
Dynamic Infrastructure Architect with current proven success at Ryder and previously with Cisco Systems, specializing in enterprise routing, network security, automation, wireless, and zero-trust architectures. Expert in optimizing deployment pipelines and enhancing operational efficiency. Adept at vendor management and strategic decision-making, driving significant cost reductions while ensuring high availability and performance in complex environments.
Project Manufacturing/Warehousing
Architected and implemented highly scalable, secure infrastructure solutions to optimize logistics operations and support enterprise-grade availability and performance.
Led automation and optimization of deployment pipelines (CI/CD), significantly reducing downtime and risk during system upgrades and releases.
Conducted in-depth technical evaluations and ROI analyses of networking and security products (e.g., Cisco routers, Palo Alto firewalls, Cisco Meraki Wireless, VPNs), influencing strategic vendor and technology selections.
Owned end-to-end vendor management for critical infrastructure services and tools, enforcing SLAs, driving performance improvements, and negotiating contracts to reduce cost and improve reliability.
Compiled architectural designs, security plans, and system specifications for infrastructure projects.
Project: Global Cisco DNA Center / Catalyst Center Rollout & Standardization
Led global migrations from SolarWinds and Cisco Prime to Cisco DNA Center / Catalyst Center across thousands of Cisco Catalyst switches, routers, WLCs, and APs, driving >95% configuration compliance and reducing configuration drift and audit findings.
Designed standardized configuration templates and policies for campus and branch networks, enabling intent‑based networking, faster deployments, and improved network visibility.
Project: AI‑Driven Network Configuration Baseline & Compliance
Designed and implemented an AI/ML‑assisted configuration baseline verification platform using Microsoft Azure AI services to automatically validate complex router/switch configurations.
Reduced manual configuration review effort by ~40% and improved adherence to security and design standards, strengthening network security posture and operational consistency.
Project: SD‑Access Campus Network & Cisco ISE Zero‑Trust Integration
Architected Cisco SD‑Access fabrics, Catalyst 9K deployments, and Cisco ISE‑based policy for large enterprise/healthcare customers, enabling zero‑trust network access and end‑to‑end segmentation.
Implemented 802.1X/MAB and ISE policy sets for employees, guests, contractors, IoT, and medical devices, reducing lateral movement, misconfigurations, and access‑related incidents by ~25–30%.
Project: Network Security, Firewall Policy & Routing Optimization
Re‑engineered perimeter and internal firewall rule‑bases and migrated routing from RIP to OSPF, optimizing route distribution, failover, and segmentation.
Improved end‑to‑end network performance by ~15% and reduced security incident volume by ~20% by simplifying firewall policies and stabilizing routing behavior.
Project: Enterprise Remote‑Access VPN Migration (500+ Users)
Led the design and implementation of a new IPsec remote‑access VPN solution for 500+ remote users, including authentication/authorization integration with ISE/AAA.
Achieved >99.9% remote‑access availability post‑migration with minimal user disruption, supporting a resilient hybrid/remote workforce.
Project: Hybrid Cloud Network Connectivity (AWS / Azure)
Designed secure network connectivity and routing for hybrid environments (~30 servers, ~50 TB storage) leveraging AWS/Azure VPNs, routing, and segmentation between on‑prem data centers and cloud workloads.
Enabled data center consolidation and reduced on‑prem operational costs by supporting application migration and cloud adoption initiatives.
Project: L3 Network Escalation & Technical Leadership
Served as L3 escalation engineer for complex Layer 2/3, wireless, and network security issues (including Stealthwatch and ISE integrations), consistently lowering MTTR on high‑priority incidents.
Delivered customer workshops, PoCs, design reviews, and executive‑level briefings, clearly articulating network architecture, risk, and business impact to technical and non‑technical stakeholders.
Project: Enterprise Campus Core/Distribution Refresh & Data Center Modernization
Led hospital‑wide LAN refresh from legacy Catalyst 2960 to modern Catalyst 3550 access and Nexus‑based core/distribution, significantly improving resiliency and enabling higher‑speed, redundant paths.
Designed and deployed a new data center distribution layer using Cisco 6840‑X‑LE‑40G in VSS, increasing throughput and availability for mission‑critical EMR and clinical applications.
Project: Standardized Access Layer – Clinical “Spacelabs” Environment
Architected and deployed standardized Cisco 3850 switch stacks (5×3850 per floor) and routers for clinical “Spacelabs” environments, enforcing consistent configuration templates.
