Ajinkya Prakash Sonar
Email Id:-No: - /-
In quest of career enrichment opportunities in Network Security Operations with an organization of repute
Professional Synopsis
I am working with Quick Heal Technology in Network Security Administration, having 3+ years of total experience. My main area of expertise has been Network Security operations & Troubleshooting. I have worked primarily in the domain of Routing, Switching, Network Security and Load Balancing, cases for VAPT(Vulnerability Assessment and Penetration Testing)
Experience in Systems and Network Security Management, Cisco Routers & Switches, Checkpoint Firewall, Palo-Alto Firewall, F5 load balancer-LTM/GTM, Infoblox, Bluecoat Proxy and a good understanding of ITIL processes for IT service management (ITSM).
Have an excellent Client Interaction skill, Oral and Written Communication skills, Quick learner, never say die spirit and highly process oriented.
Technical Expertise & Skills
Network/System Tools: Putty, SecureCRT, HyperTerminal, Syslog, Wireshark, Venafi, Infoblox, Solarwind - Netflow, Splunk, Raritran, Riverbed, SD-Wan.
Switching Skills: VLANs, VTP, Etherchannels, STP, First Hop Redundancy Protocols like HSRP, VRRP, LAN Security – Port Security, Port based authentication, DHCP Snooping, Storm Control for Broadcast & Multicast, ARP Spoofing, VSS, Cascade, Stackwise vPC technology.
Routing Skills: Static Routing, RIP, EIGRP, OSPF and BGP, Route redistribution, Summarization, ACL, NAT, Policy Based Routing and Route-map.
Security Skills: ACL, NAT, VPN, Traffic Flow in ASA, Securing Management-Plane, Securing Switched Data-Plane, Securing Switches, Securing Router, Backup and Restore, Transparent Mode, IPv6, DHCP, Redundancy, Ether-channel, Failover, AAA Architecture, TACACS+.
F5 Load Balancer: BIG-IP LTM, Virtual Servers and Pools, Load Balancing algorithms, Profiles, iRules, Persistence, Health Monitors, SSL Termination / SSL Offloading, Certificate Management through Venafi, SNAT.
Bluecoat Proxy: URL filtering.
VAPT : Searching for the vulnerabilities in all platform like network, application, website side. Generate the log report for same and provide the patch to the end customer. Exploit the vulnerabilities and gain the access of server and important information to prove the secure environment.
Professional Experience
Quick Heal Technology Ltd
May 2019 - Till Date
Designation: - Network Security Administrator
Key Responsibilities handled:
Manage and maintain Customer owned Network Security owned devices as Checkpoint Palo-Alto Firewall, Load Balancers, Bluecoat and Cisco ASA firewalls, TACACS
Deletion of the unused certificate from the F5 LTM
Changes on BIGIP GTM- Create Wide IP, Pool, Generic Host, Creating the 3dns setup for both Active/Active and Active Standby from application perspective as per customer requirement.
SSL Client/Server Certificate management using Venafi tool.
Changes on Checkpoint Firewall- Implement the firewall policies/NAT setup as per requirements and make rule base more optimize
Changes on Bluecoat Proxy- Whitelisting the URLs using Local policy and VPM.
Changes on ASA: Creating and troubleshooting the IPSEC tunnel for the customers.
Responsible to manage, maintenance and troubleshooting of Core Data Centers with multiple branches in high availability environment.
L2/L3 Troubleshooting for traffic block on the network security devices and handling troubleshooting call
Handling the SWAT calls for the F5(LTM/GTM), checkpoint, ASA, Proxy issues.
Daily Health check report of the network devices.
Good understanding of the packet captures (TCP dump on f5 and checkpoint, FW monitor debug on checkpoint)
Enabling the DR site traffic for the application team by enabling NAT rules and policy on the Checkpoint and palo alto
Good hands-on on the Splunk tool of using the correct indexes for the F5(LTM.GTM), checkpoint and Proxy and analyzing the logs to troubleshoot the issues.
Identify network problems and resolve in accordance with Incident and Problem Management Services, policies, procedures and SLAs.
