Summary
Overview
Work History
Education
Skills
Certification
Languages
Personal Information
Timeline
Generic
Verified
This profile is verified using an email address.

AMIT VISHWAKARMA

Bhopal

Summary

Results-driven IT Operations Consultant with 16 years of experience in network design and enterprise architecture. Specializes in implementing scalable EVPN-VXLAN fabrics and SDN solutions to enhance network performance and cost efficiency. Manages large-scale migrations that reduce MPLS costs while improving application performance. Proficient in Azure AD, security operations, and Cisco ACI, with a focus on optimizing infrastructure for high availability.

Overview

1
1
Certification
4
4
years of professional experience

Work History

CONSULTANT

HclTech
Lucknow
09.2024 - Current
  • Project Name -Verizon -Spriax (EMEA)
  • Cisco SD-WAN Implementation and Management
  • Design & Architecture: Contributing to the design of the SD-WAN overlay network using Cisco SD-WAN (Viptela or Meraki), tailoring the solution to meet the client's (Spriax) specific EMEA-wide application performance and connectivity requirements across branch offices, data centers, and cloud environments.
  • Hybrid Connectivity & Infrastructure (AZ-104 + 700): "Architected and deployed a highly available Hub-and-Spoke network topology using Azure Virtual WAN, facilitating secure connectivity for 15+ branch offices while reducing latency by 30%."
  • Zero Trust & Identity (AZ-500 + 104): "Hardened the cloud environment by implementing Conditional Access Policies and Privileged Identity Management (PIM), reducing the attack surface by ensuring just-in-time (JIT) administrative access."
  • Security & Network Integration (AZ-500 + 700): "Secured internet-facing applications by deploying Azure Application Gateway with WAF (Web Application Firewall) and Private Endpoints, ensuring all PaaS traffic remained within the private backbone."
  • Implementation & Setup: "Architected and deployed Azure PIM for a multi-tenant environment, successfully eliminating 100% of standing administrative access for Global and Security Administrator roles."
  • Zero Trust Strategy: "Enforced Just-in-Time (JIT) access and Multi-Factor Authentication (MFA) requirements for all high-privilege roles, reducing the potential attack surface by 85%."
  • Post-Migration Hardening (AZ-500): "Post-migration, implemented Azure Policy and Microsoft Defender for Cloud to ensure all migrated assets met industry compliance standards (ISO 27001/SOC2) from day one."
  • Connectivity: VPN Gateway, ExpressRoute, Private Link, VNet Peering.
  • Deployment and Migration: Hands-on experience with the deployment, configuration, and provisioning of Cisco SD-WAN appliances (vEdge/cEdge routers, vManage, vSmart, vBond) in the EMEA locations, including migrating sites from legacy network technologies like MPLS to the new SD-WAN fabric. This often involves zero-touch provisioning (ZTP).
  • Policy & Security Configuration: Configuring and maintaining application-aware routing policies to prioritize critical business traffic, and integrating security services such as Next-Generation Firewall (NGFW), Intrusion Prevention (IPS), or leveraging Secure Access Service Edge (SASE) capabilities inherent in the Cisco SD-WAN solution.
  • Cloud Connectivity: Implementing secure and optimized connectivity between the on-premises Cisco SD-WAN network and the Microsoft Azure cloud, often using Cisco SD-WAN Cloud OnRamp for IaaS (Infrastructure-as-a-Service).
  • Azure Networking: Working with Azure networking components such as Azure Virtual WAN or setting up HNS Getaway and Network Virtual Appliances (NVAs) in an Azure Hub-and-Spoke topology to terminate the SD-WAN tunnels from the EMEA sites. This ensures efficient, global transit across the Microsoft backbone.
  • Performance Optimization: Configuring intelligent path selection to direct traffic optimally to Azure-hosted applications and services (like Azure Virtual Machines or custom cloud apps), minimizing latency and improving the end-user experience for the EMEA business units.

