Senior F5 / Checkpoint Security Consultant Resume
2.00/5 (Submit Your Rating)
SUMMARY:
- To obtain Senior Level fast paced and very challenging and active Security, Load Balancing, or Network Design / Engineering position. Also, continue to excel at Enterprise Networking, F5 Load Balancing, and Enterprise Firewall technologies including F5 ASM, Checkpoint, Net screen, Juniper. Ideally I also want to continue utilizing my extensive background building and maintaining Load balanced environments utilizing the F5 suite of products including LTM, GTM, ASM and APM line of products as well as Virtual Private Networks (VPN), LAN / WAN Firewall security. Also this would include LAN / WAN maintenance, management, design, communications, and Firewall/Security technologies.
- Senior Network Architect / Engineer highly experienced with installation, configuration, fault management, service level monitoring, troubleshooting, and maintenance of Enterprise Cisco, Checkpoint, Juniper, F5, and UNIX Networks running in a multi DOMAIN / ZONE / TIERED environments. Highly proficient in the overall architecting, planning, management, design, connectivity, configuration, policies and procedures as well as the implementation of complex (inter)networking solutions in a variety of platforms and topologies including, but not limited to any one layer of the OSI Model, Cisco Layer 3 Routing and Layer 2, 3 switching, MPLS circuit design, Application layer firewalls, Application Load Balancing, etc. I have excellent communication and analytical skills and solve complex problems in a fast, accurate and efficient manner
- SME at L3 and L4 Load Balancing Technologies utilizing the F5 suite of products including LTM and GTM
- SME with L7 F5 ASM WAF Firewalls and Technologies including Vulnerability Scan conversions to ASM policies and related configurations
- Enterprise Checkpoint Firewalls on Nokia appliances and SPLAT and associated technologies
- Enterprise Juniper SRX Series firewalls and associated technologies
- Enterprise Cisco Firewalls and associated technologies
- Proficient in SSL and IPSEC VPN Technologies using Cisco ASA, Checkpoint, Juniper, F5 APM
- Various Security and Public Key Infrastructure technologies including VENAFI, Secure ID, Verisign, etc.
- Breaking point Enterprise test solutions and associated software
- Cisco Intrusion Detection Systems (Cisco IDS, ISA Server, etc)
- Proficient in Cisco Routing Technologies
- Proficient in Cisco Catalyst and NEXUS Series L2 and L3 switches
- Protocols TCP/IP, IPX/SPX, NNTP, HTTP, SNMP, SMTP, POP3, TELNET, LDAP, FTP, GOPHER, DNS, NTP, and SMB, Cisco protocols: RIP, OSPF, IGRP, EIGRP, HSRP, BGP, TRUNKING, SPANNING, etc.
- Expert at network protocol analysis / Sniffing with Cisco and Unix systems using tools like TCP - DUMP, SNOOP, NSLOOKUP, WIRESHARK/ETHERREAL, ETHERPEEK, PING, Cisco Works, CWSI, Network General, Sniffer Pro, etc.
- Ability to lead projects, manage and supervise a group of networking support engineers and IT Contractors / Vendors to accomplish a companies’ IT goals and projects.
PROFESSIONAL EXPERIENCE:
Confidential
Senior F5 / Checkpoint Security Consultant
Responsibilities:- Enterprise SME for F5 LTM, AFM, APM and GTM to satisfy multi datacenter redundancy and stability for over 100 customer applications spread across 3 datacenters
- Enterprise SME for Checkpoint Firewall Operations and implementations across a diverse network with many levels of required security configurations.
- Fully document network as needed and always maintain documentation to the customer’s standards
- Successful in leading team to take a new DMZ and fully enable the AFM module on a default forwarder to fully protect all hosting zones within the DMZ. This will ensure that all rules and connectivity match both the external and internal firewalls.
- Successful in co-designing a full F5 APM implementation to replace very old legacy VPN solution for around 10K users. Connectivity was designed to use custom webtops based on AD membership to allow vendor, customer, and employees access in a micro controlled manner.
- I typically work/manage 10 plus security / F5 projects per month including a combination of enterprise F5 LTM, GTM, AFM, APM, and Security projects, business continuity projects and day to day business requirements.
- My work typically includes multiple projects that require the design of Enterprise load balancing of MULTI-TIERED applications and systems to support all datacenters.
- Working on team of advanced engineers to explore moving to the latest ASM Technologies
- Architected and designed a full rollout of Enterprise BIGIQ 5.0 F5 Management platform that will be used to manage ADC, APM and AFM policies and schedule and push out changes. Implemented standards to only use BIGIQ to manage the AFM policies across the DMZ and INTERNAL network AFM policies.
Confidential
Senior Security Architect / F5 SME / Project Consulting Engineer
Responsibilities:- Enterprise SME for F5 LTM, ASM and GTM to satisfy multi datacenter redundancy and stability for over 1000 customer applications spread across 13 datacenters
- Fully document network as needed and always maintain documentation to the customer’s standards typically Manage 10 to 15 Projects per month including Enterprise F5 BIGIP Security projects, business continuity projects and day to day business requirements. my project work typically includes F5 ASM WAF Firewall projects that are in sync with LTM and GTM projects for hosting secured DMZ PCI Compliant apps that require the F5 ASM WAF Firewall infrastructure.
- My work typically includes multiple projects that require the design of Enterprise load balancing of MULTI-TIERED applications and systems to support all 13 datacenters.
- Also team lead to migrate/port over CITRIX NETSCALER and CISCO CSM configurations over to BIGIP LTM configurations including settings like LB methods, persistence, IRULES, port redirects, etc.
- Work on team of advanced engineers to explore moving to DNSSEC with managed and secured DNS cloud technology
Confidential
Senior Security Architect / Engineer
Responsibilities:- Work on a team with 40 other Security Architects and engineers spread across 3 major datacenters
- Enterprise Expert for F5 LTM and GTM load balancing to satisfy multi datacenter redundancy and stability for over 500 customer applications
- Typically Manage 10+ Projects per month including Enterprise Firewall and Security projects, Enterprise BIGIP projects, business continuity projects and day to day business requirements.
- Working on multiple projects that require the moving various MULTI-TIERED applications and systems to support a new datacenter. Also staring to plan for the decommissioning of the old datacenter once all systems are moved to new Datacenter.
- Also team lead to migrate/port over CSS and CSM Configurations over to BIGIP LTM Configurations including settings like LB methods, persistence, IRULES, port redirects, etc.
- Working as lead in testing new R75.30 IPS blades using a variety of testing platforms and test criteria by using Breaking Point tool.
- VPN and Firewall Design and implementation Engineer Utilizing Checkpoint R70.30 and R75.30 Platforms.
- Architect and Team lead on high level projects to consolidate our third Party VPN connectivity
- Fully document network as needed and always maintain documentation to the customer’s standards.