Lead Of Network And Cloud Architecture Team Resume
SUMMARY
- More than twelve years working experience with both vendors and clients in IT networking industry.
- More than four years’ experience as a Cloud and Security Architect.
- Working experience of architecting, designing and managing of Microsoft Azure, Amazon Web Service, AWS, Switches, Routers, Cisco Firewalls, Palo Alto, Juniper, Checkpoint and Fortinet Firewalls, Wireless LAN Controller, Access Points, ACE, Netscaler and F5 LTM, GTM, APM, CGNAT, and ASM.
- F5 SME and solution architect related to LTM, GTM, APM and ASM module.
- Asset of Cisco CCIE and CCDP with experience in configuring and design of Leaf - Spine, FabricPath, VXLAN, OTV, OSPF, BGPv4, MPLS, QOS, VoIP.
- Fast learner, good team player with leadership skill, good communications skills in English and functional in French.
- Autonomous, able to work under pressure, passionate, motivated and like to work in a fast paced environment.
TECHNICAL SKILLS
Private and Public Cloud: Microsoft Azure, Amazon Web Service, Google Cloud and VMware NSX.
Microsoft Azure: PIM, RBAC, ARM Template, ARM Count Loops, PowerShell DSC, Azure Automation, VM Availability, VM Scaling, Dockers, Container, NSG, Traffic Manager, Load Balancer, Application Gateway, Log Analytics, Network Watcher, Express Route, Azure Site Recovery, Azure Migrate, Azure app service, Logic App, Functions, CosmosDB, RelationalDB, Azure Security Center, Key Vault, WAF.
Amazon Web Service: AWS AIM, VPN, EC2, EBS, Auto Scaling Group, ASG, Different Load Balancer types in AWS, ALB, NLB, CLB, Hybrid DNS Architectures in AWS, Route53, AWS VPN Tunnels, Open Swan, EC2 VPN, RDS, S3, DynamoDB, RedShift, EFS, Kinesis, CloudWatch, CloudTrail, SQS, SNS, KMS, & HSM, CloudFront, ElastiCache, Lambda, ECS, AWS OpsWorks, Elastic BeanStalk, CloudFormation, Storage Gateway, AWS Server Migration Service, AWS Service Cataglog, WAF.
Google Cloud: Compute Engine, Cloud Interconnect, Network Service Tiers, Virtual Private Cloud. Cloud IAM, Stackdriver, Cloud SQL, Cloud Spanner, Cloud Bigtable, Cloud Datastore, Cloud Storage, Persistent Disk, App Engine, Cloud Functions.
Load balancing: F5, GLSB, HA, LTM, ASM, APM, CGNAT, SSL Orchestrator, GTM, iRule and Automation with Ansible. NetScaler, Securing traffic, Load Balancing, SSL Offloading, Traffic Handing, Content Switching, NS Gateway
Routing & Switching: Nexus NX-OS, leaf and Spine, FabricPath, VXLAN, VDC, EIGRP, OSPF, BGPv4, GRE, MPLS, IPv6, Traffic Engineering, Policy Based Routing PBR, Route Filtering, Redistribution, Summarization,VTP, STP, MST, RSTP+, Trunking, VLANs, Layer 3 Switches, Logical Ether Channels, VPC and MLS.
Security: Working with vulnerability assess management tools, Radius, TACACS+, Cisco Authentication Proxy, Access Lists, IOS Security, 802.1x, DDoS prevention, Cisco IDS, Cisco IPS, Cisco CSA.PKI, CA, Cisco Secure ACS, Cisco VPN Client, Cryptography, AAA. Manage Cisco PIX/ASA, Palo Alto, Checkpoint and Juniper Firewalls.
Various Features & Services: IOS Features, HSRP, VRRP, GLBP, NAT, SNMP, SYSLOG, NTP, DHCP, CDP, DNS, HTTP, TFTP and FTP Management, Frame Relay.
Cisco Software’s: Cisco SDM, CCP, ACS, ASDM, vWLC, WCS, CSM, Cisco ISE
Coding: Python, Azure PowerShell, Visual Studio Code, Ansible.
Network Monitoring and analysis tools: Wireshark, SolarWinds, PRTG, Zabbix, Qualys, ArcSight and Splunk.
Operation systems: Unix, Linux Ubuntu/CentOS/Red Hat, MS Windows Server 2016R2/2012R2.