Associate Product Architect

TECH Mahindra Pvt.Ltd.
PUNE
08.2022 - 09.2024
  • PROJECT NAME-GRAINWELLTECHNOLOGYICS TRANSITION SUPPORT(USA)
  • Gained experience working with AWS and Azure cloud platforms for various projects.
  • Migrated traditional network infrastructure to Cisco ACI fabric for improved efficiency.
  • Established inter-data center connections, enhancing network reliability and reducing potential downtime.
  • Monitored network performance metrics and troubleshot issues, ensuring continuous operational integrity.
  • Configured inter and intra tenant traffic flows, contracts, routing, and L3 policies, optimizing network performance across platforms.
  • Configured L2 outbound connections for both old and new data centers to ensure consistent VNI migration.
  • Set up L3 outbound connections using EBGP and OSPF protocols.
  • Configured endpoint groups (EPG) to enable direct communication between different EPGs for improved connectivity.
  • Configured multicast protocol PIM to support efficient data distribution across the network.
  • Created new site configurations for bridge domains and established multisite connectivity using Nexus Dashboard Orchestrator.
  • Nexus Dashboard Orchestrator, Sites Connectivity.
  • Experience in Configuring and aggregating FEX (2148, 2248, and 2232) switches to the NEXUS aggregator switches (5548, 5596, 5020 and 5010) and NEXUS7018.
  • Operated Nexus 9504, 9300, 9018, 7018, 5016 and various 9k, 7k, 5k, and FEX models to ensure network performance.
  • PROJECT NAME-SCOTIA BANK MIGRATION 6DC TO MIGRATE 2 DC(CANADA)
  • Migration firewall pre and post context.
  • Multi-vendor firewall vendor Juniper, Checkpoint, ASA, Palo Alto.
  • Configure VDS VMware workload Communication.

Education

CCNP -

NetworkKing.Org
01-2019

CCNA -

CRIPS Bhopal
Bhopal
01-2017

MCA -

AISECT University
Bhopal
01-2016

BCA -

Dr. C.V. Raman University
Ballarpur
01-2011

DCA -

DOEACC
Bhopal
01-2009

Skills

  • Cloud architecture and Azure expertise
  • Azure certifications (AZ-104, AZ-500, AZ-700)
  • Network design and configuration
  • F5 and Cisco ACI configuration
  • VNet and ExpressRoute management
  • Service endpoint and private endpoint setup
  • User, group, and OU management
  • Security systems implementation
  • Site-to-site VPN and MPLS oversight
  • SD-WAN deployment and network automation
  • Ansible and Python scripting
  • API integration and monitoring tools
  • Argus, Gaylog, NetBrain, SevOne proficiency
  • Cisco Meraki, Checkpoint, Fortinet, Cyberoam knowledge
  • Role-based access control policies
  • Troubleshooting and configuration management
  • VXLAN and VRRP expertise
  • Switching management in networking operations
  • Implementation strategies and project management
  • Agile methodologies in client management
  • Stakeholder engagement and system administration

Certification

  • Cisco Certified Network Professional Enterprise, c82b7e843a2c4056b2f2caf03a6417e6
  • Cisco ACI Training, Black Belt -Aci Deployment Certificate
  • CCNA Cisco certification, 2017, 428329958206DSDN
  • CCNP and Tshoot Paper, 300-135
  • Cisco Certified Specialist - Enterprise Advanced Infrastructure Implementation, 7D497YENG3F1QZCD
  • Microsoft Certified: Azure Administrator Associate, H834-1572
  • AWS Certified Solutions Architech - Associate

Languages

  • English
  • Hindi

Personal Information

Date of Birth: 05/02/87

Timeline

CONSULTANT

HclTech
09.2024 - Current

Associate Product Architect

TECH Mahindra Pvt.Ltd.
08.2022 - 09.2024

CCNP -

NetworkKing.Org

CCNA -

CRIPS Bhopal

MCA -

AISECT University

BCA -

Dr. C.V. Raman University

DCA -

DOEACC
AMIT VISHWAKARMA