I started my career in July 2011 and have over a decade of experience in the network and security domain. I’ve worked with major companies, including Rackspace. My experience includes managing enterprise-scale networks, handling data centers supporting over 12,000 associates, and working with Cisco, Juniper, HP, Palo Alto, Checkpoint, FortiGate, Azure, AWS, and private clouds.
Network & Security Lead
Rackspace TechnologyNetwork Security III
Rackspace TechnologyNetwork Security Lead
Tata Consultancy ServicesNetwork Administrator
Tata Consultancy ServicesNetwork Administrator
Tata Consultancy ServicesSenior Network & Security Engineer
Tata Consultancy ServicesAWS (Amazon Web Services)
Azure
Azure Security
MS Office
MS Visio
Python
Cisco Prime
VMware
GTM
FMC
SIEM
Citrix
WinSCP
TeamViewer
Zoom
Teams
Crowdstrike
Office 365
Zimbra
Recommend, design, implement, and support application delivery infrastructure integration
into business solutions, while meeting the business goals and objectives. This includes
supporting documentation and diagrams detailing the specific infrastructure.
Design and implementation experience with F5 BigIP LTM and GTM appliances and virtual
appliances.
Excellent understanding of LTM configuration (VIPs, Persistence, SNAT, SSL, etc.).
Analyse network topologies and traffic/capacity requirements.
As a network security consultant, implement network perimeter security to comply with
information security policy of the organization. This includes proposing the solutions to
customers for approval and implementation.
Design and implement ID based network access control methods for users to access private as
well as public cloud.
Implement remote access control methods using different VPN technologies including SSL,
IPSEC, PPTP and L2TP with strong authentication using multifactor authentication.
Vulnerability assessment and testing.
Facilitate design, implementation and troubleshooting for host and network based IDS/IPS
systems including SNORT.
Design, deploy and manage threat-free network infrastructure by implementing Anti-Spam,
Anti-Virus and Anti-Malware solutions.
Design and deploy SIEM solution and event management solutions along with hands-on
troubleshooting.
Maintain security standards for all 22 data centres across the globe.
Responsible for round the clock network operation for branch infrastructure supporting 10k+
associates spanned across 150+ projects with different domains like finance, healthcare,
education, government and more.
Managed and mentored team of 20 associates across 3 locations of Garima Park, GIFT city and Bhopal.
Gathered requirements from different customers and cross functional team to give desired IT
solutions with security controls in place.
Responsible for network design and implementation of Local Area Network and Campus Area Network.
Configuration ACL, site to site configuration, NAT/PAT, URL filtering, application filtering, content
ID filtering profile firewall.
Integration of Network Devices to Cisco ACS and Cisco ISE for device and end point authentication.
Responsible for Availability & Capacity Management for branch network and security infrastructure.
Handled Data Centre operation having 70 racks, 150+ network and security devices, 100+ physical &
virtual server and 500+ TB storage spread across 3 sites in Gujarat & MP.
Monitored and managed 1700 VDI users.
Responsible for managing CAPEX & OPEX for IT infrastructure.
Designed, tested and commissioned DRP for critical business units and enterprise applications
along with formulation of BCP. Conducted regular DR mock drills to assure continuity of business.
Prepared and deployed risk mitigation plans by identifying and tracking risks.
Actively participated in preparing documents for triple external audit such as ISO 9001, ISO
20000 and ISO 27001 conducted at TCS Gandhinagar.
Redesigned, updated, and established network topography standard.
Deploying and configuring L2, L3 switch, router, firewall and load balancer.
Replaced legacy routers with Cisco ASR series.
Part of a firewall and security team in support of Checkpoint, Cisco and Palo Alto firewalls,
Zscaler Proxy, Juniper Portals, SecAuth, Open LDAP and Active Directory.
Configured Cisco 2821, 2921 and 3845 CE routers to change them from EIGRP to a complex
MPLS environment that includes VRF, IPSEC VPNs, Broadband Tunnels, HSRP and VLANs.
Configured Cisco and Juniper switches to add VLANs for wireless project, VLANs, LACP, RSTP,
Dot1x and QoS protocols for MPLS.
Configured Cisco Wireless Access Points 1100, 3600 through Cisco NCS Prime. Imported
diagrams to create campuses, buildings and to map wireless APs location.
Responsible for verifying change records of routers, firewalls, switches and DHCP configurations
before applying.
Prepared multiple routers simultaneously for circuit turn-up, pushing MPLS configuration, and
MPLS migration using Cisco NCM and prescripted TCL configurations.
Configured routers for Controller Card Preparation, applying MPLS Configurations, MPLS
Circuit Turn-up, MPLS Circuit Migration, Broadband Migration, Post Migration Clean-up, PPP, PPP
Multilink, QoS, VPNs and Broadband Tunnels.
Network monitoring through Solar winds, Manage engine and Whatsup gold.
Implemented network change request for VLAN, MAC binding, ACL, STP, Dot1x, vPC, VRF, OSPF,
BGP for new project requirement.
