freiberufler Network Architect and Consultant auf freelance.de

Network Architect and Consultant

offline
  • auf Anfrage
  • 10117 Berlin
  • Europa
  • en  |  de  |  fa
  • 13.12.2019

Kurzvorstellung

Yet another full-time traveler, casually [angel] investing, landscape photographing as a hobby, and enthusiastic about Blockchain/Cryptocurrency.
Internet citizen, building and breaking Network Architectures by day.

Ich biete

  • Check Point (allg.)
  • Cisco (allg.)
  • Cisco Firewalls
  • Cisco Router
  • Cisco Switch
  • CiscoWorks LAN Management Solution (LMS)
  • Ethernet
  • Firewalls
  • Fortigate Firewalls
  • Internet / Intranet
  • IPS (Intrusion Prevention System)
  • ISP (Internet Service Provider)
  • IT-Beratung (allg.)
  • Juniper Netscreen
  • LAN
  • Load Balancing / Lastverteilung
  • Netzwerk-Sicherheit
  • Netzwerkarchitektur
  • Netzwerkmanagement
  • Router
  • Router / Gateways
  • Telekommunikation / Netzwerke (allg.)
  • VLAN (Virtual Local Area Network)
  • VPN (Virtual Private Network)
  • WAN

Projekt‐ & Berufserfahrung

Sr. Network and Network Security Consultant
DXC Technology, Stockholm, Berlin, Hamburg, Amsterdam
4/2017 – offen (4 Jahre, 3 Monate)
IT & Entwicklung
Tätigkeitszeitraum

4/2017 – offen

Tätigkeitsbeschreibung

(External Contractor)

Eingesetzte Qualifikationen

Cisco Firewalls, Fortigate Firewalls, Router / Gateways, Cisco Router, Cisco Switch, Netzwerkarchitektur, Router, VLAN (Virtual Local Area Network)

Senior Network/Security Consultant
Vattenfall, Amsterdam, Berlin, Stockholm, Hamburg
9/2015 – offen (5 Jahre, 10 Monate)
High-Tech- und Elektroindustrie
Tätigkeitszeitraum

9/2015 – offen

Tätigkeitsbeschreibung

(External Contractor)
Network and Network Security design and architecture for different cross-border projects across Germany, The Netherlands, Sweden, Poland, Finland, Denmark, and the UK. Acting as a 3rd level of escalation for Critical incidents.
•    WAN transformation from a Hub-and-Spoke topology to Flat WAN cloud
•    Decentralized internet access with local breakouts and Zscaler Internet Access solution
•    Consolidation and closure of multiple datacenters which lead to saving costs, network simplicity and efficiency
•    Virtual Web Proxy Architecture, Design and Implementation
•    Securely offloading mobile users internet traffic with strategic cloud internet access architecture
•    Social Network traffic control via Proxy implementations
•    Supporting Office365 rollout from Network and Network Security perspective
•    Network, Security and Load-balancing architecture and design to migrate from EoL Cisco ACE to F5 ADC solutions
•    Network design to accommodate Citrix farms across multiple DCs
•    Design input for a multiple mergers and divestments

Eingesetzte Qualifikationen

Check Point (allg.), Cisco Firewalls, Fortigate Firewalls, Netzwerk-Sicherheit, Load Balancing / Lastverteilung, Cisco Router, Cisco Switch, LAN, Netzwerkarchitektur, Netzwerkmanagement, VLAN (Virtual Local Area Network), WAN

Senior Network / Security Consultant
AT&T Global Business, Berlin, Amsterdam, Hamburg, Stockholm
9/2015 – offen (5 Jahre, 10 Monate)
IT Consultancy services
Tätigkeitszeitraum

