Maximum upload file size: 3MB. File types allowed: jpg, jpeg, gif only.

Click the above 'Browse' button to select a photo.
Guidelines
  1. Only upload a photograph of yourself
  2. Photos of children, celebrities, pets, or illustrated cartoon characters will not be approved
  3. Photos containing nudity, gore, or hateful themes are not permissible and may lead to the cancellation of your account
  4. Photos of your passport, ID, or photos containing any personal information such as your address, passport number, or contact details are not permissible for your own security.

Delete Guidelines

Abdul Rasheeth

Senior Network Security Engineer

Ministry of Justice

Location:
Kuwait
Education:
Diploma, CCIE Security
Experience:
20 years, 11 months

Work Experience

What's your work experience? Your experience is one of the most important sections in a CV.
List all relevant responsibilities, skills, projects, and achievements against each role.  If you're a fresh grad, you can add any volunteer work or any internship you've done before.
Add Experience

Total Years of Experience:  20 Years, 11 Months   

December 2014 To Present

Senior Network Security Engineer

at Ministry of Justice
Location : Kuwait - Al Kuwait
 Design and implement nexus datacenter switching which includes Nexus 7k, 6k and 2k switches. Features like vPC, VDC and FEX were all implemented.
 Managing and troubleshooting Multi-Site Cisco ISE deployment covering 4000 endpoints. Both machine authentication and user authentications were user. Posture check is perform on authenticated machines.
 Implementation of Palo Alto firewall with multiple zones and virtual firewalls.
 Create and maintain Site-to-Site VPNs for various other government bodies and banks.
 Create and maintain Clientless SSL VPNs and Cisco Anyconnect VPNs to publish MOJ applications via internet. Two-factor authentication used to enhance security (user credential + client certificate). Smart-tunnels were used for clientless VPNs.
 Manage Arbor DDos protection system. Create new protection groups and server types as per new requirements. Constantly monitor the attack pattern and take necessary action if it crosses the threshold.
 Lead various implementation projects like core switches replacement with Nexus, new building network rollout, datacenter switches (Nexus) deployment etc.
 Accomplished network rollout of new sites (8) and renovation of existing sites (4) which includes more than 850 switches.
 Establish fiber link to the new sites which includes fiber patching at the MOC exchanges, design IP scheme, configure the core switch interface, configure OSPF and apply filter list. Also configure edge switches with our standard template and configure ISE to authenticate users and machines.
 Design and maintain IP and VLAN scheme for around 40 sites.
 Design and implement DMZ network for virtualized environment using PaloAlto firewall and nexus switches.
 Monitor the entire network using Cisco Prime Infrastructure covering 1200 switches
October 2013 To December 2014

Onsite Sr. Network Engineer at ZAIN telecommunications

at Universe Computers Co.
Location : Kuwait - Al Kuwait
Gi Network (ISP side):
- Configure, troubleshoot and maintenance of GI network which includes Cisco 6500 series switches, Cisco ASR 9010 routers and Juniper 5800 firewalls.
- Provisioning of new upstream ISP which includes co-coordinating and establishing BGP neighborship with the upstream provider, advertise the allotted prefixes to them and NAT subscribers to the new public IP pool.
- Troubleshoot and maintenance of existing upstream providers which includes troubleshooting slowness issues, prefix advertisement issues, load sharing internet traffic among active upstream providers whenever required.
- Network assessment of GI network.
- Security assessment for Juniper firewalls which includes policy review, device hardening etc.
- Configure, troubleshoot and maintenance of high end firewall Juniper SRX 5800 which includes changing NAT configuration, upgrade software whenever required, provision new links and new security zones whenever required, provide reporting on NAT pools.
- Daily health check for critical network equipment.
- Maintaining network documentation which includes network diagrams, inventory, IP scheme etc.

Enterprise Network:
- Configure, troubleshoot and maintenance of Checkpoint VSX firewall which includes creating rules on Checkpoint firewall as per user request (user request through ticketing system and approved by security team), troubleshoot connectivity issues raised by users through ticketing system, identify routing/firewall issues and provide solution.
- Configure, troubleshoot and maintenance of Cisco Identity service Engine which includes upgrades, patch installation, troubleshooting endpoint connectivity issues, renewal of digital certificates (Generating CSR) and generating debug messages and packet captures for Cisco TAC troubleshooting.
- Configure, troubleshoot and maintenance of ASA 5500 series firewalls which includes upgrade, renewal of digital certificates (Generating CSR) and troubleshoot connectivity issues. Create Anyconnect VPN groups and Site-to-Site VPN tunnels as per user request.
- Configure, troubleshoot and maintenance of IPS (HP Tipping point, Sourcefire & IBM ISS) which includes reducing false positive alarms, upgrades and optimization.
- Configure, troubleshoot and maintenance of enterprise switches which includes upgrade Cisco 6500-VSS core switches using ISSU method which gives inline service upgrade without causing traffic interruption, deploy Cisco Nexus 5k datacenter switch for services connectivity and install Cisco 2k for top of the rack connectivity using FEX technology, deploy and maintain Cisco 3750-X switches on access layer.
- Design and implement Flexlinks for access switches which provides redundant path to the core.
- Prepare detailed implementation plan for maintenance window activities which includes step-by-step procedure with commands, impact if any, rollback procedure etc.
- Perform daily health check of critical devices and perform quarterly health check of complete network which includes network availability, top cpu utilization, top memory utilization, out-dated softwares, interface utilization, syslogs etc.
August 2006 To September 2013

