A Network Security Engineer with a strong dedication to mastering emerging technologies. Excels in dynamic and challenging environments, leveraging exceptional analytical and problem-solving skills. Self-driven and proactive, consistently achieving outstanding results even under pressure. Demonstrates a strong dedication to continuous professional growth, ensuring expertise remains aligned with the latest advancements in the field.
Overview
9
9
years of professional experience
1
1
Certification
Work History
Network Engineer
Kering Operations Center
01.2025 - Current
Responsible for the deployment, configuration, and ongoing management of network infrastructure for high-end retail brands such as Balenciaga, Gucci, Saint Laurant, Bottega Veneta, and Alexander McQueen, ensuring seamless network connectivity and security across new stores, sales outlets, and remote locations.
Responsible for Meraki SD-WAN deployment, including configuration, site-to-site VPN setup, and traffic shaping policies.
Installation, monitoring, and management of Meraki MX appliances for multi-branch connectivity.
Managed and configured a wide range of Cisco Meraki network devices, including MS425, MS355, MS390, and MS250 Series switches; MR46, MR56, MR76, and MR86 Access Points; and MX250, MX450, MX95, and MX105 Security Appliances, delivering scalable and secure wired and wireless solutions.
Led the end-to-end setup of new sites, from provisioning Meraki infrastructure to ensuring optimal wireless coverage and WAN connectivity, aligning with global IT standards and business needs.
Configured and deployed Cradle point W1850 cellular routers for remote store setups and temporary deployments, providing reliable LTE/5G backup and primary connections as required.
Administered and fine-tuned Cisco ASA and Cisco Firepower Next-Generation Firewalls, implementing security policies, traffic inspection, and advanced threat protection for multiple clients.
Configured and optimized BGP routing policies in multi-homed environments to ensure path redundancy, load balancing, and enhanced network performance.
Managed BGP peering sessions, route filtering, and traffic engineering, contributing to increased network stability and reduced latency across enterprise environments.
Designed and managed site-to-site and remote VPN solutions using Meraki VPN, Cisco AnyConnect, and Palo Alto Global Protect, enabling secure access for remote workers and branch connectivity.
Conducted LAN/WAN troubleshooting and performance tuning, including VLAN configurations, OSPF and EIGRP routing, and QoS policies across Cisco and Meraki environments.
Deployed SSL Decryption policies to inspect encrypted traffic, ensuring visibility into potential threats and maintaining regulatory compliance.
Performed regular security assessments, updated firewall rule sets, and conducted vulnerability scans to align with cybersecurity best practices and standards.
Network and Security Engineer
ENCS Networks Inc.
11.2020 - 12.2024
Managed and configured Meraki network devices, including Meraki MS425, MS355, MS390, and MS250 Series switches; Meraki MR46, MR56, MR76, and MR86 Access Points; and Meraki MX250, MX450, MX95, and MX105 Security Appliances, ensuring secure, scalable, and high-performance network infrastructures.
Administered and optimized Cisco ASA Firewalls and Cisco Firepower Next-Generation Firewalls (NGFW), enforcing security policies, performing traffic inspection, and implementing advanced threat protection measures across diverse clients’ environments.
Configured and managed Cisco Nexus 9000 series switches for data center networking.
Implemented network telemetry solutions to monitor real-time traffic patterns, ensuring optimal performance and rapid issue resolution.
Leveraged streaming telemetry protocols to enhance network visibility, reducing downtime and improving efficiency.
Implemented Cisco ISE & 802.1X for secure network access control and authentication.
Designed and optimized Multicast networking for efficient data distribution across the network.
Configured and optimized BGP routing policies for multi-homed environments, ensuring redundancy and load balancing.
Managed BGP peering sessions, route filtering, and traffic engineering to enhance network stability and performance.
Designed, configured, and maintained Palo Alto Networks firewalls, including models such as PA-220, PA-3220, and PA5250, to deliver robust security through deep packet inspection (DPI), application-level control, and URL filtering.
Worked with Fortinet FortiGate firewalls, including models like FortiGate 60F, FortiGate 100E, and FortiGate 600C, implementing security strategies such as VPN configuration, IPS/IDS, antivirus protection, and high-availability setups.
Configured and managed site-to-site and remote access VPN solutions using Meraki VPN, Cisco AnyConnect, and Palo Alto Global Protect, ensuring secure connectivity for remote users and branch offices.
