified Routing Engineer (MTCRE) ID: 1208RE001 (2012) [Mr. Behrouz Soleimani] 42. ORACLE Primavera Risk Analysis – PertMaster Training (2011) Aryana PM Institute [Mr. Radmehr] 43. Cisco Certified Network Associate (CCNA 640-802) CSCO No.12021540 (2011) [Self-Study] 44. MikroTik Certified Network Associate (MTCNA) ID: 1105NA064 (2010) [Mr. Arash Naderpour] 45. Microsoft Certified Professional (MCP2) – MCP ID: 6675130 (2009) [Self-Study] 46. Citrix XenApp Application Virtualization Training – CyberTech Institute (2009) [Dr. Kazemi] 47. Microsoft SharePoint 2007 Training – Kahkeshan Institute (2007) 48. Certified Wireless Network Administrator (CWNA) Training - Kahkeshan Institute (2007) [Mr. M.R. Pourmirza] 49. Microsoft ISA Server 2004 Training – Rayvarz Consulting (2006) 50. Cisco CCNA Training – Sharif AICTC – Sharif University of Technology (2003) [Mr. Hossein Lotfi] Affiliations: ------------ International Information Systems Security Certification Consortium (ISC2) Certified Member – Member ID: 648836 (since 2018) | Information Systems Audit & Control Association (ISACA) SILVER Member – ID: 654102 (since 2010) | Project Management Institute (PMI) - Member ID: 1373531 (since 2008) | National Computer Society Association (NASR) – Member ID: 21030845 (since 2014) | IEEE – Member ID: 93875014 | Gartner Group | itSMF IT Service Management Forum | SANS Securing The Humans Magazine | IBM X-Force Magazine | US-CERT | ICS-CERT | AlienVault Treat Intelligence Report | PADI Certified SCUBA Diver | Certified Life Guard from Swimming Federation of Iran Personal: -------- DOB:10 Sept. 1984 | Nationality: Iranian | Languages: Persian/Farsi(native), English(IELTS 6.0), German(A1.1) | Status: Married File version: 11.2 - 06 Nov 2017 Please refer to http://cv.baradaran.net for the recent version LinkedIn Profile: http://ir.linkedin.com/in/navidbaradaran