Summary
Overview
Work History
Education
Skills
Network & Security Knowledge Overview
Certification
Accomplishments
Affiliations
Work Availability
Timeline
Generic
PRANAV KUMAR JHA

PRANAV KUMAR JHA

Manager, Security Design And Implementation
Badarpur, New Delhi

Summary

Technically sophisticated and qualified CISA and CISM certified from ISACA.

CCNA, CCNP (Routing, Switching & Troubleshooting), F5 Administrator, Checkpoint Certified Security Associate, Palo Alto ACE engineer with more than13 yrs. of experience in Networking, Perimeter and Cyber Security with technical expertise in the implementation, operations and support functions of mission-critical business solutions using IT as a tool.

Currently leading and Managing a team as Manager, Security Design and Implementation Team for BT Business's standard and portfolio customers.


· Proficient in analyzing information system needs, evaluating end-user requirements, custom designing solutions, and troubleshooting for complex information Network security management.

· Ensuring the security controls are in place and adhered to while managing and working on customer security infrastructure.

· Experienced in administration, Installation, configuration and troubleshooting of Firewalls, Web Security Appliances, Cloud-Based Web Proxies, Application Delivery Controllers (Load Balancers), DNS (Global Load Balancing), Web Application Firewalls, Network access Controllers and Cloud SASE solutions

· Managing various technologies via centralized management severs like BIG IQ, Forti-Manager, Palo Alto Panorama, Checkpoint Smart Domain Manager, Cisco CSM, Junos Space, Juniper NSM

· Exposure to routing protocols as BGP, OSPF, EIGRP, RIP, RIPv2, Default and Static routes, Addressing, Filtering, redistribution, summarization, and other advanced features.

Overview

13
13
years of professional experience
9
9
years of post-secondary education
8
8
Certifications
4
4
Languages

Work History

Manager, Security Design and Implementation

BT EServ India (Pvt) Ltd
07.2022 - Current
  • Delivering and providing consultancy to customer for various new deployments, data center migration work and other complex requests for all the BT's standard and portfolio customers
  • Summary
  • Leading a team of technical managers (Design and Implementation engineers) to deliver many large to small scale projects of BT for delivering Managed firewall security and managed cloud security solutions
  • Managed Firewall Security includes primarily delivering projects related to firewalls like Fortigate, Palo Alto, Checkpoint, Cisco etc
  • Managed Cloud and Web Security includes delivering projects related to Zscaler internet access, Zscaler Private access, Palo Alto Prisma and SASE solutions, Illumio Micro Segmentation and any other cloud SASE solutions on demand.
  • Oversaw implementation lifecycle processes based on organizational needs, regulatory requirements and customer demand.
  • Outlined work plans, determined resources, wrote timelines and generated initial budgets as part of project scope determination.
  • Led technology roadmapping, conducting research, development and installation according to deployment specifications.
  • Pulled from knowledge of technical industry and technological developments to drive managed firewall security and managed cloud and web security deployments.
  • Documented processes to streamline setup, customization and maintenance of securit products.
  • Collaborated with team to cultivate resources and reference material for technical installation, troubleshooting and maintenance.
  • Created implementation methodologies to control project costs and meet deadlines.
  • Oversaw large portfolio of projects to support teams, report progress and influence positive outcomes for key stakeholders.
  • Directed large-scale deployments and implementation of managed firewall security and managed cloud and web security solutions to meet business needs and build client loyalty.
  • Installed, maintained, upgraded and patched security products like firewalls.

Manager, Global Security Operations

BT EServ India (Pvt) Ltd
10.2019 - 06.2022

Managing Security operations center for one of the biggest FMCG giant in world

Summary


  • Worked as SOC manager and handling a team of around 30 engineers of level 2 and level 3.
  • Drove operational improvements which resulted in savings and improved profit margins.
  • Participated in continuous improvement by generating suggestions, engaging in problem-solving activities to support teamwork.
  • Prepared variety of different written communications, reports and documents.
  • Participated in team-building activities to enhance working relationships.
  • Led projects and analyzed data to identify opportunities for improvement.
  • Used coordination and planning skills to achieve results according to schedule.
  • Learned new skills and applied to daily tasks to improve efficiency and productivity.
  • Actively listened to customers' requests, confirming full understanding before addressing concerns.

