OUR TEAM

OUR TEAM

Professional Profile

A Senior Network Architect specialising in network/telecommunication design and implementation of technology based solutions
for enterprises. Efficiently pitches ideas and services to clients using excellent communication and presentation skills and delivers
on all client requirements.

A Cybersecurity Specialist with 20 years of technology, infrastructure, application
solutions and data privacy background involving critical security controls review and
development using regulatory frameworks like NIST SP800-53, SP800-63 , NIST CSF,
FSSCC and FFIEC. Worked as a subject matter expert developing key processes around
cybersecurity framework for protection, detection and incident response methodologies for
mission critical business continuity initiatives and cloud control security. Extensive
experience with Security controls, policies and control standards development using NIST
and ISO frameworks for on premise and SaaS based solutions hosted by third party
providers. Experienced in IT security objectives while working in financial,
telecommunication, pharmaceutical and healthcare corporate organizations with extensive
experience in eGRC and vulnerability management platforms. Very well versed with
Secure SDLC/Application security principles and Privacy laws (GDPR CCPA)

Certifications

• CCIE # 27992
o Routing & Switching- Written
o CCIE Collaboration – lab
• CCNP, CCNA, CCDA

Information Management / Security and Governance Credentials:

▪ CISSP from ISC2 (CISSP # 65xxx)
▪ CISM and CRISC certification from ISACA. (Certified Information Security
Management)
▪ Fortinet Unified Threat Management certification (FCNSA)
▪ NIST, FFIEC , ISO, COBIT and PCI Information Security frameworks
▪ eGRC Enterprise Governance Risk and Compliance certification from RSA for
Archer solution
▪ GIAC certifications from SANS (Web application security and Network Security)
▪ Cloud Security Alliance

Career Summary

September
2019 – Present
Senior Network Consultant
Global Pharmaceutical Firm
As lead Architect, help Pharmaceutical firm to transform their IT infrastructure. This include prepare Build Of
Material, Statement of Work, create High Level Design (HLD) & Low Level Design (LLD) document and lead the
implementation of
• Consolidation of Data Center that consists of Nexus 9K pair (using VPC), Cisco 3850 Layer 3 switches, Fabric
Interconnect in support of Cisco Hyperflex. This includes
• OSPF between Layer 3 switch and Meraki MX 450 in One-Arm concentration mode
• Planning and preparing Disaster Recovery (DR) Data Center networking
• Consolidation of various legacy WAN network to unified SDWAN by leveraging Meraki MX to replace
various IPSEC VPNs (Cisco ASA, Palo Alto, Checkpoint, SonicWall), MPLS and DMVPN networks
• Refresh LAN & WLAN network-
• Replace legacy switches with newer Cisco 3850 & Cisco 3650 switches- OSPF routing at LAN sites
• Wireless for warehouse- design wireless solution using Meraki MR
• Wireless for branch offices- consolidate Cisco wireless solution by centralize WLAN Controller in
Data Center from per site WLAN controller design
• ISE cluster for TACACS authentication and start preparing Dot1.X rolld out for phase 2 for both wire and
wireless
• Setup Cisco Any connect for remote SSL VPN using Cisco ASA
• Centralize Internet breakout by leveraging Palo Alto Firewall- Active Stand by cluster.
• Consolidate legacy phone system with centralize Call Manager and Unity Connection base solution
• Cisco Umbrella roll out planning
• F5 Local Traffic Manager roll out discussion for pilot application

September
2018 –
September
2019
Senior Solution Architect
Orange Business Service
KEY ROLE
• Staying well informed and up to date with regard to technical trends, issues and solutions
• Focusing on the bigger picture before details and recommending solutions that look to the future and take in
to account customer’s long term needs
• Staying on top of progress, problems and opportunities and ensuring that promises made are promises
delivered
TECHNICAL CONSULTING ROLE
• Prepare solution to modernize IT Infrastructure for global manufacturer (75 sites) that consists of
• Nexus 9K & Palo Alto Firewall for Data Center
• Meraki SD WAN router (MX), Meraki Access Point (MR) and Meraki switches (MS) for branch location
• Prepare and presented high level migration strategy from MPLS to Meraki based SDWAN
• Prepared security solution by leveraging Cisco AMP with Meraki and Cisco Umbrella
• Prepare proposal and High Level Design based on Cisco Viptela SDWAN for global financial customer (240
sites). This includes understanding the technical requirements and business drivers for SD-WAN migration
• Participate in ‘Proof Of Concept’
• Discuss and whiteboard different cloud based security options- ZScaler vs. Cisco Umbrella
• Develop Hosted Voice Solution for Global Industrial Paining Manufacturer and presented to executive
management- 10000 plus phones
• Prepare and presented network refresh proposal for global enterprise company in support of 9000 plus users
and 75 sites, leveraging Cisco SD Access (DNA) technology

