I am willing to work for communication systems in an esteem organization. Currently I am working as a Network Consultant at Deloitte Pakistan. My expertise involves in depth troubleshooting and configuration of the Enterprise network scenarios and to provide security via firewalls and VPN's, hands on experience on multi-vendor environment. I can relocate anywhere according to the need of an organization.
• Leading the network design and implementation of head office and regional offices for internet and intranet services.
• Network security policies implementation with radius server.
• Complete management of all regional offices and sharing of internet and intranet services.
• Managing Cisco ASA firewall with firepower.
• Network traffic load sharing to implement efficient bandwidth usage.
• Cisco wireless LAN controller implementation with high availability.
• Communication with global team of networks.
• Threat intelligence.
• Vulnerability Management via Qualys.
• Maintaining the network compliance.
• Monitoring of the overall network and Data-center with monitoring tools.
• Network performance analysis reports.
• Participate in global firewall network design i.e. CheckPoint firewall.
• 24/7 Availability.
• AWS cloud direct connect and IPsec connectivity with BGP routing protocols.
• Implementing Network design upgradations for international clients and make necessary changes on real time to resolve the issues.
• Network monitoring via syslog kiwi and orion NMS.
• Design and implementation of auto failover and DR scenarios.
• Managing PaloAlto Firewalls.
• Managing Cisco ASA firewall with firepower.
• Managing Fortinet Firewalls and wireless controllers for global wireless solution with high availability.
• Design and implementation of network scenarios for BGP/EIGRP/OSPF routing protocols to maintain the connectivity and redundancy.
• OTV, VXLAN and Pseudo-wire implementation.
• Managing multi-homing designs to ensure the Voice/Data services availability and stability.
• Hands on experience for configuration of stack switches.
• Hands on experience for ASR series router and Data center core Nexus switches.
• Configuration of ACL's, EtherChannel, NAT/PAT, IP SLA, Route Maps, Site to Site VPN, HSRP.
• Managing 1500 + network devices globally.
• Coordination with international/Local clients for trouble shooting and design purpose.
• Global carrier escalations in different time zones.
• Leading the network design and implementation of head office and regional offices for internet and intranet services.
• Network security policies implementation with radius server.
• Design and implemented disaster recovery scenario.
• Network Automation via Python Scripting.
• Maintaining routing and switching for overall Pakistan.
• Complete management of all regional offices and sharing of internet and intranet services.
• Managing Cisco ASA firewall with firepower.
• Network traffic load sharing to implement efficient bandwidth usage.
• Cisco wireless LAN controller implementation with high availability.
• Communication with global team of networks.
• Threat intelligence.
• Vulnerability Management via Qualys.
• Maintaining the network compliance.
• Monitoring of the overall network and Data-center with monitoring tools.
• Network performance analysis reports.
• Participate in global firewall network design i.e. CheckPoint firewall.
• Working with teams on various time zones.
• Enterprise network troubleshooting.
• MPLS, BGP, OSPF, IP routing, End to End Layer 2 and Layer 3 communication.
• Multi-vendor hands on Cisco, Juniper, FortiGate, Huawei , Maipu and Mikrotik network devices.
• Configuration of enterprise network security products (Cisco, Juniper and FortiGate).
• Solutions for technical scenarios.
• Configuration of the network devices (Managed Services).
• LAN and WAN connectivity assurance via e-mails and phone.
• Depth knowledge of Core Networking, Radio, 3G, GPON, and Satellite links.
• Network planning (Wireless and Wired)
• Planning and implementation of LAN
• WIFI and data center solutions
• Conducts survey for BOQ (Bill of Quantity)
• Meeting with clients
• Formal documentation ( Quotation, Tenders and Reports )
• Dealing with power issues
worked as an internee in Electronic Control Room (ECR), Automatic Message Handling Systems (AMHS), and Radar departments.
achieved a broader exposure of Air traffic control zone, storage equipments (DVLS), and communication processes.
worked in various departments such as,
1)WLL (wireless local loop)
2)Switching
3)Transmission
Achieved practical knowledge of IT department.
• Managing internal and external audit and compliance such as PCI DSS and ISO.
• Managing firewalls i.e. Palo Alto 5020, FortiGate 2201-E, Juniper SRX 3400, SSG550, SRX 100,110,210,220, FortiGate 30E, Cisco ASA and FTD.
• Managing WAF i.e. F5 Advance WAF.
• Managing LTM i.e. F5 2800 series.
• Managing switches i.e. Cisco Nexus 7706 with FEX 2K, Nexus 5548, Dell MX-Series, Lenovo. C9300, C4948, C3750, C2960.
• Propose Network Solutions for system services and security.
• Designed and implemented SD-WAN country wide with BGP routing protocol.
• Managing wireless controller i.e. Cisco 2504 Controller, AP 1700, AP 2800 and AP 3800.
• Managing Radius and NAC i.e. Cisco ISE, RSA.
• Managing country wide bank’s network of 300+ branches.
• Redesign the complete Datacenter and Migrated the Juniper firewall configuration to FortiGate firewall.
• Managing IPS for both PR and DR.
• Managing successful DR drills with complete failover.
• Configuring F5 irule scripting as per bank requirements.
• Design and Implemented the Datacenter firewall on core banking services and segregated the edge internet firewall with standard design.
• Implemented the Forti-Manager for managing the nation wide branches.
• Leading a network design and implementation for both PR and DR.
• Managing Primary data center and DR site co-location racks.
• Ensure quality assurance of network and security.
• Ensure BCP connectivity for any unforeseen.
• Maintaining 99.99% uptime of network connectivity.
• Supervise network team and prepare SOP's.
• Network Performance monitoring.
• Core Network troubleshooting.
• Vendors/service providers dealing for support and deployment.