Post Job Free
Sign in

Network Security Engineer

Location:
Columbus, OH
Posted:
May 14, 2025

Contact this candidate

Resume:

GURINDERBIR SANDHU

Contact 567-***-****

*****-*************@*****.***

EDUCATION

Toronto University, Ontario, Canada Aug 2016 – May 2018

Masters in Wireless information Networking

Thapar University, Punjab, India June 2009 – June 2014

Bachelor of Engineering in Electronics & Communication

Summary of Qualifications:

Having over 8 years of experience as a Network and security Engineer and in the phase of automate the networks using python, JavaScript, Nodejs and Microsoft SQL server. In the phase of network security, I have an experience with different firewalls: Cisco ASA, Fortinet, Palo-Alto and has hands-on experience with Wireshark which I mostly use in case of troubleshooting network security related issues. Gathering and Implementation using Back-end and Front-end technologies viz. JavaScript, Linux, HTML, CSS, Docker, and Kubernetes.

NETWORKING SECURITY SKILLS & COMPETENCIES

•Networking Technologies and Protocols: Ethernet, TCP/IP, VLANs, IP Routing (OSPF, EIGRP, BGP), QoS, Cisco ISE, Voice over IP systems such as Cisco Call Manager, SD-WAN, Load-balancers.

•Firewall Technologies: FortiGate, Cisco ASA, Palo Alto, Checkpoint Firewalls.

•VPN Technologies: SSL VPN, IPSEC-Site-to-site VPN, GRE VPN.

•Cloud security technologies: AWS, Azure, or Google Cloud

Certifications:

CCNA (Cisco Certified Network Associate)

CCNP (Cisco Certified Network Professional)

NSE -4(Network Security Expert) Level -4

NSE-7(Network Security Expert) Level-7 Enterprise Firewall

SOFTWARE SKILLS & COMPETENCIES

•Programming languages: JavaScript, Node.js, Python, Linux

•Front End Technologies: React, Vue.js, HTML5, CSS3, Bootstrap, Node.js

•Back End Technologies: Django, MongoDB, Azure, MySQL, SQLite, AWS

•Libraries and Frameworks: Docker, Kubernetes, Bash, Git, Flask, Rest API, NumPy.

PROFESSIONAL EXPERIENCE

BATH & BODY WORKS -COLUMBUS, OHIO

SYSTEM ENGINEER 2 JAN 2023 – PRESENT

RESPONSIBILITIES:

Steady state support of automated material handling systems across seven (5) fulfillment centers location in central Ohio.

Implement project based on python and java with the use of flask application in Linux and made a Dashboard which displays all the available devices specially ip address, mac address, downtime etc..

There are 5 WCS server (Warehouse control system) for Distribution center as I have good experience in networking, so I am working as a lead system engineer to troubleshoot networking related issues, so I have designed packet capture python script for each server, and I usually analyze it during troubleshooting with the use of Wireshark.

Troubleshooting of network related issues through Palo-Alto firewall.

Working with servers hosting services that require troubleshooting in general, patch or vulnerability remediation and/or troubleshooting.

Works directly with IT Engineering team and Architecture to develop network technology solutions for the critical infrastructure environment.

There are 5 SQL servers for Distribution Center, and I lead a team for SQL queries and analyze the traffic between SQL server and WCS server using Wireshark.

Provides technical expertise and direct support for the planning, coordination, upgrade, improvement and implementation of infrastructure and application software.

Lead implementation of new equipment/systems and support change request to existing systems.

Key areas of expertise are PC based warehouse control system, conveyor automated control, equipment focused graphical monitoring systems, in-line auto-ID, print and apply equipment, and robots.

Support our internal Maintenance team members and Operations partners with system utilization.

Analysis of existing automation processes

Use analytics to develop and communicate automation enhancements that drive lower costs, higher accuracy, faster fulfillment, and increase workflow flexibility and agility.

Collaborate with internal technology partners to increase visibility to issues, build redundancy, and eliminate downtime.

Manage vendor resources as part of capital improvement projects.

Effective communication of issues, ideas, concepts, estimates, and status updates to leadership.

Proactively share knowledge and educate team members specially related to SQL database and networking related skills.

FORTINET -OTTAWA,ON

NETWORK SECURITY ENGINEER JAN 2022 – JAN 2023

RESPONSIBILITIES:

Configuring, troubleshooting and diagnosing full range of Fortinet Network Security products

(FortiGate, FortiWifi, FortiAPs, Fortiswitches)

Collecting and analyzing customer network information & Packet trace information. and

recommending corrective actions based on the analysis.

Replicating customer environments on the lab equipment to identify the root-cause.

Analyzing network traffic using Fortinet built-in Sniffer tool and Wireshark to troubleshoot

problems.

Assisting clients to configure Firewall, VPN, UTM (Antivirus/Antispam, Web/Email Filtering,

Application Control, Data Leak Prevention, and Intrusion Prevention) features to ensure solid

network security.

Communicating with customers to assist them resolving their network related problems and

updating regarding technical documentation, release notes, KB articles.

Documenting bugs, writing up field notes, and capturing ideas and requirements to improve

Fortinet products and services.