October 2016 –
September
2018
Solution Architect- Network & Voice
High Availability
KEY ROLE
• Developed partnership with Cisco by developing internal lab and demonstrated the technical and business
value to Cisco to earn the right to be trusted partner
• Managed the engineering team handling the design and implementation of Cisco solution projects
• Developed Build of Material (BOM), Work Breakdown Structure (WBS) for professional service (PS) price,
and Statement of Work (SoW)
• Developed all processes, tools and standardized documents
• Developed and presented key proposals to client executives
• Provided technical workshop to existing and potential clients on regular basis
• Led implementation of complex projects as a Subject Matter Expert
PROJECT EXPERIENCE HIGHLIGHTS
• Prepare BOM, SoW, Project Plan and High Level Design for Cisco solution for Financial firm to support 1000
phones from 23 sites including UC 11.5 – CUCM, 50 PoE switches, CUC, CUCM IM &P, CUBE Routers,
Analog VGs, UCCX, & Calabrio call recording
• Architect network and voice solution for Healthcare provider in support 1500 phones from 30 sites,
includes LAN network refresh, MPLS (CE to PE) routing set up in support of data and centralize SIP trunks
• Develop proof of concept for client demonstrating Cisco Unified Communications Servers with UCCX
(Contact Center) and show live demo of agent/supervisor desktop
• Designed and implemented a core switch refresh project for a manufacturing firm with HPE 5940 core
switch stack (IRF), 7 Aruba Access switches with MST, a pair of Sonic wall firewall
• Design and implement multiple Palo Alto firewalls leveraging Panaroma.
o Design and implement Site to Site VPN with Cisco ASA, Cisco Meraki and Checkpoint
o Set up security policies, NAT policies and routing

March 2011
– September
2016
Solution Architect- Network & Voice
UeBiz
KEY ROLE
• Developed and presented key proposals to client executives
• Developed Build of Material (BOM), Work Breakdown Structure (WBS) for professional service (PS) price,
and Statement of Work (SoW)• Led the implementation of complex projects as Subject Matter Expert
• Provided product and solution updates to clients through ‘Lunch & Learn’ on a regular basis
PROJECT EXPERIENCE HIGHLIGHTS
• Design and architecture for a new unified communications roll out for 250 users form 8 sites along with
prepared, designed and implemented three UCS servers across two data centres. Leverage VMware ESXi
to create and manage Virtual Machines (VM)
• Design and implement solution consist of 4500 series core, 3850/3650 switches and 3850/ASR routers at
various branch and hub (Data Center), leveraging DMVPN and EIGRP on for WAN connectivity
• Setup a Proof of Concept using Nexus 5000, 7000 and 2000 to demonstrate VPC solution for client, tested
back-to-back VPC as well VPC & VRRP (Peer-gateway feature) to address all traffic flow concerns/questions.
• Designed and configured OSPF, consolidated and upgraded UC infrastructure of two separate UC
environment in to one centralised UC solution
• Implement client network connecting 4 branches to primary Data Center and back up Data Center using
dual MPLS network (different carrier) using BGP. Configure IPSEC (site to site) on Palo Alto Firewall and
Cisco Any Connect with Cisco ASA
• Design and implement Cisco Wireless Access point with Wireless LAN Controller 5508

