Summary
Overview
Work History
Education
Skills
Accomplishments
Visa Status
Certification
Timeline
Generic

Vinayachandran Balachandran

Security Engineer/Consultant
Fishers,IN

Summary

Experienced senior security professional with a comprehensive range of industry-recognized certifications, including Palo Alto Networks Certified Network Security Engineer (PCNSE), Checkpoint Certified Security Master (CCSM), Checkpoint Certified Cloud Specialist (CCCS), Checkpoint Certified Security Expert (CCSE), Zscaler Zero Trust Certified Associate (ZTCA), F5 Certified Administrator (F5-CA, BIG-IP), F5 Certified Technical Specialist (F5-CTS, ASM), NetSkope SASE Accreditation, Checkpoint Certified Troubleshooting Expert (CCTE), Checkpoint Harmony SASE - Technical Specialist, and Checkpoint Harmony Endpoint, Browse- Technical Specialist and Qualys VMDR & PCI-DSS. With 11 years of experience in cyber and information security, expertise includes information security architecture, project management, security auditing, implementation of security policies, and support for various security solutions. Experienced and enthusiastic Consultant with track record of success across wide range of industries. Possesses exceptional interpersonal, problem-solving and analytical skills to provide advice and expertise to client organizations improving business performance. Experienced in all aspects of operations, strategy and finance.

Overview

10
10
years of professional experience
4
4
years of post-secondary education
12
12
Certifications

Work History

Consultant Network and Security

Mannai Corporation QPSC
Doha
02.2020 - 01.2025
  • Engineering Firewalls, SASE solutions, application load balancing with web application firewall, NAC & DNS Solution for client applications
  • Palo Alto, FortiGate, Cisco FTD & Checkpoint implementation & troubleshooting on control policies, IPS, NAT, VPN & IPSEC
  • Configured and troubleshooting the F5 LTM, ASM (WAF), GTM and Cloud Guard WAF; providing level 2 support for the customers
  • Engineering the defense policy for Cross site scripting, Bot defense, SSL Encryption, L7 DoS detection and mitigation
  • Defends critical apps from today's biggest security concerns, including those listed in the OWASP Top 10 and PCI-DSS and NIST 800-53 as security standards
  • Managed and orchestrated with SASE solutions for Zscaler (ZIA & ZPA) and Netskope
  • Configuring & troubleshooting the remote access & IPSEC VPN solutions, https inspection on Palo Alto, FTD & Checkpoint Firewalls
  • Application security Policy fine tuning and made it good compliance with OWASP security controls, PCI-DSS compliance
  • Reviewing and mitigating gaps on the DDoS policy on F5 AWAF (TPS-based detection, Behavioral and stress-based detection policies)
  • Lead enterprise-level network security implementations, specializing in Zero Trust Security policies
  • Cisco ISE NAC solution migration, integration and administration
  • Optimized application security policies aligned with OWASP and PCI-DSS standards, strengthening defense against emerging cyber threats
  • Engineered Infoblox DNS, DHCP and IPAM solutions
  • Splunk administration and event analysis
  • Qualys VMDR & PCI compliance administration
  • Provide technical and programmatic cyber security support to influence the design and implementation of secure networks and information technology systems
  • Responsible for high-level and detailed design, implementation, operations, troubleshooting and issue resolution of Network Security Infrastructure
  • Coordinate with vendors, auditors, and other departments to enhance Information Security

Network Specialist

IBM - Netsol Pvt Ltd
01.2019 - 02.2020
  • Supporting 24X7 NOC, taking care of over 50,000+ network devices including Firewalls and load balancers, NAC Solutions and monitoring tool
  • Working collaboratively with Change Team, Problem Management Team and other security teams ensuring SLA met for each ticket
  • Configuring & troubleshooting the remote access & IPSEC Site to Site VPN solutions on ASA, FTD & Palo Alto Firewalls
  • Engaged with creating F5 VIP pools, nodes and created custom iRules for the virtual servers like redirection of URL and also configuring ASM Policies and LTM policies
  • Experience in designing, configuring and implementing LAN, WAN, Ethernet and IP routing protocols like BGP, OSPF, EIGRP
  • Assist in implementing the cyber security strategy and plans
  • Provide technical and programmatic cyber security support to influence the design and implementation of secure networks and information technology systems
  • Creating HLD and LLD
  • Responsible for high-level and detailed design, implementation, operations, troubleshooting and issue resolution of Network Security Infrastructure
  • Responsible for managing the network operations and aligning with NOC/SOC team
  • Leading the migration activity during hardware refresh cycle

