You are on page 1of 7

ROBERT J.

HOSFORD
Dale City, Virginia, Cell: 413-668-7655
rhosford@certifiednets.com

SUMMARY
CCIE NO. 14711, Top Secret/SCI with CI polygraph, BS in CIS w/Honors, CCIP (MPLS
and Security), CCDP, CCDA, Novell Master CNE (GroupWise & NT), MCSE 4 & 2000, IT
Project+, GSNA, CCNA, GCFW, CCNP, CCSP, CISA, and CISSP 81588. Worked in the Cisco
TAC. 14 years of solid networking experience on various platforms. Skilled troubleshooter on
routers and switches. Solid experience working in large scale environments with many protocols
and operating systems. Developed projects from the start and tracked them until finished.
Demonstrated ability to analyze, evaluate, and incorporate changes. Conducted Vulnerability
Assessments to assess security posture. Fully qualified IT auditor.

CERTIFICATIONS
Cisco Certified Internetworking Expert Cisco Certified Design Professional
GIAC Systems and Network Auditor Microsoft Certified Professional
Cisco Certified Design Associate Microsoft Certified Systems Engineer 2000
Cisco Certified Network Associate GIAC Certified Firewall Analyst
Cisco Certified Internet Professional CompTIA IT Project+
Cisco Certified Security Professional Cisco Certified Network Professional
Certified Information Systems Security Professional Certified Information Systems Auditor

EXPERIENCE
ARFORCYBER, United States Army Intelligence and Security Command, 1ST Information
Operations Command
Senior Scientist, 3/2007 – Present
As Senior Scientist provide expert knowledge in Networking and Security technology issues.
Analyze issues that are global in scope affecting a large, dynamic, diverse global network of
nearly 1 million users. Expert in tactical, satellite, and enterprise networking. Possesses in-
depth knowledge of networking including wireless, VoIP, IPv6 and MPLS. Member of the IPv6
working group.

Works with different groups within the Army to reach consensus to affect policy change.
Provide network and security briefings to different levels of Army leadership.
Provides security and network technical support to the Army. Provide guidance to leadership on
current and needed network and security capabilities. Effectively uses Army networking and
Industry Enterprise networking knowledge to provide recommendations to Leadership. Briefed
decision makers about IPv6 risks. Researched technologies for up and coming threats.

Perform strategic planning and operational planning that may or may not use the MDMP that
may or may not result in a formal order or tasking to perform an action. Other duties include
writing CONOPS, SOPs, TTPs, and best business practices. Fully knowledgeable in Joint and
Army Computer Network Operations and Battle doctrine. Uses following policies: FISMA,
MDMP, JOPES, Joint Pubs 3-0, 3-13, 6-0, DoDD 8500.1, DoDI 8500.2, 8530, 3020.26, CJCSM
6510, DoDI 5200.28, DoDI 5200.40, NIST 800 series, NSA guidelines, DISA STIGs, FM 3-0,
FM 3-13, FM 5-0, AR 25-1, AR 25-2, AR 380-53, FM 6-02.71, DA PAM 25–1–1, Stenbit
memo, Information Assurance Technical Framework, and PPSM.

Performs CDAPs and other related security audits. Perform security assessments by using
security tools, CORE, Nessus, nmap and Skybox. Performed penetration testing on the Asset
Discovery Tool system. Conducted security audits to perform gap analysis against policy with
current configuration. Perform technical evaluations on new products and capabilities and how
they can fit in the Army. Devise integration scenarios for a Defense in Depth Architecture.
Produced a plan on how to integrate the Pala Alto firewall with ArcSight.

Used Skybox, Redseal, and OPNET to analyze router, firewall, IPS, and proxy configurations.
Analyzes network device configurations of various network vendors. Wrote whitepapers
focusing on customer TLA stack and customer network taps. Performed gap analysis of current
and needed IA/NETOPS/CND capabilities. Provide forensics analysis of packet captures.

Analyzed customer sensor grid to provide gap analysis. Fully knowledgeable of customer
IPS/IDS systems. Created tool that analyzed Access Control Lists for weaknesses. Created a
tool to help map out Enterprise Sensor Grid using Google Earth.

Interacts with Law Enforcement, Intelligence, and Counter Intelligence, to fuse network
operations with future net warfare. Able to integrate IA and CNO into the full Information
Operations Spectrum. Provides Commander guidance on efficient network use to achieve
Information Operations effects. Understands full spectrum Information Operations and is a
Certified Computer Network Operations Planner.

