Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Yusuf Lasisi

Garland

Summary

Accomplished Network Security Architect with over 20 years of experience in designing, implementing, and managing advanced network security solutions. Proven expertise in CASB, SASE, Zero Trust Architecture, SD-WAN deployment, cloud networking, and firewall management. Demonstrated ability to enhance security posture, optimize network performance, and ensure compliance with industry standards. Notable for driving impactful projects that deliver significant ROI through improved security, operational efficiency, and reduced risk.

Overview

22
22
years of professional experience
1
1
Certification

Work History

Senior Network Architect

YSL Consulting
03.2025 - Current

SD-WAN/SASE Architecture & Deployment: Architected and led the enterprise-wide deployment of Cisco SD-WAN (Viptela) for intelligent routing, seamlessly integrating it with Netskope Secure Access Service Edge (SASE) to deliver unified cloud-native security (SWG, CASB, DLP) and granular Zero Trust Network Access (ZTNA) across [X hundred/thousand] branch locations.

Network Security Architect

Verizon Business
11.2017 - 03.2025
  • Strategic SASE Integration & Zero Trust: Engineered a comprehensive Secure Access Service Edge (SASE) framework, integrating Cisco Umbrella for DNS-layer security, Zscaler (ZIA/ZPA) for web/private access, and Palo Alto Prisma Access to deliver cloud-delivered Secure Access and meet Zero Trust Network Access (ZTNA) objectives.
  • Cisco SD-WAN Deployment & Automation: Led the greenfield deployment of Cisco-Viptela SD-WAN, configuring Application-Aware Routing (AAR), advanced QoS policies, and dynamic routing (BGP, OSPF); achieved massive scale using ZTP and vManage templates.
  • Cloud On-Ramp & Automation: Developed and executed Cloud-OnRamp automation solutions to provision Cisco vEdge/cEdge routers into both AWS and Azure environments, establishing secure and high-performance hybrid cloud connectivity.
  • Fortinet SD-WAN & Security Orchestration: Deployed Fortinet FortiGate SD-WAN clusters, orchestrating centralized firewall security policy and UTM features (IPS, Anti-Malware) via FortiManager, and utilizing FortiAnalyzer for log review and complex troubleshooting.
  • Prisma SD-WAN Implementation: Implemented Palo Alto Prisma Access for Mobile Users (GlobalProtect) and remote site connectivity, leveraging User-ID, Application-ID, and Host Information Profile (HIP)-based access control for enhanced security posture.
  • Access Control & NAC: Managed and optimized Cisco Identity Services Engine (ISE) for robust 802.1X and NAC policies, resulting in a demonstrable 50% reduction in unauthorized device connections and improvement in network security posture.
  • Configuration Automation: Leveraged Ansible to automate the deployment and change management process for network configurations across data center firewalls and routers, significantly reducing configuration errors and improving deployment consistency.

Senior Network Engineer

LeHigh Hanson
07.2017 - 10.2017
  • Palo Alto NGFW Expertise: Administered and managed a global deployment of Palo Alto Next-Generation Firewalls (NGFWs) utilizing Panorama for centralized policy orchestration, software management, and log correlation across the enterprise fabric.
  • SASE & Prisma Access Deployment: Engineered and executed the deployment of Palo Alto Prisma Access for Service Connections, Remote Networks, and Mobile Users (GlobalProtect), leveraging User-ID, Application-ID, and Host Identification Profile (HIP) for granular, context-aware access control.
  • Fortinet UTM Optimization: Configured and maintained FortiGate firewalls for Unified Threat Management (UTM) features (Intrusion Prevention, Anti-Malware, Web Filtering), centrally managing devices via FortiManager to optimize firewall performance and achieve a [15-20%] reduction in false positives.
  • Routing & Switching Architecture: Configured, optimized, and maintained core network infrastructure by implementing dynamic routing protocols (BGP, EIGRP, OSPF) and advanced Layer 2 technologies (VLANs, STP), ensuring optimal network performance, redundancy, and availability.
  • Foundational Security Controls: Implemented and enforced foundational network security measures, including the rigorous application of Access Control Lists (ACLs), configuration of diverse VPN topologies (IPSec/SSL), and establishment of secure 802.1X/WPA3 wireless authentication standards.
  • SIEM Integration & Monitoring: Established centralized threat visibility by integrating firewall and network device logs with SIEM platforms (Splunk, SolarWinds) for real-time monitoring, correlation, and automated alerting, enhancing security incident response capabilities.
  • Vulnerability Management: Directed regular vulnerability scanning and led the subsequent remediation efforts across critical infrastructure, resulting in a measurable improvement to the organization’s security posture and risk profile.

