• On H1b Visa. I could work on C2C or can do H1b transfer. Approved I 140 with the PD Nov 2014• Extensive network security designs understanding on organizations such as Manufacturing, energy,BPO & Govt. Agencies• Hands on experience in Implementation, Troubleshooting &configuring Cisco FTD, FMC and Cisco ASA 5500 Series firewalls• Implemented Palo Alto Prisma Access SSE features such as URL Filtering• Implemented Microsoft Global Secure Access SSE feature with Internet Access and Private Access• configured Microsoft Entra ID SSE options• Extensive experience on Palo Alto firewalls, Panorama management center configuration, migration and Architecture.• Providing support for Checkpoint R75. 40 on GAiA ,SPLAT 7 Nokia IPSO • Experience on Fortinet 3600C and Forti Analyzer/Manager• Experienced on Juniper (Junos OS & Netscreen OS) to Cisco Firewalls migrations/Rule conversion• Perform installs, configure and troubleshooting on stateful inspection firewalls and inline/passive IPS/IDS sensors.• Proficient at establishing User Tunnels in Nortel VPN Routers• Enterprise Switching with VLANs, Trunks, Spanning Tree, Port Spanning.• Troubleshooting the user issues with VPN clients helped the users in installing their clients or upgrading their client versions to latest products.• Strong experience on technologies including TCP/IP, IPv4/v6, RIP, EIGRP, OSPF, BGP and configuration of VLANS, Frame Relay, ACL, VPN, Wireless LAN.• Strong communicator; able to interact effectively and positively with individuals of all technical abilities; An Out-of-the-Box Thinker, Believe in Team Work & Team Spirit, Decision Maker, Proactive, Customer Focused & Good Documentation / Presentation Skills. • Built stable, productive and profitable operations within highly technical environment. • Strong analytical, problem solving, technical troubleshooting, decision-making, customer-service skills. Results-driven.• A highly organized individual who adopts a systematic approach to problem solving, effectively analyzes results and implements solutions • Highly motivated with the ability to work independently or as an integral part of a team and Committed to highest levels of professionalism.
-
Sr.Cyber Security ArchitectCognizant Jul 2019 - PresentTeaneck, New Jersey, UsWorked on Palo Alto and Panorama Migration from PA 2130 to PA 3110Cisco Umbrella SWG Migration from Microsoft TMG proxyImplemented Zscaler Private Access ( ZPA ) as a greenfield implementationConfigured ZPA "Browser Access" and created isolation policies for private application access for the remote users while on roamingWorked on Microsoft Global Secure Access SSE solutionWorked on Cisco Umbrella IPSEC tunnel build, SWG proxy policy configuration, Umbrella DNS Security policy configuration and troubleshooting.Performed firewall architecture designs and Cisco ASA 5550 to FTD 4115 firewall migration on multi-context mode.Worked on Verizon SDP VPN to Palo Alto Global protect migrationWorked on Scaler ZPA configuration and ArchitectureCustomer network discovery, work with security team and principal architect to prepare HLD andLLDDesign and develop network security solutions for the customer networkAnalyze the current firewall design and propose architectural changesConduct workshops with customer and present the design changesImplement the approved firewall solutionsWorking in Azure and AWS cloud firewall implementation -
Firewall Team LeadAtos Nov 2016 - Apr 201995877 Bezons, FrClient - County of Orange, CATroubleshooting & managing MacAfee Sidewinder Firewalls & firewall rulesWorked extensively on County agencies firewalls migrations of over 10,000+ firewall rulesPlanning and migrating MacAfee Sidewinder & Checkpoint firewalls to Cisco ASA Performed over 30+ IPSEC VPN tunnels migration from Checkpoint firewalls/MacAfee Sidewinder firewalls to Cisco ASA Configuration/troubleshooting and migrations of 1000+ NATs(Static, Dynamic and Hide) on ASA firewallsPerformed IPSEC VPN tunnels configuration between Checkpoint R77.20 and Cisco ASA Troubleshooting user authentication issues (LDAP) when they connect from SSL VPN issues on Cisco ASAIPSEC Tunnel configuration/troubleshooting on Checkpoint R77.20 on GaiaOptimized over 10,000+ firewall rules, NATs & Routes using Algosec & TufinHandled and closed County’s P1 , P2 Network security incidentsHandled all firewall related service requests which are escalated to L3 levelTroubleshooting firewall issues pre and post firewall migrations -