Worked on FAA network upgrade by analyzing contractual and network design requirements.
Designed the network updates and provided guidance to implementation team.

Employed by Smartronix, as a contractor at 1ST IO.

CISCO Systems, Inc.


Network Engineer Contractor, 11/2006 - 1/2007
3 month contract supporting Army and Navy Projects. Baselined configs and performance in a
LAN and satellite network. Analyzed DMVPN performance with NHRP Phase 2 and Phase 3
enhancements. Analyzed possible Secure Multicast, GET usage and GDOI with DMVPN phase
3. Made software recommendations after reviewing bugs to ensure no disruption to customer.
Performed network traffic analysis to determine impact applications would have upon different
routers and switches. Used Pagent and Agilent tools to do testing. Wrote report based upon
findings and gave recommendations. Supported NMCI NOC in Norfolk, VA. Worked as part of
a team of onsite NCEs by troubleshooting problems, doing research, and analyzing data.
Reviewed BGP routing designs for redundancy. Assisted other NCEs in Army and Marine Corp
Tactical Network integration.
Contractor through Insight Global at Cisco.
General Dynamics, Needham Heights, MA
Senior Network Security Engineer, 12/2002 - 11/2006
Responsible for the design, setup, implementation, integration, and testing of Information
Assurance components.
Firewalls worked with: NetScreen Firewalls v3.0-5.2 (5XP, 5GT, 100, 208, 500, 5200) with
failover using transparent, NAT, virtual systems, and routed modes, NetScreen Manager 2005,
Cisco Pix 520 and 515E (v6.3 and 7.0), ASA 5510+, FWSM, Raptor 6.5 and SGS 7.0 Firewalls,
Checkpoint NGX w/SPLAT, and Fortigate Firewall.
Intrusion Detection Systems used: Cisco Intrusion Detection Systems (IDS) 3.0 and 4.0, ISS
RealSecure Site Protector 7.0 SP2 with security fusion module, Symantec Manhunt 3.0 and
Netprowler, Cisco Security Agent 3.0, ISS Desktop Agent.
Vulnerability Assessment software used: Harris Stat 5.2 and 6.0, Foundstone Scanner 4.1,
Retina, Internet Security Scanner (ISS) 7.0, Symantec Enterprise Security Manager (ESM 5.5),
Nessus, and Netsonar.
Configured testbeds that demonstrated designs for customers by using test equipment such as
Smartbits and packet sniffers. Conducted Vulnerability Assessments to find weakness in network
designs. Proved network and server compliance to security policies. Gave security
recommendations to increase security based upon VA results.
Quality Assurance Engineer for the TACLANE KG-175 (Type 1) to ensure HAIPE compliance
for the NSA. Worked with government customers to provide understanding of proper usage of
Type 1 encryptors according to NSA doctrine. Setup and installed STUs, STEs, Fastlanes, and
Taclanes. Worked extensively with GEM. Taught customers how to use the Taclane. Created
the architecture for the KG-175R.
Designed Cisco Secure ACS system for Army tactical systems. IA engineer for the Joint Node
Network (JNN), BLII (One NET). IA lead engineer for Fixed Regional Hub Node. Worked with
Government officials to finish installations on time. Participated in CT&E and ST&E testing
with the Government. Attended MILCOM 2003 as part of a company effort to understand the
direction of and usage of Military communications. Wrote whitepaper analyzing different SIMs
in the government market. Wrote whitepaper suggesting different design options for SIM usage
in a Tactical environment. Provided IA training to the Army. Reviewed training material for
security, routing, and switching lessons.
Other protocols and software used: Symantec Intruder Alert 3.6.1, Webshield e1000, e250, and
e500s proxies (v2.5 2.7), Syslog, SNMP, DMZ, Foundry Load Balancers, SNMPc, SolarWinds
Engineers Toolkit, TACACS+, ePolicy Orchestrator 2.5 3.0, SNMPc, Symantec Antivirus for
servers and Exchange, IOS ACL, IOS Firewall (CBAC), and CiscoWorks 2000 (VMS). Other
network components include Windows 2000, DNS, IPSEC (FIPS 140), FASTLANE,
TACLANE (KG-175), NTP, DHCP, BGP, OSPF, IIS 5.0, IP, TCP/IP, UDP/IP, ARP, HSRP,
VLANs, SNMP, NTP, ATM, NAT, PAT, Exchange 2000, AutoCAD, and Visio diagrams. Other
network devices used include Bluecoat, CS-MARS and Cisco Clean Access. Setup and installed
different catalyst switches from 6509s to 3750s. Worked with Cisco 3800, 3700, and 3600 series
routers.
SBC Datacomm, Warwick, RI
Systems Engineer II Global Accounts, 7/2000 - 11/2001
Reviewed, planned, and evaluated network systems. Analyzed network systems and
recommended improvements to network. Provided documentation/project tracking and
management reporting. Provided tactical and strategic input on overall network planning and
related projects. Assisted Sales force with pre-sales and post-sales issues. Worked with various
Fortune 500 clients. Analyzed customer needs and recommended different products, technology
and design options. Designed and built advanced network with 50 Catalyst 6509 switches.
Design included multicasting, microwave links, encryption, extremely fast failover, and
redundancy. Created presentations for customers explaining different design options. Designed
network to handle 15,000 POS machines. Helped clients with many different technologies
including SNA, Multicasting, MPLS, ATM, and x.25, IPv6, Mobile IP, QoS and IPSEC. Helped
clients connect Cisco routers and switches into existing 3COM and Nortel networks. Worked
with different types of Cisco equipment from low-end switches to the 7500 series routers.
Provided technical support for Telco personnel with CO and CPE equipment. Helped customers
with co-location requirements. Wrote project proposals and responded to RFPs. Coordinated
device configuration and shipping. Helped customers with vendor support.

