Jasmeet Kaur Senior Network Security Engineer
E: *******.********@*****.*** Ph.: 510-***-**** https://www.linkedin.com/in/jasmeetkar/
SUMMARY
Senior Network Security Engineer with 6+ years of experience securing and operating enterprise network infrastructure across Energy, Financial Services, and Technology environments.
Strong hands-on experience across Palo Alto Networks, Fortinet, Check Point, Juniper, Cisco, F5 BIG-IP, Zscaler, and Akamai in large-scale production environments.
Experienced in firewall policy management, network segmentation, routing and switching, VPN, Zero Trust, load balancing, application delivery, CDN, hybrid-cloud connectivity, and production troubleshooting.
Experience supporting OT/SCADA environments within the energy sector, including secure connectivity and segmentation between operational and enterprise networks.
Strong automation background using Python, Ansible, Terraform, and REST APIs to improve configuration management, validation, compliance, and day-to-day network security operations.
TECHNICAL SKILLS
Network Security: Palo Alto Networks, Fortinet FortiGate, Check Point, Juniper SRX/Junos, Cisco ASA/Firepower, Panorama, GlobalProtect, Zscaler ZIA/ZPA, Zero Trust, VPN, NAT, Network Segmentation
Networking: Cisco Nexus/Catalyst, Juniper Routers/Switches, Arista EOS, BGP, OSPF, VXLAN/EVPN, VLAN, VRF, HSRP, VPC, EtherChannel, Spine-Leaf
Load Balancing & CDN: F5 BIG-IP LTM, F5 BIG-IP DNS/GTM, SSL Offloading, Persistence, iRules, Akamai CDN, GTM, DNS, WAF, DDoS Protection
Cloud & Automation: AWS, Azure, Python, Ansible, Terraform, REST APIs, Git, Panorama API, Cisco APIs, Arista eAPI
OT/Monitoring & Operations: OT/SCADA, IT/OT Segmentation, Splunk, SolarWinds, ServiceNow, Incident Response, Change Management
Professional Experience
ExxonMobil, Spring, TX
Senior Network Security Engineer Jan 2026 – Present
Manage Palo Alto firewall infrastructure through Panorama across production environments, implementing security policies, NAT, security profiles, URL filtering, DNS Security, and threat-prevention controls.
Engineer application-aware firewall policies and access controls based on business, application, and infrastructure connectivity requirements.
Implement segmentation between enterprise and OT environments, controlling communication between operational networks, datacenter infrastructure, and enterprise services.
Support OT/SCADA security activities involving firewall policy changes, zone-based access controls, secure connectivity, and troubleshooting between operational and enterprise network segments.
Maintain Panorama templates, device groups, network objects, and configuration standards across multiple production firewall environments.
Execute PAN-OS upgrades, firewall migrations, HA failover testing, and production maintenance while following implementation, validation, and rollback procedures.
Manage F5 BIG-IP LTM environments, configuring virtual servers, pools, health monitors, SSL profiles, persistence, iRules, and traffic-management policies for enterprise applications.
Support Citrix ADC environments for application delivery, SSL offloading, load balancing, and service availability.
Manage Akamai services supporting CDN delivery, DNS, Global Traffic Management, application availability, and DDoS protection for internet-facing applications.
Administer Zscaler ZIA and ZPA, troubleshooting secure user and private-application access as part of Zero Trust and SASE initiatives.
Implement secure AWS/Azure connectivity using IPSec VPNs, ExpressRoute, Transit Gateway, and cloud networking services.
Develop Python and Ansible automation for policy validation, object management, configuration checks, backups, and compliance reporting.
Build Terraform and API-driven workflows for repeatable security configuration changes and post-change validation.
Troubleshoot complex production issues involving firewalls, load balancers, VPNs, routing, DNS, WAF, and application connectivity, supporting Sev-1 and Sev-2 incidents through technical investigation and root cause analysis.
