Sr. Network | Security Engineer Resume
SUMMARY
- IT Network & Security Engineer with more than 10 years’ experience implementing & maintaining companywide computer systems. Highly skilled in delivering projects & products while leading with a collaborative, dynamic planning process & best practices approach. Subject Matter Expert who is able to manage programs simultaneously with cross - functional teams & translate business data into competitive action plans that improve corporate processes.
- Analytical Leader who can accurately determine needs of customers, understand risk tolerances, develop solutions & cultivate longstanding client relationships. Critical Thinker with experience leading & mentoring teams - exemplifying courage, candor, commitment & effective use of communication.
TECHNICAL SKILLS
WAN/Core: R&S, MPLS, WAN, SD-WAN
LAN: Ethernet, Wireless
Switching: STP, VLAN, Port Security, ACL
Dell Switches: Power Connect Series switches
HP Switches: Procurve Switches
Cisco FMC: FMC4500, VMware FMC
Cisco Firewall: Cisco Firewall ASA 5500-X
Palo Alto Firewall: PA220, PA3250
Routing Protocols: OSPF, BGP, IGRP, EIGRP, RIPConfidential Firewall: Firebox T & M Series
MFA: DUO, AUTH Point.
Mitel VOIP: Mitel SG220T1A, SG220TA & SG30
Hosted VOIP: 8x8 & Mitel hosted VOIP services
Cloud: AWS & Azure
Virtualizations: VMware
Hosted VOIP: 8x8 & Mitel hosted VOIP services
PROFESSIONAL EXPERIENCE
Confidential
Sr. Network | Security Engineer
Responsibilities:
- Project management & Implementations of various network security project such as firewall migration from Cisco ASA to Palo Alto. DUO single Sign-on for Palo Alto Global Protect.
- Implementing, managing, troubleshooting LAN, WAN, SD-WAN (Versa), MPLS, P2P, Fiber, AWS direct-connect.
- Hands on working expertise with Confidential system manager.
- Responsible for remote site network design & deployment as per company network policies & procedures.
- Develop & executes corrective actions plans when issues are identified in order to mitigate the risk exploitation.
- Assist Network operation with developing secure system baseline configuration.
- Work as part of multi-disciplinary teams
- Collaborate with IT and Other departments to prioritize data center project.
- Prepare plans for development and installations of data center accordingly to present and future requirement
- Able to oversee the administration of data center infrastructure according to company and/or industry standard.
- Excellent knowledge of data center infrastructure and operating procedure
- Oversight of data center financial including ordering, forecast, and budget.
- Forecasted IT budgets to align with business value & managed issues/risks
- Coach team members on a proactive basis, raising the team's overall technical acumen.
- Cisco Meraki Wireless design and deployment companywide. Network Segmentation in each SSID.
- Work with ISP to ensure the proper level of technical acumen and quality are executed within the contracted services.
- Identify areas in need of process documentation and work with the teams to create, document and train the process.
- Maintain knowledge of industry best practices regarding network & security operations.
- A strong understanding of SCADA best practices, standards and operating procedures.
- Working knowledge of Proofpoint Email security with security awareness training for end users.
- Working knowledge of SentinelOne Endpoint Security.
- Managing monitoring tools such as PRTG & SolarWinds NPM, NCM, NTA, IPAM and PTRG.
- Provide report to management regarding network security status and make recommendations for the adoptions of new polices and standard and procedures.
- Work with 3rd party SAAS solutions provider such as Enteria private cloud to create a redundant IPsec VPN tunnel to AWS Cloud from Palo Aalto to have a direct connect to hosted services for the LINN.
- Configure and deploy Direct connect from a Cisco ASR to AWS cloud and setup VPC to host LINN server in cloud (DR)
Confidential
Sr. Network | Security Engineer
Responsibilities:
- Hands on working expertise with Confidential system manager.
- Design & deploy Cisco ISE for Radius auth to replace Microsoft Network Access solutions.
- Managing monitoring tools such as PRTG & SolarWinds NPM, NCM, NTA, IPAM and PTRG.
- Design & deploy Cisco ISE for wired Guest portal authentications.
- Design & deploy Cisco ISE for Cisco Meraki Wi-Fi auth, BYOD, Guest portal authentications
- Design & deploy Palo Alto global protect pre-logon company wide.
- Coach team members on a proactive basis, raising the team's overall technical acumen.
- Assist Network operation with developing secure system baseline configuration.