Paul Lathrop

You Want...


A Systems Administrator specializing in construction of stable, scalable operations architectures that run like a well-oiled machine and grow as fast as your company. Take advantage of eight years of experience combined with independence, initiative, and creativity to obtain innovative solutions to systems problems and infrastructure needs.

I Have...


  • Intermediate to expert-level understanding of Unix/Linux administration and internals.
  • Intermediate to expert-level understanding of scalable infrastructure design principles:
    version control, automated installation, centralized directory services, configuration
    management, etc.
  • Intermediate understanding of source-code management principles and systems:
    Git, Subversion, CVS, etc.
  • Intermediate programming/scripting skills; developed non-trivial applications and utility
    scripts in Python, Ruby, bash shell, and Common Lisp.
  • Basic to intermediate understanding of software development methodologies: test-driven development, agile programming, object-oriented programming, functional programming, etc.
  • Comprehensive high-level understanding of programming concepts and talent for applying
    those concepts to rapidly develop proficiency in unfamiliar programming languages.
  • Operational understanding of network protocols: TCP/IP, UDP, ICMP, HTTP, SMTP, LDAP, etc.
  • Basic to intermediate network troubleshooting/monitoring skills: traceroute, tcpdump, nmap, wireshark, netcat, netstat, ping, iproute, dig, Nagios, etc.
  • Basic understanding of domain-specific languages: SQL, HTML/XHTML, XML, etc.
  • Operational understanding of relational database systems; intermediate understanding of
    database scaling techniques: replication, optimization, de-normalization, sharding, etc.
  • Installed and maintained infrastructure software: FAI, Puppet, OpenLDAP, Postfix, Bind,
    Apache, memcached, gearman, etc.
  • Configured and automated deployment of Xen virtualized servers.
  • Authored and implemented policies and procedures that balance security, ease of use,
    ease of administration, and executive oversight.
  • Designed and maintained complex custom packet filter rulesets.
  • Administered pf, iptables/netfilter, and ipfilter firewalls.
  • Built and administered simple to moderately complex networks: routers, packet filters,
    load balancers, NAS devices, managed/unmanaged switches, etc.
  • Procurement experience: selecting & documenting standard hardware configurations,
    creating & maintaining vendor relationships, managing purchasing budgets, etc.
  • Small-team supervisory experience: delegating responsibility, coordinating work efforts,
    consolidating information, tracking productivity, etc.
  • Contributed to the maintenance and improvement of open-source tools.

I've Been...


Senior Systems Engineer

Digg, Inc. (2008-current)

  • Developing Python application to enable command-line management of user/group information stored in an LDAP directory.
  • Redesigning Digg infrastucture to take advantage of automation & configuration management.
  • Developed Puppet module to automate deployment & configuration of centralized OpenLDAP authentication server.
  • Developed FAI scripts which bootstrap systems from 'bare metal' to functioning Puppet clients.
  • Created formal specifications of several system 'classes' in use in Digg infrastructure. Translated those specifications into Puppet recipes to automate deployment and configuration of new nodes of that 'class'.
  • Responsible for ensuring reliable operation of production, staging, and development systems.
  • Perform code pushes and maintain change documentation.

Contract Infrastructure Architect

Zicasso, LLC. (2007-current)

  • Built an infrastucture which has run smoothly for over six months with minimal intervention.
  • Automated system configuration using Puppet.
  • Firewall design, implementation, and maintenance.
  • Create, deploy, and manage Xen virtualized servers.
  • Patch managment and server maintenance.
  • Proposed and implemented automated backup system.
  • Deploy & maintain split-horizon DNS services.
  • Replace Zenoss monitoring system with Nagios.
  • Implement SNMP infrastructure.
  • Deploy Zenoss monitoring system, notifications, and escalations.
  • Created extensive documentation, including straightforward how-to procedures for common administrative tasks.
  • Configure & maintain MySQL database systems.

Senior Systems Administrator

Kapor Enterprises, Inc. (2007)

  • Created Twiki-based project management application.
  • Identified key areas of network and process improvement, proposed solutions.
  • Proposed, planned, and implemented single sign-on solution and corporate directory service.
  • Provided desktop support for a heterogenous network of Mac OS X, Windows, and Linux desktops.
  • Responsible for researching and procurement of best-of-breed equipment to implement the needs of supported organizations.

