Summary
Overview
Work History
Education
Skills
Timeline
Additional Information
https://github.com/sheik9052
https://www.linkedin.com/
SoftwareEngineer
Kurshid SK

Kurshid SK

Summary

Summary:

As a seasoned Network Engineer with over 5 years of experience in telecom and networking technologies, I am passionate about building and maintaining robust, secure, and scalable network infrastructures. My expertise spans across network security, routing and switching, cloud technologies, and VPN management, all aimed at ensuring high availability and performance for businesses of all sizes.

Throughout my career, I have demonstrated proficiency in managing Next Generation Firewalls (PaloAlto, Cisco ASA, Fortinet), optimizing network performance through TCP/IP troubleshooting, and configuring MPLS and SD-WAN solutions to meet business needs. I am particularly adept at designing, implementing, and maintaining network security protocols, including firewall policies, intrusion detection systems, and VPN solutions that safeguard critical infrastructures against evolving threats.

In addition to my core technical skills, I have extensive experience with cloud platforms such as AWS, Microsoft Azure, and Google Cloud, allowing me to help businesses seamlessly integrate cloud-based solutions while maintaining a focus on security and scalability.

As a problem-solver, I thrive on identifying and resolving complex network issues, collaborating with cross-functional teams, and ensuring that network performance aligns with business objectives. Whether it’s working on large-scale global infrastructure projects, providing proactive network monitoring, or designing disaster recovery plans, I am committed to delivering solutions that support business continuity and growth.

Core Strengths:

Network Security & Firewall Management (PaloAlto, Cisco ASA, Fortinet)
Routing Protocols: RIP, OSPF, EIGRP, BGP
VPN Management (IPSec, SSL VPN)
Cloud Networking: AWS, Azure, GCP
TCP/IP Troubleshooting & Network Analysis
SD-WAN (Viptela, Citrix) & MPLS
Capacity Planning & Performance Tuning
Cross-Functional Collaboration & Leadership
I am always eager to stay ahead of industry trends and emerging technologies, actively expanding my knowledge to provide the best possible service to my clients and teams. If you're interested in discussing how I can help optimize your network infrastructure, let's connect!

Overview

1
1
year of post-secondary education
2
2
years of professional experience

Work History

Network Engineer,

Dell technologies
Manila
10.2023 - Current

Served as a Technical Analyst and L2 Engineer, managing and supporting client network infrastructure on a global scale.
• Designed, implemented, and maintained network security measures to protect against threats, malware, and other risks.
• Monitored network performance to ensure system availability and reliability, conducting regular performance tests and inspections.
• Oversaw client web portal operations, efficiently handling incident tickets categorized as P1, P2, P3, and P4.
• Resolved incident tickets within established Service Level Agreements (SLAs) and following Standard Operating Procedures (SOPs).
• Created and implemented robust network security policies to safeguard client data and systems.
• Actively participated in various network change initiatives, including emergency changes, collaborating with onshore L3 Engineers to ensure successful implementation.
• Identified, diagnosed, and resolved network problems, developing recovery procedures as necessary.
• Coordinated with multiple vendors, such as DU Communications, Dubai Telecom, AT&T, and Spectrum, to address any network route or link outages, ensuring network stability within SLA parameters.
• Stayed updated with advancements in networking and security technologies to enhance operational effectiveness.
• Provided support and guidance to L1 Engineers, educating them on client-specific SOPs to improve team efficiency.
• Collaborated with cross-functional teams to ensure network optimization and performance.
• Contributed to weekly presentations for clients, updating them on P1 and P2 incident ticket resolutions and any other relevant changes.
• Blocked malicious or suspicious IPs flagged by the security team on Palo Alto and ASA firewalls, enhancing network security.
• Developed and configured firewall rules on Palo Alto and Cisco ASA to allow specific ports for designated IPs, following established security templates.
• Monitored and analyzed network traffic for potential threats, providing proactive measures to safeguard infrastructure.
• Collaborated with cross-functional teams to address network vulnerabilities and implement security best practices.
• Assisted in troubleshooting connectivity issues, leveraging advanced diagnostic tools to identify and resolve problems quickly.
• Participated in capacity planning and performance tuning of network devices to support business requirements.

Network Security Engineer

Invesco
Houston, Texas
10.2022 - 09.2023

Developed and implemented network intrusion protection solutions, firewalls, and packet capture/analysis tools.
• Designed and troubleshot network routing and switching, including TCP/IP addressing.
• Created and managed VPN solutions.
• Formulated risk-based, prioritized action plans to enhance overall security and risk posture.
• Deployed complex technical security solutions.
• Provided comprehensive firewall and network security solutions across all infrastructure areas.
• Offered IT network security risk management guidance to the organization.
• Designed, implemented, and managed network security defense and monitoring tools, including configuration management, firewalls, IDS/IPS, and other monitoring systems.
• Analyzed emerging threats to anticipate and mitigate risks.
• Configured Palo Alto firewalls and troubleshot access, security, and NAT policies for clients.
• Established IPSec VPN tunnels on firewalls and resolved related VPN issues.
• Configured and conducted log analysis for remote VPN solutions (GlobalProtect).
• Evaluated security profiles, including URL filtering, antivirus, anti-malware, anti-spyware, file blocking, and data blocking.
• Monitored external server authentication methods such as LDAP and RADIUS.
• Successfully executed operating system upgrades across multiple devices, ensuring minimal downtime and maintaining network stability.
• Developed and implemented rollback procedures for failed upgrades, enhancing system reliability and user experience.
• Created comprehensive documentation for upgrade and downgrade processes, including step-by-step guides and troubleshooting tips, improving team efficiency.