Incident Management

Compliance Reporting and Remediation

Change Management

Problem Management

Knowledge Management

Project Work

Senior Specialist Security Systems - Level 3

BT EServ India (Pvt) Ltd
Gurugram
07.2019 - 10.2019


Summary

· Worked as Level 3 Senior Specialist from July 2019 till October 2019

· Working in Shared SOC Model with multiple fortune 500 customers, Some of the world's largest companies in consumer goods, healthcare, pharmacy, technologies, Banking, Insurance and various other domains and sectors.

Incident Management same as specialist role

Change Management for complex work requests as before

Problem Management for high priority incidents and problem tickets

Project Work for some scenarios where project team can't be involved

Addition Management Role as Senior Lead in team

  • Worked flexible hours across night, weekend and holiday shifts.
  • Developed and implemented performance improvement strategies and plans to promote continuous improvement.
  • Collaborated with team members to achieve target results.
  • Increased customer satisfaction by resolving issues.
  • Delivered services to customer locations within specific timeframes.
  • Identified issues, analyzed information and provided solutions to problems.
  • Learned new skills and applied to daily tasks to improve efficiency and productivity.
  • Actively listened to customers, handled concerns quickly and escalated major issues to supervisor.
  • Actively listened to customers' requests, confirming full understanding before addressing concerns.
  • Carried out day-to-day duties accurately and efficiently.
  • Used critical thinking to break down problems, evaluate solutions and make decisions.
  • Conducted research, gathered information from multiple sources and presented results.
  • Offered friendly and efficient service to customers, handled challenging situations with ease.

Specialist Security Systems- Level 3

BT EServ India (Pvt) Ltd
Gurugram
07.2015 - 06.2019

Summary

· Worked as Level 3, Specialist Security Systems from July 2015 till July 2019, promoted to Senior specialist post this role.

· Working in Shared SOC Model with multiple fortune 500 customers, Some of the world's largest companies in consumer goods, healthcare, pharmacy, technologies, Banking, Insurance and various other domains and sectors.

Incident Management

· Handling escalation from SOC 2nd line

· Analyzing the events and Log analysis of firewalls, proxies and Load balancers and various other technologies BT GSOC supports.

· Troubleshooting various slowness and traffic issues in the customer environments via command line tools and GUI and using tcpdump.

· Advising the 2nd line for any incident or change

· Rebuilding the doing RMA of various technologies network security devices

Change Management

· Delivering complex service requests which is not being handled by 2nd line SOC

· Reviewing customer change request and analyzing it for security controls as per BT standards and customer policy.

Problem Management

· Doing proactive problem management for repetitive alert on monitoring tools (Nagios)

· Preparing RCA for high priority issues via problem management

· Solving repetitive and complex issues

Project Work

· Doing reactive patch upgrade of BT managed security devices

· Large and complex work which comes to SOC as change are catered as project via complex service request.

Analyst Security Systems - Level 2

BT EServ India (Pvt) Ltd
Gurugram
05.2013 - 06.2015

Summary

  • Worked as Level 2 in BT Global SOC
  • Working in Shared SOC Model with multiple fortune 500 customers, Some of the world's largest companies in consumer goods, healthcare, pharmacy, technologies, Banking, Insurance and various other domains and sectors.
  • Worked with customers to understand needs and provide excellent service.
  • Worked within applicable standards, policies and regulatory guidelines to promote safe working environment.
  • Demonstrated respect, friendliness and willingness to help wherever needed.
  • Resolved problems, improved operations and provided exceptional service.
  • Proved successful working within tight deadlines and fast-paced atmosphere.
  • Improved operations through consistent hard work and dedication.
  • Participated in continuous improvement by generating suggestions, engaging in problem-solving activities to support teamwork.

Incident Management

· Analyzing the events and Log analysis of firewalls, proxies and Load balancers and various other technologies BT GSOC supports.

· Troubleshooting various slowness and traffic issues in the customer environments via command line tools and GUI and using tcpdump.