Morgan Stanley, Boston, MA
Network Security Engineer Sep 2023 – Dec 2025
Managed enterprise network security infrastructure supporting global trading platforms, investment banking applications, corporate services, and geographically distributed datacenters.
Administered Palo Alto firewalls through Panorama, managing App-ID, User-ID, NAT, Security Profiles, SSL Decryption, URL Filtering, Threat Prevention, WildFire, and DNS Security.
Contributed to Cisco ASA-to-Palo Alto migrations by analyzing existing ACLs, NAT, objects, and traffic requirements and translating them into application-aware Palo Alto policies.
Managed Cisco ASA and Firepower environments supporting enterprise applications, partner connectivity, remote locations, and disaster recovery infrastructure.
Supported GlobalProtect and Cisco AnyConnect remote-access environments, troubleshooting authentication, certificates, routing, split tunneling, and connectivity issues.
Designed and maintained IPSec VPN connectivity between corporate offices, datacenters, cloud environments, business partners, and disaster recovery sites.
Managed F5 BIG-IP LTM environments supporting internal and customer-facing applications, configuring virtual servers, pools, health monitors, SSL profiles, persistence, SNAT, and iRules.
Supported F5 BIG-IP DNS/GTM for global application availability, including Wide IPs, pools, health monitoring, and DNS-based traffic distribution.
Administered Citrix ADC environments supporting application delivery, SSL offloading, load balancing, and service availability.
Managed Akamai services supporting CDN delivery, DNS, Global Traffic Management, SSL/TLS, application availability, and DDoS protection.
Supported Zscaler ZIA and ZPA as part of enterprise Zero Trust and SASE initiatives, troubleshooting secure internet and private-application access.
Worked with cloud engineering teams to establish AWS and Azure connectivity using VPN gateways, Transit Gateway, ExpressRoute, and enterprise firewall controls.
Automated firewall operations using Python, Ansible, Panorama APIs, and Cisco APIs for policy validation, object management, compliance reporting, backups, and configuration auditing.
Investigated complex production issues involving BGP, OSPF, routing asymmetry, NAT, firewall policies, VPNs, DNS, F5, and application traffic flows.
Served as an escalation engineer during Sev-1 and Sev-2 incidents, coordinating technical troubleshooting and service recovery across network, cloud, server, and application teams.
Infosys, Delhi, India
Network Engineer May 2020 – Jul 2023
Supported enterprise datacenter infrastructure hosting business-critical applications across production and disaster recovery environments.
Managed Juniper SRX firewalls, configuring security policies, NAT, address objects, routing, IPSec VPNs, and access controls.
Worked with Juniper routers and switches on Layer 2/Layer 3 connectivity, VLANs, interfaces, routing protocols, and inter-device communication.
Administered Check Point firewalls, managing security policies, NAT, network objects, access controls, VPN connectivity, and policy changes supporting application and network requirements.
Troubleshot Check Point firewall issues involving policy matching, NAT, routing, VPN connectivity, and blocked traffic using firewall logs and network analysis.
Administered Fortinet FortiGate firewalls, implementing security policies, NAT, IPSec VPNs, address objects, and access controls.
Managed Cisco Nexus and Catalyst switching infrastructure, including VLANs, VRFs, VPCs, Layer 3 interfaces, trunk links, and high-availability configurations.
Supported Cisco Nexus Spine-Leaf environments and datacenter Layer 2/Layer 3 connectivity using BGP, OSPF, HSRP, EtherChannel, and static routing.
Configured and troubleshot Site-to-Site IPSec VPNs connecting branch offices, datacenters, and third-party environments.
Performed network hardware installations, Junos and network-device software upgrades, firmware maintenance, and lifecycle refresh activities.
Developed Python and Ansible automation for device inventory, configuration validation, backups, software compliance, and operational reporting.
Monitored infrastructure using SolarWinds and Splunk and participated in production changes, incident response, and disaster recovery exercises.
Education
Master of Management Information Systems, Hellenic American University, USA, 2025
Bachelor’s, DAV University, India, 2021