9/2015 – offen

Tätigkeitsbeschreibung

​Mainly involved in "DXC.technology" Network Solution Architecture projects and Operations across different European countries and accounts.
●    Design and Architectural input for customers Data Networking Infrastructure
●    Providing technical leadership for the accounts with regards to the deployed network infrastructure
●    Dealing with escalated (3rd/4th layer) incident-based trouble tickets and Non-Standard Service Requests, and  Root Cause Analysis and fault resolution
●    Facilitating transition to Future Mode of Operation for different managed services to customers, such as Proxy, Network, and Firewall components
●    Involved in the delivery of network projects' activities for customers, including design and architecture across different technologies and products such as:
o    Europe-wide Flat MPLS cloud utilizing AT&T AVPN
o    Interregional IP/MPLS traffic optimization
o    Azure and Office365 utilizing AT&T NetBond and Microsoft ExpressRoute
o    Pan European Networks across multiple countries including the UK, Germany, Sweden, Netherlands, Poland, Denmark, and Finland
o    Fully redundant and highly available Data Centers and DC interconnections
o    MPLS VPN, L2VPN, Multilevel vPC, Enhanced vPC, MP-BGP, OSPF, EIGRP, etc.
o    Advanced and NGN Security solutions

Eingesetzte Qualifikationen

Check Point (allg.), Cisco Firewalls, Firewalls, Fortigate Firewalls, Juniper Netscreen, CiscoWorks LAN Management Solution (LMS), Router / Gateways, Cisco Router, Cisco Switch, Internet / Intranet, ISP (Internet Service Provider), Netzwerkarchitektur, Netzwerkmanagement, Router, VLAN (Virtual Local Area Network), VPN (Virtual Private Network), IT-Beratung (allg.)

Network and Security Consultant
Hortor Limited, Berlin, Hamburg, Stockholm, Amsterdam
8/2015 – offen (5 Jahre, 11 Monate)
IT & Entwicklung
Tätigkeitszeitraum

8/2015 – offen

Tätigkeitsbeschreibung

(Freelance Contractor)
Network Consultancy, Network Security Consultancy, Network Architecture and Network Design.

Eingesetzte Qualifikationen

Cisco Firewalls, Fortigate Firewalls, Netzwerk-Sicherheit, Router / Gateways, Cisco (allg.), Cisco Switch, Netzwerkarchitektur, Router, Telekommunikation / Netzwerke (allg.), VLAN (Virtual Local Area Network), WAN

Senior Network Engineer (Festanstellung)
1&1 IONOS, Berlin
1/2015 – 8/2015 (8 Monate)
Cloud Computing
Tätigkeitszeitraum

1/2015 – 8/2015

Tätigkeitsbeschreibung

“Cloud Computing 2.0” IaaS provider, formerly known as ProfitBricks GmbH; my responsibilities include but were not limited to:
●    Conceptualizing and supporting a high-performance global Network
●    Co-responsible in Network Infrastructure security
●    High-Level and Low-Level documentation
●    A-Z Inter-DC routing redesign and implementation (Multipath and optimized BGP, BFD)

Eingesetzte Qualifikationen

Firewalls, IPSec, Juniper Netscreen, Netzwerk-Sicherheit, Ethernet, Netzwerkadministration (allg.), Router, TCP/IP, Telekommunikation / Netzwerke (allg.)

Network and Security Consultant
Red Crescent Society, Tehran
4/2014 – 12/2014 (9 Monate)
Gesundheitswesen
Tätigkeitszeitraum

4/2014 – 12/2014

Tätigkeitsbeschreibung

IRCS is one of the largest non-profit health organizations in Middle East (1500 national branches and 50 international branches worldwide). I offered consultancy in Network and Security design, assisting in evaluation and selection of contractors for different tenders, configuration and implementation of
●    Cisco Catalyst 6500, 3750-X and 2960-X series switches
●    VSS and MEC design and implementation (VS-S720-10G)
●    Edge and layered DC network security design (Juniper SSG, HA, ASAM on CAT6500)

Eingesetzte Qualifikationen

Cisco Firewalls, Juniper Netscreen, Cisco (allg.), Cisco Router, Cisco Switch, Netzwerkarchitektur

Network and Security Consultant
MCCI (Mobile Communication Company of Iran), Tehran
3/2013 – 10/2013 (8 Monate)
Telekommunikation
Tätigkeitszeitraum

3/2013 – 10/2013

Tätigkeitsbeschreibung

(Part-time Contractor)
MCCI is the first Mobile Communications service provider in Iran, with around 40 million subscribers.
Network/Security solutions Architecture to meet MCCI's demands; projects such as VRF-lite design in the IP Backbone, OSPF redesign and Network Security hardening.