Configured IPSEC, SSL and Clientless VPN, static and dynamic routes, URL filtering, threat
prevention, User-ID, App-ID, Antivirus policies, NAT and Access rules.
Vulnerability assessment and penetration testing of network infrastructure and closure of
vulnerability or open action item.
Managed backup of network infrastructure devices through FTP Script and Cisco Prime tool.
Performed syslog analysis of network devices.
Firewall rule base reconciliation on quarterly basis.
Prepare ITIL report on monthly basis.
Coordination with various service provider for GCN/shared MPLS, dedicated MPLS, internet and
P2P link setup.
Network Device BCP drill execution.
Actively participated for security & IQMS audits and project specific audits.
Responsible for 24/5 IT support for 1200 users by maintaining SLA in Incident Management &
TAT for Change Management.
Maintained Security Compliance for Network Devices.
Become Auditee in Internal/External/Customer Quality and Security Audits.
Developed Technical skills to T/S any network issues and resolve it on timely manner.
Implemented change request for network related changes to support project requirement.
Support Project for BCP & Mock Drills.
Rollout new network and security changes post successful testing.
Managed and provided support to 1400 stores network for Toys R US company of USA by
handling Wireless devices and L2 Network Devices remotely.
Coordination with various vendors for HW replacement of NW devices and L3 Network Team &
ISP for Priority 1 Cases / Network Outage.
Monitored all the network devices and carried required actions.
Secure Borderless WorkSpaces (SBWS) setup for 11,000 employees due to Covid-19 pandemic.
Designed the connectivity for 150+ projects.
Enabled and configured OSPF and BGP properties on NSX DLR and edge routers.
Configured vSphere distributed switch policies for NSX support and load distribution.
Configured load balancer one-arm and transparent modes.
Compared the physical network topology which supports NSX.
Deployed 4 extra security agents on all the machines for SBWS.
Conducted major changes in various project connectivity keeping security guideline for SBWS.
Replaced 4 internet firewalls to keep higher bandwidth & throughput while accessing TCS VDI.
Implemented MPLS VPN for the projects using MPLS for their connectivity with the help of ISPs.
Upgraded internet bandwidth and servers
Constructed a plan for replacement of existing firewall with NextGen firewall with minimal downtime.
Identified the perfect firewall for given infrastructure compared to other vendors.
Planned, designed and implemented migration activity.
Planned and tracked firewall migration plan along with project specific connectivity.
Replaced more than 8 firewalls during this tenure.
Used various tools to execute this activity such as Expedition tool for Cisco to Palo Alto.
Implemented VDI infrastructure for 400 users and migrate users data and applications from Desktop
to VDI. Lenovo HCI hardware is used for computer and storage along with Nutanix and VMware.
Installation of Lenovo HCI Server and Nutanix.
Nexus 9k switches configuration for VDI Setup.
Configured NSX load balancer for application servers.
NSX Edge and DLR configuration for Virtual Edge security and router, Virtual Switch for VDI pool.
Installation of ESXi and mapped storage LUNs.
Created static and floating VM pools as per project requirement.
App volume creation for application virtualization for VDI users.
Setup of all IT infrastructure services like AD, DNS, DHCP, SEPM, DLP and more on new
infrastructure for the framework of physical Airgap infrastructure for 400+ users at GIFT City
location for additional floor.
Vendor coordination, floor networking, Hub Room design, Server Room rack setup planning.
Configured Access and Core Nexus switches with Dot1x, VPC, HSRP and Access list.
Configured VMware infrastructure including vCenter for server virtualization.
Installed and configured AD, DNS and DHCP service. Configured and deployed GPO.
Installed and configured SEPM, Cisco ISE, Nessus VA Tool.
RSA SecurID setup for multifactor authentication.
Setup HP device manager for HP thin client.
Setup Cisco ISE server for Tacacs, Radius and Accounting for secure environment.
Configured solar winds and manage engines for network monitoring.
Created PCI certified environment.
Cleared 8 Audits within 6 months of these setup (Internal/External/Customer Auditor)
Consolidated 3 locations across two different cities into new GIFT CITY location for 1400 users.
Planned and tracked location migration plan along with project specific connectivity.
Planned and designed floor network passive design along with Hub Room design with admin and IPD.
Planned, designed and implemented fibre & ethernet backbone connectivity for Server Room racks.
Coordinated with different ISP and admin team for their respective MUX setup inside server room.
Installed and configured network, server and security device for basis infrastructure.
Coordinated with different vertical team for installation and configuration of AD, DNS, DHCP,
SEPM, SCCM, Syslog, proxy services and others as well as Wi-Fi and Voice infrastructure.
Migrated all project specific services from existing location to new location with minimal downtime
Designed and implemented passive cabling for Garima Park Data centre having 70+ racks under the
guidance of technical leaders and mentors.
Designed and planned Medius density raw, high density raw and storage raw.
Requirement gathering for interconnectivity of network, server and storage racks.
Designed and finalized fibre connectivity and ether connectivity requirement across all racks.
Coordinated with IPD and cabling vendor for design finalization.
Implemented and monitored cabling work by vendor.