
Experienced Information Security Professional with over 18 years of proven expertise in network security, infrastructure security consulting, and information security management. Adept at designing, implementing, and maintaining comprehensive enterprise security solutions, with a strong focus on firewall management, VPN technologies, and vulnerability assessment. Highly skilled in providing top-notch security consultation for major financial services clients. Certified in multiple industry-leading security technologies, including Checkpoint, Palo Alto, and Cisco. Dedicated to ensuring the highest standards of security and compliance, and committed to continuous professional development.
· Project Objective: Provide Data and Network Security consultation for Cognizant Banking and Financial Services clients. Generate and provide Network and Security assessment reports, solutions, and design documents for projects. Identify capacity utilization bottlenecks and provide mitigation plans and analysis reports. Review Security posture of networks and provide security solutions for new services. Involve in Migration, audit, and assessment for service improvements.
· Job Description: Information Security Sr. Professional I, providing strong firewall security solutions for the current infrastructure, and end-to-end firewall support. Provide Level 2 on-call operations support for other information security technologies.
· Roles and Responsibilities:
o Providing Firewall support including both Operations and Engineering for Data Center Firewalls.
o Providing firewall, BlueCat DNS, Bluecoat Proxy, BigIP F5 VPN support for Security Operations Team.
o Upgrading the current Checkpoint firewall environment to enterprise standards.
o Firewall Migrations from Checkpoint Firewalls to Palo Alto Firewalls.
o On-call operations support providing Level 2 technical support for Checkpoint, Palo Alto, Cisco ASA Firewalls, BigIP F5 VPN support, BlueCat DNS and DHCP solutions.
o Vulnerability assessment and management.
o End-to-end Tufin administration.
o Server port provisioning, configuring firewall policies in Juniper Netscreen and SRX firewalls, incident and change management, vendor coordination.
o Management of Juniper Network and Security Manager (NSM).
o Basic configuration and troubleshooting on WAN Links and F5 Load Balancer.
· Project Objective: Provide Data and Network Security consultation for Cognizant Banking and Financial Services clients. Generate and provide Network and Security assessment reports, solutions, and design documents for projects. Identify capacity utilization bottlenecks and provide mitigation plans and analysis reports. Review Security posture of networks and provide security solutions for new services. Involve in Migration, audit, and assessment for service improvements.
Engagement#1: Firstdata Corporation(April 2014 - Sep 2019)
o Job Description: Level 2 Network Security Engineer providing strong firewall security solutions for the current infrastructure, and end-to-end firewall support. Provide Level 2 on-call operations support for other information security technologies.
o Roles and Responsibilities:
§ Complete Firewall support including Operations and Engineering for Data Center Firewalls.
§ Firewall, BlueCat DNS, Bluecoat Proxy, BigIP F5 VPN support for Security Operations Team.
§ Upgrade current Checkpoint firewall environment to enterprise standards.
§ On-call operations support providing Level 2 technical support for Checkpoint, Palo Alto, Cisco ASA Firewalls, BigIP F5 VPN support, BlueCat DNS, and DHCP solutions.
§ Vulnerability assessment and management.
§ End-to-end Tufin administration.
Engagement#2: Time Warner Cable Corporation(Dec 2010 - Jan 2014)
o Job Description: Level 2 Network Security Engineer
o Project Description: Network support tier 2 from offshore delivery. Monitor LAN/WAN network using network monitoring tools to achieve zero downtime. Implement all firewall requests through NSM tool of Juniper Netscreen and SRX Firewalls. Implement all switch port configuration requests and routing changes when change requests are logged.
o Roles and Responsibilities:
§ Server port provisioning, configuring firewall policies in Juniper Netscreen and SRX firewalls, incident and change management, vendor coordination.
§ Management of Juniper Net-Screen Manager (NSM).
Basic configuration and troubleshooting on WAN Links and F5 Load Balancer.
· Job Description: Level 2 Network Engineer
· Project Description: Providing network support at Accenture Bangalore location, including LAN/WAN and firewall technologies.
· Roles and Responsibilities:
o Design Data Networks for projects connecting to client networks over secured channels.
o External and internal Audit handling.
o Creating policies based on Project requirements in NetScreen, Cisco PIX, and ASA.
o Setup DMZ on Firewalls for Internet-facing servers.
o Hands-on experience with BGP, OSPF, and EIGRP routing protocols.
o Installations, Deployments, and Configurations of Cisco switches.
o Configuring IP helper and VLAN interfaces on core switches for DHCP.
o Knowledge in switching concepts like STP, VTP, and VLAN pruning.
o Experience in configuring VSYS, Zones, and inter-VSYS routing on NetScreen firewalls.
o Configuring HSRP, NSRP, and Auto failover on Firewalls and Routers.
o Working with sniffers like Ethereal for Network traffic troubleshooting.
o Configuring Site-to-Site and Client-to-Site IP
Firewall Exposure: Checkpoint, Palo Alto Firewalls, Cisco, and Juniper Networks
Firewall Management and Tools:Checkpoint MDSM, Smart Console, Cisco IOS & ASDM, Juniper Netscreen NSM, Palo Alto Panorama, Tufin SecureTrack, SecureChange
Firewall Gateway Appliances:Cisco ASA 5585x and 5555x (3 years), Checkpoint GAIA 4K, 12K, and 21k Gateway Appliances (5 years), Juniper SSG (5 years), Netscreen and SRX (5 years), Palo Alto PA7080 (3 years)
Security Orchestration Suite:Tufin T1220, T820, T1200, T1100XL, T800, T510, Algosec
VPN Technologies: Remote Access VPN using F5 VPN Solutions
Proxy Technology: Bluecoat Proxies
Routers: Cisco Catalyst Series
Switches: Cisco Catalyst Series
DNS Solutions: Bluecat
SNMP and Syslog Monitoring:Spectrum, CAPM
Log Management: Checkpoint Multi-Domain Log Servers, Splunk
File Management: WINSCP, tcpdump, Wireshark
Certifications
· PCNSE - Palo Alto Networks Certified Network Security Engineer
· ACE - Palo Alto Accredited Configuration Engineer
· CCSA - Check Point Certified Security Associate
· CCNA - Cisco Certified Network Associate
· ITIL Foundation
· TCSE 1, 2, 3, 4 - Tufin Certified Security Expert
Certifications
· PCNSE - Palo Alto Networks Certified Network Security Engineer
· ACE - Palo Alto Accredited Configuration Engineer
· CCSA - Check Point Certified Security Associate
· CCNA - Cisco Certified Network Associate
· ITIL Foundation
· TCSE 1, 2, 3, 4 - Tufin Certified Security Expert