Post Job Free

Resume

Sign in

Manager Security

Location:
Indianapolis, IN
Posted:
April 02, 2020

Contact this candidate

Resume:

Tarun Amati

Email: adclha@r.postjobfree.com

Phone: 361-***-****

Indianapolis, IN 46234

VMware Certified Professional-NSX(VCP-NV)-2019

SUMMARY

Over 5 years of experience in Technical Analysis of business requirements, Infrastructure Management, Architecture, Documenting business functions.

Configured NSX-T on a Dell Hyperconverged Infrastructure across multiple datacenters.

Configured vCloud Director(vCD) to integrate with NSX-T for service provider tier architecture.

Configure Cluster services with HA (High Availability) and DRS(Distributed Resource services.) of the ESXi hosts for the ease of VM’s.

Configure and maintain redundancy between inbound connection to the View connection server via UAG.

Configure the Composer Server with vCenter and for administrative access to the Virtual Desktop Infrastructure Horizon View environment.

Analyze new security or major upgrades and patches. Test these upgrades before applying into a production environment.

Designed workflow to provision segments, DLR’s on NSX with vCD.

Update NSX Manager, vib’s on the host, configure cluster for DFW, VXLAN, Segments on quarterly basis.

TECHNICAL SKILLS

Iaas(Infrastructure as a Service)

vSphere, vCenter, ESXi-Hypervisor, vSwitches-Distributed & Standard, NvDS

Daas(Desktop as a Server)

VMware View, Connection Server, Security Server, UAG (Unified Access Gateway), Composer Server, JMP(Just in Time Management Platform), AppVolumes, UEM(User Environment Manager)

Virtual Networking

VMware NSX-V, NSX-T, ESG (Edge Services Gateway), BGP, Cisco E-IGRP, Distributed Logical Router.

Layer-2 to Layer-7 Virtual Firewall

Distributed Firewall (DFW), Identity (Active Directory) based DFW, Guest Introspection Service.

Hyperconvergence

Dell-EMC VXRail 4.7

Logging and Reporting

vRealize LogInsight, vRealize Network Insight, vRealize Operations Manager(vRops), vRops for Horizon(DaaS)

Automation and Container Orchestration

vCloud Director,Kubernetes, VMware Kubernetes Engine on AWS, Docker Container Host, Virtual Container Host.

Testing Tools

Jenkins

OS

Ms-Windows (2008, 2008R2, 2012, 2012R2, 2016), Unix, AIX

VMware NSX Administrator: Department of Information Technology, Indiana (April 2016-Present)

Responsibilities :

Configure the Security server or a Unified Access Gateway for a tunnel junction traffic flow to the Connection server on a PcoIP or VMware Blast protocol.

Design and update architecture to comply with IRS pub 1074 standards. Configure and update Connections server on Quarterly updates with major upgrades or even security and critical patches periodically.

Configure Desktop Pool with Non-persistent Virtual Desktops on Linked Clones or Instant clones depending on the agency use case.

Understand and assess the agency work culture and design architecture and access point to the Virtual Desktop Infrastructure.

Configure vCD with multiple vCenters, on-premisis and VMC.

Configure access control on vCD for multiple teams on separation of duty.

Capture applications configuration files and extensions on a monthly basis using “User Environment Manager (UEM)”

Configure UEM manager console with multiple agencies and its residing applications. Maintain and frequently cleanup profiles through UEM manager and save the profiles in the NFS File share.

Update Distributed Firewall and Identity based Firewall configuration on a weekly basis. Respond and Analyze the daily requests for Firewall, prioritize and assess the security and vulnerability impact on the environment or the Organization.

Deployed NSX T0, T1 gateways or NSX ESG for Load balancing with one-arm mode on ECMP HA across multisite cluster.

Designed super metrics and dash boards on vRealize Operations and vRealize Log Insight cluster.

Configure BGP on T0 on the NSX Edges for route redistribution to the ToR switches.

Designed blueprints and flows on vRealize Automation to auto deploy of Web or App servers for NSX ESG LB or attach the VMs to segments.

Configured VXLANS or segments for different clients on T1 and T0 or NSX ESG and DLR.

Analyze threats, alerts, attacks impact and report on the incoming requests for Firewall on the VDI. Configure different Active Directory domains on the NSX manager for Identity based Firewall.

Install vib’s on the ESXi hosts and prepare the cluster for NSX functionality. Analyze new security or major upgrades and patches. Test these upgrades before applying into a production environment.

Update NSX Manager, vib’s on the host, configure the cluster for DFW on quarterly basis.

Create custom Active Directory groups and update the number of administrators or users in the groups to access the Virtual Desktop.

Configure AD for Identity based Firewall on NSX and update groups and all the accounts of the members in the groups.

Automating daily tasks and duties of the Infrastructure with containers and Orchestration using Kubernetes.

Skills Used : VMware NSX, ESG(Edge Services Gateway), Distributed Logical Router, Distributed Firewall(DFW), Identity(Active Directory) based DFW, Guest Introspection Service, VMware View, Connection Server, Security Server, UAG(Unified Access Gateway), Composer Server, JMP(Just in Time Management Platform), AppVolumes, UEM(User Environment Manager), Kubernetes, VMware Kubernetes Engine on AWS, Docker Container Host, Virtual Container Host.

VMware Administrator: E-Trade, Atlanta (July 2014-April 2016)

Responsibilities :

Update critical patches or apply security patches on Monthly or on demand basis.

Securing the physical hosts through Lockdown mode or design local and Network Firewall for enhanced security.

Configure, maintain and update affinity & anti-affinity rules of the ESXi cluster level by using together or separation rules.

Create security groups for together or separation for ESXi hosts or to tie down Virtual Machines to their respective hosts.

Design rules for RedHat and oracle License ESXi hosts for their Virtual Machines to reside on these hosts.

Configure standard and distributed switches with different port groups for each VLAN.

Configure vCenter and virtual distributed switches on the ESXi hosts with multiple vNic’s on the host and differentiate them based on the traffic maps like vMotion, Core etc.

Creating service profiles and service templates for servers in Cisco UCS Manager to maintain a standard build process across the data center.

Creating, maintain, adding and modifying VLAN on periodic basis on our Fabric Interconnects.

Constantly monitor and maintain redundancy on the PSU’s on all of Cisco 6300 Chassis.

Rack, mount and install new hardware from Cisco on a frequent basis.

Update firmware on the service profile templates and, on the Hypervisor, constantly to avoid any vulnerabilities.

Skills Used: vSphere, vCenter, ESXi-Hypervisor, vSwitches-Distributed & Standard, VSAN(virtual storage Network), vRealize LogInsight, vRealize Network Insight, vRealize Operations Manager(vRops), vRops for Horizon(DaaS), Ms-Windows (2008, 2008R2, 2012, 2012R2, 2016), Unix, AIX.



Contact this candidate