Network Consultant

HCL Comnet
06.2016 - 01.2019
  • Responsible for high-level and detailed design, implementation, operations, troubleshooting and issue resolution of Network Security Infrastructure
  • Supporting 24X7 NOC, taking care of over 50,000+ network devices including Firewalls and load balancers, NAC Solutions and monitoring tools
  • Working collaboratively with Change Team, Problem Management Team and other security teams ensuring SLA met for each ticket
  • Configuring & troubleshooting the remote access & IPSEC Site to Site VPN solutions on ASA, FTD, Palo Alto & Checkpoint Firewalls
  • Responsible for Repeated fault analysis of reoccurring network issues and recommending permanent resolutions
  • Responsible for managing the network operations and aligning with NOC/SOC team
  • Leading the migration activities during hardware refresh cycle
  • Creating HLD and LLD
  • Responsible for device hardening as per CIS benchmarks for supported devices
  • Responsible for deploying and managing the 3-Tier Network Architecture
  • Deployed and manage cisco devices (switches - 6880,900,3650,2950, 2960, 3570 and MS-210 and routers ISR 800,1800,1900)
  • Responsible for taking periodic configuration backups and testing the configuration at regular intervals using automated tools (SolarWinds Cat Tool)
  • Responsible for deployment, configuration & upgradation of Cisco Core Switches
  • Responsible for configuration and testing of Site-to-Site VPN, MPLS connectivity to branch offices and clients and Remote Access VPN with HIP, DHCP and NAT
  • Interacting with product vendor for sizing various network security requirements
  • Responsible for Network capacity management
  • Coordinating with ISP for troubleshooting network downtime and latency issues

Network Consultant

Ericsson Global Pvt Ltd
05.2015 - 03.2016
  • Responsible for high-level and detailed design, implementation, operations, troubleshooting and issue resolution of Network Security Infrastructure
  • Multifaceted responsibilities to Install, configure and administer Cisco ASA Firewall
  • Responsible for managing the network operations and aligning with NOC/SOC team
  • Troubleshooting PE-CE routing issues, BGP, VPN, OSPF
  • Providing Test Plans to isolate and rectify faults related to circuit erroring / packet drops and latency issues
  • Deployed and manage cisco devices (switches - Cisco 2960,3750,6500 etc)
  • Responsible for taking periodic configuration backups and testing the configuration at regular intervals using automated tools
  • Responsible for deployment, configuration & upgradation of Cisco Core Switches
  • Responsible for configuration and testing of Site-to-Site VPN, MPLS connectivity to branch offices and clients and Remote Access VPN
  • Interacting with product vendor for sizing various network and security requirements

Network Consultant

Tata Tele Services Ltd (Off Role)
09.2014 - 05.2015
  • Configuring ISDN, Leased Line, VLAN, VTP, Static Routes
  • Keep track of Antivirus and their logs and to take preventive measures to avoid any security related problems
  • Network Administration, Troubleshooting Network problems and documentation of network policies and access lists
  • Planning, implementation, and integration of solutions for clients
  • Had been actively involved in giving and formulating Technical Presentations and reviews
  • Provide Tier-1 support for routing and switching on the client network

Education

Bachelors of Engineering - Electronics And Communications Engineering

Anna University
India
06.2007 - 08.2011

Skills

  • Palo alto

  • Panorama

  • Cisco ASA

  • FTD

  • Checkpoint

  • FortiGate

  • F5 WAF

  • Cloud Guard WAF

  • Zscaler ZIA

  • Infoblox

  • Zscaler ZPA

  • Netskope SASE

  • Zscaler SASE

  • Posture Security

  • CASB

  • CNAPP

  • Routing

  • Switching

  • DDI (DNS,IPAM,DHCP) solutions

  • DLP & UEBA

  • 8021x

  • F5 BIG-IP

  • Cisco ISE

  • Qualys VMDR

  • Cloud Native Security

  • EDR Solutions

  • Wireshark

  • Nmap

  • OWASP Top10

  • OWASP ZAP

  • Terraform

  • Phyton

  • Jenkins

  • Kubernates

  • Docker

  • NIST CSF

Jira

Incident management

Change management

Accomplishments

    Incorporated F5WAF/WAAP solution with Banking Applications.

    Engineered FTD, Checkpoint, PaloAlto firewall solutions deployment and administration (on Prem & cloud)

    Migration of on prem F5WAF to Azure Cloud

    Conducted Compliance audit and mitigation for Web Apps hosted on F5OWASPTop10.

    Conducted Vulnerability Assessment and reporting using Qualys VMDR & AVR including WAS tool.

    Integrating AzureCloud Security solutions IdP & SCIM with Zscaler ZPA

    Migrated On-prem proxy solution (Cisco WSA & Bluecoat) to ZTNA policy administration using SASE solutions with scope of Zscaler (ZIA & ZPA) .

    Administration of Netskope SD-WAN, SWG,ThreatProtection,CASB, API protection, DLP, UEBA.

    Lead for AzureCloud security operations.

    Cisco ISE NAC solution implementation and administration.

    Infoblox DDI solutions administration.

    Instituted Cisco FTD firewall support for FIFA 2022 World Cup.

Visa Status

L2 VISA

Certification

Palo Alto Certified Network Security Engineer (PCNSE)

Timeline

Consultant Network and Security

Mannai Corporation QPSC
02.2020 - 01.2025

Network Specialist

IBM - Netsol Pvt Ltd
01.2019 - 02.2020

Network Consultant

HCL Comnet
06.2016 - 01.2019

Network Consultant

Ericsson Global Pvt Ltd
05.2015 - 03.2016

Network Consultant

Tata Tele Services Ltd (Off Role)
09.2014 - 05.2015

Bachelors of Engineering - Electronics And Communications Engineering

Anna University
06.2007 - 08.2011
Vinayachandran BalachandranSecurity Engineer/Consultant