Post Job Free
Sign in

Senior Network Security Engineer, Zero Trust

Location:
Keller, TX
Posted:
October 08, 2026

Contact this candidate

Resume:

SRICHARITHA KATTA

Senior Network Security Engineer

361-***-**** mailto:****************@*****.*** LINKEDIN

PROFESSIONAL SUMMARY

Senior Network Security Engineer with 5+ years of hands-on experience securing enterprise networks across banking, IT consulting, Big Four professional services, and US healthcare. Deep expertise with Palo Alto PA-7080, PA-5450, and PA-5220 with Panorama, Check Point R81 with SmartConsole, Fortinet FortiGate 200E/300E with FortiManager, Cisco Nexus 9K ACI (APIC, Tenants, VRFs, EPGs, Contracts), Cisco ISE 3.2, and Zscaler ZIA/ZPA/ZDX. Strong background in Cisco Viptela SD-WAN, Cisco SD-Access with DNA Center, VMware NSX-T, F5 BIG-IP (LTM, GTM, ASM, APM, SSL Orchestrator), and cloud security across AWS, Azure, and GCP with Prisma Cloud, Wiz, and Orca. Comfortable owning firewall migrations, HIPAA microsegmentation, Zero Trust rollouts, and Tier-3 incident escalation across clinical, financial, and consulting environments. Use Terraform, Ansible, Python, and GitLab CI/CD to keep infrastructure audit-ready and aligned to HIPAA, HITECH, SOX, PCI-DSS, GDPR, and NIST 800-53.

WHAT I BRING TO THE TABLE

Security Migration & Firewall Operations

•Migrated 800+ legacy Cisco ASA rules to Palo Alto PA-7080 and PA-5450 with Panorama across 52 hospitals, validating every rule against clinical traffic logs and completing staged cutovers with zero patient-care outages.

•Eliminated 120+ shadowed firewall rules across Check Point R81 and Palo Alto Panorama through quarterly rule base cleanup, tightening NAT policy and closing audit gaps without disrupting a single clinical application.

Zero Trust & Cloud Security

•Retired legacy VPN for 5,000+ remote clinical staff by deploying Zscaler ZPA with ZDX tied to Azure AD and Okta MFA, giving IT per-application visibility into user experience and cutting VPN-related tickets significantly.

•Cut critical cloud misconfiguration findings by 30% across 80+ AWS and Azure accounts using Prisma Cloud CSPM, Wiz, and Orca Security, remediating open storage, over-permissive security groups, and IAM privilege paths before quarterly HIPAA and SOX audits.

Data Center & Network Modernization

•Deployed Cisco Nexus 9K spine-leaf with 9336C-FX2 spines and 93180YC-FX leaves at Ernst and Young, replacing a legacy three-tier core and removing spanning tree as a failure point across global audit delivery environments.

•Ran Cisco SD-Access with DNA Center and ISE SGTs at BSW Health, replacing manual VLAN assignments with identity-based clinical segmentation so new medical devices land in the correct security group automatically.

Security Operations & Automation

•Cut false positive SIEM alert volume by 32% in Splunk and IBM QRadar by tuning MITRE ATT&CK aligned detection rules, giving the security operations team time to investigate real threats instead of noise.

•Saved 8+ hours of manual work weekly at Ernst and Young by writing Python scripts with Netmiko, NAPALM, and Nornir using Jinja2 templates to automate Cisco IOS-XE and NX-OS configuration backups and compliance checks.

CERTIFICATIONS

Microsoft Azure Security Engineer Associate (AZ-500) CompTIA Security+ ce Cisco Certified Network Professional Enterprise (CCNP) Zscaler Digital Transformation Administrator (ZDTA) AWS Advanced Networking Specialty Fortinet FortiAnalyzer 7.6 Analyst (NSE 5) Palo Alto Networks PCNSE (In Progress)

TECHNICAL SKILLS

Firewalls & Security: Palo Alto Networks (PA-5220, PA-5250, PA-5450, PA-7080, VM-Series), Panorama, App-ID, User-ID, Content-ID, Threat Prevention, WildFire, URL Filtering, SSL decryption, GlobalProtect, Check Point (R81, SmartConsole), Fortinet FortiGate (100F, 200F, 200E, 300E), FortiManager, FortiAnalyzer, Cisco Firepower (4115, FTD/FMC), Cisco ASA (5506-X, 5516-X), NAT/PAT, IKEv2, IPsec VPN, SSL VPN, IPS/IDS, NGFW, Snort

