Irfan Shaik

Irfan Shaik

Senior Network Engineer

Followers of Irfan Shaik466 followers
location of Irfan ShaikBengaluru, Karnataka, India

Connect with Irfan Shaik to Send Message

Connect

Connect with Irfan Shaik to Send Message

Connect
  • Timeline

  • About me

    Sr Network Security Engineer at Itron, Inc.

  • Education

    • Govt Degree Collage

      2001 - 2004
      Bachelor's degree Mathematics and Computer Science B
    • Govt Junior Collage

      1999 - 2001
      Intermediate Mathematics, Physics, Chemistry B
    • ZPSS Rajupet

      1998 - 1999
      SSC
    • Osmania University

      2005 - 2007
      Master of Science (MSc) Applied Electronics A
  • Experience

    • Amvensys Technology

      Mar 2009 - Sept 2013
      Senior Network Engineer

      • Implemented site to site VPN, Remote access VPN and Easy VPN in between India, Dallas and Atlanta offices using various transform sets and security associations in ASA 5510.• Configured fail over (Active-Active and Active-Standby) between two ISPs in ASA 5510 for reliability and switchover VPN tunnel also between primary and secondary links.• Configuration and troubleshooting VPN in firewalls like Cisco ASA 5510, Cyberoam, and Edgewater.• Configuration of Site-to-Site VPN, Easy VPN, SSL VPN, DMVPN, WEB VPN.• VPN management such as establishing, maintaining and troubleshooting Remote Access, Site to Site VPNs as per the requirement.• Configuration and troubleshooting Load balancer device like Cyberoam. • Implemented traffic filters using Standard and Extended access-lists, Distribute-Lists, and Route Maps.• Configured Linux based Mikrotik router with two ISPs to achieve auto failure. On Command line interface configured Interfaces, Security Logins, Routing, NAT, DHCP, DNS, Firewalls and Backup.• Configuring and troubleshooting of Cisco Switches with VLAN, VTP, STP, Switch Port Security, Trunk, Ether-channel management features, advanced configuration, Layer 3 Tunneling.• Access control management in terms of port opening, device management access, url access and hosted device access by configuring Access Control Lists• Installation, Troubleshooting and Maintenance of VoIP Phones like Polycom/Linksys with G.711u, G.711A, G.729A Codec techniques and soft phones like X-Lite.• Involved in migration process VoIP services from one service provider to another service provider. • Configured Filezilla ftp server and client with secure certificates to share files securely and redundantly even though when users in different LANs.• Other tasks included attending daily IT group meetings, liaising and providing assistance to other internal groups within the company including customer service, systems operations, Desktop Support. Show less

    • SAP SuccessFactors

      Sept 2013 - Feb 2015
      Network Administrator

      • Configuring and troubleshooting of Cisco Routers (Cisco 2800, 2900, 1800, ASR 1001) with routing protocols like RIP, OSPF, EIGRP and BGP.• Configuring and managing Cisco and Linksys Switches (Cisco 2960, 3560, Catalyst C3750X,4507R+E,6504E, 6506-E, Linksys SRW248G4P, D link ) with VLANs, Inter-vlan routing, VTP, DTP, STP, PVST+,QOS,SNMP, NAC,ACL,AAA, PAGP, LACP, HSRP, Switch Port Security, Trunk, Ether-channel, port - channel management features, advanced configuration, Layer 3 Tunneling.• Configuring and troubleshooting firewalls like Cisco ASA 5510,5505, Cyberoam and Edgewater with VPN, Site-to-Site VPN,SSL VPN, Remote Access VPN, Web VPN, IPSec tunnel, DMVPN, Easy VPN, Any Connect, GRE over IPsec.• Configuration and Implementation of Wireless controllers and Access points like Aruba, Uni-Fi, Net gear, Linksys, Belkin with WEP, WAP, WAP2 modes and AES, TKIP Encryption techniques.• Created and maintaining VPN tunnels between all branch offices.• Handling all APAC and EMEA region SuccessFactors office network infrastructure.• Monitor Bandwidth and utilization of Internet Links and following up with ISP’s in case of link failures and downtime.• Played a key role in Network migration project between SuccessFactors and SAP.• Worked on wireless infrastructure with Aruba 7200 controllers and Aruba 225 APs.• Work on escalation of Tier 1 team. Mainly investigating and resolving network outages or network gear that has gone faulty, after the tier 1 team has done preliminary troubleshooting.• Offering high level of support to the in-house network of around 1000 users.• Monitoring WAN Links through Network management system (Solar winds).• Worked with engineering and DEvIT teams open the ports and allow the networks using ACLs in ASA Firewall.• Given all kind of 24*7 network support in APAC and EMEA region. Show less