Systems Administrator

SquareTrade, Inc. (2005-2007)

  • 24x7 pager support for critical production systems.
  • Planned and implemented migration from SiteScope to Nagios network monitoring, implemented custom service plugins, distributed & redundant architecture, performance metrics, and custom reporting interface.
  • Planned and implemented OpenLDAP directory service; researched and proposed site-wide integration of applications with directory service.
  • Administered heterogeneous network of several hundred nodes spread across several sites; maintained WAN links, VPN, remote administration between locations; maintained two data center locations with over 125 servers.
  • Performed audit of poorly maintained RAID systems, implemented automated maintenance and reporting of RAID array performance and issues.
  • Proposed, planned, and test-deployed Linux desktop solution for sales representatives to replace costly Windows desktops.
  • Performed extensive documentation of server and network infrastructure.
  • Researched, planned, and assisted deployment of Novell eDirectory and ZenWorks infrastructure.
  • Assisted in migration from Checkpoint firewalls to OpenBSD firewalls.
  • Assisted in software license compliance audit.
  • Oversaw replacement of aging desktop-class hardware with server-class hardware.
  • Researched and proposed migration plan from NT-style domain to Active Directory infrastructure.
  • Researched and proposed deployment of enterprise XMPP chat service for internal messaging.
  • Researched and proposed replacement of overloaded internal mail architecture with distributed, scalable mailing architecture.

Systems Administrator

OnYourMark, LLC (2004-2005)

  • Planned and implemented migration from archaic Sendmail-based email system to a database-backed Postfix mail server, delegating specific tasks to system administration staff. Supervised programming of customized email administration software for new system.
  • Replaced several outdated firewalls with OpenBSD firewalls. Wrote sophisticated firewall rule sets to filter and monitor network traffic. Created automatic log processing scripts to analyze firewall logs and produce daily reports.
  • Created standardized server configuration procedures and documentation. Oversaw redeployment of servers to comply with standardized configuration.
  • Created and administered network access/security policies and procedures.
  • Maintained and administered heterogeneous intra-office network, including Windows 2000/XP and Mac OS X workstations, Unix file and web servers, wireless access points, and network printers.
  • Planned migration of intra-office network to Windows 2003 Active Directory infrastructure.
  • Remotely administered and maintained DNS, web, and database servers in several co-location facilities.
  • Provided Tier II technical support.
  • Oversaw system backup and network maintenance as well as server monitoring (Nagios) and IDS.
  • Performed software license audit and inventory.
  • Maintained relationships with hardware, software, and bandwidth vendors.
  • Installed and administered DHCP server for automatic network configuration.
  • Automated a variety of administrative tasks through shell scripts and custom programming.

Internet Programmer/Consultant

Independent (2003-2004)

Help Desk Assistant

Northern Michigan University (2003-2004)

  • Provided phone/technical support for PCs and Macintosh systems campus-wide.

Senior Systems Administrator

Web Media Works (2002-2003)

  • Administered web, DNS, and database servers running FreeBSD, NT 4, and Windows 2000 Server.
  • Administered MySQL and MS-SQL 2000 databases.
  • Achieved goal of 99% uptime (up from 70% at time of hire).
  • Created, implemented, and enforced security policies on network, server, and individual workstation levels.
  • Managed server migration to the FreeBSD operating system.
  • Planned and installed internal network: CAT5 cabling, network ports, high-bandwidth switches, wireless access points, routers, firewall, and VPN.
  • Secured wireless network segment against unauthorized access and packet monitoring.

Student Administrator/Programmer

J. Robert Van Pelt Library (1999-2001)

  • Proposed, planned, and implemented conversion of aging collection of 486 PCs into Citrix Metaframe thin-client terminals.
  • Assisted in migration of servers from Windows NT4 to 2000 Server.
  • Supported a variety of Windows PCs ranging from Windows 95 to Windows 2000 Server.
References Available Upon Request