Summary
Overview
Work History
Education
Skills
Certification
Other Client Profile supported prior to 2006
Timeline
Generic

Usman Khan

Haymarket,VA

Summary

Subject Matter Expert (SME) Network Architect/Engineer with 20+ years of experience in network design, infrastructure operations, automation, and root cause analysis. Strong expertise in Cisco, Juniper, AWS, and Azure platforms. Proven ability to lead teams in complex environments for large organizations. Skilled in quickly identifying business needs and implementing innovative solutions to increase productivity and reduce costs. Proficient in DOD and NIST control frameworks.

Overview

19
19
years of professional experience
1
1
Certification

Work History

Senior Cloud Architecture/Principal Solution Engineer

Verint inc
01.2022 - Current
  • Designed IT infrastructure and networking Architecture according to management demand building Data centers across US and international
  • As a Senior Cisco SDWAN Architect design and implement SDWAN solution across enterprise
  • Design and implement cisco SDWAN and onboard remote sites with multiple templates
  • Design and operate cisco ACI Network Centric single pod Data Center, Layer 2 vrf with multiple contracts associated to core vrf L3 out
  • Deploy Cisco Infrastructure in new Ecosystem, MPLS MP-BGP VPLS and OSPF, ASA Firewall and FortiGate/Forti manger
  • Inter DCI BGP/EVPN Between Data center, L2 VPC, multiple L3/L2 MPLS Hands off for Various customers
  • Monitored existing infrastructure and architectural framework for performance and made changes when necessary
  • Designed both technically compliant and secure cloud solution as well as valued based on demand services to facilitate the effective transition and migration of project/programs into unique and adaptive cloud environment
  • Develop proof of concept within AWS environment for Target architecture
  • Plan and architect massive migration form Vendor environment to AWS native solution
  • Provide support on AWS cloud deploy VPC IGW transit gateways and CGW (CGNAT), Deploy C2S and C2C tunnels etc
  • Support customer environment Mange (VPC EC2, S3, Cloud Front security and groups for each Environment deploy NLB/ALB, Manage Network Manger / Cloud WAN cloud formation etc
  • Deploy and Manage Multi-cloud environment using Aviatrix, VPC deployment Transit Gateways S2S Tunnels etc
  • Supporting infrastructure with multiple tools, such as ISE SolarWinds DNA, etc

Solution Architect/Principal Network Engineer

Equinix inc
01.2021 - 01.2022
  • Supporting customer and provide cloud solutions and architectural support, work on JIRA and Confluence tool for Pl planning and Lucid chart
  • Work in large Data center environment support and deploy / migrate Cisco Multi Pod ACI
  • Multiple MPLS circuits L2 and some L3 circuits, DWDM Dark fiber, mange with Ekionops
  • Work with Team to architect deploy Circuits and built Data Center solution for verity of customer, Cisco ACI Centric Data center, Juniper Back bone
  • Provide ability to architect and design Traffic and provision Circuits L2 and L3 circuits, activate and deactivate
  • Circuits
  • Deploy and architect new solution for customers and Equinix Data center Multi BGP design/L2 Aggregation Hands off
  • Responsible of researching and bringing new Vendors and solution to test in environment and deploy
  • Mange small team and tasking different solutions
  • Technology centric environment built new solution and deploy, handle, and create cloud environments for customer on core side
  • Support customer with AWS service Architect Virtual Private cloud, design Gateways and Route traffic to multi cloud environment
  • Very good understanding of Tic 3.0 for Cloud services, Zscalar and other VPN services to provide solution
  • Provide DR services and test setup for the client to do testing on commercial and Government cloud environment

Network Manager / Lead Network Engineer

GDIT Army Program
06.2020 - 01.2021
  • Lead team of Engineers mange projects schedules and daily task
  • Work with DISA to escalate PPSM request for Airforce, fill out PPSM paperwork for Firewalls
  • Deploy and architect Cisco DNA Center, deploy devices templates and Polices
  • Architect and deploy multiple project, DMVPN/IP-SLA/SDA Campus Design / AWS/Azure migration