Networking & Protocols: IPv4/IPv6, TCP/IP, DHCP, DNS, ARP, Ethernet, VLANs, STP/RSTP/MSTP, EtherChannel (LACP/PAgP), BGP (eBGP, iBGP), OSPF (OSPFv2/v3, multi-area, DR/BDR), EIGRP, IS-IS, RIP, MPLS, VPLS, VXLAN/EVPN, QoS (CoS/DiffServ, DSCP, LLQ, CBWFQ), HSRP/VRRP/GLBP, VRF, 802.1X, RADIUS, TACACS+, 802.1Q trunking, PoE, GRE/IPsec tunnels, BFD

Switching & Routing: Cisco Nexus (9K, 9336C-FX2, 93180YC-FX), Cisco Catalyst (2960, 3560, 3850, 9300, 9500), Cisco ISR (4331, 4431), Cisco ASR 1001-X, Arista 7280R, Juniper MX/SRX, Cisco Meraki MS, Cisco DNA Center (DNAC)

Data Center, SDN & Virtualization: Cisco ACI (APIC, Tenants, VRFs, Bridge Domains, EPGs, ESGs, Contracts, Multi-Pod), Cisco SD-Access (DNA Center, fabric nodes, SGTs, virtual networks), spine-leaf (Clos), VXLAN/EVPN, vPC, VMware NSX-T (Tier-0/Tier-1 gateways, distributed firewall, micro-segmentation), VMware vSphere, Infoblox IPAM/DDI, BlueCat DDI

SD-WAN: Cisco SD-WAN Viptela (vManage, vBond, vSmart, vEdge, cEdge, OMP routing, ZTP, application-aware routing, data plane policies), Versa Networks (Versa Director, Versa Analytics, VOS CPE), VMware VeloCloud (Edge, Orchestrator, DMPO), Cisco Meraki SD-WAN, Silver Peak (HPE EdgeConnect), Fortinet Secure SD-WAN

Zero Trust & SASE: Zscaler ZIA (SSL inspection, URL filtering, DLP, CASB, SWG, PAC files), Zscaler ZPA (ZTNA, application access), Zscaler Digital Experience (ZDX), Zscaler Client Connector, Netskope, Prisma Access, Zero Trust Network Access (ZTNA), SASE, NIST SP 800-207

Cloud Networking: AWS (VPC, subnets, IGW, NAT Gateway, PrivateLink, CloudFront, Transit Gateway, Direct Connect, Route 53, ALB/NLB, Firewall Manager, AWS CLI), Azure (VNet, ExpressRoute, Virtual WAN, VPN Gateway, UDR, Azure Front Door, Traffic Manager, NSG, Application Gateway, Azure AD/Entra ID, Azure CLI), GCP (VPC, Cloud Router, Cloud VPN, Cloud Interconnect, Cloud NAT, Cloud Load Balancing, Cloud DNS, GKE), hybrid and multi-cloud

Cloud Security & CSPM: Prisma Cloud, Wiz, Orca Security, AWS GuardDuty, CloudTrail, Security Hub, Network Firewall, AWS Shield, Azure Defender, Azure Security Center, Azure Sentinel, IAM (AWS IAM, Azure RBAC, GCP IAM), SAML/OAuth2 SSO, MFA, Okta, PKI (X.509, ADCS, DigiCert, SCEP, OCSP, CRL)

Load Balancers & IPAM: F5 BIG-IP (LTM, GTM/DNS, ASM/AWAF, APM, SSL Orchestrator, iRules, SSL offload, GSLB, OneConnect, SAML SSO, TMSH, iHealth), A10 Thunder ADC, HAProxy, Citrix ADC (NetScaler), Cloudflare, AWS ALB/NLB, Azure Load Balancer, Azure Application Gateway Infoblox IPAM/DDI, BlueCat DDI

Wireless: Cisco WLC (5508, 9800), Cisco Aironet 2800, Catalyst 9100 APs, Wi-Fi 6/6E (802.11ax), WPA2/WPA3-Enterprise, RF tuning, FlexConnect, CleanAir, BYOD, guest wireless, 802.1X wireless authentication

Automation & IaC: Python (Netmiko, Paramiko, NAPALM, Nornir), Ansible, Terraform (IaC), Git/GitHub/GitLab, GitLab CI/CD, Jenkins, Jinja2, YAML/JSON, NETCONF, RESTCONF, YANG, REST APIs, AWS CLI, Azure CLI, Bash, PowerShell