Planned and regular reboot activities of network devices
Report performance against service-level requirements, performance, capacity, and utilization
Manage the devices logging via TACACS
Creates and maintains good technical documentation and network maps of all sites.
Secured enterprise routing, including the Static, BGP, EIGRP routing protocols, through route maps, prefix-list, route summarization, distribute list and offset list.
During planned activity doing the required troubleshooting for physical layer to Transport layer.
Maintaining the Links (MPLS & Internet) with the support of the NOC Team.
Logging Tickets to last mile provider in case of any link issue.
Skillfully steered network infrastructure and planning and design of enterprise local- area/wide-area network (LAN/WAN) solutions. Successfully handled data network issues in and around sites and providing solutions.
Fault analysis/troubleshooting of ILL & VPN customers.
BGP failover, DHCP, Natting.
Providing configuration support for planned events.
Managing the day to day operations of Network Operations Center. Ensures escalations to other groups are carried out in a timely and proper manner and communicates with other team leads to ensure timely resolution of escalated incidents.
Responsibilities of assets management and follow-up with different vendor for service and support.
Conducted Team Meetings and provided training to subordinate and new joiners.
Perform the VAPT and generate the log file and provide the patch to the clients.
Also, to provide the best customized solution as per the requirement of the clients to patch the vulnerabilities in existing architecture.
GTT Communications Pvt. Ltd.
Nov 2017 to May 2019
Designation: - GNOC Technician
Key Responsibilities handled:
Resolve all faults within target times to ensure that department service levels and key performance indicators are achieved.
Worked towards the achievement of the strategic and operational objectives of the group located across multiple locations in a 7x24x365 environment.
To complete detailed fault diagnostics on GTT network equipment utilizing appropriate technical diagnostic tools. To complete detailed fault diagnostics on the ‘last mile’ of the network utilizing external remote diagnostic tools to understand how end user customers would set-up and configure equipment.
To joint test with exchange-based field engineers (including 3rd party Suppliers) to ensure correct path to resolution.
To ensure that outstanding problems are escalated according to jeopardy management procedures and to continue to monitor and own outstanding problems ensuring that resolution is achieved in the shortest possible time.
Provide support to managers, team members and other colleagues to ensure departmental best practice is adhered to.
Responsible for the change request in the firewall.
Handled and multiple firewalls like Palo-alto, Check-Point, Cisco. Monitored all the activities and logs and proposed the best suitable security solution.
Identifying and troubleshooting issues related to the packet loss, slow speed, BGP, MPLS, IPSec tunneling and issues related to the NNI hand-off.
Monitoring tickets worked by the L1 engineers and troubleshooting escalated ticket and provide training to the juniors or L1 engineers
DHCP and NATTing
Check provisioning for the customer and IP backbone provided to the them
TTS
May 2016 to Sept. 2017
Designation: - Jr. Network Admin
Key Responsibilities handled:
Handling the Network of Global clients
Checking, Monitoring & Troubleshooting the BGP, EIGRP links.
Checking the Interfaces of the circuits &making changes in them.
Configure the router on remote location on site by using Team Viewer
Implementing IP addressing Scheme.
Building the switch configurations VLAN, Inter VLAN, Voice VLAN, STP Private VLAN, Ether-channel.
Configuring standard and extended ACL.
Managing entire firewall for the customer’s remotely.
Providing the alternative solution within the given SLA’s
AAA architecture implementation.
Certifications Achieved
Certified Ethical Hacker (CEH)
Education Summary:
Qualification
Time Duration & Insitution
Percentage
Bachelor of Engineering (Electronics and Telecommunication)
Course Duration:-
Pune University
68.00%
Diploma in Electronics and Tele-communication
CourseDuration:-
K. K. Wagh Poly-technique
73.05%
Senior Secondary School Certification
CourseDuration:-
78.79%
Inter-Personal Skillls
Ability to rapidly build relationship and set up trust
Confident and Determined
Ability to cope up with different situations,
Having good adaptability
Personal Details
Languages Known:English & Hindi
Marital status Unmarried
Preferred Location: Pune
NationalityIndian