Peter Taylor
Senior Network / Security Engineer
Calgary, Canada
Phone: +1-403-***-****
**********@*****.***
Security Clearance: Secret Level II
www.linkedin.com
SUMMARY:
Professional Computer Engineer with over 15 years of experience in fast-paced environments.
Problem-solver skills with the ability to handle unexpected challenges and complex issues. Responsible for Policy Management of Information Technology.
Responsible for Working within security & Communications guidelines (CSE) GC Security Zones Effectiveness.
Worked directly with Microsoft Azure Cloud Computing based on (ITSAP.50.111 Systems. Threat defense and Risk analysis & Assessments.
Knowledge of Operational Standards for the Security of Information Act. Worked directly with Cisco Fire Power, Juniper, Palo-Alto & Fortigate (Firewalls)
Worked directly with Cisco UCS C-Series C240, C245, C845A M8 Rack Servers
Assessment of security threats, Assessment of mitigation strategies,
Assessment of residual risk, Assessment of Security in an Information System Production Environment, Analytics.
Primarily provided SD-WAN Edge appliances that provide secure, optimized, and reliable connectivity for enterprise networks to cloud, data center, and web applications.
Develop network technology solutions to ensure solutions resolve clients’ requirements and challenges, considering the following.
Contribute to implementation of network and system security measures to protect data, software, and hardware.
SKILS
•Network Engineering (NOC)
•Network Architect/Design – MPLS, OTV, SD-WAN, ACI/VXLAN
•Network Operations Protocols – BGP, OSPF, IS-IS
•Cisco CUCM & IM Presence, UCS
•VMware, Palo Alto
•15 years' experience developing, implementing, and managing complex projects.
•Asymmetric/Symmetric Encryption
•Python, PowerShell
•Posturing, Compliance & Threat/Risk Containment
•Advanced network automation with Python
•Significant experience in technical leadership and coaching roles.
•Committed to personal, team and client satisfaction and success.
•A highly skilled listener and communicator able to assess client needs and convey necessary information with clarity and enthusiasm.
•DC network performance baselining
Network & Security Analytic Tools
•Rapid 7 Vulnerability Tool, Green Bone Security Assistant.
•FTKImager, RegRipper, TCPDump, Python, Metasploit Vulnerability Scanner, Hping, Nping, Nmap, splunk
•Metasploit Vulnerability Scanner, Snort, Suricata, GETOps, Azure CoPilot
•WireShark, Ixia XG12 Chassis, NIST (AAL3)
•Network Security ASA, Firepower firewalls
•Network Management
•Network Penetration testing
•Azure Cloud Security Analytics
•Azure Cloud security and compliance
•Azure Cloud cost management
•Web Application Penetration testing, Analytics, data perdiction
•Proactively monitor and optimize cloud environments
•Saas,IaaS
•Delivery, proactive assessments for operational excellence in cloud computing SaaS
•IT security controls and Governance testing based on ISTG-33
•Threat defense and Risk analysis & Assessments
•Advanced Web Application Penetration Testing
•Gather data pertaining to customer needs, and use the information to identify, predict, interpret, and evaluate system and network requirements.
•Design and/or implement standard or custom technical solutions
Work Experience
Accenture Senior Network Security Engineer - Calgary, AB. NOVEMBER 2021 – AUGUST 2025
Senior Network Architect Engineer / Analysis
Project « Data Center Network Forklift Implementation »
Networking and Security Design & Implementation:
•Responsible for Policy on Management of Information Technology for various clients for Accenture.
•Cloud based providing service model (SaaS) offering the use of software use of application software to a clients and managed all needed physical and software resources. IaaS, or Infrastructure as a Service.
•Provided SD-WAN Edge appliances that provided secure, optimized, and reliable connectivity for enterprise networks for the cloud.
•Implemented SD-WAN, Fire-Power Security appliance(S) + Palo-Alto & Fortigate firewalls at 8 locations.
•Lead the team through examples of tasks and monitoring the tasks to ensure excellence.
•Policy on Acceptable Network and Device Use & OPS Physical Security Operating Policy (PSOP)
•Strengthening security and compliance with Cloud-native security and continually monitoring client’s environment for threats and risks containment.
•Designed and deployed Data center upgrade, Cisco SDN, SD-WAN, VxLAN, ACI, vSAN.
