We provide IT Staff Augmentation Services!

Cloud Network Solution Engineer Resume

4.00/5 (Submit Your Rating)

SUMMARY

  • Certified Cloud Security and Architect Engineering with AWS Security Speciality and Azure Solution Architect Technology.
  • Creative, adaptable DevOps/Cloud Security & Automation engineer with multiple years of broad experience in all aspects of LAN,WAN,CLOUD,DevOps,K8S and CI/CD Pipleline Security & Automation .
  • Experienced with Jenkin, & Malvin with K8S to Build/Deploy CI/CD pipleline process.
  • Experieced with Microservices Mesh Management using Isitio and AspenMesh(F5). Microservice/Container Security automation & container images vulnerabilities in highly scalable environment using Qulays CS for Azure Security Center, Twistlock and Aqua security platforms.
  • Experience in working on Azure and its services like Azure IAM, AAD, Security Center, VNET, VNET Peering, Azure CDN, VM, Blob, Azure Functions, ELB, Auto Scaling, Azure DNS, NetworkWatcher, LogAnalytics, Azure Firewall,, Firewall Manager, NSGs, ASGs, Key Vaults, AADS/MFA and experienced in Cloud automation using Azure Automation Account, PowerShell templates and AKS, ACR to create Hub/Spoke VNETs and Microservice/Containers Deployment.
  • Experience in working on AWS and its services like AWS IAM, EKS, ECS, VPC, EC2, EBS, RDS, S3, Lambda, ELB, Auto Scaling, Route 53, Cloud Front, Cloud Watch, Cloud Trail, SQS, and SNS and experienced in Cloud automation using AWS Cloud Formation templates to create custom sized VPC, subnets, NAT, EC2 instances, ELB and SecurityGroups.
  • Fortinet Security Fabric (Fortigate, FortiManager, FortiAnalyzer 5.4, 5.6, 6.0, Cisco Defense Orchestrator CDO, Cisco FirePower NGFW, F5 BIG - IP 12.0, 13.0, LTM, BIG-DNS, BIG-IQ 6.0 (F5 Automation) .

TECHNICAL SKILLS

Cloud Platform: Azure AKS/ACR, Elastic Compute Cloud(EC2), Simple Storage Services (S3), Route 53, Cloud Front, Elastic Bean Stalk, Virtual Private Cloud(VPC), RDS, Cloud Watch, Elastic Load Balancer(ELB), Auto-Scaling, IAM Roles, Users, Profile, Elastic IP’s, Nagios, GIT, Security Policies, Cloud Formation.

Security & Automation: Kubernetes( K8S ), Jenkin, Malvin, Git, Qulays CS, TwistLock, Aqua Security, BitGlass ( CASBs ), AlgoSec, AppViewX, Tufin, FireMon, CloudBolt, AnsibleTower.

OS: Ubuntu, Red hat Linux 4/5/6/7, Windows servers 2003, 2008, 2008 R2, 2012, Windows 7/8/10, IOS 12.4T (Adv Ent Svcs), ASA 8 .x/9 .x IOS, ASDM 6 .0/7 .0, IPS 6.x IOS. NX-OS, PAN-OS 6.x, PANORAMA 6.x

Network & Firewalls: Fortinet Fabric Solution 5.4, 5.6 & 6.0 ASA5585 series, FirePower, CDO, FMC, FTD, F5 BIG-IP LTM v12 .3 .2 on i5600/i5800, BIG-DNS v12.2.1 on 5050 series appliances.

PROFESSIONAL EXPERIENCE

Confidential

Cloud Network Solution Engineer

Responsibilities:

  • Created dedicated ResourceGroups for several application.
  • Created VNETs/Subets and VNET Peering between different subscriptions across different regions.
  • Established P2S and S2S VPN connectivity between Azure VNETs and Vendors.
  • Created SSL Certificates for Client/Servers. Created Secure-Hub VNETs and Deployed AzureFirewalls and NSGs to secure the resources in VNETs.
  • Managed and Configured the NSGs Rules and AzureFirewall Inbound/Outbound Security policies. Created and associated RouteTables with VNETs and VPN Gateways.
  • Established Azure-toAzure Virtual Network Gateway. Managed and Created ExpressRoutes for Azure to On-Prem Access via IXP.
  • Migrated On-Prem RX-Intake applications (Lift and Shift) to Azure IaaS and Microservices (K8S) based environment.
  • Re-platformed the ECOM and RX ICPlus application and depended components to Azure Secure Hub and Microservices with Aspen-Mesh Management solution. age and backup on AWS . Built a VPC, established the site-to- site VPN connection between Data Center and AWS . Deployed F5/BIG-DNS clusters to provide LDAP resilience in Azure and AWS across US, EUROP and AISIA Region.

Confidential

Sr. Network / Cloud Security Engineer

Responsibilities:

  • Created AWS Multi-Factor Authentication (MFA) for instance RDP/SSH logon, worked with teams to lockdown security groups .
  • Managed, Installed and Upgraded several ASA5500 and F 5 8900/3900/3600 series appliances LTM 9.0/10.x/11.x Hotfixes in 2TIER and 3TIER DMZ to provide state of the art security zone for enterprise applications.
  • Created and Managed Several Site-to-Site, IPSec VPN tunnels between CAH and different Vendors & Hospitals to provide secure resource access over internet.
  • Upgraded existing firewall infrastructure to NGFW (Palo Alto PA3020, PA5020 on PA-OS 6.x). Involved on several SRTs (Service Restore Tickets) to resolve issue and restore services including ASA, (VPN, NAT), F5, Cisco Ironport,, OSPF, BGP, ACLs and Cisco Routers & Switches.
  • Analyzed several log files, performance & Site slowness issues, and the production environment issues for mission critical Applications.

We'd love your feedback!