Sr.Firewall EngineerHcl Global Systems Inc May 2014 - Oct 2016Farmington Hills, Mi, UsClients - County of Orange, CA & NASDAQ OMXTroubleshooting & managing MacAfee Sidewinder Firewalls & firewall rulesWorked extensively on County agencies firewalls migrations of over 10,000+ firewall rulesPlanning and migrating MacAfee Sidewinder & Checkpoint firewalls to Cisco ASA Performed over 30+ IPSEC VPN tunnels migration from Checkpoint firewalls/MacAfee Sidewinder firewalls to Cisco ASA Configuration/troubleshooting and migrations of 1000+ NATs(Static, Dynamic and Hide) on ASA firewallsPerformed IPSEC VPN tunnels configuration between Checkpoint R77.20 and Cisco ASA Troubleshooting user authentication issues (LDAP) when they connect from SSL VPN issues on Cisco ASAIPSEC Tunnel configuration/troubleshooting on Checkpoint R77.20 on GaiaOptimized over 10,000+ firewall rules, NATs & Routes using Algosec & TufinHandled and closed County’s P1 , P2 Network security incidentsHandled all firewall related service requests which are escalated to L3 levelTroubleshooting firewall issues pre and post firewall migrations -
Sr.Firewall Engineer At Nasdaq Omx GroupE-Business International Inc Dec 2013 - Apr 2014Monmouth Junction, New Jersey, UsImplementing and supporting new network firewall integrations and providing daily access network request.Responsible for upgrading Cisco IOS firewalls to 9.x. Configuration, monitoring, and administration of network firewalls with focus on network firewalls like Cisco ASA running multi-context mode.Creating specific data-traffic policies for allowing or denying host and/or network access between environments.monitoring Network Firewall rules and adjusting Network Firewall policies in support of eliminating obsolete access Responsible for collapsing existing Network Firewall rules in support of achieving efficiency goals. Designing and implementation of network firewall infrastructure -
Network Security Tower Lead At General MotorsTcs Aug 2010 - Nov 2013Mumbai, Maharashtra, InImplemented and troubleshooting the Virtual firewalls (Contexts) solutions in ASAResponsible for installation, troubleshooting of firewalls (Cisco firewalls, Checkpoint firewalls and Juniper firewalls,) and related software, and LAN/WAN protocols.Troubleshooting the VPN tunnels by analyzing the debug logs and packet capturesConfiguring failover for redundancy purposes for the security devices. Implemented the stateful & serial failover for PIX/ASA firewalls, Checkpoint Clustering and load balancing features.Planning, designing and implementing a secure ODC Network setup for upcoming projects.Responsible for implementing Data Center Security best practice, audit and compliance (PCI/SOX/DOD) requirements.Automation of security operations and optimizing the usage of infrastructure.Responsible for managing Network & Security Engineering implementation that architect, design, builds, manages and supports Network and Security Infrastructure and Data Centers.Configured redundant interfaces, dhcp server, dhcp relay, ntp settings, and sub interfaces on firewalls.Implementing Cisco ACS server for the firewall Authentication, Accounting & Authorization purpose.Implemented the redundancy for ACS servers by replicating the database between primary & secondary servers.Maintain the periodical software update on security devices depends upon the bugs fixed with the new software releases.Testing the new features/Product in the lab and preparing the reports.Maintain the security standards across the security devices as per the security policies. IDS/IPS Signature updates and CSM Management -
