Design secure and scalable AWS network topologies using VPCs, Transit Gateways, and Route Tables.
Implement Palo Alto firewall clusters, including high availability (HA), Panorama integration, and policy automation.
Lead advanced troubleshooting of network traffic flows, latency issues, and firewall misconfigurations.
Configure and optimize Application Load Balancers (ALB) and Network Load Balancers (NLB) for large-scale applications, including sticky sessions and advanced routing.
Automate CloudTrail analysis for auditing and threat detection.
Define IAM policies and network segmentation strategies.
Plan and execute architecture changes impacting multiple VPCs or accounts.
Lead a team providing 24×7 support through a structured roster.
Possess in-depth knowledge of network hardware including firewalls, routers, switches, and access points.
Skilled in cloud networking on AWS and GCP platforms.
Troubleshoot network and security issues in both data center and cloud environments.
Assist network architects in designing network models for infrastructure enhancements.
Manage vendor and partner teams for activities such as deploying and updating software on network devices and cloud services.
Schedule, manage, and drive activities to successful closure.
Implement and test security measures.
Coordinate with vendors and plan for network capacity requirements.
Demonstrated expertise in team and vendor management.
Guide the team in hardware troubleshooting and root cause analysis for hardware-related issues.
Oversee and ensure closure of vulnerabilities (VA) reported on the network side, in coordination with the team.
Hands-on experience with Palo Alto and Fortinet/FortiGate firewalls.
Proficient with technologies and vendors such as Palo Alto, FortiGate, Cisco, AWS VPC, and GCP.
Handle data center audits and ensure compliance with key requirements.
Design and prepare Standard Operating Procedures (SOPs) and policies to address team process gaps.
Maintain network inventory and configuration documentation, including network change management records.
Knowledgeable in IPS, IDS, geofencing, IPsec, VPNs, VPCs, security groups, and other network security protocols.