Eingesetzte Qualifikationen

Cisco Firewalls, Netzwerk-Sicherheit, Cisco (allg.), Cisco Router, Cisco Switch, Netzwerkadministration (allg.), Netzwerkarchitektur, Netzwerkmanagement, VLAN (Virtual Local Area Network), WAN

Network/Security Consultant and Architect
Aivivid AB, Stockholm
1/2013 – 1/2015 (2 Jahre, 1 Monat)
Telekommunikation
Tätigkeitszeitraum

1/2013 – 1/2015

Tätigkeitsbeschreibung

Project-basis consultancy on Data Center Network & Security matters in a multi-vendor environment (Juniper SRX firewalls, Cisco ASA firewall, ASR routers and Nexus switches)

Eingesetzte Qualifikationen

Cisco Firewalls, IPS (Intrusion Prevention System), IPSec, Juniper Netscreen, Netzwerk-Sicherheit, Cisco Router, Cisco Switch, Internet / Intranet, ISP (Internet Service Provider), VLAN (Virtual Local Area Network), VPN (Virtual Private Network)

Chief Technology Officer (CTO)
HomaTelecom, Tehran
10/2012 – 9/2014 (2 Jahre)
IT & Entwicklung
Tätigkeitszeitraum

10/2012 – 9/2014

Tätigkeitsbeschreibung

HomaTelecom was an Internet and DC services provider; I was responsible for long-term and "big picture" issues, teaching in-house Cisco courses (CCNA, CCNP, and CCIP), managing all IT teams, responsible for the entire IT operations in the company. These operations include --but are not limited to- network, security, applications, and data center. Also, I managed and/or cooperated in different projects such as:
●    HomaTelecom DC: Network and Network Security design of a TIER 2 DC, offering hosting & housing services (Cisco CAT6509, ASAM, Juniper ISG2000, 3750 and 3560 switches)
●    Internal VoIP: Defined and managed the project, and cooperated in the design and implementation phase (Cisco 2821 router, CUCM 8.6, UCCX, Unity Connection, CIPC, Jabber and Panasonic PBX)
●    HomaTelecom WAN redesign: Bringing higher availability, efficient IP flow and SLA compliance; OSPF, BGP and PfR implemented on 7609S+RSP720, 3945 and 2921 
●    HomaTelecom IXP: Design and implementation of HomaTelecom Internet Exchange Point 
●    Banking customer - HSM: Selected an HSM security device aligned with the policies of Middle East Bank, prepared the proposal, LOM, and managed the project till delivery and base implementation.

Eingesetzte Qualifikationen

Cisco Firewalls, Firewalls, Fortigate Firewalls, Cisco Router, Cisco Switch, Netzwerkarchitektur, Netzwerkmanagement, VLAN (Virtual Local Area Network), WAN

Sr. Network / Security Engineer/Designer
DPI (Ex IBM branch), Tehran
5/2012 – 12/2014 (2 Jahre, 8 Monate)
IT & Entwicklung
Tätigkeitszeitraum

5/2012 – 12/2014

Tätigkeitsbeschreibung

(Part-time Contractor)
DPI is the best graded IT Managed Services Company in Iran (former IBM branch). I provided with solutions, design and implementation of Network/Security technologies for many projects such as:
●    IISA Data Center: Configuration and implementation; Cisco Catalyst 6509 (VSS, FWSM, IDSM), Cisco 7606S Router (IPSec VPN SPA), Juniper ISG2000, Juniper IDP800, Cisco ACE4710, Cisco Nexus 5010 plus Nexus 2148 as FEX, etc. (vPC, Fabric Path)
●    Tabriz Municipality Data Center: Design and Implementation of IDC & WAN (Juniper MX80, MX40, EX2200 and EX4200 devices)
●    TDRT (Tehran Transportation) WAN: WAN Design, Proposal & LOM preparation
●    TIC (Telecommunication Company of Iran) Provincial Aggregation Project: Preparing ATP & configuring GSRs, 7600 Routers and 4500 Switches
●    ITC National Datacenters project (Tabriz, Esfehan, Bushehr, and Tehran): Preparing ATP & Implementation of Network & Security (configuring ACE, 7600 routers, 6500 switches and related service modules, etc.) 
●    Central Bank of Iran (CBI): Design/Implementation of ACS & IDSM-2, SRX3600 and SSGG140

