Network Security Engineer
London, UK
jason@bloggs.xyz
07918 082 859
Skills
Firewalls
Web Proxies
Linux
Networking
Languages
English
Spanish
SC cleared engineer, working with customer security teams on a daily basis to ensure they receive the correct support and fulfil any change/challenge requests. Working with firewall, Proxies and Load Balancers. Working closely with our team and pass on best practises and knowledge. Working alongside the Security Operations Manager and SDM’s and ensure the clients receive an unrivalled service.
Technologies and Vendors used:
Working as a Senior Network Security Engineer, working on multiple projects, tasked with communicating with requesters, ascertaining requirements, compiling designs, submitting for approval and final implementation.
GCP – BI (Business Intelligence) Migration from Woking, Gibraltar and AWS to GCP. As part of the company shift to move away from AWS and Legacy on prem DC's all provisions had to be made in GCP to allow for the new environment to be built to specific standards into new CNX (Carrier Neutral Exchange) (Equinix)
Responsible for the Cloud network and security build out of GCP including GCP-Equinix Cloud Connect (Direct Connect).
Back end Data centre connectivity to CNX to allow for the flow of internal/external traffic as part of the company’s cloud strategy.
Working on all aspects of security including on-prem firewalls, GCP security posture, VPN builds to AWS and all core connectivity tasks.
Working on both Ladbrokes and Coral estates across multiple vendor firewalls, including Juniper (Netscreen and SRX), ASA, Checkpoint and cloud architecture.
Producing design proposals and final designs documents, for group approval.
Providing initial support and troubleshooting once design has been implemented until new system have been handed over to operations.
Liaising with external vendors from initial contact to finalising implementation to ensure timely delivery.
Working as a network security engineer responsible for the analysis of all firewall rules within the EMEA region (96 firewall clusters). Analysis consists of making sure rules are compliant with the bank’s standards i.e. TCP termination, unused rules, compliant applications etc…
Analysing rules from an end to end point of view, to get an accurate overall picture of each service to check if they adhere to banks standards e.g. no pass-through rules, all inbound and outbound rules must terminate within the DMZ on a proxy.
Liaising with service owners to extract information on what is and isn’t required and also get their approval for any changes that will be raised.
Using tools such as Firemon, FWDB and firewall search to produce reports for management to quickly and accurately show problem areas so that the firewall estate can meet all audit points.
Get acceptance from governance for anything that doesn’t meet an audit point but is still required.
Working as part of global project to refresh the entire perimeter infrastructure in 42 countries and responsibilities included: • Analysing existing firewalls (CyberGuard, Lucent, Fortigates) and then designing and implementing solutions on Juniper and Fortigate platforms.
Liaising with external vendors and British Telecom to ensure that they deliver as planned.
Producing audit documents for each migration.
Liaising with service owners to successfully complete migrations in a timely manner.
Analysing the workflow and developing process documentation to drive efficiency and streamline migration tasks across the project.
Installation and hands on experience of the following equipment: Bluecoat Proxies, Checkpoint firewalls, F5 Load balancers and Firepass SSL device, Trend Anti-Virus.
I earnt my 'Dolphins'
MSc Computer Science
BSc Computer Networking