April 2006 –
March 2011
Solution Consultant
Orange Business Services
KEY ROLE
• Approached multiple enterprises and leveraged pre-sales consultancy skills to secure numerous projects
• Communicated directly with customers and understood their requirements to ensure customer satisfaction
and project success
• Proposed comprehensive solutions based on customer’s technical requirement,
PROJECT EXPERIENCE HIGHLIGHT
FINANCIAL BANK, NYC:
• Prepare Bill of Material & Statement of Work & High Level Design to replace ‘End of Life VM system’ with
Unity Connection 7.0 supporting 8000 users in NY metro area
• Design and architect global IPT solution BOM with, both CUWL and UCL license, for about 44,000 NAM users,
that includes five (5) CUCM clusters with total 30 CUCM 7.x servers, 3 Unity Connection 8.x with total 6 CUC
8.x servers, Presence, TFTP & MoH servers, Voice Gateways (ISR2), Cisco Phones & Gatekeepers
LAW FIRM, NYC
• Lead technical portion of RFP response and replace network infrastructure (switches) solution based on
Cisco’s best practices
• Prepare Low Level Design document, which includes switch configuration, acceptance test and fall back plan.
Provide the document to staging team to load IOS and final configuration
• MPLS design to support active-passive as well active-active PE-CE solutions
GLOBAL FINANCIAL FIRM, NEW YORK
• Prepare VoIP design for customer, which allows customer to integrate their legacy Voice PBX from each site
in to MPLS network such that all dialling between their sites managed by managed Gatekeeper
• Design E1 controller with QSIG on the CE router to connect and communicate with legacy PBX
• Design Hoot and PLAR solution on CE router in support to trader’s hoot and Plar (automatic ring down)
requirements
ENTERTAINMENT FIRM, MONTREAL:
• Access, prepare and present technical and commercial solution for WANOP devices (manage Riverbed
services)
• Help to prepare proactive monitor solution of the WANOP devices using Enterprise Network Management
tool

2004–2006 IP Telephony Engineer
Align CommunicationKEY ROLE
• Assessed, proposed, and implemented switches and router upgrades for a recruiting firm, and also managed
all aspects of readying the network infrastructure for IPT
• Designed and configured Call managers, Cisco Voice Gateways, Cisco Unity servers, and Cisco IPCC express
• Monitored inbound and outbound traffic for internal, Internet, and market data vendors using a
comprehensive access list, along with implementing a Cisco PIX 515E for IPSEC VPN connection for all users
• Created a Low Level Design (LLD) document for Cisco Emergency Responder integration with Cisco
CallManager
2002-2004 Network Engineer
CTIS Technology
KEY ROLE
• Established data network between Central office and 8 satellite offices using hub and spoke frame-relay WAN
• Designed and implemented IPCC Express 4.0 on to Call Manager, 3 site-to-sites VPN on PIX firewall, and
integrated Berbee software and configured IP multicasting for overhead paging with call manager
• Handled all backup and security functions, managed access-list and NAT/Static translation on PIX firewall, and
also maintained DHCP, DNS and Exchange Server on Windows 2000 server

Legal and Privacy

▪ Member of American Bar Association
▪ (New York Law Certified) NYLE
▪ NYDFS 500
▪ NIST SP800-53
▪ Studying for CIPT IAPP certification
Unmanaged past certifications
▪ Microsoft and Cisco Certified CCIE routing and switching) track

Education

2002 – 2002
Master’s in Computer Science
New York Institute of Technology
1996 – 2000
Bachelor in Electronic Communication
DDIT, India

Information Security Technologies

ISS and Nessus Network Vulnerability Assessment Scanners
● HP Webinspect and Veracode software scanning
● Tenable Lightning Console
● Qualys Web application security
● Archer eGRC solution for policy and risk management
● Fortinet Unified threat management solutions
● Onapsis X1 for SAP Security scanning

Achievements

• Best Employee of the Quarter – 2007 & 2009
• President Club Award of High Achiever – 2017

Federal Assessments and Legal Advisory Services

 GDPR implementation at New York Media Publishing company
● FDA CFR Part 11
● HIPAA assessments
● Dodd Frank Act
● PCI Compliance
● FFIEC and FSSCC (Working with Federal Reserve bank in financial industries)
● AML (Bank Secrecy Act) Controls
● NIST SP800-53 and CSF assessments working for Department of Tresury (IRS
Security Risk Management program) with Public clearance for IRS systems
(Clearance active from 2012 – 2016)
● FCC reviews as part of merger and acquisition
● Worked in advisory capacity for Patent Law

Interests

• Active member of non-profit organizer – Friends Of ARCH
• Hobbies – Golf, Tennis, Skiing, Reading

Information Security/ Qualification/Validation/FDA Compliance:

 COBIT for ISMS (Information Security Management Systems)
● ISO17799 and ISO 27001 (BS 7799-2) security framework
● Sarbanes Oxley Compliance and Internal Controls questionnaire.
● COSO frameworks for enterprise Risk Management
● ITIL Framework (ITIL v3 certified) for Service Lifecycle
● Risk assessment frameworks like COBRA, OCTAVE
● Quality Assurance and 21 CFR Part 11 Regulations and IQ/OQ Training from QA
Department in JnJ NCS to work in compliance with FDA Regulated Environments.
● Cisco PIX, Checkpoint, Cisco ASAs, VPN concentrators and SSL VPN solutions
from Cisco and Juniper

Senior Network Architect

Summary

Over 20 years of experience in Telecommunications and Information Technology. My background includes network engineering, network architecture, network Implementation, network management, project management, pre-sales support, and post-sales support

 

Certifications:

CCIE # 10701 Routing and Switching, CCNA  Wireless, CCNP Voice,  CCDP,  CCNP, CCDA, CCNA, Cisco Certified Academy Instructor (CCAI)

Skills and Experience

  • Designed and Implemented Cloudgenix SD-WAN solution, migrating network from point-to-point connections and MPLS to an overlay and underlay SDWAN network utilizing IPSec over Public Internet and Private MPLS VPN Network.
  • Configured network connections and routing between customer premise and cloud provider both AWS and Azure. Configured AWS Gateway and Azure Express Route with BGP.
  • Provided pre sales support and post sales support to Cisco Resellers and Integrators in the areas of Routing, Switching, Data Center, Security, Wireless and Unified Communications.
  • Configured Authentication, Authorization and Accounting (AAA) on Cisco devices using Cisco ISE
  • Designed and Implemented large Data Center Networks with Nexus 7700s, Nexus 9300s using VPCs
  • Designed and Configured Ipv6, MPLS, OSPF/OSPFv3, BGP Backbone for large enterprise corp.
  • Reviewed network architecture and applications and Designed ACL and Security Policies based on customer requirements and applied them to configurations for Cisco PIX, ASA and FWSM Firewalls.
  • Designed, Configured and Maintained Policies on Firewalls: Cisco ASA, FTD, Fortinet Fortigate, Juniper SRX.
  • Configured Fortinet Firewalls; creating and modifying access rules to meet business requirements and also build VPN tunnels.
  • Configured Juniper MX routers, EX switches and SRX firewalls.
  • Used Packet Tracing tools, Ethereal, Wireshark to troubleshoot networks
  • Configured site to site IPSec VPNs between Juniper SRX to Cisco ASA firewalls
  • Designed and implemented IPSec and SSL site to site and remote access VPNs utilizing ASA 5500 and Fortinet Firewalls
  • Built Hub and Spoke Network with Fortigate F401E IPSec Tunnels to F401s. Also configured SSL VPNs with Fortinet Clients terminating on the F401.
  • Configured and maintained Cisco Wireless LAN Controller (WLC) and Wireless Access Points with Wireless Domain Service (WDS)
  • Designed, configured and supported complex routing and switching networks including MPLS, BGP, EIGRP, OSPF, Multicast, IGMP, Layer 2 and Layer 3 QoS.
  • Designed and configured BGP routing solution for corporations with multiple ISPs
  • Configured and Maintained Cisco Data Center and Access Switches; Nexus 7000, Nexus 5000, Nexus 1000V, Catalyst 6500/VSS, 4500, 4900, 3750, 3650 and 2960.
  • Extensively used Packet Captures, Ethereal, Wireshark and Sniffer Cisco Netflow, Cisco NBAR and Cisco IP SLA to analyze the performance of applications through the network and make necessary changes to configurations and QoS Policies as necessary.
  • Designed, configured and administered Cisco CallManager versions 6.0, 5.0, 4.2 and 4.1, Unity version 4.0, MGCP and H.323 and SIP gateways
  • Designed, Configured and Implemented a VoIP platform and prepared for commercial launch, which included designing, configuring, maintaining and troubleshooting SIP Trunks, Cisco Voice Gateways, Broadsoft SIP Feature Servers and Nextone SIP Session Border Controllers.
  • Created and implemented test plans for integration of Broadsoft SIP Feature Servers with various IADs including Cisco SIP based gateways and Cisco IP to IP Gateways,
  • Performed LAN Assessments to validate the capability of customer data networks to support voice.