Network Security Engineer Resume
Atlanta, GA
SUMMARY
- 12+ years’ experience in Information Technology and 5+ years in networking and security engineering with strong hands - on experience on network and security appliances.
- Extensive knowledge in configuring and deploying Checkpoint Firewalls (R80.10) and Palo Alto.
- Strong knowledge on leveraging advanced firewalls features like Security Policies, identity awareness, User-ID, Global Properties, Vlan, ClusterXL, NAT policies, High availability, Site to Site VPN, HTTP inspection, SSL decryption, and Security Profiles.
- Expert level knowledge on configuring and troubleshooting IPsec VPN and SSL VPN tunnels for connectivity between site-site and remote location users by using IKE and PKI.
- Experience in configuring and managing Microsoft server Active Directory.
- Strong knowledge of Intrusion Detection System (IDS), and Intrusion Prevention System (IPS).
- Knowledge of routing protocols like OSPF, RIP, and Static routing.
- Expertise in installing, configuring, and troubleshooting Cisco routers (3600).
- Hands-on experience in implementing layer3 security through IPSEC tunneling, Access lists, NAT.
- Strong experience in working with monitoring tools including Wires hark.
- Excellent client/customer management, problem-solving, and troubleshooting skills with good communication skills.
- Someone who loves exploring new technologies and keeping your own technical skills sharp
- Evaluates, tests, recommends, develops, coordinates, monitors, and maintains information security policies, procedures and systems
TECHNICAL SKILLS
Firewalls: Checkpoint, Palo Alto, Networks firewall management
Virtualization skills: GNS3, VMware, Virtual Box
Languages: HTML5, DHTML, CSS, SQL, Chrome Developer Tools, JQuery, JavaScript.
Routers: Cisco 7600, 3600
Communication Protocols: TCP/IP, UDP, DHCP, DNS, ICMP, SNMP.
Routing Protocols: OSPF, RIP, Route Filtering, Redistribution, Summarization and Static Routing.
Switching Protocols: LAN, VTP, and STP.
LAN technologies: Ethernet, Fast Ethernet, Gigabit Ethernet, VLANs, VTP, STP, RSTP, 802.1W.
Network Security: ACL, SSL, IPsec VPN, GRE VPN.
Network Management and Packet Analyzers: Wire shark, SNMP, and Tcpdump.
Operating systems: Windows XP/ 7/ 8/10, Windows Server 2003/ 2008, Mac OS and Linux.
Applications: MS (Office, Word, Outlook, Excel, PowerPoint, Visio), Confidential, Adobe Photoshop, and Illustrator.
PROFESSIONAL EXPERIENCE
Network Security Engineer
Confidential, Atlanta, GA
Responsibilities:
- Configure, Manage and Monitor firewall models.
- Implement advanced features like URL filtering.
- Threat prevention, antivirus, and malware.
- Implement the Global Protect VPN, IPsec VPNs, and SSL VPNs through IKE and PKI on firewalls for site-to-site VPN Connectivity.
- Deployed Active/Standby modes of High Availability (HA) with Session and Configuration synchronization on multiple firewall pairs.
- High Availability mode security management upgrades
- Configured, troubleshoot firewalls for client
- Tcpdump or wire shark knowledge
- Maintain High Availability and clustered firewall environments for customers.
- Worked on various networking projects providing a secure environment for client customers.
- Monitored performance and help to troubleshoot any network issue across multiple locations.
- Secure networked system by enforcing policies, and monitoring access.
- Knowledge of the application of Active/Active HA mode.
- Strong knowledge of Active Directory,
- Assist in the configuration of firewalls, switches, wireless access points, etc.
- Perform Level 3-4 security implementations and troubleshooting.
- Firewall policies and rules management.
- Configure, manage, and monitor Palo Alto Networks firewalls using the web interface, CLI, and API management interface.
- Work with the network administrator to locate the user and host that is using the IP address that tried malicious action on firewalls.
- Capture and export traffic on management interface and monitor via tftp server
- Policy Schedule
- Virtualization experience
- Troubleshooting Palo Alto IPsec VPN connectivity issues Using CLI commands ( Linux commands line)
Network Security Engineer
Confidential, GA
Responsibilities:
- Configured identity awareness configuration
- Setting up a Lab on GNS3 for virtual simulations to enhances the production
- Initial Configuration, manager, and security gateway
- Creation of object on checkpoint r80.10 smart console
- Policy Target Installation on checkpoint r80.10
- Monitoring Traffic and Connections on r80.10
- Network Address Translation on r80.10
- VPN: Site to Site and Remote Access VPN configuration
- Threat Prevention - Anti Virus, Anti Spyware
- High Availability: Management HA and ClusterXL
- Upgrades: Management and Security gateway - (Hardware and software for both)
- Using WinScp on Check Point
- Perform advanced troubleshooting using Packet tracer and TCP dump on firewalls.
- Installation of window Server 2016
- Installation of Server of Roles - Active Directory and Domain Controller
- Knowledge of GNS3 and VMware.
