Mohammad Eshaq Haidari
*** ******* ***** **, *****, TX 512-***-**** ************@*****.***
Work authorization: US Citzen
Professional Summary
Experienced and analytical Network Engineer and Network Support Specialist with 7 years in configuring, deploying, and managing Juniper SRX firewalls across enterprise environments. Expertise in developing security policies, NAT rules, VPNs, and real-time troubleshooting of complex network and security incidents. Proven track record of collaborating with cross-functional teams to enforce security best practices, conduct audits, perform firmware upgrades, and maintain compliance with industry standards.
Experience
Charter Communication (Spectrum) - Network Support Specialist (II)
•March 2024 - Present, Austin, TX
•Configured, deployed, and managed over 50 Juniper SRX firewalls across multiple enterprise sites, ensuring optimal security posture through zone-based filtering and granular security policies.
•Developed and maintained NAT rules, VPN configurations (site-to-site and remote access), and intrusion prevention settings based on evolving business needs and compliance requirements.
•Conducted routine firewall audits and performance monitoring, proactively identifying and remediating issues such as asymmetric routing, session drops, and policy misconfigurations.
•Collaborated with network and security operations teams during P1 incident escalations, leading troubleshooting efforts by analyzing real-time firewall logs, packet captures, and session flows to resolve security breaches.
•Recommended security enhancements during network design discussions, such as implementing policy-based VPN failover strategies and centralized logging (Syslog & SIEM integration).
•Performed regular JunOS firmware upgrades and patches, following change management protocols, ensuring minimal downtime and enhanced device security.
•Documented all configurations, change activities, and created detailed SOPs for firewall deployments and troubleshooting procedures.
Charter Communication (Spectrum) - Network Support Specialist (I)
•April 2021 - March 2024, Austin, TX
•Provided Tier 2/3 support for Juniper SRX firewall environments, resolving complex policy conflicts, VPN failures, and NAT translation errors in a 24/7 operational environment.
•Assisted in migrating legacy firewall policies to standardized templates, reducing configuration drift and enhancing policy enforcement consistency.
•Monitored security logs and alerts to detect potential threats; initiated incident response protocols for events like DDoS attempts, brute force login attempts, and unauthorized access violations.
•Coordinated with ISPs and vendors for escalation of hardware issues, RMA processing, and troubleshooting advanced routing scenarios involving OSPF/BGP interactions with firewall policies.
•Supported the development of network documentation libraries, including network diagrams, firewall policy matrices, and NAT rulebooks.
Austin Community College - IT Intern
•Aug 2020 - Dec 2020, Austin, TX
•Performed hardware and software troubleshooting, supporting the deployment of devices across the organization.
Afghanistan Justice Sector Support Program (JSSP) - Network Engineer
•Mar 2015 - Mar 2018, Ghor, Afghanistan
•Installed, configured, and supported switches, routers, and wireless access points across enterprise offices.
•Handled L2/L3 tickets related to VLAN misconfigurations, slow browsing, VoIP jitter, and intermittent connectivity issues.
•Participated in a large-scale data center migration involving over 300 servers and 120 switches with zero downtime.
•Managed IP address space and DHCP configurations, ensuring efficient address utilization.
•Performed trend analysis on bandwidth and CPU utilization to aid in capacity planning.
•Assisted in drafting and executing network change requests, ensuring compliance with internal change management protocols.
Core Competencies
•Juniper SRX Firewall Configuration & Management
•Security Policy & NAT Rule Development
•VPN (IPSec, Remote Access) Deployment & Support
•Firewall Audits & Log Analysis
•Incident Response & Threat Mitigation
•Network Design & Security Architecture
•Firmware/Software Upgrades (JunOS)
•Documentation & SOP Development
•Cross-functional Team Collaboration
Certifications
•CCNA
•JNCIA
•Pursuing CCNP ENCORE 350-401
Education
•Associate Degree in LAN Security Administration, Austin Community College, May 2021
•Network Administration Certificate, Austin Community College, Dec 2020
•Bachelor of Law (LLB) in Political Science, Herat University, 2011