Senior Network Security Engineer
CurrentPolicy Enforcement and Web Access Control: Implement and enforce security policies using Cisco Umbrella's URL filtering, ensuring a secure and compliant internet environment.CrowdStrikeusing CrowdStrike as an Endpoint Detection and Response (EDR) solution for real-time threat detection, prevention, and response across endpoints. Leveraging AI-driven analytics and threat intelligence to protect our systems against advanced cyberattacksPythonI automate security tasks using Python scripts for log analysis, vulnerability scanning, and system monitoring, enhancing efficiency and consistency.As a Senior/Specialist Firewall Engineer at CMC, I managed vital projects and achieved significant milestones:Switching Over Clustering Method:Transitioned all clusters from VRRP to ClusterXL with VMAC, utilizing dynamic protocols (BGP & OSPF) for enhanced stability and imperceptible failover times.Redesigned authentication by integrating IP/range rules with AD groups via Identity Awareness, streamlining remote work and reducing firewall rule creation time.Tidy up Rules:I utilized the third-party tool "Tufin" to analyze and optimize over 100 rules, breaking down wide-ranging rules into more granular components. This enhanced security by understanding and reducing potential risks.Checkpoint Integration with Cisco ACI:It was successfully integrated with Cisco ACI, migrating the core network into Fabric ACI. This integration extended end-to-end protection across perimeters, DMZ, and internal firewalls.SplunkSkilled in using Splunk to monitor, analyze, and respond to security incidents, ensuring real-time threat detection and management.DC Relocation:Architected and designed migration phases for all firewalls relocating to the new data centre in the UK.Successfully led the migration of Check Point firewalls to Palo Alto Networks, ensuring a seamless transition, enhanced security posture, and minimal downtime.