Change Management

· Configuring firewalls and implementing them in Clusters to configure High Availability and ensure 100% uptime of the firewalls.

· Creation of different networks and host objects and using them in providing access for various services demanded.

· Managing different policy packages as per regions and editing/creating rules as per the requirement.

· Modifying and editing the rule base as per the change request of the client.

· Performing blacklisting/whitelisting of URLs from proxies.

· Reviewing customer change request and analyzing it for security controls as per BT standards and customer policy.

· Granting users, the access to Remote VPN and adding them to the concerned RADIUS or TACACS authentication group.

· Configuring Static and Dynamic NAT as per the change request requirement.

· Adding and editing of various authentication rules, bypass the proxy authentication for different sites as per the requirement.


Network Engineer

HCL Comnet Ltd
01.2010 - 03.2011
  • Project: Supporting India's largest nationalised bank from their NOC in Delhi
  • Configuring and troubleshooting Channelized E1, ISDN, Leased Line circuits
  • Backing up and Restoring the Cisco router IOS
  • Configuring VLAN on Cisco switches, assigning user to VLAN, configuring VTP
  • Implemented AAA (Authentication, Authorization and Accounting) for internal network security
  • Implemented VPN -IPsec (Configuration, IOS Up gradation and VPN Routers ACLs) to enhanced network Security
  • Implemented security using Standard and Extended access-lists, Distribute-Lists, & Route Maps
  • Implementation & Maintenance of LAN & WAN Setup for the Bank's Data Centre, Disaster Recovery Sites, Head offices, Regional Offices and Training Centres
  • Implemented SNMP on devices to allow for network management
  • Preparation & revision of Network Design Document Submitted to the Bank at regular intervals
  • Configuring an IPSEC Encryption for the Financial Data travelling on Bank's Enterprise Wide network
  • Coordination with organizations such as Cisco Systems, Security Integrator (Wipro), Bandwidth provider (MTNL/BSNL, VSNL, Reliance, Bharti), Network Equipment Supplier (Wipro, Tulip IT Services, CMC India Ltd), Data Centre Server providers (SUN Microsystems), Application Provider, VSAT Service Providers (Comsat MAX, HECL, Bharti, Tata, Tulip) ATM Machine Providers(NCR, DIEBOLD) etc
  • Solve all the technical problems regarding the network of more than 5,000 nodes supported on various technologies like Lease Line, ISDN, RF, VSAT (provided by multiple service providers like (BSNL, MTNL, AIRTEL, RELIANCE, HCL, TULIP, TATA, VSNL)
  • Build and maintain Visio documentation database of network topology
  • Network Assessment and Documentation, designing of IP addressing Schema, Networking Equipment Requirement, bandwidth sizing based on Number of users and the applications supported, the Number of Links Required keeping in mind the Redundancy factor for the Bank's Mission critical Data Flowing and the security features required to save the financial information.

Associate Network Engineer

HCL Comnet Ltd
Chandigarh
02.2007 - 12.2009
  • Project: Various Banking and Insurance Customers
  • Handling end-to-end implementation and maintenance of large WAN projects of corporate clients like Punjab National Bank, Union Bank of India, ICICI, National Insurance, New India Assurance, UIIC, M & M Finance ltd., IFFCO, Indian Bank, Indus Ind Bank
  • Projects included commissioning and configurations of routers (series1700, 2600, 3600, 3700) etc and switches
  • Configuration of routers for leased line links, ISDN configuration, configuring routing protocols like RIP, EIGRP, BGP, OSPF
  • Working on Modem like RAD, Attrrie, Loop, Ascom, Tellabs, Cygnus
  • Liaison with BSNL for commissioning of leased line and ISDN links and their maintenance PNB Network Centre
  • Managing Network of all the branches of the Bank Network Centre Bhatinda
  • Implementing the CBS connectivity, using leased line, MPLS Links and ISDN NIC, NIA & UIIC
  • Maintaining Core insurance connectivity for various insurance customer using Lease line, MPLS Links and ISDN backups KEY SKILSS Hardware
  • Installing Cisco Routers 7500, 7200, 3800,3700,3600, 2800, 2900, 2600, 1800, 1900,1700 series
  • Installing Cisco Switches 6500,4900, 4500,3700,3500,2900 series.