PROFESSIONAL EXPERIENCE
Confidential
Lead of Network and Cloud Architecture team
Responsibilities:
- Team Lead of twelve Senior Architects to provide supervision and overarching leadership to the technical staff.
- Strong experience in dealing with AzureIaaS and AWS IaaS, VirtualNetworks, Resource Groups, OMS, VPN, Express Route, Traffic Manager, Load Balancing, Virtual Machines, Storage Account, Cloud Services, Application Gateways, and Auto-Scaling,NetworkSecurity Group (NSG), ASR, Office 365,AzureAD, ADFS,AzureAutomation and Cost Reduction
- Lead of Architecture for migrating over 50 on premise applications and servers usingAzureSite Recovery (ASR) and utilized NSGs for layer 4 Access Control List (ACLs) and Application Gateway for WAF.
- Automated VM auto startup and stop operations viaAzureAutomation PowerShell Runbooks.
- Building AWS IaaS in two regions including 22 EC2 instances, 4 Private VPCs, Route53, ALB, NLB, EBS, S3 and RDS to host many client applications.
- Lead Architect to design and implementation of explicit proxy with F5 LTM and APM for Office 365 at Microsoft Azure Cloud.
- Lead Architect to design and implementation of new DMZ environment with F5 SSL Orchestrator to check HTTP and HTTPS traffic regarding Identity Access Management (IAM), Data Lost Prevention (DLP) and Palo Alto private cloud. Network infrastructure is Leaf-Spine with cisco 9K and 7K.
- Lead a project of Private Cloud to design and implementation of Virtual Palo Alto and BIG IP VE integrating with VMware NSX for down stream and Cisco 9K and 7K for up stream to host Confidential applications.
Confidential
Senior Network and Cloud Architect
Responsibilities:
- Design and implementation of explicit proxy with F5 LTM and APM for Office 365 at Microsoft Azure Cloud.
- Infrastructure design, such as Express route, VPN and Etc at Microsoft Azure and Amazon Web Service (AWS) for many applications.
- Design and implementation of network analysing tools of Splunk and NetScout across Confidential network.
- Working with internal and external vulnerability assessment scanning tools such as Qualys to align Confidential applications with TDS and PCI compliance governance rule.
- Providing a point of coordination for all security related activities, coordinating between Technology Risk Management & Information Security (TRMIS), Risk & Control, Internal/External Audit and TDS Technology Solutions team.
Confidential
Senior Security Consultant
Responsibilities:
- Working on report of Vulnerability scanning tools to provide a solution across various Network appliances including F5, Cisco devices and Firewalls to mitigate a Risk and enhance Security across company.
- Implementing PCI compliance rule across company.
Confidential
Senior Network Engineer - Consultant
Responsibilities:
- Direct relation with clients to outsource their networks as a Network and Security designer and implementer.
- Administration of: Cisco Nexus Family of 3K, 5K, 7K and 9K, Cisco Load Balancers (ACE), Cisco Firewalls, Cisco Security Manager (CSM).
- Palo Alto, Check Point and Juniper, Firewalls/VPN appliances.
- F5 Local traffic managers LTM, Global traffic managers, GTM, Access security Manager, ASM, Access Policy Manger, APM and Netscaler Load Balancer.
- Documentation of procedures, create high level and low-level design, HLD, LLD and network implementation plans.
- Evaluate and estimate new telecom implementations (Fabric Path, STP, VTP, EIGRP, OSPF, BGP. DNS and VPN technologies, etc…) to determine scope and effort required.
- Create reports including: Capacity & Performance, Availability, SLA, Volumetric and others.
Confidential
Senior Network Administrator
Responsibilities:
- Provide network stability operation of the in-house computer network and all connected PCs and peripherals, including, installing, configuring (including DHCP, DNS, Web Server, File Server, Exchange Server, Etc) maintaining, supporting, and optimizing all network hardware, software, and communication links.
Confidential
Network Engineer
Responsibilities:
- Design, Configuring and troubleshooting of Routers, Switches, Firewalls, Access points, Wireless Controllers, ACE, Load balancer and Perform complex updates and upgrades of networks.
- Plan, design, configuration of Layer 2, Layer 3 and optimize the network based on the customers' requirements on the technical functionality.
- Design and managing network of OSPF and EIGRP as IGP over MPLS layer 3, VPN and DMVPN.
- Design and managing high availability for network environment and evaluate during planned Disaster Recovery.
- Technical support to identify and troubleshoot faults by applying standard resolving processes.
- Monitor and test network performance and provide network performance statistics and reports.
