Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic
Saif Alani

Saif Alani

Roseville,CA

Summary

Senior Network Engineer with 20 years of comprehensive experience in the design, implementation, and management of robust network infrastructures in both cloud and on-premises environments. Possesses strong expertise in network security, switching technologies, and architectural design, with a demonstrated ability to optimize network performance and enhance security measures. Skilled in collaborating with cross-functional teams to create innovative solutions that foster operational efficiency and adapt to changing business requirements. Committed to utilizing advanced technical knowledge and industry best practices to achieve resilient, secure, and scalable network systems.

Overview

20
20
years of professional experience
1
1
Certification

Work History

Senior Network Security Engineer- SME

Parexel international
Roseville, USA
01.2021 - Current
  • Managed over 15 accounts on AWS Cloud, including the setup on EC2 instances, RDS databases, and VPC Elastic Load Balancers (ELBs). Amazon Elastic Kubernetes Service (EKS). Route 53 is used to manage DNS records on AWS Cloud.
  • Performed comprehensive vulnerability scans across the network infrastructure using Nessus, using the tool to identify and prioritize critical vulnerabilities for remediation.
  • Managed and configured AWS cloud networking, VPC routing, VPCE, Direct Connect, Fortinet, FortiWeb, FortiGate, and utilized cloud security and formation tools.
  • Led the development and upgrades of Fortinet VM devices on AWS Cloud to ensure monitoring of traffic on upstream and downstream systems.
  • Responded quickly to incidents reported by customers regarding outages or service degradation issues.
  • Optimized virtualization strategies across multiple platforms including VMware ESX and ESXi and Hyper-V environments.
  • Troubleshot problems arising during the deployment process and provided timely resolutions.
  • Provided training sessions to staff members on how to use newly-deployed systems.
  • Designed custom configurations for customers' individual needs, such as audio and video signal routing and switching networks.
  • Updated and maintained databases with current information.
  • Worked successfully with diverse group of coworkers to accomplish goals and address issues related to our products and services.
  • Conducted routine maintenance and repairs on mechanical systems and industrial equipment.
  • Orchestrated deployment and operations for production DC and RDC remote data center networks infrastructure.
  • Managing various components such as PE Tier, CE Tier, CC Connector, PSW POD Switches, CR Cluster Switches, etc.
  • Implemented and maintained LAN configurations, VLANs, EVPN, ACLs, VXLAN, VTP, and QoS DSCP. Spanning tree protocols on Cisco and IOS switches in the DC environment.
  • Demonstrable experience solving complex problems within both the cloud and legacy networks for large, complex enterprise environments.
  • Experience with working in a collaborative and team-oriented environment.
  • Participants on-call rotation with the Global team to support the regional network infrastructure 24/7.

Network Engineer- IS&T Team

Apple.Inc
Elk-Grove, USA
08.2019 - 01.2021
  • Configure and support deep design of Routing, switching, firewalls, system design, and troubleshooting complex DC networks.
  • Experience in network design, implementation, and deployment of Nexus, 9K, 7K, 5K, 2K, Arista 7010, 7050, and 7060 on Apple AODC, RDC, and GDCS.
  • Facilitated Moves/Adds/Changes of hardware in a collocated data center environment.
  • Achieved exceptional adherence to service standards for provisioning processes.
  • Contributed to the development of provisioning processes, enhancing cross-team workflows.
  • Executed changes in the Cisco network environment during maintenance windows, optimizing network performance.
  • Participated in on-call rotations, managing incidents and performing root cause analysis.
  • Documented processes and procedures in internal wikis for knowledge sharing and training.

SD-WAN Network

Century Link
Tulsa, USA
09.2018 - 08.2019
  • Orchestrated the delivery of 15 integrated network solutions, aligning hardware platforms with specific client requirements for optimal functionality.
  • Managed Firewalls, including Forcepoint and Firepower NGFW, resulting in a 25% decrease in security incidents and unauthorized access attempts.
  • Administered routers (Juniper, Cisco, HP), load balancers (F5), and Firewalls (ASA, SSLVPN), leading to a 20% increase in network speed and data transfer efficiency.
  • Developed 10 detailed physical and logical infrastructure design documents for WAN connectivity, specializing in SD-WAN technologies like Viptela/IOS XE and Versa SD-WAN.

Q A Network Engineer III

Sprint Communications Provider
Kansas, USA
04.2017 - 09.2018
  • Increased overall network performance by 15% through upgrades and optimized monitoring tools.
  • Recommended network equipment that led to 20% cost savings while improving operational efficiency.
  • Identified vulnerabilities in existing systems, significantly reducing security incidents through enhanced measures.
  • Maintained VoIP and VTC devices to achieve 10% improvement in call quality metrics.
  • Configured routers and firewalls across departments, contributing to decreased unauthorized access attempts.
  • Expertly troubleshot L2-L3 layers on Cisco, Alcatel, Juniper devices within data center environments.
  • Created network documentation including architecture diagrams and topology layouts to streamline processes.
  • Acted as last-tier support for high-severity business-impacting issues in a large-scale network.

