Gene Gotimer

Gene Gotimer Email and Phone Number

DevSecOps engineer that loves to play with tools, learn new things, and build software. @ Praeses
Gene Gotimer's Location
Leesburg, Virginia, United States, United States
Gene Gotimer's Contact Details
About Gene Gotimer

I am a DevSecOps Engineer who loves playing with new tools, focusing on agile processes, securing development practices, and automating everything. I feel that repeatability, quality, and security are strongly intertwined; each depends on the other two, making agile and DevSecOps crucial to software development.I consider myself a developer but usually focus on DevSecOps practices such as continuous integration, repeatable builds, unit testing, automated testing, security tools, and automated deployments. I spend a lot of time with federal government clients and large organizations, helping them build security and automated infrastructure into their build processes, incrementally improving and moving them towards DevSecOps.

Gene Gotimer's Current Company Details
Praeses

Praeses

View
DevSecOps engineer that loves to play with tools, learn new things, and build software.
Gene Gotimer Work Experience Details
  • Praeses
    Devops Engineer
    Praeses Apr 2023 - Present
    Shreveport, La, Us
  • Pluralsight
    Instructor
    Pluralsight Mar 2023 - Present
    Draper, Ut, Us
    Building and delivering interactive courses. The first ones are Terraform Fundamentals and Introduction to DevSecOps.
  • Steampunk, Inc.
    Devsecops Senior Engineer
    Steampunk, Inc. Sep 2020 - Mar 2023
    Mclean, Virginia, Us
    Supporting DHS ICE Security Special Projects in the Information Assurance Division (IAD). Supported the development and adoption of the Secure Hardened Image, a STIG-compliant AWS machine image (AMI) with the latest system updates, including the security and enterprise software agents required at ICE. The prior gold image was built monthly by hand. The Secure Hardened Image is rebuilt at least daily using Terraform and Ansible and security scanned with OpenSCAP and Tenable Nessus. Deploy time for development teams was reduced from 20 to 6 minutes and the baseline vulnerability count reduced from 180 findings to under 20.Produced reference CI/CD pipelines with security and compliance tools and automated infrastructure deployments. Developed and documented container and Kubernetes security strategy for development teams and the ICE Containerization Working Group. Produced example pipelines demonstrating Anchore Grype and Aqua Security Trivy for container vulnerability scanning, Checkov by Bridgecrew for infrastructure-as-code (IaC) best practices, and Anchore Syft to produce a software bill-of-materials (SBOM).Evaluated and demonstrated SAST and DAST tools for development teams to replace Micro Focus Fortify SCA and WebInspect, evaluated several leading options to IAD leadership, and piloted and selected Contrast Security Assess which is being procured. OWASP Zed Attack Proxy (ZAP), Veracode, Synopsys, Checkmarx, and White Hat products were also considered. Implementing Harbor as an enterprise-wide container registry with security scanning, OWASP Dependency-Track to manage SBOMs for container images and other systems, and OWASP DefectDojo to manage vulnerability findings across scanning tools for the development teams.AWS GovCloud, Ansible, Terraform, Jenkins, CloudBees, Checkov, Cloud Custodian, Fortify, Docker, Kubernetes, Trivy, Grype, Syft, Maven, Java, Go.
  • Coveros
    Principal Consultant
    Coveros Jan 2009 - Sep 2020
    Fairfax, Va, Us
    Secret and Public Trust clearances.Led thought leadership. Program chair for Agile + DevOps conference. Frequent conference and meetup speaker.Instructor for security, agile, mobile testing, and DevOps courses. Developed the Foundations of DevOps course material.Jun 2018 – Sep 2020DevOps Engineer SME for DHS TSA Cloud Project.Built CD pipeline in the Microsoft Azure cloud, using Chef to install and maintain Sonatype Nexus Repository Manager and IQ Server (Firewall, Lifecycle, Auditor), Jenkins, SonarQube, and Windows workstations.Migration from on-premises pipeline, automated deployments, delivery pipeline architecture, automation infrastructure, security, and CI/CD processes. Azure Government, Linux, Windows, Jenkins, Chef Workstation, Chef InSpec, Sonatype Nexus Repository Manager, Lifecycle, Auditor, and Firewall.Jan 2018 – Dec 2018Enterprise Architect/DevOps SME for DHS TSA Agile Services, leading the Automation, Modernization, and Transformation (AMT) Team.Built CD pipeline in the DC1 data center, using Chef to install and maintain Sonatype Nexus Repository Manager, Jenkins, and SonarQube.Linux, Windows, Jenkins, Chef Workstation, Chef InSpec, Sonatype Nexus Repository Manager.Aug 2014 – Dec 2017Framework Architect for Affordable Care Act, Federally Facilitated Marketplace, on the Enterprise Architecture Team.Architecture and development for FFM. Standardized and modernized Maven build process. Led code review process. Encryption, security, unit testing, and quality improvements. Java, Spring Framework, Spring Batch, Akka, Jasypt, Maven, JUnit, PowerMock, EasyMock, Mockito, Vagrant. Sep 2009 – Mar 2014Senior Software Architect for Forge.mil, a DoD open-source ALM solution.Developed and documented agile and CI/CD practices as an exemplar project within the DoD. COTS, open-source, custom software integration, automated security scanning.Puppet, VMWare, CollabNet TeamForge, Drupal, PHP, Python, Java, OWASP ZAP, Selenium, PKI.