CISCO Systems, Inc. , Murray, UT


Team Lead Salt Lake Cisco TAC, 1/2000 - 7/2000
Team lead for 20 technicians. Provided level-4 router support for Fortune 1000 companies.
Supported Cisco 4000, 3600, 2600, 2500, 1600, 1000 and 805 series routers. Also installed,
configured and troubleshot AS5300 and 7000 series routers. Troubleshot WAN connectivity
issues with Frame Relay, X.25, ISDN, DDS, HDLC, FDDI, Fractional and channelized T1
circuits. Troubleshot LAN connectivity issues with Token ring, Ethernet and Fast Ethernet.
Troubleshot routing issues involving RIP, IPX RIP, OSPF, EIGRP, BGP, APPLETALK and
NLSP. Configured AS5300, 2511 and 2509 for dialup clients. Configured catalyst switches for
VTP, VLANS, ISL, 802.1q and Fast Etherchannel. Troubleshot spanning tree issues with routers
and switches. Configured AS5300 and 3600 series routers for dialup and VoIP. Helped clients
configure routers for DDR, PRI ISDN and POTS dialup access. Configured PIX firewall for
secure connections. Setup VPNs with PIXs and Routers. Setup Cisco Secure (Tacacs+) for AAA.
Worked Cisco PIX and IOS ACL issues.
Worked as a contractor through Convergys at Cisco.

Sprint, Salt Lake City, UT


Technical Analyst, 3/1998 - 7/1999
Provided level-2 router support for a Fortune 500 company. This role was mainly support and
implementation. Company had over 1000 routers. Worked with team that covered 600 routers.
Configured, installed, and troubleshot Cisco 1600, 2500, and 4000 series routers. Worked as part
of a team that moved corporate data center to new building. Worked on moving circuits and
routers, and looked at impact to user community. Made sure new circuits were installed and
tested. Migrated network from flat network to access, distribution, and core layers in new
building. Brought new sites on line. Used PAM and visual networks to assist in troubleshooting
wan links. Assisted level-3 support when needed. Configured Catalyst 5000 and 8540 series
switches.
Managed a 1500 user NetWare network with numerous remote sites. Performed a security audit
and cleaned out backdoors into network. Used excellent NDS troubleshooting skills to solve
difficult NDS problems. Integrated NDS with Windows NT. Administered a large multiple
domain GroupWise 5.2 and 4.1 system. GroupWise system included GWIA, Async, and Web
Access gateways. Setup and configured users for Internet access using BorderManager 2.1 and
Cyber Patrol. Supported Fore Systems ATM ASX 1000, 3810, and Powerhub 7000 switches.
Setup Vlans and LANE for improved network performance. Managed a multi-protocol network,
including IPX/SPX and TCP/IP. Used Zenworks to manage desktops. Setup and ran Arcserve for
tape backups.

PrePaid Cellular, Salt Lake City, UT


LAN Manager, 1997 - 1997
Supervised 5 network technicians. Responsible for all computing issues in company. As LAN
Manager developed projects from the start and tracked progress until completion. Provided
feedback for pilot programs and resource utilization. Used a proactive approach to network
design and management. Worked hard to develop and mentor employees. Had authority to hire
and fire employees.

