Network architect with 9+ years of experience designing and delivering secure, resilient enterprise networks across finance, retail, manufacturing, and service-provider environments. Proven success leading routing redesigns, hybrid Azure connectivity, SD-WAN transformations across 250+ sites, and zero trust policy for more than 2,500 endpoints.
Built redundant hybrid Azure connectivity using VeloCloud SD-WAN NVAs and dynamic BGP routing, eliminating single points of failure.
Led network architecture for cloud migration, partnering with application and infrastructure teams to migrate and rearchitect numerous internal services and applications in Azure.
Led a routing redesign from static routes to a scalable multi-tier topology using OSPF in datacenters and eBGP across the WAN, enabling dynamic failover.
Developed Zscaler ZIA and ZPA policies that enforced zero trust access across more than 2,500 endpoints.
Led auditing and remediation of URL-filtering and lateral-movement exposure across Palo Alto and Zscaler platforms.
Hardened network infrastructure by assessing and remediating CIS security baselines with Tenable and Ansible.
Managed Palo Alto firewalls through Panorama in a complex multi-vsys environment.
Engineered and administered multinational infrastructure spanning Arista core, Aruba and Cisco access, and VeloCloud SD-WAN.
Configured and maintained Aruba and Cisco wireless infrastructure supporting 1000+ endpoints.
Managed Cisco ISE and Aruba ClearPass NAC policy to enforce access control and regulatory requirements.
Kal Tire
Senior Network Engineer·May 2022–Oct 2023
Network Engineer·May 2019–May 2022
Led five major infrastructure initiatives: core routing redesign, end-to-end QoS, SD-WAN migration, enterprise firewall replacement, and east-west traffic filtering.
Migrated gateway services from Layer 3 switching to Palo Alto firewalls, enforcing segmentation for more than 2,000 hosts across Azure and on-premises environments.
Facilitated application migrations from on-premises infrastructure to Azure without service interruption.
Designed and operated an international multi-vendor network across 250+ retail, mining, and warehouse sites using Cisco, Palo Alto, Fortinet, Aruba, Azure, Versa, and Ruckus.
Maintained PCI DSS compliance across 300+ devices spanning 250+ retail and industrial locations.
Designed and managed A10 application delivery services supporting thousands of daily transactions.
Monitored network availability and compliance with SolarWinds, Icinga, and Splunk.
Delivered 24/7 on-call support and resolved escalated incidents while minimizing service disruption.
Mentored team members and resolved hundreds of escalated service requests and incidents.
iTel Networks
Network Engineer·Jun 2017–May 2019
Implemented a core hardware upgrade using Cisco ASR9006 and Juniper SRX3400 platforms, increasing backbone capacity.
Configured and troubleshot BGP, OSPF, MPLS, L2VPN, and L3VPN services across a national carrier backbone serving hundreds of enterprise customers.
Managed a multi-vendor Cisco, Ciena, and Juniper core network and maintained 99.9% availability through proactive monitoring.
Deployed more than 100 Meraki switches, firewalls, and wireless access points across customer branches.
Created engineering designs and served as a sales engineer, translating customer requirements into technical solutions.
Administered Windows Server services and VMware ESXi environments.