Uploaded File
add photo
Vikram
vikram.network813@gmail.com
908-873-6167
Elizabeth, NJ 07208
Network Security Engineer
6 years experience
0
Recommendations
Average rating
89
Profile views
Summary

5.5+ years of experience in implementing, supporting and maintaining data center network and security infrastructures.
• Design, implementation, maintenance and supporting Cisco R&S, Cisco ASA, CheckPoint, PaloAlto, BlueCoat
• Virtualization technologies VMware, Hyper-V, Citrix XenServer.
• ISP style converged network - BGP + OSPF and BGP+EIGRP on MPLS/VPLS backbone.
• Network monitoring tools like SOLAR WINDS, CISCO works, Wireshark and Splunk
• Microsoft Active Directory, Windows 2003, 2008, 2013 Servers, Linux and Solaris
• VLAN, VTP, ISL, 802.1Q, STP, RSTP, PVST, MST, Port-channel, Port Security, and L2PT.
• Security Information & Event Management (SIEM).
• Aggregation Switch (Nexus 3K, Cisco 4900M) - Aggregation for Wi-Fi Controllers and ASR routers.
• Performance Testing tools like Spirent, iperf, Fluke LRAT-2000.
• Software-Defined Networking (SDN): Hands-on experience and expert knowledge of Cisco Intelligent WAN (IWAN)
• VPN technologies including IPSEC, AnyConnect (SME), DMVPN, FlexVPN, and GETVPN.
• Advanced threat detection and fault isolation.
• Cisco APIC EM Dynamic Quality of Service.
• URL filtering, IDS/IPS, and NAC-802.1X.
• HP ArcSight, Checkpoint Smart Event detection, monitoring and analysis.
• Comprehensive understanding of all levels of the OSI model.
• Automating tasks using VB script and Python, developed Ping sweep Python Script.
• Blue Coat Proxy SG, F5 Big IP LTM, Netscaler, Cisco ACE 4710 Load Balancers.
• PowerShell scripting to automate the process.
• Infrastructure auditing, hardening and compliance.
• Install, Configure & Update Cisco & Checkpoint Firewalls, McAfee IPS & Blue Coat Proxy appliances and other security devices as requested.
• Maintain documentation on actual infrastructure (Diagrams, Configuration scripts, etc.)
• Programming & scheduling of Web Activity reports for IT Risk & IT Security.
• Develop procedures for normal operational tasks on Firewall VPN, IPS, Proxy.
• Prepares a presentation on new Infrastructure implementations (Ex. IPS Infrastructure, IPS Security Event Workflow, etc.)
• Deep knowledge of all ITIL/ITSM processes, and their interaction with other processes.
• Authorized to work in United States for any employer

Experience
Network Security Engineer
Information Technology
May 2016 - present
Mount Laurel, NJ
Roles & Responsibilities:
• Develop Information Security Policy and Standards and assist with various aspects of cybersecurity covering
• Installing, configuring Cisco Catalyst switches 6500, 3750 & 3550 series and configured routing protocol OSPF, EIGRP, BGP with Access Control lists implemented as per Network Design.
• Designed, configured, implemented site-site VPN between cisco ASA 5500 firewall and Palo Alto Firewall.
• Deploying and decommission of VLANs on core ASR 9K, Nexus 9K, 7K, 5K and its downstream devices configure 2k, 3k, 7k series Routers
• Experience configuring VPC (Virtual Port Channel), VDC (Virtual Device Context) in Nexus 7010/7018
• Created documents for various platforms including Nexus 7k, ASR9k, and ASR1k enabling successful deployment of new devices on the network
• Configured Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 5000 to connect servers and storage devices.
• Experience with setting up MPLS Layer 3 VPN cloud in data center and working with BGP WAN towards customer
• Experience with configuring Cisco 6500 VSS in Distribution layer of the Data center network
• Configuring and managing F5 ASM (Application security manager). Developed security policies.
• Experience with moving data center from one location to another location, from 6500 based data centers to Nexus based data center
• Well Experienced in configuring protocols HSRP, GLBP, PPP, PAP, CHAP, and SNMP.
• Work with Load Balancing team to build connectivity to production and disaster recovery servers through F5 Big IP LTM load balancers
• Experienced in configuring Guest access using Aruba ClearPass and Web Authentication
• Experience with Wireless Aruba and Cisco Controllers based Enterprise networks
• Experience with Aruba/Ruckus Wireless Controllers, Access Points and IAP. Implement Aruba Wireless infrastructure using Aruba controllers & Access Points. Configured Aruba access points troubleshoot connectivity issues with Aruba access points
• Installed, configured Cisco Meraki equipment and web based monitoring platform for MR32 wireless access points.
• * Strong hands on experience on, ASA Firewalls, Palo Alto Firewalls. Implemented Security Policies using ACL, Firewall, IPSEC, SSL VPN, IPS/IDS, AAA (TACACS+ & RADIUS).
• * Implemented Zone Based Firewalls and Security Rules on the Palo Alto Firewall. Exposure to wildfire feature of Palo Alto. Supported Blue Coat Proxy in explicit mode for users trying to access Internet from Corp Network.
• Support the Endpoint Management Program by maintaining endpoint compliance within the corporate environment for off-site and on-site compliance.