Lead NSX Virtualization Networking Engineer/AWS Architect

ANG (Air force National Guard) Joint Base Andrews
01.2020 - 05.2020
  • Lead team of Engineers mange projects schedules and daily task
  • Work with DISA to escalate PPSM request for Airforce, fill out PPSM paperwork for Firewalls
  • Deploy and architect Cisco DNA Center, deploy devices templates and Polices
  • Currently working at ANG to provide expert level design and Architect plan and advises
  • Aws Technical Architect with 2 to 3 years of developing and Architecting enterprise level solutions
  • Hands on experience on implementing cloud solutions using various AWS services, Ec2, VPC,S3, Lambda, Directory services, Cloud security Group, and AWS advance Networking
  • Experience application migration and Data migration from on Premise to AWS cloud
  • Experience in designing laaS, PaaS, SaaS model
  • Building prototype NSX environment in Data Center, micro segmentation, Load balancing, customer wants to transform legacy network to fully Virtualized Network automation capable network
  • Design, test and document NSX network solution with specific focus on underlay network installation
  • Develop and validates test to ensure that requirements are addressed
  • Developing solution for multisite NSX-T with SRM, Horizon 7
  • Future advancement to utilize cloud stack, v cloud automation center (VCAC) etc

Network Architect / Solution Engineer

Netcentrix Global Technologies inc
06.2018 - 12.2019
  • Expert-level knowledge of Amazon EC2, Amazon S3, Amazon SimpleDB, Amazon RDS, Amazon Elastic Load Balancing, Amazon SQS, and other services of the AWS family
  • High-Availability, Fault Tolerance, Scalability, Database Concepts, System and Software Architecture, Security, IT Infrastructure, Virtualization, and Internet Technologies
  • Excellent customer facing skills and communication skills
  • Provide subject matter expertise through the establishment a center of excellence and overall technical evangelism through outreach including large format presentations
  • Being an Architect and engineer I support two contracts at same time, responsible of providing all kind of project related support on two fronts
  • Provide support to l DCGS program upgrading and deploying NSX
  • Planning and designing VMware Esxi VCenter environment on Dell EMC
  • Supporting HHS ACI project for deploying ACI with Cisco, designing and deployment on three data centers, using full Cisco support on desinging 9k data center solution to replace 7k legacy Architect
  • Currently working on designing NSX solution to deploy on top of ACI as overly architect
  • I engage my self-creating automation scripts on Python to deploy scripts without any automation tool
  • Provide support on L3 architect support (MPLS, BGP, OSPF)
  • Provide support on L2 architect (VPC, PO, VLANS, Trunks, STP, VTP)
  • Currently working on QOS VOIP and Vedio refresh for large Enterprise
  • Provide AWS console support to the customer create EC2 instance and AWS Network Environment VPC etc
  • Booz Allen Hamilton (Air force Contract-AFRL)
  • Leidos - HHS (Human Health Service) CMS Contract

Lead Network Solution Architect/Engineer

Netcentrix Global Technologies inc
01.2017 - 06.2018
  • Responsible for setting technical directions and provide solution to Customer
  • Planned, designed and implement projects to provide network solutions and network security
  • Support federal mission, being an architect provide solutions and design support to all federal clients FBI, DOJ, BOP, DOD etc
  • Providing SDN-WAN support and training on multiple customer ends, Cisco driven SDN solution Nexus 9K ACI etc
  • Develop plan and design for ACI leaf and Spine model, for multiple Data centers currently supporting DEA Data center with 9k Leaf and spine architect with APIC controller
  • Develop and designed MPLS, DMVPN layer 3 across multiple sites, spoke-to-spoke solution
  • SDN ACI deployment for DOD and FBI customers, Hardware consist 1001, 1002, ASR, ASR 9k, N7k, NK9k, N5k, Fex etc
  • Provide Cloud educational support to the customer, as well as solutions from product point of view
  • Supporting AWS product, Azure etc
  • Create solution for the customer, deploy, implement and support
  • Create BOM and sell CISCO gear, physical and virtual solutions
  • Conduct biweekly brown bag session with client, Product technology Awareness, solution deployment as well as Pricing, procurement, and evaluation of network hardware and software
  • Development and deployment of AWS Cloud Services
  • PCMG (Cisco Partners)