New Horizons, Salt Lake City, UT


LAN Manager, 1996 - 1997
Supervised 4 network technicians. Managed a dynamic 200-user network that changed hourly.
Migrated from Netware 3.12 network to Netware 4.1. Administered a diverse network with
Windows 95, Windows 3.11, network printers, GroupWise, Exchange, multiple 3.12 and 4.x
servers. Used a proactive approach to network design and management. Provided feedback for
pilot programs and resource utilization. Developed an awesome network support team. Created
new processes that cut computer setup time from three hours to less than one hour. This lowered
TCO, increased user satisfaction, and saved money. Setup and handled classroom resources with
weekly planning. Installed NetWare and Windows NT networks, configured workstations and
servers. Administered a network by adding new users, setting up applications software, and
network printers. Enjoyed the challenge of dealing with the constant change. Had authority to
hire and fire employees.

Packard Bell, Magna, UT


Computer Technician, 1995 - 1996
Examined, troubleshot and repaired over 4000 computers. Consistently demonstrated expertise in
microcomputer repair and upgrading. Passed the CNE, CNA and A+ certifications. Worked with
various operating systems including MS DOS, Windows 3.11, and Windows 95. Experienced in
configuring microcomputers with additional hardware peripherals and software. Excellent
customer service skills. Dealt with completely inexperienced users in technical situations.
Capable of dealing with irate customers. Completely experienced in working with telephones
and handling difficult technical situations over the phone. Developed the ability to effectively
communicate with others. Configured IP and IPX on ThinNet and UTP. Setup and troubleshot
IPX and IP networks.
US ARMY, Fairbanks, AK
Team Leader, 1990 - 1995
Directly supervised up to ten personnel providing security. Promoted a mentoring environment.
Excellent project management skills. Provided written evaluations on major projects and
provided daily progress reports. Encouraged a positive work environment that allowed for
mistakes, the ability to learn from them, and growth. Developed personal and professional
growth of subordinates. Counseled subordinates on job performance and provided written
evaluations. Took pride in building cohesive teams. Responsible for Equal Employment
Opportunity for 125 personnel. Trained company personnel in a wide variety of subjects.

EDUCATION
George Mason, Fairfax, VA
Master of Science in Telecommunications, expected graduation in spring 2012
Worcester Polytechnic Institute, Worcester, MA
Completed three Graduate level courses in Information Security, 2005
New England Institute of Technology, Warwick, RI
Bachelor Degree in Computer Information Systems Technology, 2003 GPA 3.8
Associate Degree in Computer and Network Servicing Technology, 2002 GPA 3.9
CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE
CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE
CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE
CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE
CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE
CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE CCIE

CCIE NO. 14711, Top Secret/SCI with CI polygraph, BS in CIS w/Honors, CCIP (MPLS and Security), CCDP, CCDA, Novell Master CNE (GroupWise & NT), MCSE 4 & 2000, IT Project+, GSNA, CCNA, GCFW, CCNP, CCSP, CISA, and CISSP 81588. CCIE NO. 14711, Top Secret/SCI with CI polygraph, BS in CIS w/Honors, CCIP (MPLS and Security), CCDP,
CCDA, Novell Master CNE (GroupWise & NT), MCSE 4 & 2000, IT Project+, GSNA, CCNA, GCFW, CCNP, CCSP, CISA, and CISSP 81588. CCIE NO. 14711, Top Secret/SCI with CI polygraph, BS in CIS w/Honors, CCIP (MPLS and Security), CCDP, CCDA, Novell Master CNE (GroupWise & NT), MCSE 4 & 2000, IT Project+, GSNA, CCNA, GCFW, CCNP, CCSP,
CISA, and CISSP 81588. CCIE NO. 14711, Top Secret/SCI with CI polygraph, BS in CIS w/Honors, CCIP (MPLS and Security), CCDP, CCDA, Novell Master CNE (GroupWise & NT), MCSE 4 & 2000, IT Project+, GSNA, CCNA, GCFW, CCNP, CCSP, CISA, and CISSP 81588. CCIE NO. 14711, Top Secret/SCI with CI polygraph, BS in CIS w/Honors, CCIP (MPLS
and Security), CCDP, CCDA, Novell Master CNE (GroupWise & NT), MCSE 4 & 2000, IT Project+, GSNA, CCNA, GCFW, CCNP, CCSP, CISA, and CISSP 81588

You might also like