Professional Summary
- A passionate Network Security Engineer, with 6 plus years of experience in IT, Health and Finance industries with specialization in Datacenter Management and enterprise wide security. Experience in configuring, optimizing, and troubleshooting of complex network infrastructure which includes expertise at enterprise-wide Routing, Switching, Network Security and Wireless domains. - Experience in configuring, designing and troubleshooting security policies, NAT policies, routing and different failover mechanisms on Palo Alto PA-7000,7050,5260,3260 series, Cisco ASA 55XX, Juniper SRX, Check point R77 Series, Fortinet's Firewall. - Expertise in migrating Cisco ASA and Fortinet firewalls to Palo Alto's Next-Generation Firewalls using PAN migration tool/ Expedition Tool. - Extensive knowledge in Configuring, troubleshooting and monitoring Palo Alto Firewalls from central management device Panorama M500. Expertise in implementing IPS/IDS. - Expert in configuring Threat prevention which includes Anti-Virus, Anti-Spyware and Vulnerability and implementing File Blocking, Wildfire analysis and DoS protection on Palo Alto Firewalls. - Expertise in configuring and deploying Global Protect VPN with multiple Gateways and rolled out to 30k+users. Expertise with configuring, Implementing and Troubleshooting remote access solutions like IPsec VPN, Remote VPN, SSL VPN, DMVPN. - Extensive knowledge in implementing URL filtering, application-based policies and implementing zones. - Strong knowledge on mitigation of DDoS attack's, IPsec & SSL implementation on Cisco and Palo Alto firewalls. - Experience in Kill Chain management. - Strong hands on experience in install, configuring and troubleshooting Cisco 7200,3800 series routers. - Expert level knowledge of troubleshooting, implementing, optimizing and testing of static and dynamic routing protocols such as EIGRP, OSPF, iBGP, eBGP and ability to interpret and resolve complex routing issues. - Hands-on knowledge on Citrix NetScalar, F5 Big-IP Load balancing (LTM & GTM) method implementation and troubleshooting. - Strong hands on experience in implementing, configuring and troubleshooting Data Center Switches like Cisco Nexus 7k and Arista Switches. - Expert level knowledge on standard and extended ACL's. Versed with Route-map; implemented Policy Based Routing, Redistribution. - ClearPass policy manager and ClearPass guest access manager to authenticate wireless users, Worked with Aruba Virtual Mobility Controller and AP's. (Aruba 6000 controller, Aruba AP65, 70, 124, 125). - Experience in installing and configuring DNS, DHCP and Forward Proxy servers. - Expert level Knowledge in OSI model, in depth knowledge and hands on experience on IPV4 addressing, subnetting, VLSM, ARP, reverse ARP, proxy ARP and ICMP concepts. - Packet analysis tools such as Wireshark and monitoring tools like SolarWinds, Nagios, Netscout and SIEM tools like Splunk, QRadar. Trusted Network Security Engineer with 6 years protecting companies against bad actors who disrupt business operations. Serves as primary safeguard against external threats. Educates colleagues on best practices and network safety protocols. Protects networked assets through both preventive and reactionary measures. - SIEM Provider Management - BYOD Program Implementation - Incident Logging Oversight - Network Security Management - Firewall Installation - Symantec Endpoint Protection - Designing security controls