  • Command Information
    Principal - Systems Architect
    Command Information Feb 2006 - Jan 2009
    Architect for Protect My Child Registry, an opt-in web-based registry designed to support COPPA and other age-related restrictions for children on the web and via mobile phones/SMS. Built on Apache Tomcat and MySQL, using Java, Spring, ActiveMQ, FreeMarker, and SiteMesh. Responsible for architecture, development, security, deployment, and continuous integration.Lead developer for InfoCard reference implementation, an identity management system similar to OpenID and other single sign-on solutions. Developer for AOL Shortcuts electronic coupon service. Development for front-end and back-end applications, built on Apache Tomcat and MySQL, using Java, Struts, iBATIS, and ActiveMQ.Developer on Fannie Mae agile development team, for C&D Cash, Forwards, and Negotiated Transactions applications. Applications were built using BEA WebLogic 8/9, Oracle, and ILOG JRules rules engine, using Java, Struts, Spring, Hibernate, JasperReports, and AJAX.
  • Cybertrust
    Lead Software Engineer
    Cybertrust Jun 2005 - Feb 2006
    Us
    Team lead for the Supplier Assessment Tool, a questionnaire and reporting tool for tracking compliance with IT policies, Sarbanes-Oxley, etc. Built on JBoss and MSSQL Server 2000 using EJB, Struts, Tiles, JasperReports, and XDoclet. Responsible for requirements, project management, development planning.Formalized and documented department development process.
  • Conquest Systems
    Senior Software Engineer
    Conquest Systems Aug 2004 - Jun 2005
    Interim Secret clearance. Architect and team lead for development of the Management Operating System, a web-based time-tracking/efficiency-tracking tool for NAVSEA. Built on JSP/Tiles, Struts, and Hibernate, running on Oracle Application Server 10g and Oracle 9i database backend. Responsible for design, development, security, and development process integration with CMM. Ported to Apache Tomcat and MySQL for NAVAIR.
  • Neustar
    Senior Software Engineer
    Neustar Jan 2003 - Aug 2004
    Reston, Virginia, Us
    Team lead for support and development of ACX/OSS Clearinghouse, an LSR/PO gateway for companies placing electronic orders with the incumbent local exchange carriers (ILECs). Built on BEA WebLogic Server and Oracle, Web-based and SOAP/Web services interfaces, using Java, XSL, and JMS. Responsible for operations, development, security, support, reporting, and billing. Implemented an outgoing fax server solution for CARE Clearinghouse.Connectivity support and integration with partners, using IA, NDM/Connect:Direct, FTP, and CORBA interfaces.
  • Biztelone
    Senior Software Engineer
    Biztelone May 2002 - Jan 2003
    Team lead for support and development of ACX/OSS Clearinghouse, an LSR/PO gateway for companies placing electronic orders with the incumbent local exchange carriers (ILECs). Built on BEA WebLogic Server and Oracle, Web-based and SOAP/Web services interfaces, using Java, XSL, and JMS. Responsible for operations, development, security, support, reporting, and billing. Design and development of Java Interactive Agent (IA) server and clients, an SSL-based transport for EDI. Connectivity support and integration with partners, using IA, NDM/Connect:Direct, FTP, and CORBA interfaces.
  • Verisign
    Manager, Systems Engineering
    Verisign May 2001 - Mar 2002
    Reston, Virginia (Va), Us
    Supported the CyberCash acquisition and merchant migration from CashRegister to VeriSign platform. Intranet web site design, content management, and support.
  • Cybercash
    Manager, Systems Engineering
    Cybercash Feb 1996 - May 2001
    Mahe, Sc
    Managed the team responsible for CyberCash payment systems: credit card, micropayments, and electronic bill payments. Handled systems design, project management, product requirements, development support, maintenance, testing, and coding for international and domestic services, including merchant registration, payment processing, billing, and merchant SDKs. C, C++, Java, and Perl development and API design.Lead developer for Integrated Merchant Registration system, FraudPatrol service, HTML wallet for InstaBuy service, Microsoft Wallet Adapter, CyberCoin merchant software, Digital Newsstand micropayments storefront, and CashRegister merchant credit card processing software.Involved in development, design, requirements, security, cryptography, usability/human factors, storefront integration, user documentation, build and release processes and procedures.
  • Naval Surface Warfare Center, Carderock Division
    Naval Architect
    Naval Surface Warfare Center, Carderock Division Jan 1990 - Jan 1996
    Washington, Dc, Us
    Secret clearance. Web design, server administration, CGI programming, database interfaces, web and Internet policy.Computational fluid dynamics, 3-D numeric grid generation, 3-D modeling, computer-aided design, data visualization, data analysis, and software development. Long-term computational support for the Large Cavitation Channel in Memphis, Tennessee, including laser Doppler velocimetry.Systems administration, maintenance, and support for Macintosh, Linux, SGI Irix, Windows, and DOS-based systems. Networking, file servers, software auditing and metering, automated backups.