    • Cisco

      Mar 2015 - Oct 2017
      Senior Network Security Engineer

      • Troubleshoot and fix Cisco extranet partner’s network related access issues across the globe.• As part of Cisco naming standard worked on bulk site rename project, in which renamed the sites ( UBVPN and physical sites) which includes network device configuration changes.• Troubleshoot and fix Cisco extranet partner’s VPN related issues.• According requirement need to profile the application in lab environment and make a dedicated template for that application.• As Part of Bulk update POC, need to scope the changes and find affected sites and propose this to InfoSec. After InfoSec approval need to do the Implementation for NG sites.• Working as track lead for IT India Profiling project, need to work closely with business and PM, get their requirement, and assign the cases to team.• Working with team as part of extranet partner’s Wireless pilot implementation project.• Extending Cisco partners network access as per the project requirement.• Working and Resolving Remedy cases on partner’s technical issues with in the SLA period. Show less

    • Itron, Inc.

      Oct 2017 - now

      - Standing up new customer environments through Firewall, Switching and Routing on Cisco ASA's, NX-OS Layer 2/3 and ISR/ASR's. Also requires F5 configuration changes for Secure TLS offloading, iRules, redirects.- DNS Changes for public DNS propagation for A records, CNAMES, MX records- Upgrading the current infrastructure:- Replaced EOL/EOS internet switches and routers with newer gig switches and ISRs- Firewall redundancy adding active/standby configurations- IPS/IDS through new Sourcefire Services implementation with ASA-Next-Gen- VPN, DMVPN and SSL best practices- SHA-1 to SHA-256 conversionOne of the member in Core redesign and re-arch to replace old network design and topology: - Went from flat/collapsed core network with excessive layer 2 to a traditional aggregation core and distributions layer for hosting environment which consisted of migrating all VLANs to Cisco NX-OS 9508's with 5548's and the configuration of all equipment - Also implemented new 5545-x/5525-x/5515-x firewalls in exchange for older 5540's for more port density, higher CPU performance, throughput and SourceFire IPS/IDS- This design was built around a faster network approach using Layer 3 routing, VPCs and traditional etherchannel- Participated in on-call rotation for 24/7 support, troubleshooting- Managed and supported all network equipment- Racking/Cabling of all network equipment with fiber (SM/MM) and ethernet- Orion Solarwinds and Splunk tools Show less

      • Senior Networking Engineer

        Aug 2022 - now
      • Network Security Engineer

        Oct 2017 - now
  • Licenses & Certifications

    • Cisco Certified Network Professional Security (CCNP-S)

      Cisco
      Apr 2014
    • Cisco Certified Network Associate

      Cisco
      May 2013
    • Certified Ethical Hacker (CEH)

      EC-Council
      Jan 2020
    • Cisco Firewall Security Specialist

      Cisco
      Mar 2014
    • Cisco IOS Security Specialist

      Cisco
      Mar 2014
    • Microsoft Certified: Azure Fundamentals

      Microsoft
      Aug 2020
      View certificate certificate
    • Cisco ASA Specialist (ASA)

      Cisco
      Sept 2013
    • Cisco IPS Specialist (IPS)

      Cisco
      Apr 2014
    • Cisco VPN Security Specialist

      Cisco
      Mar 2014
    • Cisco Certified Network Associate Security (CCNA)

      Cisco
      Aug 2012