Education

Graduate Engineer (Bachelor of Technology) - Computer Science And Engineering

Inst of Electronics & Telecommunications Engineers
Lodhi Road, New Delhi
07.2008 - 10.2012

Diploma - Computer Engineering

Ambedkar Polytechnic, Board of Technical Education
Shakarpur, New Delhi
07.2004 - 08.2007

10+2 - Science

MBDAV Sr. Secondary School
Hauz Khas, New Delhi
04.2000 - 03.2001

10th -

Govt. Boys Sr. Sec. School
Begumpur, New Delhi
04.1998 - 03.1999

Skills

TCP/IP Protocol Suiteundefined

Network & Security Knowledge Overview

Firewalls: Checkpoint, Cisco ASA, Palo Alto, Juniper SRX, Juniper SSG, Fortinet, F5 AFM


  • Firewall Modes (Routed, transparent), State full Inspection, Security level, NAT (Static, Dynamic, PAT, Policy), Port-Redirection, Object-Tracking (SLA-Monitor), Redundancy and load balancing (Active/Standby failover and Active/Active Failover).
  • Creating and modifying object groups.
  • VPN: IPsec, Site-to-Site, Remote VPN, DMVPN, EZYVPN, Split Tunnel, XAuth, GRE Over IPsec

Web Security: Symantec Web Gateway (Bluecoat ProxySG), McAfee Web Gateway, IronPort WSA


  • Configuring and troubleshooting URL Filtering issues
  • Implementing SSL offloading and troubleshooting SSL related issues on proxy
  • Implementing Caching
  • Applying policy trace/access logs and packet captures
  • Integration with Antivirus and Malware analysis servers with proxy and troubleshooting them

Email Security: Cisco IronPort ESA


  • Configuring and troubleshooting IronPort ESA

Cloud Web Security Services: Zscaler Proxy, Cisco Scansafe, Forcepoint (Websense), Symantec Cloud Gateway


  • Configuring and troubleshooting URL Filtering issues
  • Implementing SSL offloading and troubleshooting SSL related issues on proxy
  • Troubleshooting website access issues and working with TAC

Application Delivery Controllers: BIG IP F5 LTM, Citrix NetScaler, Cisco ACE


  • Configuring and troubleshooting of load Balancers like BIG IP F5, CSS (Content Services Switch) & NetScaler.
  • Configuring SSL certificates, VIPs, Servers, pool, pool members, SNAT, NAT, Profiles, Monitors, Nodes & etc. On F5
  • Configuring and troubleshooting of BIP IP AAM, ASM, LTM, GMT, LC, AFM, BIG-IQ and VIPRION.
  • Configuring SSL certificates, services, Monitors, OWNER, Content, VIPs & etc on CSS.
  • Configuring SSL certificates, Virtual Servers, Services, Services Groups, Monitors, Servers & etc. on NetScaler.

DNS: F5 GTM, Citrix Netscaler GSLB


  • Creating Wide IP
  • Troubleshooting DNS related issues on GTM
  • Manually failing over the traffic from once DC/Location to other DC/Location.
  • Working with iQuery and iRules

Web Application Security: F5 ASM(WAF)


  • Learning and Staging or ASM policies
  • Creating ASM policies and applying it on an application.
  • Working with application team to fine tune the signatures and policies
  • Enforcing the security controls for the application and organisation like PCI/DSS compliance.

IPS/IDS: Juniper, Checkpoint, Cisco Firepower, Palo Alto: Configuring and Troubleshooting


  • Sensor Management, Configuring Virtual sensor & Security policies, Promiscuous and Inline Monitoring, Configuration & Tuning of Signature for sensor, Custom Signatures, Blocking and Rate Limiting, Configuring Event Action & Event Monitoring.

Network Access Controllers: F5 APM, Aruba, Forescout

UTM Appliances: Juniper, Checkpoint, Palo Alto


  • Configuring and troubleshooting various modules of UTM appliances like url filtering, Antivirus, IPS etc.