•Complete Switch design and install Cisco Nexus N9K-C9336-FX2/N9K-C93180LC-EX switch platforms
Complete Cisco UCS design and install Cisco UCS C-Series C240, C245, C845A M8 Rack Servers.
•Installation and configuration of Juniper QFX5240 & 5700, EX9200
•Design Data center horizontal fiber cabling and Racks layouts.
•Threat defense and Risk analysis, threats detection, mitigation strategies
Cloud Design and Implementation:
•AZURE Network platform protection, Key-Vault, Sentinel, Cloud Pen Testing Analytics
•Creation of Azure Landing Zones, Azure Sandbox Subscriptions, Multiple Tenants (EPG’s), End Point. Shared Applications registration tasks including multi-Tenant design
•Management and Security Breach Protection analysis.
•Management of Zero Trust Micro segmentation across application landscape.
•Implementation of Multicloud Defense protects of cloud environments using a single software-as-a-service (SaaS) control plane.
•Installation and configuration of cloud-managed SD-WAN networking with Cisco Meraki.
•Working with SD-WAN as an overlay architecture & Secure access service edge (SASE) by converging security and WAN edge technologies. Including SWG, FWaaS & ZTNA.
•Managed connected Kubernetes clusters for inventory, grouping, and tagging, along with Azure Kubernetes Service (AKS) clusters.
•Azure Kubernetes Service (AKS) for deploying and managing containerized applications.
•Provided managed services based on Azure Monitor for monitoring the health and performance of different layers of your Kubernetes infrastructure.
•Cloud based providing service model (SaaS) Azure ARC,
•Managed Azure Arc-enabled Kubernetes attached to Kerbernet Clusters.
Shaw Communications - Calgary, AB. FEBUARY 2018 – OCTOBER 2021
Senior Network Engineer / Analysis
Project « Data Center Shift Upgrade Implementation »
•Responsible for Policy on Management of Information Technology
•Policy on Acceptable Network and Device Use & OPS Physical Security Operating Policy (PSOP)
•Designed and deployed projects for the client based on ACI/VXLAN, SD-WAN & SDN, LAN Expansion, NGFW (Cisco Firepower).
•Complete and install Cisco Nexus N9K-C9336-FX2/N9K-C93180LC-EX switch platforms and Cisco UCS Platform.
•Provided SD-WAN Edge appliances that provided secure, optimized, and reliable connectivity for enterprise networks for the cloud.
•Organize management systems to make processes more efficient.
•Implemented SD-WAN, Fire-Power Security appliance(S) + Palo-Alto & Fortigate firewalls at 8 locations.
•Worked directly with Microsoft Azure for Cloud Computing based on (ITSAP.50.111 Systems)
•Strengthening security and compliance with Cloud-native security and continually monitoring client’s environment for threats and risks, data perdiction(Pen Testing).
•Cloud based providing service model (SaaS) offering the use of software use of application software to a clients and managed all needed physical and software resources. IaaS, or Infrastructure as a Service,
•Cloud based providing service model (SaaS/IaaS) offering the use of software use of application software to a clients and managed all needed physical and software resources. IaaS, or Infrastructure as a Service.
•Designed Threat Control System Analytics
•Threat defense and Risk analysis & Assessments
Shared Services Canada (SSC) Ottawa. JUNE 2016 – JANUARY 2018
Senior Network Architect Engineer / Analysis
Project « Inter Data Center Upgrade ICS »
•Design Secure Access Service Edge (SASE) in the cloud, Cloud-Hosted Security, SaaS/IaaS, Secure web Gateways (SWG & NGFW)
•Implementation of Cisco ACI, SDWAN VxLAN on Cisco Nexus Cisco Nexus N9K-C9336-FX2 platform.
•Installation and configuration of Juniper QFX5230 & 5240
•Configuration of Cisco 1120 NGFW Firepower Appliance, Including Palo Alto and Fortigate firewalls.
•Implementing ACI Fabric, Access & Tenant Policies (EPG), Design ACI Spine and Leaf Configuration of Contracts
•Designed efficient SASE architecture, Security Service Edge
•Complete and install Cisco Nexus N9K-C9336-FX2/N9K-C93180LC-EX switch platforms and Cisco UCS Platform.