Eingesetzte Qualifikationen

Cisco Firewalls, Netzwerk-Sicherheit, CiscoWorks LAN Management Solution (LMS), Cisco (allg.), Cisco Router, Cisco Switch, Netzwerkadministration (allg.), Netzwerkarchitektur, Netzwerkmanagement, Telekommunikation / Netzwerke (allg.), VLAN (Virtual Local Area Network), VoIP, WAN, Netzwerktechnik

Freelance Network / Security Engineer and Consultant
Various clients, Tehran
1/2012 – 12/2014 (3 Jahre)
IT & Entwicklung
Tätigkeitszeitraum

1/2012 – 12/2014

Tätigkeitsbeschreibung

✔ Assisting corporations and other organizations with designing, implementing, and maintaining secure and efficient information technology networks. The design of the networks may include a wide range of recommendations that make up a total Information Technology or IT infrastructure.
✔ Creating a network from scratch or taking an existing network and enhancing or updating any or all components associated with the business tool.
✔ Evaluating the needs of the client and preparing a detailed document of what is needed to create a secure networking structure that will meet those needs.
●    Consulting 2 projects in IP Telephony design and supervisory of VoIP implementation for “Ma Insurance” and “13 Aban Pharmacy”; CUCM 8.6, Unity Connection, UCCX, Contact Center, Fax Server, IVR, Auto-Attendance, SRST and Voice Mail.

Eingesetzte Qualifikationen

Cisco Firewalls, Fortigate Firewalls, Juniper Netscreen, Netzwerk-Sicherheit, Router / Gateways, Cisco (allg.), Cisco Router, Cisco Switch, Netzwerkadministration (allg.), Netzwerkarchitektur, Netzwerkmanagement, Router, Netzwerktechnik

Network Operations Manager
HomaTelecom, Tehran
9/2011 – 5/2012 (9 Monate)
Telekommunikation
Tätigkeitszeitraum

9/2011 – 5/2012

Tätigkeitsbeschreibung

Managed WAN & LAN teams, and designed infrastructure based on fresh demands and technologies; Multiarea OSPF network, BGP optimization, LAN refresh, 3rd level LAN/WAN support.
Also, I managed and/or cooperated in different projects such as:
●    Auditing Telecommunication Infrastructure Company (Iran nationwide IP network)
●    QoS implementation for Amirkabir University E-Learning & Online classes
●    VRF, PBRoVRF and VLAN implementation to achieve Traffic Isolation, Iran Shipping Lines
●    Complex Routing design and implementation for Iran SORDP (BGP, VRF-lite, EIGRP)

Eingesetzte Qualifikationen

Netzwerkarchitektur

Sr. Network Engineer
Iran Post Company, Tehran
6/2011 – 9/2011 (4 Monate)
Öffentliche Verwaltung
Tätigkeitszeitraum

6/2011 – 9/2011

Tätigkeitsbeschreibung

WAN redesign based on demands, configuration and implementation of Juniper ISG2000, Cisco NAM, CSM and FWSM on Cat6513.

Eingesetzte Qualifikationen

Cisco Firewalls, Cisco Router, Cisco Switch, Netzwerkadministration (allg.)

Network Engineer
City Bank, Tehran
5/2011 – 6/2011 (2 Monate)
Banken
Tätigkeitszeitraum

5/2011 – 6/2011

Tätigkeitsbeschreibung

WAN Redesign for over 300 branches nationwide; Migrating from Static routing and RIPv2 to an optimized EIGRP network and Network infrastructure hardening.

Eingesetzte Qualifikationen

Netzwerkarchitektur

Network Administrator
Astan Qods Razavi, Mashhad
5/2010 – 5/2011 (1 Jahr, 1 Monat)
Öffentliche Verwaltung
Tätigkeitszeitraum

5/2010 – 5/2011

Tätigkeitsbeschreibung

Administrating Microsoft-based network (about 2500 clients), Implementing Security using Linux IP-tables and ISA, Implementing Virtualization using vSphere ESX

Eingesetzte Qualifikationen

Netzwerkadministration (allg.)

Network Technician
College Computer, Mashhad
1/2008 – 5/2010 (2 Jahre, 5 Monate)
IT & Entwicklung
Tätigkeitszeitraum

1/2008 – 5/2010

Tätigkeitsbeschreibung

Network Support, Routers and Switches configuration, Network Documentation and etc.

Eingesetzte Qualifikationen

Netzwerkadministration (allg.)

