Summary
Overview
Work History
Education
Skills
Certification
Professional Highlights
Accomplishments
Timeline
Generic
Sohan Bhale

Sohan Bhale

Principal Network Security Engineer
Pune

Summary

Overall, 11+ years of experience working in large institutions such as ISP, Banking, Finance Organization, Ultra Low Latency Environment, Enterprise Infrastructure, Design/Implementation & Operations.

Overview

11
11
years of professional experience
7
7
Certificates

Work History

Principal Network & Security Engineer

THG Ingenuity
05.2025 - 11.2025
  • As a Principal Network Engineer at THG Ingenuity, I lead the design, implementation, and operations of secure, scalable, and highly available network infrastructures across Data Center, Low Latency environments, Remote/Branch sites and cloud environments such as AWS Cloud. My role spans across core network engineering and advanced network security, working with technologies such as AWS Cloud Networking, Fortinet, Palo Alto, F5/Netscaler Load Balancers, Amazon Leo Satellite, or perimeter and internal defense.
  • I manage complex routing and switching topologies using Cisco, Arista, and Cumulus platforms, micro segmentation, with expertise in SD-WAN, VXLAN, and EVPN fabric deployments. My work includes cloud integrations with AWS, Azure and security controls via Zscaler, Cisco ISE, Cloudflare, and DNS management using Infoblox.
  • Additionally, I drive network automation and AI-based monitoring initiatives using Python and modern DevOps tools. My responsibilities involve end-to-end lifecycle management from high-level architecture design to operational excellence while ensuring compliance, performance optimization, and 24x7 availability for mission-critical services.

Lead Engineer (Network / Security / Cloud)

Bank of New York
07.2021 - 05.2025
  • Working as a Lead Network Security Engineer for Bank of New York
  • Responsible for designing, implementation, managing, configuring, Operations, troubleshooting and monitoring network security devices
  • Also managing Ultra Low Latency Environment using Multicast technologies.
  • Troubleshooting complex network issues using advance troubleshooting techniques i.e Wireshark or TCP DUMP
  • Application availability Citrix NetScaler like VIP creation, certificate update, SSL Profile creation, Pool creation, Pool member modification, application switching, deep knowledge of application requirements such as persistence, SSL Offloading & Citrix NetScaler Code upgrades
  • Network Security design / architecture / Implement / Operation, notably in Routing Protocols BGP OSPF, QoS ,Multicast, Micro Segmentation, IPSLA , Switching ( STP, RSTP, MSTP, VLAN, VTP, EtherChannel ) , SDWAN, HSRP , VRRP , GLBP , VSS, Nexus Devices, VPC ,VDC , Cisco ACI, TCP/IP , DHCP ,DNS , VPN creation & troubleshooting , F5 Load balancer in LTM mode ,WAF, Citrix NetScaler Load Balancer, Palo Alto Firewall, Checkpoint, Cisco ASA, FTD, FMC, Panorama, Bluecoat Proxy, Zscaler Cloud Proxy, Threat modelling very basic, CVE mitigation, Network Automation using Python Scripts ,Cisco ISE, Cisco Nexus Devices, Cisco ACI
  • Migrated multiple Cisco ASA Firewalls to Palo Alto Firewall
  • Expertise in F5 Load Balancer & Citrix NetScaler Load Balancer, Next Generation Firewall, Nexus Devices, Microsoft Azure Cloud, Cisco ACI, Infoblox, Bluecoat Proxy / Zscaler Cloud Proxy, Cisco Products IOS, TCP/IP, VPN, Wireshark
  • Palo Alto Firewall (Certified PCNSE), Panorama, Cloud (Certified AZ-900 & 700), Wireshark, Load Balancer F5 (LTM, GTM, ASM) & NetScaler, Routing (BGP/OSPF/EIGRP/ISIS) & Switching, Cisco ACI, Cisco Nexus, Cisco Catalyst, Cisco ISE, Cisco ASA/FTD Firewall, VPN, IPsec/Remote VPN/Global Protect VPN, Bluecoat Proxy, Zscaler Cloud Proxy, TCP/IP, Infoblox, ITIL, Fortinet Firewall, ASR/ISR Routers
  • Azure / AWS / GCP / Aviatrix as a transit gateway between cloud and on Prem, Data Centre & DMZ TOWER, DMZ IMPLEMENTATION
  • Experience of ITIL Life Cycle (Strategy, Design, Transition, Operations [Incident, Problem, Change, SLA

Network Security Engineer

TIAA
12.2020 - 07.2021
  • Responsible for designing, implementation, managing, configuring, Operations, troubleshooting and monitoring network devices
  • Troubleshooting complex network issues using advance troubleshooting techniques i.e Wireshark or TCP DUMP
  • Handling Low Latency environment issues, Multicast.
  • Experience of ITIL Life Cycle (Strategy, Design, Transition, Operations [Incident, Problem, Change, SLA)

