Technically sophisticated and qualified CISA and CISM certified from ISACA.
CCNA, CCNP (Routing, Switching & Troubleshooting), F5 Administrator, Checkpoint Certified Security Associate, Palo Alto ACE engineer with more than13 yrs. of experience in Networking, Perimeter and Cyber Security with technical expertise in the implementation, operations and support functions of mission-critical business solutions using IT as a tool.
Currently leading and Managing a team as Manager, Security Design and Implementation Team for BT Business's standard and portfolio customers.
· Proficient in analyzing information system needs, evaluating end-user requirements, custom designing solutions, and troubleshooting for complex information Network security management.
· Ensuring the security controls are in place and adhered to while managing and working on customer security infrastructure.
· Experienced in administration, Installation, configuration and troubleshooting of Firewalls, Web Security Appliances, Cloud-Based Web Proxies, Application Delivery Controllers (Load Balancers), DNS (Global Load Balancing), Web Application Firewalls, Network access Controllers and Cloud SASE solutions
· Managing various technologies via centralized management severs like BIG IQ, Forti-Manager, Palo Alto Panorama, Checkpoint Smart Domain Manager, Cisco CSM, Junos Space, Juniper NSM
· Exposure to routing protocols as BGP, OSPF, EIGRP, RIP, RIPv2, Default and Static routes, Addressing, Filtering, redistribution, summarization, and other advanced features.
Managing Security operations center for one of the biggest FMCG giant in world
Summary
Incident Management
Compliance Reporting and Remediation
Change Management
Problem Management
Knowledge Management
Project Work
Summary
· Worked as Level 3 Senior Specialist from July 2019 till October 2019
· Working in Shared SOC Model with multiple fortune 500 customers, Some of the world's largest companies in consumer goods, healthcare, pharmacy, technologies, Banking, Insurance and various other domains and sectors.
Incident Management same as specialist role
Change Management for complex work requests as before
Problem Management for high priority incidents and problem tickets
Project Work for some scenarios where project team can't be involved
Addition Management Role as Senior Lead in team
Summary
· Worked as Level 3, Specialist Security Systems from July 2015 till July 2019, promoted to Senior specialist post this role.
· Working in Shared SOC Model with multiple fortune 500 customers, Some of the world's largest companies in consumer goods, healthcare, pharmacy, technologies, Banking, Insurance and various other domains and sectors.
Incident Management
· Handling escalation from SOC 2nd line
· Analyzing the events and Log analysis of firewalls, proxies and Load balancers and various other technologies BT GSOC supports.
· Troubleshooting various slowness and traffic issues in the customer environments via command line tools and GUI and using tcpdump.
· Advising the 2nd line for any incident or change
· Rebuilding the doing RMA of various technologies network security devices
Change Management
· Delivering complex service requests which is not being handled by 2nd line SOC
· Reviewing customer change request and analyzing it for security controls as per BT standards and customer policy.
Problem Management
· Doing proactive problem management for repetitive alert on monitoring tools (Nagios)
· Preparing RCA for high priority issues via problem management
· Solving repetitive and complex issues
Project Work
· Doing reactive patch upgrade of BT managed security devices
· Large and complex work which comes to SOC as change are catered as project via complex service request.
Summary
Incident Management
· Analyzing the events and Log analysis of firewalls, proxies and Load balancers and various other technologies BT GSOC supports.
· Troubleshooting various slowness and traffic issues in the customer environments via command line tools and GUI and using tcpdump.
Change Management
· Configuring firewalls and implementing them in Clusters to configure High Availability and ensure 100% uptime of the firewalls.
· Creation of different networks and host objects and using them in providing access for various services demanded.
· Managing different policy packages as per regions and editing/creating rules as per the requirement.
· Modifying and editing the rule base as per the change request of the client.
· Performing blacklisting/whitelisting of URLs from proxies.
· Reviewing customer change request and analyzing it for security controls as per BT standards and customer policy.
· Granting users, the access to Remote VPN and adding them to the concerned RADIUS or TACACS authentication group.
· Configuring Static and Dynamic NAT as per the change request requirement.
· Adding and editing of various authentication rules, bypass the proxy authentication for different sites as per the requirement.
Firewalls: Checkpoint, Cisco ASA, Palo Alto, Juniper SRX, Juniper SSG, Fortinet, F5 AFM
Web Security: Symantec Web Gateway (Bluecoat ProxySG), McAfee Web Gateway, IronPort WSA
Email Security: Cisco IronPort ESA
Cloud Web Security Services: Zscaler Proxy, Cisco Scansafe, Forcepoint (Websense), Symantec Cloud Gateway
Application Delivery Controllers: BIG IP F5 LTM, Citrix NetScaler, Cisco ACE
DNS: F5 GTM, Citrix Netscaler GSLB
Web Application Security: F5 ASM(WAF)
IPS/IDS: Juniper, Checkpoint, Cisco Firepower, Palo Alto: Configuring and Troubleshooting
Network Access Controllers: F5 APM, Aruba, Forescout
UTM Appliances: Juniper, Checkpoint, Palo Alto
Centralized Management Solutions: F5 BIG IQ, Symantec Enterprise Manager, Cisco CSM, Bluecoat Director, Junos Space, Juniper NSM, Palo Alto Panorama, Checkpoint Smart Domain Manager
Routing
Switching
Cisco Certified Network Associate
CISM (Certified Information Security Manager)
CISA (Certified Information Security Auditor)
Cisco Certified Network Professional-Routing
Cisco Certified Network Associate