Centralized Management Solutions: F5 BIG IQ, Symantec Enterprise Manager, Cisco CSM, Bluecoat Director, Junos Space, Juniper NSM, Palo Alto Panorama, Checkpoint Smart Domain Manager


  • Managing all the devices of organisation from one central server.

Routing


  • Configure as per organizational requirements governed by communication protocols OSPF, EIGRP, RIP, BGP, STATIC & DEFAULT Routes, Redistribution, Route filtering, Summarization, Authentication, PBR (Policy based routing) and other advanced features.

Switching


  • Configuring and Troubleshooting VLAN, VLAN trunking (IEEE 802.1Q and ISL), SVI , VTP, STP (PVST, RSTP, MSTP), STP Security mechanism (BPDU Guard, Root Guard), Ether Channel, Switch Port Security (Port Security, 802.1X, Private VLAN, DHCP Snooping),Implementing HSRP, VRRP, GLBP.

Certification

Cisco Certified Network Associate

Accomplishments

  • Handled Global SOC for one of biggest customer for BT and is a worlds largest FMCG giant for close to 3 years.
  • Supervised and managed a team of around 30 members (which includes both 2nd line and 3rd line Security professionals
  • When took over the SOC, with biggest attrition and huge backlogs and low SLA's, With the help of team we turned around things and made significant improvements in almost all the areas and when left it was one of the best positions ever for this account.
  • When Started the queue size was close to 1600 and when left the queue size was around 120 to 150, all this during a huge challenging times of Covid with extreme attrition challenges
  • As a SOC manager, was responsible for incident, changes and problem management but also was responsible for overall compliance of the security estate managed by BT and was consistently above compliance level contractually. Incorporated various new measures to reduce overhead and simplified lot of processes and SOP's.
  • Got few appreciations also from BT management and Customer during the same period
  • Prior to this Collaborated with my team in the delivering F5 OS migration project for once of largest and critical Banking customer of BT.
  • Resolved several Priority 1 incident for various critical customers of BT and have got appreciations for the same.
  • Delivered training sessions to team members in 3rd line and whole SOC for F5 ASM and other knowledge transfers.
  • Configuring an IPSEC Encryption for the Financial Data travelling on Bank's Enterprise Wide network at HCL Comnet.
  • Handling one of biggest BT security customer security operations, for a complex and challenging setup and demanding customer.
  • Reporting and remediating the security compliance for customer

Affiliations

Member, Institute of Electronics and Telecommunications Engineers (IETE), 2012 to Current

Work Availability

monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse

Timeline

Manager, Security Design and Implementation

BT EServ India (Pvt) Ltd
07.2022 - Current

CISM (Certified Information Security Manager)

11-2021

CISA (Certified Information Security Auditor)

10-2021

Manager, Global Security Operations

BT EServ India (Pvt) Ltd
10.2019 - 06.2022

Senior Specialist Security Systems - Level 3

BT EServ India (Pvt) Ltd
07.2019 - 10.2019
F5 TMOS Administration
01-2019
F5 Application Delivery Fundamentals
09-2017

Specialist Security Systems- Level 3

BT EServ India (Pvt) Ltd
07.2015 - 06.2019
Palo Alto Accredited Certified Engineer
08-2014
Check Point Certified Security Administrator
01-2014

Analyst Security Systems - Level 2

BT EServ India (Pvt) Ltd
05.2013 - 06.2015

Cisco Certified Network Professional-Routing

08-2012

Cisco Certified Network Associate

10-2010

Network Engineer

HCL Comnet Ltd
01.2010 - 03.2011

Graduate Engineer (Bachelor of Technology) - Computer Science And Engineering

Inst of Electronics & Telecommunications Engineers
07.2008 - 10.2012

Associate Network Engineer

HCL Comnet Ltd
02.2007 - 12.2009

Diploma - Computer Engineering

Ambedkar Polytechnic, Board of Technical Education
07.2004 - 08.2007

10+2 - Science

MBDAV Sr. Secondary School
04.2000 - 03.2001

10th -

Govt. Boys Sr. Sec. School
04.1998 - 03.1999
PRANAV KUMAR JHAManager, Security Design And Implementation