• Administer Palo Alto firewalls PA250, PA4050, PA3020 using Panorama servers.
• Security Information and Event Management (SIEM), Intrusion Detection & Prevention (IDS / IPS), sniffers and malware analysis tools.
• Attend regular CAB calls, as part of the ITIL process to represent the emergency changes to be performed each day and standard changes for the following week.
• Perform regular hardening and maintain audit readiness and infrastructure compliant with security standards.
• Configured log exporters on firewalls and bluecoat proxies while integrating them with Splunk to perform detailed log analysis.
• Site-to-Site VPN tunnels with multiple 3rd party vendors to provide Network connectivity and services.
AAA BGP Blue Coat Cisco Cisco ASA Compliance Cyber Security Data Center Disaster Recovery EIGRP Firewall HSRP IDS Information Security IPS IPsec Load Balancing MPLS Network Design Network Security OSPF Routers Security Engineer Splunk Switches VPN WAN Analysis Malware ITIL ACL
Remove Skill
Firewall Engineer
Construction/Engineering
Feb 2015 - Mar 2016
Middletown, NJ
Responsibilities:
• Hands on experience with new next generation Palo Alto appliances serving as firewalls and URL and application inspection.
• Expertise in the implementation, optimization, analysis, troubleshooting and documentation of LAN/WAN networking systems.
• Experience with convert Checkpoint VPN rules over to the Cisco ASA solution. Migration with both Checkpoint and Cisco ASA VPN experience.
• Experience in configuring Fabric path and good knowledge of spine-leaf architecture.
• Working on Cisco 6500 and 4500 switches for LAN requirements that include managing VLANs, Port Security and troubleshooting and Tuning LAN issues.
• Proficiency in configuration of VLAN setup on various Cisco routers and switches
• Expertise in physical infrastructure like structured cabling, IP address management, racking, stacking and Data Center concepts.
• Adding websites to blocked list on the bluecoat proxies based upon business requirements
• Hands on Experience with Back up, upgrade and restring all OS for future disaster recovery purposes.
• Well versed and experienced in routing and switching protocols RIP, OSPF, EIGRP, BGP and VLAN.
• Exposed to handling and troubleshooting issues on NAT.
• Experience with Bluecoat Proxy servers, LAN & WAN management.
• Submitted plans to user for approval.
• Represented my team on numerous change calls with the end customer.
• Purchased and maintained vendor hardware.
• Conduit to access-list conversion and testing.
• Added access-lists, statics, routes, interfaces to all firewalls when needed.
• Maintained the test lab environment.
• Proof of concept configuration on various networking appliances.
• Any to any rule removal.
• Conversion of Cisco Pix to Cisco ASA platform.
• Lifecycle management and coordination. Mindtree - Bangalore
BGP Blue Coat Cisco Cisco ASA Data Center Disaster Recovery EIGRP Firewall LAN OSPF Routers Switches VLAN VPN WAN
Remove Skill
Edit Skills
Non-cloudteam Skill
Education
Computer Science of Engg& Tech
Computer Science of Engg& Tech
Skills
ACL
2021
5
BGP
2021
5
Blue Coat
2021
5
Cisco
2021
5
Cisco ASA
2021
5
Data Center
2021
5
Disaster Recovery
2021
5
EIGRP
2021
5
Firewall
2021
5
ITIL
2021
5
Malware
2021
5
OSPF
2021
5
Routers
2021
5
Switches
2021
5
VPN
2021
5
WAN
2021
5
AAA
2021
4
Analysis
2021
4
Compliance
2021
4
Cyber Security
2021
4
HSRP
2021
4
IDS
2021
4
Information Security
2021
4
IPS
2021
4
IPsec
2021
4
Load Balancing
2021
4
MPLS
2021
4
Network Design
2021
4
Network Security
2021
4
Security Engineer
2021
4
Splunk
2021
4
LAN
2016
1
VLAN
2016
1
backbone.js
0
1
Business Requirements
2016
1
Cabling
2016
1
Cisco ISE
0
1
Citrix
0
1
Customer Service
0
1
Dell
0
1
DHCP
0
1
DMVPN
0
1
Documentation
2016
1
Ethernet
2014
1
Fastpath
2014
1
HP
0
1
Hyper-V
0
1
IBM API Connect
0
1
ISDN (Integrated Services Digital Network)
2014
1
ITSM
0
1
iWeb
2019
1
JScript
0
1
Linux
0
1
Microsoft Exchange
2014
1
Microsoft Office
0
1
MS Active Directory
0
1
Netscaler
0
1
Network Management
2019
1
Network Monitoring
0
1
OSI
2016
1
Performance Testing
0
1
PowerShell
0
1
Problem Solving
2016
1
Proxy Server
2016
1
Python
0
1
Quality Assurance
0
1
SAP Detailed Scheduling
0
1
Scripting
0
1
Solaris
0
1
SolarWinds
0
1
SSL
2019
1
T1
0
1
Virtualization
0
1
Visual Basic
0
1
VMWare
0
1
VSS
2019
1
Windows
0
1
Windows 2000
0
1
Windows 2003
0
1
Winstall
2014
1
Wireless
2019
1
Wireshark
0
1
XenServer
0
1