Monitoring & SIEM: Splunk, IBM QRadar, SolarWinds NPM/NCM, ThousandEyes, ScienceLogic SL1, Nagios, Wireshark, NetFlow/sFlow/IPFIX, SNMP, syslog, Cisco DNA Center, MITRE ATT&CK, ping, traceroute, MTR, iperf

Compliance & Ticketing: HIPAA, HITECH, PCI-DSS, SOX, GDPR, NIST 800-53, NIST 800-207 (Zero Trust), ISO 27001, CIS Benchmarks, RBI compliance, ITIL ServiceNow, Jira, BMC Remedy

PROFESSIONAL EXPERIENCE

BAYLOR SCOTT AND WHITE HEALTH

Senior Network Security Engineer Dallas, TX May 2025 to Present

•When Baylor Scott and White's legacy Cisco ASA rule base had grown to 800+ entries with no clear ownership, I migrated the entire policy set to Palo Alto PA-7080 and PA-5450 with Panorama, validated every rule against clinical traffic logs, and completed staged cutovers across 52 hospitals with zero patient-care outages.

•Administered Check Point R81 with SmartConsole for clinical zone segmentation between patient care, imaging, pharmacy, and administrative networks, running quarterly rule cleanup that eliminated 120+ shadowed rules and tightened NAT policy without disrupting clinical applications.

•Managed Cisco Nexus 9K ACI with APIC across BSW Health's Epic EHR data center, configuring Tenants, VRFs, EPGs, and Contracts so that pharmacy, imaging, and clinical application tiers stayed isolated under HIPAA microsegmentation policy and lateral movement was blocked at the fabric layer.

•Ran Cisco SD-Access with DNA Center and Catalyst 9300 fabric nodes, using ISE SGTs to replace manual VLAN assignments with identity-based clinical segmentation, so a new medical device landed in the right security group automatically instead of waiting for a switch port change ticket.

•Retired legacy VPN for 5,000+ remote clinical staff and telehealth workers by deploying Zscaler ZPA with ZDX, tying access to Azure AD and Okta MFA, and giving IT visibility into user experience per application instead of guessing where slowness came from.

•Managed Zscaler ZIA for 50,000+ clinical and administrative staff across 1,000+ care sites, enforcing SSL inspection, URL filtering, DLP, CASB, and SWG policies with PAC files via Zscaler Client Connector to keep HIPAA-protected data from reaching unsanctioned cloud services.

•When quarterly HIPAA and SOX audits kept surfacing the same cloud misconfigurations, I deployed Prisma Cloud CSPM, Wiz, and Orca Security across 80+ AWS and Azure accounts and cut critical findings by 30% by remediating open storage, over-permissive security groups, and IAM privilege paths before auditors arrived.

•Secured BSW Health AWS workloads using VPC subnets, IGW, NAT Gateway, PrivateLink, CloudFront, Transit Gateway, Direct Connect, GuardDuty, CloudTrail, Security Hub, and Network Firewall, keeping clinical application platforms reachable from on-premises hospitals without exposing them to the public internet.

•Managed Azure networking for BSW Health with ExpressRoute, Virtual WAN, VPN Gateway, UDR, Azure Front Door, Traffic Manager, Azure Firewall, NSG, Entra ID, Azure Security Center, Defender, and Sentinel, enforcing HIPAA-aligned data residency so patient data never left approved regions.

•Managed F5 BIG-IP LTM and GTM with iRules, SSL offload, GSLB, and OneConnect for the Epic patient portal and clinical application delivery, keeping response times stable during peak morning appointment windows and maintaining availability SLAs across all regions.

•Administered F5 ASM/AWAF and SSL Orchestrator at BSW Health for encrypted traffic inspection, configuring inspection zones, service chains, cipher suite hardening, and certificate lifecycle management so the SOC could see inside TLS sessions without breaking clinical application delivery.

•Configured F5 APM access policies with SAML SSO, MFA integration, and client certificate authentication, integrating with Azure AD and Okta to give 5,000+ clinical and administrative staff identity-aware zero trust application access without a separate VPN client.

•Administered Cisco ISE 3.2 for 802.1X NAC across BSW Health, profiling 20,000+ endpoints including clinical workstations, infusion pumps, imaging systems, and IoT medical devices with RADIUS and TACACS+, so an unmanaged device never reached a clinical VLAN.

•Correlated clinical network and cloud events in Splunk and IBM QRadar, tuning MITRE ATT&CK aligned detection rules that cut false positive alert volume by 32% and gave the security operations team time to investigate real threats instead of noise.

•Monitored hospital network path performance with ThousandEyes across ISP circuits and cloud links for all 52 hospitals, detecting BGP route changes and WAN degradation before clinical application latency reached the point where nurses noticed.

•Built Terraform and Ansible IaC pipelines with GitLab CI/CD for firewall and cloud provisioning, enforcing peer review gates and automated rollback so every change was HIPAA, HITECH, and NIST CSF aligned before it reached production.

•Handled HIPAA, HITECH, NIST CSF, and SOX evidence collection, mapping 300+ firewall, VPN, NAC, and cloud controls to audit requirements before each regulatory deadline so auditors got clean documentation instead of chasing engineers for screenshots.

•Administered Arista EOS switches through CloudVision, using configlets, compliance checks, change controls, telemetry, and event analysis to standardize configurations and troubleshoot MLAG and interface-level data-center issues.

•Administered Akamai edge-security controls for externally accessible applications, analyzing DNS and HTTP/HTTPS traffic paths, TLS behavior, origin connectivity, caching and edge behavior, security events, and application dependencies while coordinating policy changes with application, network, and security teams to resolve blocked requests and protect origin services

•Maintained Fortinet FortiGate secondary perimeter firewalls and FortiAnalyzer log aggregation for BSW Health's DMZ and clinical partner connectivity zones, tracking policy change history so every rule modification had an owner and a compliance reason attached.

•Managed VMware NSX-T distributed firewall across BSW Health hypervisor clusters, enforcing east-west micro-segmentation between clinical, pharmacy, imaging, and administrative application tiers so a compromised workload could not pivot across the virtual environment.

•Served as Tier-3 security escalation, resolving critical incidents using Wireshark packet captures, NetFlow analysis, APIC fault logs, and ThousandEyes path data within SLA windows and writing RCAs that fed back into policy and monitoring improvements.

ERNST AND YOUNG (EY)

Network Infrastructure Engineer Bengaluru, India March 2022 to August 2024

•When EY's legacy three-tier core could not keep up with audit delivery and consulting workload growth, I deployed Cisco Nexus 9K spine-leaf with 9336C-FX2 spines and 93180YC-FX leaves, configuring vPC peer links, BFD timers, and jumbo frames to improve east-west throughput and remove spanning tree as a failure point.

•Configured Cisco ACI with APIC at EY, building Bridge Domains, EPGs, and Contracts so audit, consulting, client data, and corporate application tiers stayed isolated at the fabric layer instead of relying on perimeter firewalls alone.

•Managed Cisco Catalyst 9300 and 9500 switching across EY's global campus, configuring VLANs, 802.1Q trunking, EtherChannel with LACP, QoS DSCP marking, STP, RSTP, and HSRP gateways to keep office and consulting delivery environments stable for thousands of staff.

•Managed Palo Alto PA-5220 firewalls with Panorama for EY's enterprise perimeter, enforcing App-ID, User-ID, WildFire, and SSL decryption across global office and consulting delivery environments so client data handled by consulting teams had no policy gaps.

•Administered Fortinet FortiGate 200E and 300E with FortiManager for EY's secondary perimeter zones, building zone-based policies, NAT rules, and IPsec VPN tunnels for 50+ global office deployments under strict change control.

•Configured Cisco ISE 3.0 with 802.1X, EAP-TLS, and MAB fallback at EY, managing endpoint profiling, dynamic VLAN enforcement, and posture assessment for corporate laptops and contractor devices so unmanaged endpoints landed in a restricted VLAN automatically.

•Managed Cisco Viptela SD-WAN with vEdge, vManage, vSmart, and vBond at EY, applying OMP routing and ZTP for hub-and-spoke global office WAN, and deployed A10 Thunder ADC alongside F5 BIG-IP for multi-vendor application delivery across regions.

•Troubleshot Cisco Viptela SD-WAN tunnel instability and OMP route advertisement failures at EY, using vManage dashboard, vSmart controller policy logs, and vEdge CLI to isolate BFD session drops and control plane mismatches across WAN overlay links.

•Configured F5 SSL Orchestrator at EY for SSL/TLS decryption and service chain management across 50+ global offices, enforcing TLS 1.2 and 1.3 cipher suite restrictions and zero-downtime certificate renewal aligned to SOX and GDPR compliance.