Transport Network Engineer

Windstream Communications
Little Rock, USA
01.2016 - 04.2017
  • Managed provisioning and troubleshooting of transport equipment within a NOC, ensuring 99.9% network.
  • Led commissioning tests and turn-ups of new equipment, contributing to the seamless integration of the network.additions. Proficiently provisioned DWDM and optical transport, including Cisco, ROADM, and crossponders.Cyan and Fujitsu technologies.
  • Demonstrated expertise in tools such as CTC/CTM, NetSmart, CyMS, DSL, ADSL, and the ability to interpret circuit layout records.
  • Executed tasks associated with circuit conversions and disconnect orders, maintaining a proactive approach to order/provisioning plan steps.
  • Implement complex communication solutions that can be deployed to field or remote locations to connect.
  • Secure facilities and support the exchange of required data within a cloud environment.
  • Involved in the design and implementation of approved networking and transport solutions to support long-term Information System (IS) management goals, which include installing and configuring network equipment, and providing support to systems administrators.
  • Monitor computer systems to improve network performance, and lead troubleshooting efforts to resolve networking issues between local and external sites. Manage and maintain a library of network engineering tools to be used for system testing and diagnosis. Network-related system issues, both locally and abroad.
  • Apply leading-edge principles, theories, and concepts to the development, maintenance, and implementation of network engineering standards, procedures, and guidelines.
  • Maintain current knowledge and implement best practices in network security to offer the best solutions and protection to information systems.
  • Produce documentation to support installation, configuration, troubleshooting, and operator usage of systems.
  • Contribute technical content and tutorials to product documentation.
  • Work directly with customers to plan and strategize.

Network Engineer

US Military -IMOD
Baghdad, Iraq
12.2005 - 03.2015
  • Successfully addressed IDN network issues by identifying root causes and implementing effective solutions.
  • Administered and constructed networks, focusing on security across routers, switches, and various networking devices.
  • Managed the security landscape, selecting, deploying, and troubleshooting various networking protocols and technologies.
  • Provided technical support for queries related to networks, computer systems, software, and hardware equipment.

Education

Bachelor of Electrical Engineer -

University of Technology
Baghdad, Iraq
01.2006

Skills

  • Firewall management and security
  • Network protocols: BGP, OSPF, EIGRP
  • Data center operations
  • Technical troubleshooting
  • Documentation writing
  • DDoS detection and attack analysis
  • Identity and access management (IAM)
  • Multi-factor authentication (MFA)
  • Network monitoring tools: Splunk, SolarWinds, Kentik
  • Automation tools: Ansible, Terraform
  • Cloud services: AWS, Azure
  • Network architecture and design
  • Performance optimization strategies
  • Collaboration and teamwork skills
  • Problem solving
  • Team collaboration
  • Effective communication
  • Project management
  • Employee training
  • Operating system security
  • Incursion tracking
  • Security incident response
  • Threat analysis
  • Data loss prevention
  • Network security design
  • Identity and Access management
  • Secure network architecture
  • Intrusion detection
  • Access control management
  • Penetration testing
  • Wireless security
  • Secure coding practices
  • Two-factor authentication
  • Social engineering defense
  • VXLAN designs and troubleshooting
  • Network monitoring
  • Patch management
  • Encryption techniques
  • Port security
  • IP addressing and subnetting
  • Security awareness training
  • Virtual private networks
  • Active directory
  • Firewall configuration
  • Database security
  • Network infrastructure
  • Linux security
  • IT governance
  • Security metrics
  • Security audits
  • Malware analysis
  • Security software
  • Time management
  • Network security
  • Mobile security
  • System safeguarding

Certification

  • CCNP Routing (300-101)
  • CCNA Routing & Switching
  • CCNA Wireless
  • CCNP Security (CISSP)
  • CCNA Security
  • (IINS) CompTIA A+ Hardware

Timeline

Senior Network Security Engineer- SME

Parexel international
01.2021 - Current

Network Engineer- IS&T Team

Apple.Inc
08.2019 - 01.2021

SD-WAN Network

Century Link
09.2018 - 08.2019

Q A Network Engineer III

Sprint Communications Provider
04.2017 - 09.2018

Transport Network Engineer

Windstream Communications
01.2016 - 04.2017

Network Engineer

US Military -IMOD
12.2005 - 03.2015

Bachelor of Electrical Engineer -

University of Technology
Saif Alani