Plano, Texas, United States
Senior Network Engineer with 7+ years of experience designing, implementing, and supporting enterprise network, security, and cloud infrastructures across large-scale environments. Experienced in routing and switching, network security, SD-WAN, Zero Trust architectures, and cloud networking technologies. Proven expertise in Palo Alto, Fortinet, Cisco ASA, Check Point, Zscaler, and F5 technologies, with hands-on experience managing firewall policies, VPN solutions, network segmentation, and secure access architectures. Skilled in AWS and Azure cloud security, infrastructure automation using Python, Ansible, and Terraform, and implementing scalable, secure, and highly available network solutions. Strong background in network troubleshooting, incident response, SIEM monitoring, and performance optimization using tools such as Splunk, QRadar, Wireshark, and Panorama. Experienced in collaborating with cross-functional teams to deliver secure, resilient, and business-aligned infrastructure solutions while driving operational efficiency through automation and modern network security practices.
At Freddie Mac, I support enterprise network and cloud security environments using Palo Alto, Zscaler, AWS, and VPN technologies, helping improve network security, application availability, and secure user access. Improved security visibility and reduced risk by implementing firewall policies, network segmentation, App-ID, User-ID, and threat prevention features across Palo Alto and Zscaler platforms. Increased operational efficiency by automating network and security tasks using Python, Ansible, PowerShell, and Terraform, reducing manual effort and accelerating configuration deployments. Strengthened cloud and access security by supporting AWS infrastructure, Zero Trust initiatives, MFA, SSO, and secure remote access solutions for users and applications. Enhanced incident response and network reliability by leveraging Splunk, QRadar, Panorama, and security logs to identify threats, troubleshoot issues, and support timely remediation.
At Verizon, I specialized in network security, cloud infrastructure, and secure access solutions, enhancing enterprise security posture and improving network reliability across multi-site environments. I strengthened organizational security by implementing Palo Alto, Fortinet, Cisco ASA, and Check Point firewalls, reducing security risks and improving network availability. I improved user experience and access security by deploying AWS, Azure, Entra ID, SSO, MFA, and VPN solutions, streamlining authentication and enabling secure hybrid cloud access. I increased operational efficiency by automating network and infrastructure tasks using Python, Ansible, Terraform, Cisco ACI, and REST APIs, reducing manual effort and accelerating service delivery. I enhanced threat detection and incident response by implementing Splunk, QRadar, CrowdStrike, Zscaler, and NAC solutions, improving visibility, strengthening compliance, and reducing security incidents. I optimized application performance and business continuity by supporting SD-WAN, data center, and multi-cloud environments, delivering scalable, resilient, and highly available network services.
· Configured and managed Palo Alto Networks Firewall models (PA-7k, PA-3k, PA-5k) and Panorama for centralized management of large-scale firewall deployments. · Configured and managed IPSec and SSL VPNs on FortiGate firewalls (1500D, 2000E, 2500E). · Implemented secure access controls, authentication, and encryption protocols within Viptela SD-WAN infrastructure. · Deployed and configured SIEM tools (Splunk, QRadar) for real-time threat detection, log aggregation, and incident response. · Proficient in network automation using Python, Ansible, and REST APIs for Cisco ACI, F5. · Designed and deployed Network Access Control (NAC) solutions (Cisco ISE, Aruba ClearPass) to enforce zero-trust policies, reducing unauthorized access by 90%. · Automated routine network tasks (device provisioning, configuration changes) using Ansible and Terraform. · Designed and implemented AWS security solutions (VPCs, IAM, security groups) for cloud-based applications. · Migrated on-premises infrastructure to AWS and Azure, leveraging Terraform for automation. · Automated ACI fabric configurations using REST API and Python scripts. · Configured F5 BIG-IP LTM/GTM for load balancing, SSL offloading, and high availability. · Collaborated with vendors (Cisco, Palo Alto, Fortinet, Zscaler) for hardware/software procurement and support. · Integrated Zscaler for web security, threat defense, and secure internet access. · Managed wireless infrastructure (Cisco Meraki, Aruba) for seamless connectivity and RF tuning. · Troubleshot complex network issues (NAT, ACLs, DNS/DHCP) and optimized network performance.
"At SIDS Farm, I supported enterprise networking, security, cloud infrastructure, and automation technologies, including Cisco, Check Point, AWS, SD-WAN, F5, Python, and Terraform. This role provided hands-on experience in both traditional networking and emerging cloud technologies, enabling a seamless transition into cloud networking, security operations, and infrastructure automation."
· Configuring, monitoring, and Troubleshooting Cisco's ASA 5500 security appliances. Failover DMZ zoning and configuring VLAN sprouting/NAT with the firewalls as per the design.