With over 7 years of experience in the IT industry, specializing as a Network Security Administrator, expertise includes managing firewalls, load balancers, VPNs, and Cisco routing and switching. Additionally, possessing substantial experience with AWS Cloud and Linux administration. Highly self-motivated and eager to take on responsibilities, with strengths in excellent analytical, communication (both written and verbal), and presentation skills. As a purpose-driven professional, the capability to be a strong team player while working effectively independently is demonstrated. Currently seeking a new position involving network security, leveraging extensive experience and skills to contribute to organizational success.
• Administration and troubleshooting of firewall projects and regular operations
• Experience with Fortinet Firewall, Checkpoint R70, R80, Palo Alto's, Panorama, PA-500, PA-2K, PA-5K, PA-7K
• Hands-on experience with FortiManager and Panorama for policy management, and FortiAnalyzer for log management
• Configuring NAT policies, IDS, IPS, User-ID, GlobalProtect, decryption profiles, log forwarding, zones, URL filtering, URL filtering profiles, security profiles, Content-ID, and App-ID
• Keeping firewall software and firmware updated with the latest security patches and updates
• Cisco LAN-to-LAN VPN IPsec implementation
• Participation in load balancer migration projects, transitioning from Radware Alteon to F5 LTM & GTM
• Configuration and deployment of complex load balancing solutions, from single-site local traffic configurations to multi-site GSLB solutions
• Support and maintenance of 100+ F5 LTM and 90+ Radware Alteon load balancers
• Extensive experience in building L4 policies, SSL policies, farms, servers, client NAT, and appliance routing on AppDirector
• Configuring F5 iApps for scheduled backups, iRules for Layer 7 rules, and health monitors
• Administration of SecureLink Remote Access tool
• Knowledge of Network Access Control (NAC) using Forescout
• Network automation tasks, including creating scripts in Bash to automate the rotation of admin passwords and converting configurations during migration processes
• Utilization of SecureLink Remote Access tool to allow external vendors to access internal servers
• QIP and Infoblox experience with forwarding zones for GSLB DNS resolution and IPAM management
• Leading a Radware hardware EOL project (5+ million dollars) to replace all 100+ AppDirector appliances with virtual VXLB Alteon appliances, including rack/stack, Cisco switch configuration, and full load balancer appliance configuration
• Experience with routing protocols such as RIP, OSPF, EIGRP, BGP, and static routing, as well as switching technologies including VLANs, STP, Dot1q, and EtherChannel
• Deep knowledge in DNS, DHCP, and Active Directory
• Support for DTCC production network, acting as firewall and load balancer SME on major incident calls and support requests
• Wireshark PCAP analysis for in-depth troubleshooting
• ServiceNow incident/problem management and change requests
• Supported DR tests throughout each year
• Participation in Change Advisory Board meetings, representing production changes to be implemented
• Decommissioning firewalls
• Proficiency in network design and implementation, including subnetting, IP addressing, and network segmentation
• Configuring switch ports and port-channels from switch to load balancers
• Familiarity with tools such as Wireshark and Cisco Packet Tracer
• Certified CCNA
Role Description:
As a network security administrator, responsibilities included troubleshooting daily issues with Palo Alto firewalls and F5 load balancers in Business-As-Usual (BAU) operations, as well as creating necessary documentation and understanding requirements during the implementation phase.
Responsibilities:
• Proficient in understanding and resolving day-to-day L1 and L2 network security issues, including troubleshooting access problems and VPN connectivity issues.
• Expertise in solving VPN connectivity issues and creating VPN user accounts as per requests, including updating VPN users and disabling expired rules.
• Regularly backing up policies for Checkpoint and Cisco firewalls, ensuring data integrity and security.
• Monitoring weekly reports from Checkpoint firewalls to maintain optimal security and performance.
• Creating and modifying firewall rules based on daily requests, ensuring secure and efficient network traffic management.
• Developed comprehensive documentation during the build phase, including High-Level Design (HLD), Low-Level Design (LLD), Standard Operating Procedures (SOP), and test cases for Checkpoint firewalls and F5 load balancers.
• Played a key role in understanding customer requirements during the implementation phase and provided support in configuration and troubleshooting during configuration failures.
• Produced detailed daily, weekly, and monthly reports on network activities and performance.
• Performed critical operations for F5 Load Balancers, including node creation, virtual server management, pool configuration and modification, creating iRules, HTTP profiles, and configuring SSL certificates.
• Configured health monitors to ensure the availability of pool members and application status, and effectively troubleshot production issues to ensure uninterrupted service.