Network Administrator

Tata Consultancy Services
06.2018 - 11.2020
  • Collaborated with leading financial institutions such as Bank of America, Citi Bank, Deutsche Bank and Morgan Stanley
  • Responsible for Operation and Project related task in TCS NOC
  • Perform troubleshooting for WAN/LAN Network Related Issues of TCS Corporate customers
  • Data Centre & DMZ TOWER, DMZ IMPLEMENTATION Design & Implementation
  • Multiple clients design & implemented network & security infrastructure from both wan & lan level
  • Managing Low Latency environment
  • Implementing and maintaining backup schedules using Network Automation
  • Application availability F5 LTM like VIP creation, certificate update, SSL Profile creation, Pool creation, Pool member modification, application switching, deep knowledge of application requirements such as persistence, SSL Offloading & F5 devices code upgrades
  • Responsible for doing new Projects
  • End to end understanding client requirement and accordingly Design & implement it by configuring L2 switch, SDWAN, Core Switch, Micro segmentation, Firewall, MPLS routers
  • Migrated multiple Cisco ASA Firewalls to Palo Alto Firewall
  • Integrated Palo Alto Firewalls into AWS and Microsoft Azure Cloud
  • Configuring and Troubleshoot IPsec Site to Site VPNs, Cisco Any connect Site to Site Vpn issues
  • Whitelisting and Troubleshooting URL issue on Bluecoat SG Proxy, Bluecoat Cloud Proxy & Zscaler Cloud Proxy
  • Integrating all Internet Palo alto with Panorama management server
  • Integrating all Cisco FTD into Cisco FMC
  • Handling incident tickets for Network & Security related Technical Issues and Escalations

Network Engineer L3

Joister Info serve Pvt. Ltd.
02.2015 - 05.2018
  • Company Overview: Formerly known as Syscon Info way
  • Network design, planning, testing, implementation and assistance in the maintenance of all routers, switches and transport equipment to ensure optimum performance at all times
  • As part of the team, design, implement, configure and maintain the network circuit redundancy via Layer 2 switching and/or Layer 3 routing to minimize network downtime
  • Resolving the bandwidth issues of corporate companies and providing a bandwidth management for internet leased line clients
  • Meeting with the corporate companies regarding solution to the internet related issues
  • Formerly known as Syscon Info way

Education

Bachelor's Degree - Engineering, Electronics & Telecommunication

University of Mumbai
09.2014

Skills

Palo Alto Firewall

Panorama

Load Balancer F5 LTM/WAF

Load Balancer NetScaler SDX/VPX

Netscaler Gateway

Routing ( BGP, OSPF )

Switching

Micro Segmentation

ACI/VXLAN/EVPN

Cisco ISE

Cisco ASA/FTD

Splunk & Elastic Search

VPN

Global Protect VPN

Zscaler Cloud Proxy

TCP/IP

Infoblox

Fortinet/FortiGate Firewall

SDWAN

Network & Security

DC Design/Implementation

DC Operations

Remote Offices/Branch Design & Operations

Python

Wireshark

Tufin

Solarwind & Libre NMS

Azure Cloud Networking

Technical Leadership

People Management

Network Automation

Multicast

Cumulus Linux Devices

Arista & Cisco Devices

Wireless

Amazon Leo satellite

AWS Cloud Networking

Certification

CCNA

Professional Highlights

  • 11+ years of experience in ISP, Banking and Finance Organization, Ultra Low Latency Environment, Enterprise Infrastructure
  • Palo Alto Firewall (Certified PCNSE), Panorama, Cloud Networking, Wireshark, Load Balancer F5 (LTM), NetScaler (SDX, VPX), Routing (BGP/OSPF), Switching, Cisco ACI, Cisco Nexus, Cisco Catalyst, Cisco ISE, Cisco ASA/FTD Firewall, VPN, IPsec/Remote VPN/Global Protect VPN, Bluecoat Proxy, Zscaler Cloud Proxy, TCP/IP, Infoblox, ITIL, Fortinet Firewall, ASR/ISR Routers, Network & Security Designing/Implementation/Operations, Data Center & DMZ Design/Implementation/Operations, Remote Offices deployment.

Accomplishments

5 Spotlight Awards in Bank of New York

Timeline

Principal Network & Security Engineer

THG Ingenuity
05.2025 - 11.2025

Lead Engineer (Network / Security / Cloud)

Bank of New York
07.2021 - 05.2025

Network Security Engineer

TIAA
12.2020 - 07.2021

Network Administrator

Tata Consultancy Services
06.2018 - 11.2020

Network Engineer L3

Joister Info serve Pvt. Ltd.
02.2015 - 05.2018

Bachelor's Degree - Engineering, Electronics & Telecommunication

University of Mumbai
Sohan BhalePrincipal Network Security Engineer