SME and Trouble Shooter/Advisor Role

Netcentrix Global Technologies. Inc.
01.2014 - 01.2017
  • Supporting Inmarsat effort to deliver MPLS backbone for the US-Navy contract
  • We built identical lab MPLS for pre-deployment testing
  • Solid knowledge of TCP/IP, OSPF, ISIS, BGP, MPLS TE, L3VPN, EVPN, VPLS, Multicast Network design/network consulting/network solution development, authoring high level design Document (including network diagrams) & low-level design document (including device configurations)
  • Being consultant, I provide valuable configuration script MPLS TE, Layer 3 VRF, using MPBGP internally and OSPF on customer CE and PE, all CE establish DMVPN tunnels
  • Customer engagement & technical presentation
  • Onsite installation, configuration & troubleshooting
  • Configure multiple remote sites and deliver to Field engineers after site installation ready
  • Create MPLS site diagrams as well as back end diagrams, connectivity diagram along with Network Flow diagram
  • Current and future diagram
  • Create documentation for IT support
  • Design network traffic flows using the following routing protocols such as OSPF and BGP on MPLS cloud
  • Support Cisco routers and switches, Fiber Optic and Ethernet cabling; configuring HSRP, GLBP, and VRRP technologies on Cisco Systems equipment
  • Developed and maintained baseline technical requirements for Navy Network and Security Operation Centers (NOC/SOC) for 24/7 environment while leveraging SSAE 16 Data Centers
  • Potentially malicious traffic by reducing the number of access points to the Internet
  • Supported Multiple DOD Clients as an SME and Trouble Shooter/Advisor Role
  • DoD Navy-Project

05.2012 - 01.2014
  • Mange Datacenter/NOC of SDC (SecDef communication) team of system admins and Network Engineers Responsibilities included all aspects of employee management scheduling technical training project timelines and development
  • Mange and create SOP/ training document create and develop implementation planning document along with user manuals and operation manuals for Variety of different applications and network tools and gear
  • Work with Aircraft systems to Monitor Executive travel, Maintain Ip backbone, OSPF, BGP
  • Establish GRE tunnels over MPLS network
  • Configure large MPLS network with traffic engineering service
  • High pass IP network Environment where we maintain all Front-end application along with layer 2 and Layer 3 Devices and firewalls
  • Audit staff performance weekly to ensure that support quality remained consistent
  • Monitor and provide support to Secretary of defense all travel and local needs
  • Provide technical lead guidance to engineers' network and system related
  • Control and create projects to support front customer, maintain and install gears on MPLS network
  • Control and create traffic pattern on Core network by changing metrics and policies
  • Implement new proactive monitoring policies for client servers, greatly reducing the risk of data
  • Pentagon Secdef Communication-(Pentagon DOD)

National Reconnaissance Office (NRO)
03.2010 - 05.2012
  • As a senior network engineer worked on multiple flavors of Network projects within NRO Complex Network environment
  • Very good understanding of MPLS and Hands on MPLS core and MPLS VPN VPLS Layer 2 Pseudowire configuration and traffic engineering etc
  • Resolve issues and Report to upper management with weekly progress on Network Engineering Tickets
  • Work on live monitoring tools to watch network progress and network stability by managing network tools such as HP NNMI, OMW, Network Automation, Neurostar
  • Create documentation for all kind of deployments and projects, such as network design documents, network traffic flow design, network device implementation plan and Network implementation plan (NIP), etc

