Dimension Data (NTT), United Arab Emirates, Dubai (Dec 2020 – Present )
Designation: Senior Network Security Engineer. (L3)
(Global, Cisco Gold Partner) (www.dimensiondata.com)
(Global, Cisco Gold Partner) (www.dimensiondata.com)
● Technical Lead to the Dimension Data UAE Services team.
● Supporting Presales team on defining scope, man-days, identifying pain-points.
● Managing operations for executing projects involving scoping, initiating, presales engagements, design & architecture, deploy and transition to Managed Services
● Design, Implement, Upgrade and maintenance Dimension Data Clients’ Network Security Infrastructure within the limit of SLA agreements.
● Develop HLD, LLD, Micro Design, NIP, Migration Document, As Built Document, SOP.
● Working with International Clients for Remote Deployment and support. Leading L1 / L2 Team for remote deployment.
● Design and Deploy complex IT and OT (Claroty) infrastructure LAN and Security.
● Vulnerability Management Tenable Solution- detection and mitigation for network Security devices. Communicating with supporting Server infrastructure team with mitigation of vulnerabilities.
● Tenable CIS Benchmarking – Configuration Benchmarking using Tenable solution for Network, Security, windows, and Linux Devices.
● Strong knowledge of LAN/WAN/Security infrastructure deployment and troubleshooting skills
● The high degree of analytical ability and creativity in resolving design and production issues
● Analysis of the Infrastructure Time to time to maintain a healthy infrastructure.
● Experience in the assessment of network design, configuration & applied best practices.
● UAE VAR Technical Lead for SAP Datacenter Builds.
● SAP build MCS Reviews, Supervision of SAP Builds in Datacenter, S4 operations, communication in co-pilot.
(Leading System Integrator, Cisco Gold Partner) (www.alpha.ae )
●Design, Implement, Upgrade and maintenance of Alpha Data client’s network within the limit of SLA agreements.
● Experience in working with medium to Enterprise networks. Handled projects in multiple sectors including private, government, Oilsector, Military etc.. ● Hands on experience with complex security project with multi-vendor devices like Cisco, F5, Palo Alto, Fortigate.
● Hands on experience, delivered multiple projects with F5 LTM, ASM (WAF) and APM Modules.
● Hands on experience with Datacenter Technologies with Cisco UCS, Fabric interconnect, Cisco Hyper converged Infrastructure, VMware VCenter and ESXI.
● Hands on experience with Email Gateways (Cisco ESA), Web proxy (Cisco WSA), Cisco Identity Service Engine, Cisco FTD, Cisco IPS, Fortianalyzer and Fortimanager, Site to site VPN with multiple technology, Remote access VPNs, Wired and Wireless NAC, Datacenter switching, Monitoring Tools like Solarwinds and OPmanager.
● Experience on Greenfield installation and Migration of security products to different vendors.
● Deep knowledge on Software defined networking. Cisco ACI and Cisco SD Access networks.
● Hands on experience with Cisco Collaboration products. (Cisco Unified Communications Manager, Cisco Unity Connection, Cisco Presence, Cisco Expressway (VCS), Cisco TMS, Cisco CWMS, Cisco CMS and CMM.
● Prepare Bill of Material as per the RFP Requirements and technical write-up. ● Provide technical expertise to new and/or junior members in the team to guide them on a day to day basis.
● Prepare Scope of Work, HLD, LLD, UAT, SOP and Implement a project and take responsibility till the signoff.
● Lead engineer for projects, preparing timelines and collaboration with multiple vendor part of the project to ensure service delivery on time.
● Administrator level understanding and knowledge with windows domain technologies and configuration, self-taught to support any integration requirements. ● Work on the Assigned Support Ticket for the clients. Supporting Manage Service Clients for network, Security and unified communication.
● Hardening of Networks based on the vulnerability scanning report and configuring layer2 and layer3 for threat mitigation.
● Hands on experience in mitigating the issues reported as part of vulnerability scanning. ● Managing Escalations to the vendor and work close with vendor engineers to troubleshoot bugs and other unexpected software and hardware behaviours. ● Configure and maintain Switching, routing, security, UCS infrastructure for enterprise clients from infrastructure design to project sign off.
(Service Provider, Cisco Gold Partner) (www.etisalat.ae )
● Work with the presales team in understanding customer requirements based on the RFP’s and converting them to technical solutions.
● Develop HLD, LLD and Detailed Level Design
● Implementing network and Security Infrastructure.
● Design and implement UC and Contact center on Virtualised environment for large number of endpoint deployment.
● Implementation of 6500 series switches and 7600 series routers, FWSM modules.
●Configuration of MCU Video Conferencing for the TP endpoints with the CUCM.
● Hardening the security with the
● hardware tokens on the Unified communication systems.
● Configuring and deploying TANDEBERG products and Expressway solutions.
● Deploying security solutions based on Cisco ASA, Fortinet, and WatchGuard.
● IPsec site to site VPN, SSL VPN design and configuration.
● Deploying wireless solution based on Cisco, Aruba Controllers.
● Network assessment by identifying the design gaps and providing the recommendation.
● Attending support calls and escalations to the vendor technical team to resolve complex issues.
● Providing support to the clients within the limit of SLA.
(System integrator, Cisco Select Partner) (www.applicom.net)
● Analyse technical needs, requirements, and status of the network’s infrastructure design, integration, operations and monitoring.
● Lead teams of network engineers in developing detailed designs and quality-control mechanisms during implementation.
● Preparing High Level Design (HLD), Low Level Design (LLD), Proof of Concept (POC), Root Cause Analysis (RCA).