Firewall Engineer At IbmAt&T Nov 2009 - Aug 2010Dallas, Tx, UsImplementing Brand new Cisco ASA & PIX Firewalls with updated Security Policies.Involved in New branch office Implementations for IBM through AT&T NetworkImplementing Nortel VPN Routers and creating Site-2-Site and Client-2-Site VPN Tunnels.Providing support for Checkpoint Firewalls.Developed security controls and best practice to secure Data Center, applications, services and network infrastructure. Working on Problem Management & Change Management as per ITIL V3 standards.Firewall OS Management.Managing Nokia IP 560 firewall with checkpoint R62.Configuring & Administration of the Checkpoint Firewall that includes creating Hosts, Nodes, Networks, Static & Hide NAT’s.Implementing Access maps & VLAN Access Lists (VACLs).Installed & Configured Syslog Server.Basic configuration & Maintenance of Nortel Connectivity (VPN Server)Coordinating with Telco for circuit issues.Managing & Administering the DS3& T1 links using Routers & Passports.Taking backups of all network devices configurations on Weekly & Monthly basis. Monitoring the Links with PRTG, CLI Manager and Solar wind dashboards.Assessing the usage of bandwidth with the help of PRTG graphs & forwarding the periodical reports -
Network Engineer At GeSatyam Jul 2007 - Sep 2009Pune, Maharashtra, InDeploying IDS/IPS in Promiscuous mode and inline mode as per the requirement and monitoring the network traffic & customizing the signatures.Configuration & trouble shooting of protocols Such as HSRP, EIGRP, OSPF and BGP.Configuring Cisco 1841 , 2821, 2851, 3745 Routers , Cisco 3560 , 3750 Switches & Cisco 1242 , 1231 Access PointsConfigured VLANs with HSRP on Cisco 6506 Switches Creating and modifying rules, Diagnose and resolve LAN/WAN problems. Ensure LAN/WAN environment is secure and appropriate recovery and redundancy issues are addressed.Configuring & Administration of the Checkpoint Firewall that includes creating Hosts, Nodes, Networks, Static & Hide NAT’s.Implement and Manage network security equipment’s Across 12 Centers in Chennai.Involved in managing and maintaining around 100 + firewall of CISCO PIX, ASA and Checkpoint, Net screen firewalls and Cisco 3000 series VPN concentrators.Involved in migrating various versions of checkpoint to Provider -1 environment for around 40 Enforcement Modules.Log Management and audit Co-ordination for Network security equipment.Day to day activity includes Change Implementation on firewalls, log analysis and troubleshooting of network access issues -
System AdministratorBusiness Solution Internationale Nov 2006 - May 2007LAN monitoring and Maintenance. Implemented and Managing of VLAN and IP-Access List Monitoring of Routers, Switches & Servers using Ipswich, Whats up tool. Branch location Network Infrastructure design & implementation. Responsible for managing intranetworking systems through Firewall and proxy Using Debian / Ubuntu Linux. -
System AdministratorMinvesta Infotech Limited May 2006 - Nov 2006Chennai, Tamil Nadu, InMaintenance of Cisco 1841, 2502 Routers. Maintaining of NAS. Administering Ubuntu and Debian Linux to maintain Code Repository. Taking .Net Program Codes from Linux server and Configuring internal websites with the backend of SQL server. Taking regular backup from Windows 2003 Server Using SATA Hard disk. Deploying McAfee Antivirus across the Domain using Epolicy Orchestrator. Monitoring and implementing preventive user security policies using IPCOP. -
System AdministratorBserve May 2003 - Jun 2006Maintenance of LAN &Wifi; Broadband link from ISP. Providing desktop support and End user support Maintaining SAV (Symantec Anti Virus) Server and updating patches regularly. Monitoring “LAN suite” Server (Proxy Server). Preparation of maintenance documentation
Sankar S. Education Details
-
Madurai Kamaraj UniversityPhysics
Frequently Asked Questions about Sankar S.
What company does Sankar S. work for?
Sankar S. works for Cognizant
What is Sankar S.'s role at the current company?
Sankar S.'s current role is Firewalls, SASE & Cloud Architect.
What schools did Sankar S. attend?
Sankar S. attended Madurai Kamaraj University.
Who are Sankar S.'s colleagues?
Sankar S.'s colleagues are Brian Dudley, Suzanne Bouffard - Lopez, Raschelle Black, Cpp, Pravin Chaudhari, Bineesh Kamalakshan, Subramanyam Reddyvari, Anand Veer.
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial