Sid Dua, MEng, B.Eng.
** ********** ****, **, ****** +1-416-***-**** ***********@*****.***
PROFILE SUMMARY
Cybersecurity and network security consultant with extensive experience designing, deploying, and securing largescale enterprise and government environments. Proven ability to lead complex firewall migrations, implement Zero Trust technologies, and support cloud security platforms including Netskope. Strong background in Cisco Firepower, ASA/FTD, FortiGate, VPN, data centre networking, and enterprise wireless
CORE SKILLS
Cloud Security: Netskope SWG, DLP, Cloud App Steering, Private Access, policy design
Network Security: Cisco ASA/FTD, Firepower (1000/1100/2100/4100/4150), FortiGate
VPN Technologies: IPSec VPN, DMVPN, Remote Access VPN, S2S VPN
Infrastructure: Cisco Nexus (7K/5K/9K), Catalyst 3K/6K, APIC/ACI, Cisco SD-WAN(Viptela)
Security Tools: Websense/Triton, Cisco ISE, RSA SecurID, TACACS+
Protocols: BGP, OSPF, IPsec, SSL, DHCP, DNS, VLANs
Additional: Wireshark, packet analysis, WAN optimization (Riverbed), wireless (Meru/Cisco)
PROFESSIONAL EXPERIENCE
Cyber Security Consultant
Shared Services Canada — May 2024 – April 2026
Created standardized SOPs for configuring and troubleshooting sitetosite VPNs across multiple federal departments.
Led a major data centre firewall migration, coordinating infrastructure moves between facilities.
Executed a comprehensive upgrade of Cisco firewalls, improving performance, redundancy, and security posture.
Managed transition of federal remote access VPN from Cisco to FortiGate.
Onboarded federal partners to Netskope, providing endtoend guidance for deployment, configuration, traffic steering, and policy alignment.
Implemented Netskope security policies, profiles, and integrations across diverse client environments.
Firewall Security Engineer
Cisco, USA — Apr 2023 – May 2024
Designed and deployed Cisco Firepower FTD solutions for enterprise customers.
Led crossfunctional teams (Cisco, partner, customer) in troubleshooting complex network issues.
Conducted vulnerability assessments and penetration tests, remediating critical issues.
Managed Firepower firewall platforms (2100, 4145, 4150).
Designed and implemented ACP, Intrusion, and Malware policies.
Senior Security Consultant
TELUS (supporting BC Hydro) — Dec 2018 – Apr 2023
Provided cybersecurity advisory to critical infrastructure clients.
Migrated BC Hydro data centre ASA FTD using Firepower appliances.
Implemented enterprisewide ACP, Threat, and Malware policies.
Supported designs for network architecture, data centre, and security enhancements
Handson experience with remote authentication (TACACS+, RSA SecurID)
Managed multiple Cisco FTD and ASA hardware platforms (1000, 1100, 2100, 4300, 5516X, 5525X)
Senior Network Consultant
BCCSS, BC — Jul 2017 – Nov 2018
Designed PHSA wireless network solutions.
Configured Cisco Catalyst 3650 L2/L3 switches.
Installed and configured Nexus 9K + APIC for Cisco ACI.
Worked extensively with Cisco ISE, SolarWinds, Proteus, Cisco Prime.
Handson with Cisco wireless: WLC 8510/5520, AP 3700
Deployed and managed Cisco SDWAN (Viptela) environments, including provisioning and configuring vManage, vBond, and vSmart controllers
Built and maintained feature templates and device templates in vManage to streamline largescale device onboarding
Implemented centralized and localized policies including traffic engineering, applicationaware routing, QoS, and security policies
Senior Network Consultant
Government of Nunavut — Dec 2016 – Apr 2017
Designed and deployed wireless networks across 25 remote communities.
Installed Cisco 5516 FTD, 6500, 3750, 3560 series switches.
Designed content filtering and NGFW deployments.
Security Specialist
IBM Canada — Sep 2016 – Dec 2016
Supported Cisco ASA and FortiGate environments for banking clients.
Migrated ASA rulesets to Fortinet.
Technology Consultant
TELUS— Jun2014–Sep2016
Supported enterprise LAN/WAN, Websense, ASA firewalls, DMVPN/IPSec.
Managed Nexus, ASA, ISE, and large wireless environments.
EDUCATION & CERTIFICATIONS
CISSP (in progress)
MEng, Internetworking, Dalhousie University — GPA 4.0
Cisco CCNP (Firewall, Routing), CCNA (Voice, Wireless)
JNCIA, Juniper Networks
Avaya IP Office Advanced Training