Senior Network Engineer

Santander Consumer USA
01.2017 - 07.2017


  • Vulnerability Management: Performed vulnerability scans and managed remediation efforts, reducing the risk of security breaches.
  • Compliance Assurance: Conducted regular security audits to ensure compliance with industry standards such as PCI-DSS, HIPAA, and GDPR.
  • Documentation: Created and maintained comprehensive documentation of security policies, procedures, and network configurations.
  • NAC Implementation: Implemented and managed network access control (NAC) solutions (Cisco ISE) to enforce security policies based on user identity and device compliance. Configured and managed 802.1X authentication for wired and wireless networks, ensuring secure access control.

Network Architect

TechMahindra, Verizon
09.2016 - 01.2017


  • 802.1X Authentication: Configured and managed 802.1X for secure access, enhancing network security and reducing unauthorized access incidents by 40%.
  • Cloud Networking and Security:
  • AWS Integration: Deployed and managed cloud-native security services, including AWS Security Groups, NACLs, and Azure Network Security Groups, to protect cloud workloads.
  • Hybrid Cloud Connectivity: Established secure and efficient hybrid cloud connectivity using VPNs, Direct Connect (AWS) ensuring seamless integration between on-premises and cloud environments.

SENIOR NETWORK/SECURITY ENGINEER

PHACIL INC, NATIONAL SCIENCE FOUNDATION
01.2016 - 09.2016
  • Firewall Security Management:
  • Palo Alto Firewalls: Managed Palo Alto NGFWs with Panorama. Successfully deployed Palo Alto Prisma Access for Service Connection, Remote Networks, and Mobile Users – Global Protect, including User-ID, Application-ID, and Host Identification Profile (HIP).
  • Fortinet Firewalls: Configured FortiGate firewalls for UTM features, including intrusion prevention, anti-malware, and web filtering, while optimizing firewall performance and reducing false positives, and managed multiple Fortinet firewalls using FortiManager.
  • Identity Services and Access Control:
  • 802.1X and NAC: Configured and managed 802.1X authentication for wired and wireless networks, enforcing security policies and ensuring only authorized devices gain network access.

SENIOR NETWORK/SECURITY ENGINEER

BALTIMORE POLICE Department
06.2015 - 01.2016
  • VPN Configuration:
  • Remote Access: Configured and maintained VPN solutions (Cisco AnyConnect, Fortinet FortiGate) for remote workers, integrating with multi-factor authentication (MFA) for enhanced security.
  • Performance Monitoring: Monitored and optimized VPN performance, troubleshooting connectivity issues and ensuring seamless user experience.

NETWORK SECURITY ENGINEER

RIOREY INCORPORATED
05.2014 - 06.2015
  • Network Design and Implementation:
  • Routing and Switching: Configured and managed Cisco routers and switches, including Layer 2 and Layer 3 features, VLANs, and inter-VLAN routing.
  • Network Segmentation: Implemented network segmentation and isolation using VLANs and access control lists (ACLs) to enhance security and optimize performance.

Network Solutions Engineer

DIGITAL COMMUNICATION KONSULT
01.2004 - 06.2013
  • Network Installation and Configuration:
  • Device Setup: Configured Cisco and Juniper network devices, setting up routing protocols (BGP, OSPF), VLANs, and access controls.
  • Network Expansion: Supported network expansion projects, including the integration of new devices and technologies.
  • Technical Documentation: Created and maintained documentation for network configurations, changes, and procedures.
  • Documentation: Developed and updated network diagrams, configuration guides, and support procedures.

Education

M.Sc. - Information Technology, Telecommunication Management and Cyber Security

University of Maryland, University College
01.2016

B.Sc. - Science, Electronic and Computer Engineering

Lagos State University
01.2011

Skills

  • Firewall configuration
  • Security protocols
  • Cloud security
  • Network security
  • Access control

Certification

  • Palo Alto Networks Certified Network Security Engineer (PCNSE): 2019
  • Zscaler Certified Cloud Administrator Internet Access: 2018
  • Fortinet Network Security Associate: 2018
  • Cisco Certified Network Professional (CCNP): 2009
  • Cisco Certified Network Associate (CCNA): 2007

Timeline

Senior Network Architect

YSL Consulting
03.2025 - Current

Network Security Architect

Verizon Business
11.2017 - 03.2025

Senior Network Engineer

LeHigh Hanson
07.2017 - 10.2017

Senior Network Engineer

Santander Consumer USA
01.2017 - 07.2017

Network Architect

TechMahindra, Verizon
09.2016 - 01.2017

SENIOR NETWORK/SECURITY ENGINEER

PHACIL INC, NATIONAL SCIENCE FOUNDATION
01.2016 - 09.2016

SENIOR NETWORK/SECURITY ENGINEER

BALTIMORE POLICE Department
06.2015 - 01.2016

NETWORK SECURITY ENGINEER

RIOREY INCORPORATED
05.2014 - 06.2015

Network Solutions Engineer

DIGITAL COMMUNICATION KONSULT
01.2004 - 06.2013

B.Sc. - Science, Electronic and Computer Engineering

Lagos State University

M.Sc. - Information Technology, Telecommunication Management and Cyber Security

University of Maryland, University College