Troubleshooting of networks based on TCP/IP DHCP, DNS, ICMP VPN (IPSEC/SSL-VPN) Vulnerability Scanning, DDOS, Router/Switching/Balancers DDOS/DOS,RIPv2, OSPF, Static Routing Wireshark Analysis UTM (Web Filtering, App Control) Firewall, VLAN IPS/IDS Authentication (LDAP, Radius, SSO), VMWare Virtualization of Routers Switches, Virtualization of Windows Servers, Wireless Deployment.

TELUS COMMUNICATION INC – SCARBOROUGH, ON

NETWORK TESTING ENGINEER March 2021- MAR-2022

RESPONSIBILITIES:

Setup TELUS Cloud RAN automation lab environment per TELUS technical prime design and plan including HPE or DELL servers’ installation and cablings, software upgrade, configurations, cloud OS, Kubernetes cluster implementation for TELUS Cloud orchestration and automation development projects.

Work with Ethernet, TCP/IP, VLANs, IP Routing (OSPF, EIGRP, BGP), QoS(Quality of service).

Demonstrated experience implementing and supporting medium to large enterprise-sized Cisco/ Aruba LANS/WANS.

Cloud networks such as GCP, AWS and Terraform scripting.

Work with Juniper/ Palo Alto / Checkpoint /Fortinet Firewalls related to policies, filtering, and operational support functions, or the equivalent Firewall knowledge.

Hands-on experience with Load Balancers, preferably F5

Troubleshoot on VMware NSX.

working with vendors to ensure they meet deliverables\SLAs.

Experience with PCI/PII; IDS/IPS; APM; Designing and implementing Business Continuation Plans. Troubleshooting multi-vendor routers and switches; Network Management tools (NetScout, SolarWinds, NetFlow Analyzer)

Perform on-call support 24x7.

Exhibiting a proven understanding of established enterprise routing schemes and protocols.

Support Site-to-Site VPN, Client VPN connectivity, Aruba Wi-Fi solutions.

Establish priorities, meet deadlines, and concentrate on detailed information in a fast-paced, demanding work environment.

Work individually as well as in a team environment and handle a dynamic workload and prioritize projects and tasks.

TELUS COMMUNICATION INC- BURNABY, BC

NETWORK ENGINEER Sep 2018 – March 2021

RESPONSIBILITIES:

Maintenance of organisation LAN/WAN/Wireless services and connectivity.

Maintain data centers, cabling, wiring closets, servers, consoles, switches, routers, etc.

Monitor network and systems health, responding appropriately to network alerts and events.

Diagnose and troubleshoot network issues using Wireshark, TCP/IP, Spanning-tree protocol, Frame Relay, RIP, OSPF, BGP, DMVPN, GRE, and IPsec tunneling, MPLS, L2 VPN, L3 VPN on a day-to-day basis.

Configured servers for DHCP and DNS functionality.

Configured and troubleshooting network devices (router,switches, firewall ) using Python and linux.

Successfully completed project based on CUCME (Cisco Unified Call Manager Express).

Configured, registered and administered Cisco IP phones using both GUI (Graphical user interface) and CLI(Command Line Interface)

Deployed 200 cisco IP phones in multiple buildings of same company and ensured fully connectivity with accuracy.

Configured routers, switches, firewalls, wireless access points, servers, cabling, and related equipment for offices and Data Centers. Provides guidance to management for changes related to on-prem and cloud infrastructure.

Monitors and troubleshoots system performance, evaluates resource requirements and maintains operational guidelines for the infrastructure.

Reviews existing technology, configuration, and implements improvements and upgrades.

Provides reports for system health, configuration and capacity, perform routine maintenance and apply software updates, and performs root cause analysis of service problems and develops solutions.

Coordinates with other Infrastructure teams to deliver solutions and configuration items with minimal user impact.

Trains and assists internal support teams on new tools and procedures.

Automates routine maintenance tasks as appropriate and ensures proper backup procedures are in place and in use.

Create and maintain comprehensive documentation as it relates to network topology, equipment, processes, and configuration(s).

Projects:

Integrate Pyramid WCS (warehouse Control system) application with Palo alto Firewall:

Implement Firewall rules for each Material handling devices for each Distribution center of Bath and Body works.

Made Networking Drawings for each Distribution Center.

Troubleshoot network related issues with Wireshark, netsh and packmon utilities.

Configure Palo alto firewall for SSL VPN (Global protect)

Dashboard for Devices for each Distribution center:

Implement project based on python and java with the use of flask application in Linux and made a Dashboard which displays all the available devices specially ip address, mac address, downtime etc.

E-switch Replacement:

Configured and install industrial cisco IE 3000 E-switch in each Distribution center and troubleshoot each switch with packet sniffer.

IPSEC AND SSL VPN tunnel:

Configure and troubleshoot SSL VPN AND IPSEC VPN for my many clients in Fortinet and always try to simulate using GNS3 so that I can test it on my virtual environment before implement on real firewalls on the field.

EXTRA-CURRICULARS:

-Best Use of Cisco Meraki API award (Feb 2018): Worked in a team of three to develop an IoT based Android

application named Fit Foodie that scans all the nearest restaurants which have the Cisco’s Access point installed and displays the menu card of the restaurant. The app won first prize in the category ‘Best use of Cisco APIs’ at the annual CEWIT Hackathon conducted at Fleming college, Ontario, Canada.

-Vice President, Indian Graduate Student Association (Jan-Nov 2013): Managed multiple student events throughout the year for the graduate student community, some with record attendance of over 150+ students.



Contact this candidate