•Managed Cisco WLC 9800 controllers with Catalyst 9100 APs across EY's global offices, configuring WPA2-Enterprise and WPA3-Enterprise SSIDs, 802.11ax RF tuning, FlexConnect, BYOD, and guest portal access for consulting staff and visitors.

•Implemented Meraki SD-WAN for distributed branch connectivity using dual-WAN design, centralized policy, Auto VPN, traffic shaping, application-aware path selection, and resilient Internet connectivity, validating branch-to-data-center and SaaS traffic across Meraki, Cisco routing, Fortinet security, DNS, and ISP dependencies.

•Administered Meraki Dashboard for branch network operations, configuring and validating WAN uplinks, VLANs, DHCP, routing, VPN status, traffic shaping, and client connectivity while using appliance health, latency, packet loss, utilization, and application telemetry to isolate local access, WAN, ISP, and upstream security failures.

•Engineered Aruba ClearPass Policy Manager for enterprise wired and wireless network access using 802.1X, EAP-TLS, RADIUS, endpoint profiling, role-based enforcement, and dynamic VLAN assignment, integrating AD/LDAP identity services and troubleshooting authentication, certificate, policy-evaluation, VLAN, DHCP, and switch/WLAN dependencies through Access Tracker and RADIUS session analysis.

•Integrated Active Directory, LDAP, and Okta MFA with Cisco ISE at EY, enforcing role-based VLAN assignment and identity-aware access control across professional services and consulting user segments.

•Built AWS VPC with subnets, IGW, NAT Gateway, PrivateLink, Direct Connect, and Transit Gateway at EY, and extended cloud connectivity to GCP via Cloud Interconnect, Cloud NAT, and Cloud DNS for audit tool and consulting workloads.

•Managed BGP and OSPF on Cisco ISR 4331 and ISR 4431 connecting EY's global offices to data centers, tuning route policies, redistribution, and WAN path failover so a single circuit failure never took an office offline.

•Deployed Zscaler ZIA and Netskope as SASE platforms for EY's internet-bound traffic, configuring SSL inspection, URL filtering, CASB, DLP, and PAC file policies to protect client data and meet SOX, GDPR, and ISO 27001 requirements.

•Wrote Python scripts using Netmiko, NAPALM, and Nornir with Jinja2 templates, YAML, and JSON to automate Cisco IOS-XE and NX-OS configuration backups, VLAN provisioning, and compliance checks, saving 8+ hours of manual effort weekly.

•Built Ansible playbooks with Jinja2 templates for Palo Alto and Cisco Catalyst using NETCONF and REST APIs, managing version control in GitHub and using AWS CLI and Azure CLI for cloud automation aligned to EY's change control procedures.

•Monitored EY's data center, campus, and office network with SolarWinds NPM, NCM, and Infoblox IPAM and DDI, tracking interface health, config compliance, IP address space, and bandwidth across Nexus, Catalyst, and FortiGate estate.

•Coordinated ITIL change management for all EY network updates, documenting rollback procedures and scheduling maintenance windows to protect audit and consulting delivery operations and SOX compliance.

ACCENTURE

Network Engineer Hyderabad, India February 2021 to March 2022

•When a Fortune 500 client's branch network kept dropping VoIP calls during peak hours, I rebuilt the access layer on 30+ Cisco Catalyst 3850 stackable switches with StackWise, configuring VLANs, 802.1Q trunking, RSTP, PoE budgeting, and EtherChannel so voice traffic had a dedicated path and call quality complaints stopped.

•Configured Cisco ASA 5516-X for 50+ IKEv2 IPsec VPN tunnels and AnyConnect SSL VPN, building NAT policies, ACL rule sets, and crypto maps so remote branches and 300+ remote users connected reliably without opening unnecessary ports.

•Managed Cisco ISR 4331 running BGP, OSPFv2 with DR/BDR election, and GLBP across 25+ branch WAN links, configuring route maps, prefix lists, and failover so a single ISP circuit loss never isolated a branch from client applications.

•Configured Cisco ISE 802.1X with EAP-TLS certificate policies on Catalyst access ports, enforcing RADIUS-based access control for 500+ endpoints and TACACS+ device access across client branch offices so a contractor laptop never landed on a corporate VLAN.

•Onboarded Accenture enterprise client web applications into F5 ASM/AWAF WAF, configuring OWASP Top 10 blocking, bot defense, and false positive tuning for financial services and consulting client production environments.

•Managed Cisco WLC 5508 controllers with 60+ Aironet 2800 series APs, configuring WPA2-Enterprise SSIDs, 802.1X authentication, and separate SSIDs for corporate and guest wireless so guest traffic never touched the corporate network.