DISA
01.2006 - 03.2010
  • MPLS network upgrade and architect, design MPLS circuits including Network Planning
  • Deployed and configure 7000 series Nexus Switch Data farm multiple series, 7009, 7018, series
  • Configuration of BGP & OSPF routing in MPLS
  • Support DISA OSS and DISN network provide architect expertise on various RFW (Request of Work)
  • Network Architect on the Department of Defense network modernization project support Unified capabilities
  • Currently working with TEIA team, provide architect solutions to DISA
  • Provide net scout expertise helping engineers in deployment, monitoring, and reporting of different systems, oracle, DNS, Network devices etc
  • Support project includes deployment of MPLS, installation, and migration of next generation network equipment at over 75 US military installations in both CONUS and OCONUS
  • Generates documents, TSIPS, SSR, MBOMS, IBOMBS, Network Visio Diagrams Network flow diagrams etc
  • Provide solutions to field engineer for deployment teams
  • The deployment team tasks involve the detailed surveying, documentation, and network design for each military installation
  • The teams coordinate efforts involved DISA, Army, Air Force, and Navy
  • Designed and implemented end-to-end VPN appliance
  • Enhanced and improved WAN and VPN connection with QoS and load balancing
  • Implemented spanning-tree and fail-over solution for network and servers
  • Identified and communicated technical solutions in one-on-one and group
  • Managed client issues and maintained customer satisfaction

Education

BS in Computer Science BSIS -

Strayer University Manassas Campus

Skills

  • Solution Design
  • Network Architecture
  • Design and development
  • Troubleshooting and resolution
  • JIRA
  • Operational Analysis
  • Risk Assessment
  • Development Lifecycles
  • Requirements Documentation

Certification

  • CCIE RS - (Enterprise Infrastructure) - Written (lab schedule)
  • CCIE DC - (Data Center v2)-Written
  • CCNP (Enterprise - Core SDWAN)
  • CCNP- (Security)
  • CCNP- (Security Professional-Core Cisco ISE)
  • CCDP (Cisco Certified Design Professional)
  • CCDA (Cisco Certified Design Associate)
  • CCNA (Cisco Certified Network Associate)
  • CCNA (Security) - Active
  • ITIL V3-(Foundation certification) July 2017
  • CompTIA-(Cloud Essential) August 2017
  • VCP-NV-(VMware Certified Professional 6 NSX Virtualization)
  • AWS- (Certified Solution Architect Associate)
  • AWS(Certified Solution Architect Professional)

Other Client Profile supported prior to 2006

FBI (Federal Bureau of investigation), DTRA (Defense Threat reduction agency), ADF (African Development foundation), PWC (Prince William County Office)

Timeline

Senior Cloud Architecture/Principal Solution Engineer

Verint inc
01.2022 - Current

Solution Architect/Principal Network Engineer

Equinix inc
01.2021 - 01.2022

Network Manager / Lead Network Engineer

GDIT Army Program
06.2020 - 01.2021

Lead NSX Virtualization Networking Engineer/AWS Architect

ANG (Air force National Guard) Joint Base Andrews
01.2020 - 05.2020

Network Architect / Solution Engineer

Netcentrix Global Technologies inc
06.2018 - 12.2019

Lead Network Solution Architect/Engineer

Netcentrix Global Technologies inc
01.2017 - 06.2018

SME and Trouble Shooter/Advisor Role

Netcentrix Global Technologies. Inc.
01.2014 - 01.2017

05.2012 - 01.2014

National Reconnaissance Office (NRO)
03.2010 - 05.2012

DISA
01.2006 - 03.2010
  • CCIE RS - (Enterprise Infrastructure) - Written (lab schedule)
  • CCIE DC - (Data Center v2)-Written
  • CCNP (Enterprise - Core SDWAN)
  • CCNP- (Security)
  • CCNP- (Security Professional-Core Cisco ISE)
  • CCDP (Cisco Certified Design Professional)
  • CCDA (Cisco Certified Design Associate)
  • CCNA (Cisco Certified Network Associate)
  • CCNA (Security) - Active
  • ITIL V3-(Foundation certification) July 2017
  • CompTIA-(Cloud Essential) August 2017
  • VCP-NV-(VMware Certified Professional 6 NSX Virtualization)
  • AWS- (Certified Solution Architect Associate)
  • AWS(Certified Solution Architect Professional)

BS in Computer Science BSIS -

Strayer University Manassas Campus
Usman Khan