Senior Network Security Architect Resume
SUMMARY:
- Over 16+ Years of experience in Information Technology: Network and Security Domain with specialization in Network SecurityD Confidential Center Management, handling Information Security compliance Audits, customer connectivity setup & systems management.
- Expertise in designing, Implementing & supporting complex network infrastructure.
- Proven abilities to support and implement IP routing/switching, network security and VPN connectivity for Confidential Banks, Financial, Confidential .
- An Effective communicator with strong analytical, interpersonal skills with proficiency in grasping new technical concepts easily and utilizing them in an effective manner.
- Experience at various flavors of Checkpoint NGX R65, R75, Secure Platform, VSX Cluster/XL, Gaia, Confidential PIX, ASA 5500 - X Series, Fortinet firewalls.
- Experience in Blue Coat Systems Proxy SG810, 510, 210 appliances, Director 510 and Reporter.
- Extensive experience at configuring & troubleshooting Security Contexts, Objects, Access-lists, NAT/PAT, VPN & Application Inspection on Confidential Firewalls.
- Worked on configuring Site-to-Site IPsec, GRE, Client to Site and SSL, TSL VPNs.
- Experience in configuring & troubleshooting Confidential Firepower 8260 IPS devices.
- Worked on various Client audits to ensure compliance with its defined Information Security (InfoSec) Policies, Procedures, Standards and Guidelines.
- Experience in setting up OSDC (Offshore Software Development Center) POC Labs for projects
- Knowledge of Information Security Management frameworks.
- Expertise in Network Governance, Administration, Installation and Configuration of IT Networks, maintenance & troubleshooting of LAN, WAN, WLAN, IWAN Routers and Switches, F5 Load Balancer.
- Extensive experience in D Confidential Center management ensuring availability of critical service offerings.
- Strong hands on experience in implementing routing protocols like EIGRP, OSPF & Confidential in Complex Network infrastructures.
- Good at configuring routing concepts like Access-Lists, Distribute-Lists, Prefix-Lists, Route-maps, Policy based routing, IP SLA, NAT, PAT.
- Experience in high availability concepts like HSRP, GLBP and VRRP Protocols.
- Good at managing Network Monitoring systems (NMS) Solarwinds, ScienceLogic, Nagios, Netscout
- Experience in Planning and implementing DR- Confidential for LAN/WAN and business critical service offerings.
TECHNICAL SKILLS:
Firewalls: Check Point (SPLAT, Gaia NGXR60/65/70/R75, Provider-1), Confidential ASA 5500, Fortinet
Security: ACL, VPN (site to site, client to site), AAA, Radius, TACACS+, 802.1X, IPS, IDS, ISE, Security Analysis, ISO/BS audits, client audits, RFC, vulnerability testing and OS security.
Routers and Switches: Confidential 7200 Confidential 4451, ASR 1001-X, Confidential Nexus 7K and 5K, Brocade
Wireless: Confidential WLC (5500), Confidential APs, Location appliance and guest wireless infrastructure.
Routing: Confidential, EIGRP, OSPF, RIP, Policy based routing (PBR), route filtering, re-distribution, Summarization
Services: NTP, FTP, HTTP, HTTPS, content filter, proxy (Microsoft ISA), DHCP (Windows Server and Confidential ), NAT, SNMP, syslog, virtualization and d Confidential center hosting.
Network Monitoring Systems: Solarwinds, Confidential Works, ScienceLogic, Nagios and Stealthwatch 2010
PROFESSIONAL EXPERIENCE:
Confidential
Senior Network Security Architect
Responsibilities:
- As a Technology Architect for Confidential designed and deployed IWAN for sales offices and distribution centers.
- Designed and Implemented Guest Wi-Fi Project which comprises of WLC 5500, Access Points and Confidential Router
- Implementation and support of unified communications and messaging technologies needed for Skype for Business.
- Perform preventive maintenance and upgrades to ensure the Skype for Business services are reliable and running optimally
- Design isolated LABs to conduct POCs for collaboration solution like video wall, Confidential Spark, Prysm
- Implement LAN/WAN/Wi-Fi policies and standards which ensures adherence to Confidential security procedures
- Configuring/troubleshooting existing Nexus infrastructure which comprises of Nexus 2K, 5K & 7K switches.
- Configuring and troubleshooting Site-site VPN on ASA, DMPVN on Confidential 4451, ASR 1001-X
- Configuring and maintaining F5 BIG-IP Load balancer LTM.
- Troubleshoot Confidential service offering issues in coordination with offshore Operations and Application support teams across locations. Configuring QoS, traffic policies, and route map
- Configuring application access on Bluecoat proxies, Reviewing user access with Bluecoat reporter
- Recommending firewall rule deletion based on periodic Tuffin analysis as per Information Security guidelines
- Network policy implementation and support of Office 365
- Implemented Web Performance Optimization FastView - Radware for Confidential ’s critical SAP applications
- Served as the Subject Matter Expert for security technologies and issues.
- Participated in the development of network security standards and procedures.
- Responsible for escalation / complaint management in ITIL service framework.
