Certified Principal Security Solutions Engineer with ITILV4, CEH, Cisco, Palo Alto, and Check Point firewalls certifications with over 3 years of extensive expertise in Identity and Access Management (IAM) and Privileged Access Management (PAM), driving secure access control and identity governance across complex IT infrastructures.
Expertise in authentication protocols, including SAML, OAuth, and OpenID Connect, enabling secure and efficient access to resources.
Strong hands-on experience with automation tools like Python, Ansible, and PowerShell, reducing provisioning times and eliminating manual errors.
Proficient in designing, deploying, and managing advanced IAM frameworks, including role-based access control (RBAC), attribute-based access control (ABAC), and multifactor authentication (MFA) solutions.
Proficient in integrating IAM with security operations, including Security Information and Event Management (SIEM) systems, to enhance incident detection and response capabilities.
Credential and Access Management (ICAM), Single Sign On (SSO), Federation Services (FS), Role Based Access Control (RBAC), Multifactor Authentication (MFA), Privileged Account Management (PAM) and various Data security controls, operations, and procedures.
Working with AWS Cloud platform and its various services, which include IAM, EC2, S3, ECS, EBS, CLI, SNS, and RDS, Redshift and CloudFormation etc. Expert level knowledge of Data Security systems such as; SEIM, IDS/IPS, Firewalls, Evident and related network Security tools.
Extensive experience in conducting risk assessments, gap analyses, and compliance audits to ensure adherence to standards like ISO 27001, GDPR, and NIST.
Overview
5
5
years of professional experience
1
1
Certification
Work History
CYBER SECURITY ANALYST
Pike Electric Group
04.2024 - Current
Designed and deployed a comprehensive IAM solution for a multi-cloud environment, integrating with AWS, Azure AD, and Oracle Cloud to centralize access control.
Automated IAM processes using Python and Ansible, reducing onboarding time for new users by 40% and minimizing manual errors in access provisioning.
Focused on the development and implementation of client's Cisco Identity Services Engine (ISE) Remediation and Integration with wired, wireless, and virtual private network (VPN)
Understanding of Cisco VPN, wireless, Force Point DLP and Shibboleth, Duo
Deployed just-in-time (JIT) access for privileged accounts, minimizing the exposure window for elevated permissions and reducing risks of misuse
Monitored and analyzed network traffic using tools like SolarWinds and Wireshark to detect and address potential threats proactively.
Expertise with Palo Alto Next-Generation devices,Deployment of Palo Alto 5260's and 7050's in HA pair for Multiple Datacenters
Lead incident response team in real-time threat analysis, establish security frameworks, and optimize network protection strategies
Perform continuous security audits, maintain compliance standards, and develop comprehensive cybersecurity documentation and protocols
Design and implement advanced security solutions, automate threat detection processes, and enhance system resilience against emerging risks
Configuration and troubleshooting of Site to Site as well as Remote Access VPN on Cisco ASA and Check Point firewalls
Partner with cross-functional teams to integrate security measures, conduct training sessions, and establish best practices for data protection
Develop machine learning algorithms for automated threat detection, reducing false positives and enhancing network security monitoring efficiency
Coordinate with DevOps teams to integrate security controls within CI/CD pipeline, strengthening application security from development to deployment
NETWORK SECURITY ENGINEER
Dell Technologies Inc.
08.2020 - 12.2022
Implemented advanced network security protocols and managed firewall systems across Dell's infrastructure, strengthening threat detection capabilities
Installation, configuration and maintenance of Palo Alto Firewalls, Cisco ASA firewalls
Deployed and managed Varonis specifically Data Governance, Data Advantage and Data Alert modules in complex environments
Serving as a Cloud Access Security Broker (CASB) Security Specialist with a primary focus on Confidential CASB/Skyfence
Collaborating with product marketing teams, channel sales representatives and regional sales managers with product roadmaps, business development opportunities and interactive live product demonstrations at security conferences and via live webinars hosted remotely
Configuring rules and Maintaining Checkpoint, Palo Alto, Fortinet Firewalls& Analysis of firewall logs using various tools
Have good understanding on configuring NAT for Web and Gateway servers
Handled deployment and management of Checkpoint GAIA, R75, R71, and R65
Led security incident response team, reducing average threat resolution time while maintaining network uptime standards
Implemented advanced network security protocols and managed firewall systems across Dell's infrastructure, strengthening threat detection capabilities