Education

Master of Science - Computer Science

Governors State University
Park Forest, IL
08.2022 - 12.2023

Bachelor of Science - Electrical And Computer Engineering

Awaharlal Nehru Technological University
India
07.2015

Skills

Provided technical support for Palo Alto firewalls and security policies, including antispyware, antimalware, and antivirus solutions, as well as GlobalProtect

Proficient in TCP/IP and firewall troubleshooting

Routing Protocols (RIP, EIGRP, OSPF, and BGP)

Experienced in static and default routing configurations

NAT and PAT

Proficient in DNS and DHCP management

Expertise in firewalls, cybersecurity, computer networks, and security practices

VLAN Configuration and Management

Network Monitoring Tools (Wireshark, SolarWinds, Nagios)

VPN Configuration and Management (IPSec, SSL)

Load Balancing (F5, HAProxy)

Intrusion Detection and Prevention Systems (IDPS)

Cloud Networking (AWS, Azure, Google Cloud)

Infrastructure as Code (Terraform,

CloudFormation)

Wireless Networking (Wi-Fi standards, WLAN configuration)

IP Address Management (IPAM)

Network Access Control (NAC)

Scripting Skills (Python, Bash) for Automation

Server 2016, 2019 Configuration and Management (Windows, Linux)

Network Performance Optimization

Techniques

SDWAN

Timeline

Network Engineer,

Dell technologies
10.2023 - Current

Network Security Engineer

Invesco
10.2022 - 09.2023

Master of Science - Computer Science

Governors State University
08.2022 - 12.2023

Bachelor of Science - Electrical And Computer Engineering

Awaharlal Nehru Technological University

Additional Information

Proficient in using Microsoft Azure including Azure CLI, Azure Management, Azure Portal, Azure PowerShell, and Azure Management PowerShell Cmdlets. Involved in Migrating SQL Server databases to SQL Azure Database using SQL Azure Migration Wizard and used Python API to upload agent logs into Azure Blob storage. Implemented Enterprise Integration Architecture using Azure Service Bus, Azure AppService, Azure Active Directory, Azure Storage, Azure Hybrid Connection Manager, Active Directory authentication for Azure SQL Server, and other offerings by Azure. Automated infrastructure provisioning for AWS core services such as Ec2, VPCs, Load Balancers, Internet Gateways, Security Groups, and platform services like Elastic Beanstalk, ECS, Fargate, and Auto Scaling Group

Constructed AWS CloudFormation templates to create custom-sized VPC, subnets, EC2 instances, ELB, and Security groups. Efficiently implemented tagging standard for proper identification and ownership of AWS EC2 instances and other AWS Services like Cloud Front, RDS, S3, Route53, SNS, SQS, and Cloud Trail and Worked on Simple Storage Service (S3), Simple Notification Service (SNS) and CloudWatch. Utilized Cloud Watch to monitor resources like EC2, CPU memory, Amazon RDS DB services, and EBS volumes to set alarms for notification or automated actions to monitor logs for a better understanding of the operations. Provisioned immutable Infrastructure through Terraform which includes multiple Virtual Machines, Databases, and Blob storage.

Expertise in integrating Terraform with Ansible, and Packer to create and Version the Azure Infrastructure, designing, automating, implementing, and sustaining Azure VM Images across the Azure Cloud environment. Experienced in Configuring the updates, changes, and integrating the servers with different environments and creating new machines using configuration management/provisioning tools like Chef, Ansible, and Puppet. Worked on Docker to containerize the Application and all its dependencies by writing Docker files, Docker-Compose files, Docker Container Snapshots, and managing Docker volumes. Expertise in App Containerization technology Docker, creating Docker Images, Containers, Docker Registry to store images, Cloud-based registry Docker Hub and Kubernetes Services such as ISTIO Service Mesh, Flux, and ISTIO. Implemented the concept of storage class and deployed Postgres database as a Stateful Set into Kubernetes Cluster. Development of automation of Kubernetes Clusters via Playbooks in Ansible. Approached Continuous Deployment as GitOps that leverages Git as a single source of truth for declarative infrastructure and applications, providing both revision and change control using Flux. Expertise in all areas of setting up CI for new branches, Build automation, Plugin management, Securing Jenkins, and setting up Master/Slave Configurations. Expertise in building Jenkins jobs to create Azure Infrastructure by pulling Terraform code from GitHub repositories, ability to work closely with teams, to ensure high quality, timely delivery of builds & releases. Expertise in using monitoring servers like Nagios, Splunk, Grafana, Dynatrace, and CloudWatch for Resource & Network Monitoring and ELK, and EFK for Log Trace Monitoring.

Proficient with version control tools such as GIT, Subversion (SVN), and Bitbucket wherein experienced with Tagging, and Branching on platforms like Linux and Windows. Experience in different Issue Tracking Tools like Redmine, Jira, and ServiceNow. Designed, deployed, and coordinated with different teams to enhance the ELK platform and took ownership of new technologies. Experienced in the system builds, server builds, installation, upgrades, backup, performance monitoring, and reliability of various flavors of Linux like Ubuntu, CentOS, RedHat Linux, Debian, Fedora and SUSE, UNIX (Solaris, IBM AIX) along with Windows. Exposed to all aspects of the Software Development Life Cycle (SDLC) and In-depth understanding of the principles. Good understanding of the principles and best practices of Software Configuration Management (SCM) in Agile and SAFE Methodologies.

https://github.com/sheik9052

https://github.com/sheik9052

https://www.linkedin.com/

www.linkedin.com/in/sheikkurshid

Kurshid SK