- Produce Network Designs in alignment with the defined networks strategy, document High Level Designs (HLD) & Low-Level Designs (LLDs) in accordance with the agreed network design architecture.
- Create technical network architecture artifacts to document current and future network architecture patterns and related conceptual network architectures to be used by infrastructure teams and related development teams.
- DR (Disaster Recovery), Confidential (Business Continuity Plan) planning, risk analysis for solution proposed
- Lead teams of other network designers and engineers in developing detailed designs and quality-control mechanisms during implementation.
Confidential
Network Security Architect
Responsibilities:
- Engaged in Client connectivity discussions, design, solution, project management and execution of the design.
- Designed, implemented and deployed secured Internet Architecture with service providers and Confidential Multi homing environment for internet connectivity
- Successfully completed Deployment of Check Point Firewall over secure platform/GAIA, Check Point Appliances clusters design and implementation for customer perimeter security.
- Administration and support Checkpoint Provider-1, VSX and Cluster-XL.
- Configuring and troubleshooting Site-to-Site VPN over IPsec on Checkpoint Firewall
- Creating and maintaining firewall policy and network security monitoring strategies.
- Creating Virtual Servers, Health Monitors for F5 BIG-IP Load balancer LTM solution.
- Configure Brocade switches with edge port VLAN, Layer 2 port-channel, VLAN interface, Set Layer 2/3 and System MTU
- Troubleshooting connectivity issues. Prepare RCA for P1 incidents
- Devices hardening as per Information security guidelines.
- Scheduling and coordinating installation and maintenance of standard software/hardware on the network to ensure compatibility of system hardware/software
- Providing availability report for all critical d Confidential center devices.
- Managing Alerts, help desk team, and other IT groups when sensitive issues arise or a major problem is suspected
- Reviewing service requests daily and proactively strive to meet the SLA.
Confidential
Senior Technology Specialist
Responsibilities:
- Responsible for Migration of existing customers to Confidential model in phases.
- Explaining customers about Confidential model, responsible for smooth onboarding of customer connections to new Confidential model.
- Co-ordination of Link delivery and network migration with Confidential provider, client IT team, offshore projects.
- It involves testing and activating traffic on new Confidential model with minimum downtime.
- Lead a project team for new customer onboarding on Confidential connection model.
- Migrated Services from Confidential PIX environment to Check Point Firewalls and Confidential ASA.
- Implement LAN/WAN policies and standards which ensures adherence to security procedures
- Migrated LiveMeeting Audio - web conference solution to Confidential WebEx (BT+ Confidential )
Confidential
Technology Specialist
Responsibilities:
- Feasibility study for various connectivity models and implementing new customer connectivity solution.
- Deploying Enterprise IT Network Architecture for redundant high-speed LAN/WAN
- Configuring and managing voice gateways, phones and voicemail.
- Managing Confidential Unified communication servers.
- Prospect Management - RFI/RFP/RFT Response. Lead internal, external audits for clients.
- Responsible for network implementation and support of Confidential Pune campus.
- Managing offshore development environment for Confidential clients.
- Implementing connectivity infrastructure of Confidential routers/switches/IPT, checkpoint firewalls as per method of standard addition for enabling offshore based development work.
- Setup airgap offshore development center for BT with Confidential VG224/248 IP telephony
- Providing support for web, audio & video conferencing.
Confidential
FM Engineer
Responsibilities:
- At Confidential Network Operation Center ( Confidential ), providing FM support to Confidential Ethernet Network (MEN) with ASPEN, CiscoWorks LMS, Clarity.
- Managing, Troubleshooting, Conducting Plan Events for IOS up-gradations / patch installations, ATP test of MEN nodes. Creating L2, L3 VPN, ATRICA 8100, 2100, Confidential 7609, 3550
- Maintaining Network and Customer Service SLA.
- Interaction & Coordination with vendors for TAC cases.
- Coordinating with other groups - Planning, Deployment, field Support. Service Assurance for resolving Technical issues.
- Co-ordination with stakeholders for Migration of Confidential Ethernet network from Atrica to Confidential
Confidential
Network Engineer
Responsibilities:
- Confidential, Installation and configuration of Confidential routers, Switches, leased lines and ISDN at Mumbai D Confidential center and Branch Offices.
- Troubleshooting of network issues on Confidential Routers 1802, 1841, 2811, 2821, 3825 and 3845, Confidential C Confidential lyst 2950, 2960
- Implementation and maintenance of Confidential IP telephony solutions.
- Network devices up gradation and design IP Schema.
- Configure and implement Remote Access Solution: ISDN dial up
- Generating Router and switch configuration change reports and maintaining logs.
- Gathering traffic statistic information with MRTG traffic plotter, Confidential works
Confidential
Customer Support Engineer
Responsibilities:
- Maintenance and troubleshooting of Motorola, Confidential routers 1802, 1841, 2811, 2821 and Confidential lyst 2950, 2960 switches, HP OpenView and WhatsUpGold
- Configuration & Installation of Routers for WAN expansion
- Configure and implement backup Solution: ISDN dial up, VSAT fallbacks
- Troubleshooting routing and voice problems.
- Provided Structured Ethernet Network cabling.
- Backing up router configuration with TFTP