● Implementing, upgrading and monitoring the Cisco unified Communication systems including Cisco Unified Communication Manager (CUCM) 4.x-11.x , Cisco Unity Connection7.x and higher(CUC) , Cisco Unified Communication Manager Express(CME), Cisco Unity Express(CUE), IM & Presence, Cisco Contact Center Express and Enterprise solutions, SIP and SCCP end points, Video Conference Solution on PVDM, Cisco Jabber for different platforms, SX series Telepresence end points, Avaya IP Office solution, Avaya Voice mail pro, Avaya contact Store for Recording, ShoreTel IP Telephony solutions.
● Configuring and Troubleshooting of VoIP gateways and Technologies including T1, E1, BRI, MGCP, H323, ATA , SIP gateways, Session border Element (CUBE), Gatekeeper, Cisco SPA series gateways, 3com V711 gateway, Ingate Siperator.
● Implementing multisite VoIP solution on Site to site VPN or MPLS VPN, on Cisco IPT solution, Avaya IP Office and ShoreTel Solution. Providing Redundancy using SRST routers, VPIM networking with CUE and CUC and dial plan level redundancy for site to site extension calling. Federation of IM & Presence on multiple cluster, Integrating Jabber with CISCO UDS for contacts. Implementing Avaya IP Office Small Community network (SCN) for multisite.
● Configuring DNS SRV records for Jabber and for redundant gateway configuration, Configuring SCCP for conferencing, Transcoding and MTP on IOS routers, Call Handlers on Unity connection, Scripting in Unity Express.
● Integrating UCCX with CUCM, Scripting the call flow according to the customer needs, Training the agents and supervisors to handle the calls and taking the Historical reports. Configuring the native queuing on the CUCM on hunt groups.
● Setting up of Cisco Prime collaboration to ease the administration of collaboration systems.
● QoS on layer2 and layer3 (CoS and DSCP). Identifying, marking and policing of traffic.
● Installation and configuration of VMware ESXI and ESXI networking and storage to host Virtual Machines.
● Integration of VoIP systems on SIP like Cisco CME & Microsoft Lync, ShoreTel and Microsoft Lync using Ingate Siperator as Translator, 3com VCX integration with ShoreTel and Cisco.
● Implementing , Upgrading and monitoring of routing, switching and firewall solution including Cisco Catalyst series switches, HP switches, Cisco routers, ASA firewall, WatchGuard firewalls, and Fortinet firewalls.
● Configuration and T.Shoot of Routing Protocols like RIP, EIGRP, OSPF and doing simple adds and changes to the WAN MPLS BGP routes.
● Stacking, Managing VLANs, Configuring VTP, LACP and PAgP for redundancy and bandwidth, Routing on layer3 Cisco and HP switches.
● Hardening the security on IOS Routers and on Cisco Switches, Configuring the Border security using Cisco ASA, WatchGuard and Fortinet, managing the access lists, Configuring the Intrusion prevention System (IPS), Content filtering, URL filtering, GW antivirus, Load balancing on Wan interfaces, Site to Site VPN Redundant gateway configuration, Policy Based Routes (PBR).
● Configuring and troubleshooting of Site to Site IPsec VPN and Remote Access VPN using SSL, IPsec, and PPTP on Firewalls.
● Configuring Access control with Active Directory for the VPN Users and administrators for the administrative access to the network devices and authentication, synchronisation of Unified Communication Users with Active Directory.
● Setting up of full cycle of Cisco solutions demo systems for testing, troubleshooting and demonstration.
● Monitoring the network appliances by syslog and bandwidth monitoring with Linux application like CACTI, Mirroring the switch ports to analyze the network traffic using Wireshark or Omni peek analyzers.
● Maintaining LAN and Wan Connectivity using Cisco, Linksys and 3com routers and switches, troubleshooting and documentation for handover.
● Deployed and managed Cisco CME, CUCM 5-8, Cisco IP phone, CIPC, Third party SIP and Cisco ATA devices in corporate and remote locations.
● Addition and deletion to the Nortel BCM50, 3Com NBX v3000, and Avaya IP office telephone system.
● Significant role in network designing and implementation of complex network with dynamic routing protocol like RIP, EIGRP, OSPF.
● Maintain redundancy of network using HSRP, VRRP.
● Configuring and maintaining network switches for VLANs, Layer2 security. ● Implemented Low Latency Queuing to provide Quality of service for voice traffic. ● Implemented MGCP and H.323, T1/E1 PRI gateways in corporate and remote location in centralised Cisco Call manager.
● Provided redundancy using SRST (survivable remote site telephony) and MGCP fallback. ● Installation and Troubleshooting of issues with Cisco desktop for agents and supervisors for registering with IPCC.
● Site to Site Video conferencing using Polycom HDX series devices using BRI and IP-IP. ● Setting up of complete network solutions including voice, data, security, wireless and audio visual technologies for International level conferences.
● Layer one and Layer2 support handling for AMC customers.
● Maintaining LAN and Wan connectivity, including troubleshooting. ● Configuring and backup of routers and switches.
● Managing anti-spam and virus protection.
● Installing, supporting and maintaining new server hardware ,software infrastructure and Lan infrastructure.( windows operating system installation and maintenance) ● Monitoring network usage and analyzing and resolving faults ranging from major system crash to forgotten password.
● Undertaking routine preventive measures and maintaining security. ● Maintaining hardware installation and printer management.
● Addition and deletion to the Microsoft 2003 server.
● Providing onsite technical support for network and software related issues and proper accounting of timings for AMC customer through Microsoft dynamic CRM.