Sr. Network Security Engineer

at Tawasul Services Co.
Location : Kuwait - Al Kuwait
 Create site-to-site VPN tunnels for customers using various gateways like Cisco PIX firewall, Cisco ASA 5500, Cisco routers etc.
 Configure Remote access VPN for customers and integrate with Active directory for authentication.
 Design, install and configure Cisco ASA firewall for the customers. Manage the security policy of the ASA and modify the access rules as per the customer requirement.
 Install Cisco secure ACS and configure to provide authentication for all network devices in the company and for EasyVPN authentication. In addition, it is configured for authorization and accounting also.
 Configure Cisco IPS using AIP SSM 20 module in ASA 5520. Signatures were tuned to reduce false positives.
 Add new customer to the NOC network by creating separate VRF for each customer on Cisco 7606 router and configure NAT(if required) where our customers with same IP subnets enter our network in a MPLS environment. Manage the routing table of this customer aggregation router.
 Install new devices like Cisco routers, switches, firewall etc for the customers.
 Do penetration testing on the customer network and prepare a Security Report.
 Configure VTP and VLAN on the Local network to separate voice, data and other critical networks.
 Implement Qos on the routers to prioritize the traffic.
 Configure Point-to-Point Wi-Max solution to one of the customer to enable layer 2 connectivity between their old office and new office.
 Provide network support both internally and for the customers.
February 2005 To June 2006

Technical Support Engineer

at Kuwait National Petroleum Co., Kuwait
Location : Kuwait
 Performed diagnosing, troubleshooting, and resolving technical issues with desktops/laptops and other computer hardware, operating systems, network and software applications for 500+ corporate users
 Comfortable with “MAGIC Solution”, a web based software used by IT Helpdesk to get user
Problems and forward problem tickets to and manage workflow.
 Closed over 2000 support calls in different contexts like OS, printers, network, email, software, etc
 Troubleshooting of Novell related problems like Novell context, tree, Service location, Novell client update.
 Used Symantec Ghost software to create library of software images and distribute images as required.
September 2003 To December 2004

Network Engineer

at Digilink Systems Pvt. Ltd., India
Location : India
 Installation and Configuration of Cisco 2500, 2600, 3600 series routers and Cisco 2900, 3500 and 4500 series switches at customer sites
 Cisco IOS Upgradation
 Segmentation of network using VLAN and configure Inter-VLAN routing on L3 Switches.
 Configuration of VTP domain in order to ease the VLAN management
 Uplink port are usually through GBIC port. Mutlimode fiber cables were used.
 Configuration of HSRP on 4500 series for redundancy
 Implementation of port security on switches as per client requirements
 Created Site-to-Site VPN between customer main office and branch offices. The channel was secured by 3-DES encryption.
 Troubleshooting of customer network problems
 Secure customer networks by installing PIX Firewall 501.
 Installation of NMS Tools like Ciscoworks, Solarwinds, sniffer pro etc
 Co-ordinate with customers in solving their network problems

Education

What's your educational background?
Let employers know more about your education; remember, be clear and concise.
March 2009

Diploma, CCIE Security

at Cisco
Location : Kuwait
Cisco Certified Internetwork Expert Security #23878
September 2008

Diploma, Cisco Certified Design Associate (CCDA)

at Cisco
Location : Kuwait
August 2008

Diploma, Cisco Certified IP Communications Express Specialists

at Cisco
Location : Kuwait
August 2005

Diploma, Cisco Certified Security Professional

at Cisco
Location : Kuwait
1. Secur.
2. PIX Firewall.
3. VPN
4. IDS
5. Cisco SAFE
April 2003

Bachelor's degree, Bachelor of Engineering in Information Technology (BE)

at Pavendar Bharathidasan College of Engineering
Location : Trichy, India
First Class with distinction

Specialties & Skills

CCSP, CCDA, CCNA, MCP, BE, Cisco IP Communications Express specialist

CCIE Security

Cisco ISE (Identity Services Engine)

Cisco Nexus 7k, 9k, 6k and 2k

Switching (VSS, STP, vPC, VDC, Ether channel, FEX, port-security, dot1x)

PaloAlto Firewall

Cisco ASA 55xx

Checkpoint VSX Firewall

Juniper SRX 5800 Firewall

Cisco 6500

Network Security

Firewalls

Languages

Do you speak more than one language?
For some jobs, fluency in one or more foreign languages is a plus, so add your language skills to get better results.

English

Expert

Tamil

Expert

Hindi

Beginner

Training and Certifications

Cisco Certified Design Associate ( Certificate )

Issued in: September 2008

Fortinet Certified Network Security Professional ( Certificate )

Issued in: June 2013

Fortinet Certified Network Security Administrator ( Certificate )

Issued in: December 2013

Cisco Certified Security Professional ( Certificate )

Issued in: December 2008

CCIE security ( Certificate )

Issued in: April 2009 Valid Until: - March 2019

Juniper Networks Sales Specialist (Advanced Security, Network Infrastructure) ( Certificate )

Microsoft Certified Professional ( Certificate )

Loading
Loading...
Loading...