Gene Gotimer Skills

Agile Methodologies Ant Software Development Junit Tomcat Subversion Integration Java Java Enterprise Edition Continuous Integration Unix Scrum Struts Spring Hibernate Test Driven Development Software Engineering Linux Perl Maven Cloud Computing Jms Oracle Mysql Jboss Application Server Weblogic Security Automated Software Testing Continuous Delivery Architectures Servlets Requirements Analysis Git Php Hudson Postgresql Eclipse Jdbc Javascript Web Applications Python Ibatis Testng Selenium Drupal Ajax Jquery Rest Open Source J2ee

Gene Gotimer Education Details

  • Webb Institute
    Webb Institute
    Naval Architecture And Marine Engineering
  • Singapore American School
    Singapore American School

Frequently Asked Questions about Gene Gotimer

What company does Gene Gotimer work for?

Gene Gotimer works for Praeses

What is Gene Gotimer's role at the current company?

Gene Gotimer's current role is DevSecOps engineer that loves to play with tools, learn new things, and build software..

What is Gene Gotimer's email address?

Gene Gotimer's email address is ge****@****unk.com

What is Gene Gotimer's direct phone number?

Gene Gotimer's direct phone number is +170396*****

What schools did Gene Gotimer attend?

Gene Gotimer attended Webb Institute, Singapore American School.

What are some of Gene Gotimer's interests?

Gene Gotimer has interest in Children.

What skills is Gene Gotimer known for?

Gene Gotimer has skills like Agile Methodologies, Ant, Software Development, Junit, Tomcat, Subversion, Integration, Java, Java Enterprise Edition, Continuous Integration, Unix, Scrum.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.