•Managed DHCP scopes and Windows DNS records for 1,000+ endpoints across Accenture enterprise client sites, resolving IP conflicts between corporate workstations, VoIP phones, and application servers that had been causing intermittent connectivity complaints.

•Configured Juniper MX/SRX infrastructure through Junos CLI using routing-instances, IRB, VLAN tagging, AE/LACP interfaces, security zones, policy-options, prefix-lists, and import/export policies, leveraging commit check, commit confirmed, rollback, and operational commands to validate forwarding and troubleshoot production connectivity.

•Provisioned 40+ VLANs and configured 802.1Q trunk ports and inter-VLAN routing across Cisco Catalyst access and distribution switches, maintaining IPAM records and verifying connectivity after every change so documentation always matched the live network.

•Configured QoS DSCP marking with LLQ and CBWFQ on client WAN routers and access switches, prioritizing voice (EF), video (AF41), and business-critical traffic over bulk data transfers so a large file copy never degraded a video conference.

•Monitored 200+ Accenture enterprise client network devices with SolarWinds NPM using SNMP v2c/v3, tracking interface utilization, uptime, and error counts, and managing incident tickets in ServiceNow with full diagnostic notes.

•Monitored BGP adjacency states and prefix counts across 25+ WAN links using Wireshark and traceroute, validating routing stability after ISP circuit changes and failover events before declaring a maintenance window complete.

•Created network topology diagrams in Visio and IP address records in Infoblox IPAM and DDI and BlueCat DDI for 20+ Accenture enterprise client sites, supporting audit reviews and engineering knowledge transfer.

•Coordinated 30+ MPLS WAN circuit incidents with ISP carrier teams, running path analysis, demarc testing, and BGP session restoration to meet Accenture enterprise client SLA restoration windows.

•Troubleshot Cisco AnyConnect SSL VPN failures for 300+ remote users, diagnosing split tunnel mismatches, certificate errors, and ASA 5516-X pool exhaustion and restoring access within SLA targets.

•Coordinated weekly ITIL change management windows for Accenture enterprise client switch, router, and firewall updates, preparing rollback steps and verifying connectivity post-change across managed sites.

ICICI BANK

Network Operations Center Engineer Hyderabad, India February 2020 to October 2020

•Monitored ICICI Bank's campus and branch network with SolarWinds NPM and Nagios, tracking interface uptime, CPU load, bandwidth, and latency across Cisco Catalyst 2960 and 3560 switches so branch banking operations stayed reachable around the clock.

•When a recurring interface flap on a branch uplink was being logged as hardware failure, I correlated SNMP polling and syslog data in Nagios and SolarWinds to prove it was a transient carrier issue, saving a replacement switch order and an unnecessary maintenance window.

•Maintained Cisco Catalyst 2960 and 3560 access switches under senior guidance, assisting with VLAN assignments, 802.1Q trunk changes, and PoE configurations for branch office and banking floor devices.

•Assisted with Cisco ASA 5506-X firewall ACL updates and NAT rule changes, documenting every modification and verifying access before and after each approved change window at ICICI Bank.

•Handled Tier-1 and Tier-2 incidents using Wireshark, ping, traceroute, and MTR to isolate Layer 2 VLAN mismatches and Layer 3 routing failures, restoring banking operations within SLA targets.

•Managed DHCP scope assignments and DNS records for ICICI Bank endpoints, coordinating IP address space and preventing conflicts across banking workstations, teller terminals, and ATM network devices. BGP

•Handled network incidents and service requests in ServiceNow, logging full diagnostic steps, resolution notes, and escalation details for every ICICI Bank branch connectivity and banking system event.

•Performed daily Layer 2 and Layer 3 health checks across ICICI Bank's network fabric, verifying VLAN connectivity, MSTP topology, GLBP gateway states, and BGP and OSPF adjacency states before shift handover.

•Monitored BGP and OSPF adjacency states across ICICI Bank's MPLS branch WAN links, escalating routing anomalies to senior engineers with documented diagnostic output and event timelines.

•Coordinated configuration backup schedules for ICICI Bank switches and routers, verifying backups completed and maintaining change documentation aligned with RBI and PCI-DSS banking compliance.

EDUCATION

Master of Science, Computer Science Texas A&M University-Corpus Christi

Bachelor of Science, Computer Science Jawaharlal Nehru Technological University (JNTUH), Hyderabad, India



Contact this candidate