Download PDF

Summary

Results–oriented and analytical professional with comprehensive experience in networks administration and strengthening information security measures. Stellar record of developing networking products, technologies, software, and protocols; experienced in service provider or enterprise network design and operations within a global environment. Demonstrated excellence in improving whole lifecycle of enterprise networks from inception and design, to qualification and validation, through deployment, operation, and optimisation. Articulate communicator with systematic problem-solving approach and excellent communication skills; apply advanced troubleshooting techniques to provide unique solutions to customers' individual needs.

Areas of Expertise include:

  • Network Architecture and Design
  • Zero Trust
  • Network Security Engineering
  • Network and Security Operations
  • DDoS Detection and Mitigation
  • Infrastructure Design and Implementation

Work experience

Twitter, Inc
2016-092022-12

Staff Network Security Engineer

Design and deploy network flow monitoring solution to support DDoS detection and traffic engineering services. Architect of Twitter's Zero Trust Network Access strategy. Work across teams and organisations as an infrastructure and security shepherd to provide guidance about secure development. Write and implement ad-hoc tools, integrating them into a CI pipeline to automatically update the tools as new versions are released. Develop a service to build a Source of Truth for network Access Control Lists.

Key Accomplishments:

  • Deployed a new network flow analysis solution which increased network visibility and analysis
  • Deployed a Zero Trust remote access solution which reduced the demand for a legacy VPN solution by nearly 25%
  • Reduced tool deployment speeds by 90% by integrating tool development into a CI pipeline


Senior Network Security Engineer

Plan and deploy network security design across four sites for third-party vendors in trust and safety department using SSLVPN solution. Enable automation teams to dynamically update hosts by revitalising internal stateless filters and security enforcement points. Devise visualisation tool to take XML output from Juniper routers, output HTML, and display to non-technical users. Implement mitigations to address security issues in PCI-scoped networks during a PCI Audit. 

Key Accomplishments:

  • Reduced operational response time from 1 week to 1 day by modifying and improving configuration templates used across Twitter's network infrastructure. 
  • Developed new remote access solutions and steered global expansion of trust and safety services by 10X. 
  • Augmented network capacity to cloud providers from 1Gbps to 100Gbps while maintaining strong security posture. 
  • Decreased SSL VPN issues by 50% by deploying Passthrough Proxy and Anycast services. 
Nexum, Inc
2015-032016-09

Senior Network Engineer

Headed multiple network and security design assessments, including configuration analysis and proposed mitigation solutions to strengthen network integrity and reliability. Spearheaded design and deployment activities for multiple datacenter security solutions utilising high-end SRX clusters (SRX5k series). Created automation scripts to automatically deploy VM Environments for training classes utilising python, chef knife, and bash. Served as an Active instructor for Pulse Secure and Palo Alto Networks with high ratings from students as well as prepared detailed presentations on ethernet VPN and presented at CHINOG 06 and BOSNOG. 

Key Accomplishments:

  • Improved lab and training virtual environments to efficiently utilise datacenter resources along with automation of essential components of training environment, reducing deployment time of new labs from a week down to 4 hours. 
  • Contributed to Juniper Networks Certified Design Specialist - Security Exam (JNCDS-SEC). 
CentraComm Communications
2006-062015-03

Senior Systems Engineer

Designed and deployed fleets of Juniper SRX firewalls with managed nodes in four continents. Used MAG and SA Series for implementing multiple Global SSLVPN solutions for 20,000+ concurrent users. Devised and maintained CRM solution powered by Salesforce to deliver business intelligence, automation, and accountability across the organisation. Tailored Splunk solution for long-term log-management and wrote scripts (bash, PowerShell, python) to help with automating repetitive tasks. Executed in-depth discussions and presentations on topics such as virtualisation security, disaster recovery, and mobile security. Deployed and maintained MX Series, EX Series, and SRX Series solutions for multiple customer environments. Piloted customer deployments from pre-sales to post-installation operations; acted as the Technical liaison between customers, vendors, and account managers to resolve issues. 

Key Accomplishments:

  • Enhanced Security Operations Center services, slashing detection and triage times from 60 minutes to 15 minutes. 
  • Minimised physical infrastructure requirements (network/server hardware) by 95% to support internal and customer-facing services; refurbished physical infrastructure to migrate to ~100% virtualised environment. 
  • Conducted training for staff to guide on solving complex customer issues and deployments, improving customer satisfaction. 
Northwest Ohio Orthopedics And Sports Medicine
2004-032006-06

System Administrator

Conducted research and managed a core switch replacement while installing, configuring, and maintaining Juniper SSL VPN system. Designed, developed, and implemented servers, fibre-channel SAN, and external storage for a Document Management System. Led development of 10 Small Form Factor computers for daily use and installed anti-virus, anti-spam, and content filtering systems. 

Bluffton Exempted Village Schools
2003-062005-05

SWIFTY

Assisted in system migration from Novell 4.1 to Windows Server 2003. Developed in-house solutions for patch management, computer image deployment, and application deployment. Maintained Infrastructure, as well as assisting students and teachers with a variety of technological questions.

Education

University of Findlay
2003-092008-05

B.Sc - Computer Science

Major courses include C++, VB, and Assembly; Network Management and Forensics; Unix Environments; and Technical Communication

Other Interesting Tidbits

Affiliations

Juniper Networks Ambassador Emeritus

National Youth Leadership Forum of Technology Representative

Buckeye Boys State

Certifications

Juniper Networks Certified Internet Expert #69 – Security (JNCIE-SEC)

Juniper Networks Certified Internet Expert #492 – Enterprise Routing & Switching (JNCIE-ENT) 

Palo Alto Networks Certified Network Security Instructor (PCNSI)

Pulse Secure Certified Instructor (PSCI)

Publications
  • Co-authored
    • Juniper Ambassadors Cookbook for 2014
    • Day One: Juniper Ambassadors’ Cookbook 2017
  • Edited
    • Day One: Juniper Ambassadors’ Cookbook 2018
Skills

JNCIE, Firewalls, VPN, Security, Juniper, Network Architecture, IPS, Data Center, Networking, Network Security, SSLVPN, Servers, Zscaler, WAN, UAC, Switches, Routers, BGP, OSPF, Network Design, Splunk, Security assessments, Stateless Filters, Stateful filters, Python, Zero Trust, DDoS Detection and Mitigation, Puppet, Terraform, IPFIX