Senior Network Security Engineer
CurrentDuring this job position, I conduct day-to-day duties of designing, implementing, and consolidating network services to maintain compliance with CIS, NIST Cybersecurity Framework v1.1, PCI DSS 3.2.1, SWIFT SIP standards, such as network security servers, firewalls, IPS, routers, and switches. In addition to this, I applied Cisco Firewalls, DMZ, IDS/IPS, and VPN for access control and security monitoring and analyses to protect availability, integrity, and confidentiality of data and assets. I possesses remarkable efficiency to accelerate protection against security breaches through MFA implementation and integration with Active directory and Cisco ISE (radius Server). Furthermore, I implement and configure VPNs for remote access based on risk assessments of cyber security threats. It was me, who stimulate recovery scenario for each component of network infrastructure to routinely check local resilience whilst keeping SLA in particular limit (98%-99.9%).Some of my key accomplishments during this role includes:• Successfully Identified 200+ network vulnerabilities by automatically and manually testing infrastructure security.• Enhanced security protocols and 802.1x-based NAC by updating old devices 3560 to new cisco switch platform 9300.• Applied traffic filters using Standard and Extended access-lists, Distribute-Lists deployed in multiple devices such as Switches, routers and firewalls.• Successfully migrated 20 HQ Libyan banks operating SWIFT Application for 150+ sites, from old tunnels of ikev1 site-to-site VPN technology to ikev2 without any interruptions in service.• Leveraged superior leadership skills whilst heading team of four network engineers, responsible for maintaining TechNet network, planning future growth, and acquiring new customers.