Active CCIE Routing & Switching and Security #22672 since 2008 and CISA (Certified Information Systems Auditor), with over 16 years of experience designing, securing, auditing, and automating complex enterprise network infrastructures across the education, government, healthcare, and corporate sectors.
Specialized in network architecture, security engineering, audit and compliance readiness, routing protocols, VPN technologies, SDN, and data center modernization. Trusted technical lead for numerous large-scale deployments, infrastructure migrations, and network redesign projects.
Extensive hands-on experience in multi-vendor environments including Cisco, Palo Alto, Meraki, Check Point, Juniper, Arista, HP, and Huawei. Skilled in firewall management and migration using Palo Alto Panorama, Expedition, and GlobalProtect VPN. Strong background in network automation using Python, as well as advanced monitoring, orchestration, and compliance-driven operations.
Well-versed in bridging the gap between technical implementation and regulatory alignment, ensuring that networks meet both business and security standards. Known for deep protocol expertise, resilience under pressure, and technical leadership. A proactive team mentor and clear communicator with a passion for continuous learning and staying ahead of evolving technologies.
San Francisco International Airport – Terminals T1/T2/T3
ClearCaptions
Alameda Unified School District
Routing & WAN Technologies
Protocols: BGP (expert), OSPF (multi-area), EIGRP, IS-IS, RIP, Policy-Based Routing, Redistribution
Transport: MPLS, VPLS, VXLAN (expert), GRE, DMVPN, Frame Relay, PPP, PtP/PtMP
Redundancy: HSRP, VRRP, GLBP, EtherChannel, ECMP, StackWise, VSS
Security & Firewall Management
Cisco ASA 5500-X, Firepower NGFW, FTD, FMC, PIX, IPS/IDS
Palo Alto Networks: GlobalProtect VPN, Panorama, Expedition
Cisco ISE (2.x+), ACS, RADIUS, TACACS+, IPsec/SSL VPNs
Check Point firewalls, DUO MFA, Cisco AnyConnect (Remote Access VPN)
Switching & Data Center
Cisco Catalyst: 1800–9000 Series, C9300/C9500, 6500, 4500
Nexus NX-OS 2K/3K/5K/7K/9K (vPC expert)
Cisco ACI, Cisco DNA Center, spine-leaf architectures
High Availability: vPC, StackWise, SSO, HA firewall pairs
Network Automation & Monitoring
Python scripting (config automation, compliance, audits)
Tools: SolarWinds, PRTG, LogicMonitor, Cisco Prime, NetFlow, SNMP, Syslog
Orchestration: Ansible, REST APIs, Cisco DNA workflows
Visualization: Microsoft Visio, Draw.io
Cloud, Virtualization & Systems
Hybrid integration: Azure/AWS VPN, cloud route management
Microsoft Server 2003–2019: DHCP, DNS, Active Directory
VMware vSphere/ESXi, Load Balancers, clustering
IT Operations & Documentation Platforms
Datto (BCDR), Autotask PSA, IT Glue (documentation),
IPAM (IP Address Management tools)
Atlassian tools: Confluence, Jira (ITSM & project tracking)
Professional & Interpersonal
Project leadership, customer-facing delivery, pre-sales engineering
Team mentoring, escalation handling (Tier 3), technical presentations
Compliance awareness (CISA), documentation, continuous learning
Project Management (PMP)