Simplified operations, troubleshooting, and change management across multiple floors and buildings by unifying switch designs and configurations.
Project: Enterprise 802.1X / MAB & Cisco ISE‑Based Network Access Control
Implemented wired and wireless 802.1X and MAB using Cisco ISE 2.x for AAA, posture assessment, and policy enforcement across staff and guest networks.
Migrated legacy RADIUS and TACACS+ services into ISE, centralizing device administration, improving privileged access audibility, and strengthening HIPAA compliance.
Project: $138M Women & Children Pavilion – Wi‑Fi & Security Architecture
Designed and supported the Cisco wireless network for the $138M Lakeland Regional Health Pavilion for Women and Children, including WLC/AP configuration, RF tuning, and secure guest/clinical WLANs.
Delivered reliable, high‑density Wi‑Fi for critical medical devices, clinician mobility, and patient/guest access in a complex, interference‑prone healthcare environment.
Project: Data Center Systems, Virtualization & Storage Operations
Administered VMware, Windows Server, and SAN storage platforms supporting EMR and core hospital systems, ensuring high availability and robust backup/recovery for PHI.
Collaborated with security and application teams on change management, incident response, and performance optimization.
Project: Firewall Policy & Internal Network Segmentation for PHI
Managed firewall rules and internal segmentation between clinical, administrative, and guest networks to protect PHI and sensitive hospital systems.
Reduced attack surface and improved regulatory alignment by enforcing least‑privilege access and tightly controlled inter‑zone communication.
Project: Multi‑Site Campus Switch Stack Upgrades – American Express
Led multi‑site Cisco 3750E/3750X to 3850 stack upgrades across 9 locations, including lab validation, change window planning, and implementation with minimal downtime.
Standardized stack topology and configurations to improve operational stability, monitoring, and scalability.
Project: Data Center Expansion – Nexus 6000 NRFU (Muenster, Germany)
Supported Network Ready for Use (NRFU) activities for adding 16 Cisco Nexus 6000 switches into existing data center fabrics.
Performed redundancy, failover, and connectivity testing pre‑go‑live, reducing post‑deployment defects and stabilization time.
Project: DMVPN Phase 2 WAN – Tiffany & Co. APAC Retail
Designed and implemented Cisco DMVPN Phase 2 for APAC retail sites to enhance WAN resiliency and scalability.
Tuned routing protocols, QoS, and IPsec encryption parameters for consistent application performance across diverse WAN circuits.
Project: Policy Automation, Compliance & Lab Validation (Enterprise)
Built lab/simulation environments to validate new designs and customer configurations before production rollout, cutting change‑related incidents and rollbacks.
Created automated configuration and compliance reporting using CMCS policy automation, giving enterprise customers visibility into configuration drift and policy adherence.
Project: QoS Design – PNC Financial Services
Designed QoS policing and traffic shaping strategies on Cisco 2811/2821 routers to prioritize voice and transaction traffic over WAN.
Authored QoS standards, templates, and implementation playbooks for consistent deployment by network operations teams.
Project: Methodology, Runbooks & Knowledge Transfer
Authored network change documentation, runbooks/playbooks, and training materials adopted across the CMCS team, improving execution quality and reducing onboarding time.
Partnered with project managers and customer leadership to manage technical risk, scope, and deliverables in line with Cisco Advanced Services methodologies.
Project: 4,400+ Device Service Provider Network Operations
Monitored and supported a large Cisco Ethernet and fiber network (4,400+ devices), handling incident detection, triage, escalation, and post‑change validation for enterprise and carrier customers.
Captured pre‑maintenance configuration snapshots and executed post‑change checks, reducing configuration‑related outages and enabling rapid, low‑risk rollbacks.
Project: Enterprise Incident Ownership & SLA Management
Acted as key technical point of contact for major enterprise accounts during outages and major incidents, coordinating with field engineers, vendors, and carriers.
Supported major‑incident bridges and escalation workflows, helping the organization consistently meet or exceed contractual SLAs.
Project: Access‑Layer Configuration & NOC Knowledge Base
Configured and troubleshot Cisco 1800/1900/2800 routers and 2950/2960/3560 switches (VLANs, port security, access policies) to maintain service integrity.
Created and maintained NOC SOPs, technical tips, and white papers, reducing new‑hire ramp‑up time and increasing first‑line resolution rates.
Cisco Network Architecture