Troubleshoot and optimized LAN/WAN performance, including VLAN configuration, routing protocols (OSPF, EIGRP), and QoS policies, across Meraki and Cisco infrastructures.
Deployed and managed SSL Decryption to inspect encrypted traffic for security and compliance.
Conducted regular security assessments, vulnerability scanning, and firewall rule set updates to ensure alignment with best practices and security standards.
Configured and maintained wireless connectivity for large deployments using Meraki MR Series Access Points and centralized management through Palo Alto Panorama.
Assistant Network Manager
One Network, Head Quarter FWO
02.2018 - 11.2020
Deployed and maintained network switches and routers on all Motorways, ensuring seamless operations and infrastructure efficiency.
Deployed and configured Cisco, Huawei, H3C, and Dell switches and routers.
Configured and deployed Meraki SD-WAN, Meraki switches, Meraki firewalls, and Meraki Access Points (APs) for optimized network performance.
Successfully deployed 3 Safe City projects by configuring and deploying 3 data centers and 400 edge sites, utilizing H3C switches and firewalls.
Integrated Optical Fiber Cable (OFC) with switches and conducted thorough link testing.
Performed operations and maintenance of wireless (microwave) networks to optimize performance.
Collaborated with the Cybernet team for WAN optimization.
Conducted Proof of Concept (POC) for network security, protocols, and operational improvements.
Integrated attendance machine networks for effective communication and management.
Reviewed and vetted procurement demands from Zone-3 to align with organizational needs.
Diagnosed and resolved hardware, software, and network issues on-site and within the organization.
Provided support for onboarding network devices in Trace 9.
Ensured successful Proof of Concept (POC) and deployment of SD-WAN solutions.
Coordinated with ground network teams for troubleshooting, configurations, and vendor migration.
Resolved complaints in collaboration with MRT and Plaza technical teams.
Designed and deployed LAN, WAN, and wireless networks across motorways, including IT rooms and plaza booths.
Researched network products, services, protocols, and standards to stay current with networking advancements.
Designed logical network topologies using OSPF, BGP, and IPsec Tunnels, while managing IP schemes to avoid network loops and conflicts.
Ensured network connectivity for servers, workstations, NVRs, ANPRs, CCTV cameras, and other network appliances.
Managed server reachability, including database servers, email systems, and enterprise applications.
Jr. Tac Engineer
Kloud7
09.2017 - 02.2018
Collaborated with the VoIP Engineers team to manage and support VoIP technologies, contributing to the optimization of communication infrastructure.
Administered Cisco Broad Works (BroadSoft) platforms and hosted telephony services, ensuring high availability and seamless service delivery.
Provided expert-level technical support for network-related issues, diagnosing and resolving problems in a timely manner to maintain service excellence and minimize downtime.
Troubleshot, configured, and optimized network technologies including VoIP protocols (SIP, RTP, H.323), Cisco Unified Communications Manager (CUCM), Cisco ISR Routers, and Firewalls (ASA, FortiGate) to enhance system performance, reliability, and scalability.
Worked with call routing and quality of service (QoS) configurations to ensure optimal call performance.
Managed DNS, DHCP, and IP addressing within a VoIP environment, maintaining robust network connectivity.
Monitored and diagnosed issues with network traffic analysis tools (Wireshark, SolarWinds) and VoIP monitoring platforms (Sonus, GENBAND).
Jr Network Engineer
BM Connects
06.2016 - 08.2017
Worked as a Junior Network Engineer in the IT Network Department, tasks included LAN Management.
Provided computer help desk support and technical training on hardware/software to end users.
Documented help desk tickets/resolutions and provided overall assistance in daily administration of network.
Labeling of network and system hardware, Inventory management of all hardware.
Provide desktop support for clients in the office by phone or in person.
Cabling of all user’s machines in patch panels and from patch panels to cisco switch.
Management and troubleshooting of printers, scanners and projectors.
Added end users’ machines in Domain.
Managed DHCP and DNS settings on windows 2008R2 server.
Managed Outlook for basic troubleshooting issues.
Escalate tickets via ticketing tool and provide level 1 support.
Skills
Meraki SD-WAN
Routing
Switching
Network Design
Network Deployment
Network optimization
Wireless Network/Radio links Point to Point, Point to Multi-point
Senior Enlisted Advisor at Navy Special Operations Medical Institute/Joint Special Operations Medical Training CenterSenior Enlisted Advisor at Navy Special Operations Medical Institute/Joint Special Operations Medical Training Center