Zertifikate

German B1
August 2019
Juniper JNCIP-ENT
Juli 2018
HE IPv6 Certification
August 2016
Check Point CCSE
Januar 2016
Check Point CCSA
November 2015
Juniper JNCIA-JunOS
Juni 2015
Juniper JNCIS-ENT
Juni 2015
Brocade vRouter Engineer
Juni 2015
Palo Alto AC Engineer
Mai 2015
RackSpace CloudU
Mai 2014
CCNSP
Mai 2013
CCIE SP(w), CCIE Sec.(w) (Self-study + Practical Experience)
September 2011
CCIP, CCNP Security, CCNP R&S (Self-study + Practical Experience)
August 2011
CCIR R&S(written)
Mai 2011
CCNA
Mai 2011
CCNA Voice, CCDA, CCNA Security (Self-study + Practical Experience)
April 2009

Qualifikationen

Detailed Skills & Expertise
● Routing: Segment Routing, IS-IS, OSPF[v3], EIGRP, BGP & MP-BGP, VRF [lite], NHRP, IPv6
● Switching: VxLAN (Tunneling), FHRP, STP, Q-in-Q, Switching Security Mechanisms. Cisco FabricPath, VSS, MEC, vPC and VDC. Juniper Virtual Chassis [Fabric]
● Network Security: Web Proxy, IPsec, dot1x, VPN Technologies, Firewall, IDS, IPS, Hardening. Cisco IOS Firewall and CoPP
● MPLS: MPLS TE, RSVP TE, LDP, Targeted
● QoS: Policing, Shaping, Rate Limiting, Prioritizing, etc.

Hands-on experience with:
● Routers: Cisco ASR 1k, ISR, GSR 12k, 7600, 3900, 2900 etc.; Juniper MX Series
● Switches: Cisco Nexus 9k, 7k, 5k, 3k and 2k (FEX), CAT 6800, 6500, 4500 and older platforms; Juniper QFX and EX series
● Virtual Networking: Cisco CSR 1000v, ASA 1000v, NAM 1000v, Nexus 1000v; Juniper vMX
● Cisco SUP Engines: RSP720, VS-S720, Sup2T, Sup2E etc.
● Networking OS: Cisco IOS-XE, IOS-XR, NX-OS, IOS, CatOS; Juniper JunOS and ScreenOS
● Firewalls: Cisco ASA 5500-X and ASAM/FWSM; Juniper SRX3600, ISG2000 and SSG550; Fortinet FortiGate series
● Other products: Cisco NAM, ACS, NAC, ISE, MARS; Juniper IDP800 and NSM; McAfee Web Gateway proxy, TrendMicro TippingPoint IPS; Cisco ACE Load-balancer; F5 BIG-IP ADC
● Network Management: Cisco Prime Infrastructure, Entuity, ManageEngine
● Monitoring Products: Accelops, Solarwinds, Observium, Icinga, Tufin, Cacti, Zabbix
Familiarity with:
● Cloud Computing: AWS, AT&T NetBond, Microsoft Peering, and ExpressRoute
● Virtualization: VMware vSphere ESX, Hyper-V
● VoIP: CUCM 8.6, UCCX 8.6, Unity Connection 8.6
● Project Skills: Project Management & Planning, Preparing RFP, LOM & LOS, MSP
● Linux Skills: ExaBGP, BIRD, Quagga, Zebra, Squid, Bind, OpenLDAP, FreeRadius, OpenVPN

Über mich

Holding recognized strength in business-driven Network architecture, design, implementing and supporting Enterprise IP network infrastructures and security solutions. Massive experience of Routing, Network Security and Service Provider technologies. Able troubleshoot and optimize legacy and new network designs. Maintaining successful professionalism and personal commitment with excellent communication and people skills and the ability to train, motivate and supervise a team.

Persönliche Daten

Sprache
  • Englisch (Fließend)
  • Deutsch (Gut)
  • Persisch (Muttersprache)
Reisebereitschaft
Europa
Arbeitserlaubnis
  • Europäische Union
  • Schweiz
Home-Office
bevorzugt
Profilaufrufe
4174
Alter
31
Berufserfahrung
13 Jahre und 5 Monate (seit 01/2008)
Projektleitung
4 Jahre

Kontaktdaten

Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.

Jetzt Mitglied werden