•Worked directly with UCS Manager for configuring vSAN’s on redundant fabric extenders
•Configure various SSIDs for instruments and for users on WLC.
•Provided Design, integration and configuration of F5 Load Balancers within the new Data Center
•Configured created various Cisco Firewalls, Switches and routers, including protocols like BGP, OSPF
•AZURE Network platform protection which included load balancing, direct virtual machine access, traffic management VPN gateways for site-to-site connectivity
•Managed cloud network security services, i.e. key vault
•Creation of IPS policies, Threat control systems, Pentesting, Service Endpoints, application gateways, routing
IT Consultant (Network/Security) SaskPower, Regina. DECEMBER 2013 – JUNE 2016
Senior Technical Architect Engineer / Analysis
Project « DCI Data Center Migration »
•Provide support to client (Data Center) for more than 800 CISCO network switches and 200 CISCO wireless device
•Installation and Hardening of the network devices. Replace faulty devices with new ones with the same configuration.
•Configure SSIDs on CISCO 4404 WLC based on client requirement. Create guest user ID to provide temporary wifi access to guest.
•Design & Implementation Engineer for SaskPower MPLS/eBGP VPN network and cross data center connectivity using BGP, OSPF and OTV
•Cisco Aironet design, heat mapping and Controller configuration
•AZURE network platform protection which included load balancing, direct virtual machine access, traffic management, VPN gateways for site-to-site connectivity
•Managed cloud-based network security services (Microsoft Azure).
•Provided Architectural Design Data for Azure storage, virtual networks, security & Identity management
•Architectural responsibilities for VMware on Cisco UCS B series chassis including SAN Storage interconnect
•Presented project reports to the PMO office at dashboard meetings which included HLD/DDS (High Level Design, Detailed Design) documentation
•Plan, deploy, configure/installation of Cisco Routers & Switches Using Dynamic Routing protocols like IP MPLS, eBGP VPN, OSPF, IS-IS
•Develop Future designs considerations (Roadmaps) for Securing the Data Center, Risk Assessments, Business continuity & optimization
Citizenship Immigration Canada (CIC), Ottawa. DECEMBER 2011 – DECEMBER 2013
Senior Technical Architect Engineer / Analysis
Project « Inter Data Center Upgrade ICS »
•Complete and update current technical design diagrams based on Cisco Nexus ACI & VxLAN platform, Cisco ICS, F5.
•Implementation of Cisco ACI VxLAN Cisco Nexus platform (9K, 7K,5K, 2K) including protocols of BGP, OSPF & IS-IS
•Implementing ACI Fabric, Access & Tenant Policies, Configuration of Contracts.
•Connecting ACI to External L2/L3 Networks. Integrating ACI with Layer 4-7 Services, and Layer 2 networks.
•ACI Access Policies, Virtual Machine management, Micro segmentation.
•Worked with Cloud Services and Deployment models, Applying ACI Concepts, APIC-EM User Interface & Features, AAEP.
•Worked directly with UCS Manager for configuring vSAN’s on redundant fabric extenders, Multihop FCoE, San Port Channeling, Zoning & Device Aliases, Domain ID’s & Routing, FLOGI, PLOGI & PLRI, Zoning, Unified Uplinks.
•Develop Future designs considerations (Roadmaps) for Securing the Data Center, Risk Assessments, Business continuity & optimization
•Provided leadership and direction to project teams and/or assigned staff as required
Languages Spoke:
•Fluent Spoken & Written: French
•Fluent Spoken & Written: English
Education:
•Masters of Computer Engineering (Electronics & Applied Computer Science with Core Computer Engineering and Science electives & Pervasive Computing) University Concordia (Montreal) – 1993.
•Certifications:
•CCIE – Routing & Switching Written
•Prince II - Certified.
•TOGAF - Certified.
•ITIL - Certified
•Python - Certified
•CCNP – Security Certified
•CCNA – Voice Certified
•CCNP – Data Center UCS Certified
•CEH - Certified Ethical Hacker
•Cisco Firepower Threat Defense (FTD/FMC) 642-618, 300-206, 642-626 IPS Course(s)
•VMware 6.4 – Design and Virtualization courses
•Microsoft – Azure (AZ-300,500,700,900 Courses)
•CCNA – Wireless Certified
•CISSP – Certified