Network Security Engineer
Confidential, NYC
Responsibilities:
- Provided Firewall Administration (Creating and removing firewall rules as needed).
- Network Security Administration, and Network Engineering duties within an OSPF / BGP environment
- Function as part of a Firewall and Security team in support of Checkpoint Firewalls, Proxy, Sec Authentication, Open LDAP, and Active Directory.
- Responsible for verifying Change Records, router, switch, and DHCP configurations before applying.
- Managed user’s access thru Open LDAP, Sec Authentication, and supported Active Directory.
- Redesigned, updated and established network topography standards.
- Configured RIP, OSPF, and static routing
- Implemented firewall rules according to business requirements and verifications.
- Configured IPSEC VPN on firewalls.
- Configured VLAN, Spanning tree
- Configured and maintained routers and switches. Implemented and troubleshooting RIP, EIGRP, OSPF, BGP routing protocols.
- Configured and maintained High Availability Checkpoint firewalls in a Provider-1 environment.
- Network monitoring
- Configuration of Domain Naming Server (DNS)
- Adding and deleting users and granting user level
- Assist staff with the installation, configuration, and ongoing usability of desktop computers,
- Peripheral equipment, and software within established standards and guidelines.
Network Security Analyst
Confidential
Responsibilities:
- Provided support for network infrastructure using Cisco, firewalls, and Cisco routers.
- Worked on basic firewall configurations and the maintenance of the firewalls.
- Configured VLANs with 802.1q tagging, trunk groups, ether channels, and spanning tree protocols.
- Configured and upgraded network devices including Cisco routers.
- Planned and configured the routing protocols such as OSPF, RIP, and Static Routing on the routers.
- Established IPsec VPN tunnels between branch offices and headquarter Firewall.
- Worked on service request tickets generated by the helpdesk such as troubleshooting, maintenance, upgrades, patches, and solutions with all-around technical support.
- Member of System-Wide Analysis Team (SWAT) responsible for analysis of client security firewalls, servers, proxies, and other devices in the networks.
- Leads remediation of security operations configuration audits. Planned and implemented remediation line items as approved.
- Maintain High Availability and clustered firewall environments for customers.
- Managed Checkpoint Gaia R80 SMS and gateways.
- Configuration and Maintain Remote Access on Firewalls (Checkpoint).
- Endpoint management
- Strong knowledge of L3 technologies-IP Subnetting.
- OSPF configuration
- Export policy rules, configuration objects, and IPS signatures from firewalls to demonstrate regulatory compliance to external auditors
Confidential
Responsibilities:
- Worked with layer2 switching, VLANs trucking technologies, and spanning tree protocols.
- Worked on Cisco switches and routers including physical cabling, IP addressing and Wide Area Network configurations.
- Performed troubleshooting in TCP/IP-related problems and connectivity issues.
- Performed troubleshooting and resolved Layer2 and Layer3 issues.
- Maintained network performance by network monitoring analysis, performance tuning, and escalating support to the vendors.
- Responsible for Website management with clients including customization and designing.
- Responsible for Supporting network devices for clients.
- Responsible for Debugging and troubleshooting of area networks as per need.
- Supported desktop-based documentation as per need.
- Responsible fornetwork routing testing and policy-making for border area protocol.
Auditor / Desktop Engineer
Confidential
Responsibilities:
- Troubleshooting and problem resolution.
- Assist with hardware configuration, installation, removal, relocation, and reassignment.
- Install, configure, and troubleshoot software packages, including operating systems, desktop software, and custom applications.
- Provide remote support for regional end-users.
- Assist with infrastructure projects involving asset management, data cleansing, and evidence collection for equipment relocation or removal.
- Install, upgrade, support, and troubleshoot Windows OS, authorized desktop applications, hardware, and peripheral equipment.
- Coordinate and execute preventative maintenance and remedial repairs on computers, laptops, printers, and peripherals.
- Return defective equipment to maintenance inventory, document customer repairs, and maintain and restock parts inventory to maintain spare parts levels.
- Monitor, operate, manage, troubleshoot, and restore service to terminal service clients, PCs, or notebooks with authorized access to the network.
- Working on all windows platform
- Managed laptops, desktops, and printers companywide.
- Authored second-line support team manuals and maintained support standard operating procedures.
- Identifies security risks and exposures, determines the causes of security violations and suggests procedures to halt future incidents
- Investigates and resolves security incidents and recommends enhancements to improve security
- Develops techniques and procedures for conducting IS security risk assessments and compliance audits
- Writing Final Audit Reports
- Investigation Of Tax Payers
- Awareness of Tax Payers
- Calculating final Liability
- Conducting internal audits to ensure compliance with tax regulations
- Analyzing and evaluating accounting systems and tax control units to reduce taxes
- Maintaining required tax documentation
- Assisting companies with tax returns
- Analyze all pre audits and develop required audit plans according to procedures and establish appropriate guidelines.
- Maintain knowledge on all tax laws and strategies and prepare reports for same.
- Submit all results according to all internal procedures and evaluate all issues to provide assistance to all clients.
