رامي الصوفي, Cloud NW & Security (Acting Team Leader)

رامي الصوفي

Cloud NW & Security (Acting Team Leader)

EastNets Amman-Jordan

البلد
الأردن - عمان
التعليم
بكالوريوس, Electric And Communication Engineering
الخبرات
18 years, 4 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :18 years, 4 أشهر

Cloud NW & Security (Acting Team Leader) في EastNets Amman-Jordan
  • الأردن - عمان
  • أشغل هذه الوظيفة منذ فبراير 2021

• Assess the security risks associated with cloud network devices and ensure their compliance with SWIFT CSP & other security standards as: ISO 27K1, GDPR & NIST .

• Develop a risk management & governance framework with policies & solutions for Cybersecurity and compliance with ISO 27k & GDPR standards.

• Design and architect cloud network and security solutions based on SWIFT CSP standards, regulations & client requirements.

• Supervise configuring MS defender for all EastNets resources: Storage, Database, App services over Azure network.

• Develop security plans & policies for Incident Response, Disaster Recovery & Business Continuity for EastNets On-prem and Cloud-based sites.

• Configure data connectors in Microsoft Sentinel to collect and aggregate security data from various sources in EastNets environment over Azure cloud.

• Create and customize analytics rules in Microsoft Sentinel to detect specific security threats and anomalies.

• Monitor security events effectively using Azure Monitor to gain visibility into EastNets cloud environment.

• Manage application access in Microsoft Azure Active Directory (known as EntraID now) .

• Implement security controls and measures such as : threat protection, identity & access management/IAM for EastNets new environments over Azure & AWS cloud.

• Participate in creating new NW Security & Physical Access Policies for the cloud environments on both Azure & AWS networks.

• Design & Implement EastNets Disaster Recovery (DR) Site for both On-prem and over Azure Cloud and test its operability for auto Failover & Failback from the customer perspective.

• Evaluate and select vendors for cloud networking & security solutions & systems.

• Assist in PoC setups for SASE solutions from varied vendors such as : Palo Alto,
Cloud Flare and Zscaler to nominate one SASE solution / vendor at the end for securing EastNets On-Prem and Cloud-based networks.

• Design & build new Cloud Computing model for EastNets Service Bureau consisting of new PA FW/VPNs, Juniper SRXs, Ivanti SSL VPNs including Network monitoring & Security Tools.

• Provide the needed support & guidance for new IT engineers and help them solve new issues faced on EastNets new Azure & AWS cloud environments.

• Stay up to date with the latest security trends & technologies in Information & Cyber Security and Cloud Computing fields by attending specialized workshops & training programs, and actively participating in professional networking communities.

Senior NW Security Engineer في EastNets
  • الأردن - عمان
  • أكتوبر 2016 إلى يناير 2021

• Configure & troubleshoot network security devices: NGFW/VPN (PA, Cisco, Juniper), Juniper IPS, Cisco ISE and FMC for EastNets on-prem DCs.

• Process new change requests /CRs for Configuring new VLANs, DMZs, Routing, Firewall policies and publishing (if required) any new financial services.

• Adopt a collaborative & comprehensive team environment, encourage knowledge sharing, cross-training, and continuous learning between team members.

• Configure & troubleshoot new S2S VPN connections on VPN devices existing at the customer end and at
EastNets DCs .

• Discuss & new CRs for Configuring routing and switching security (Port Security, ISE, ACL, and VLAN filter, DHCP-Snooping, EIGRP Authentication and DMVPN).

• Enhance and tune network performance by configuring QoS, FHRP, HSRP, policy based routing (BPR), Port-Aggregation, IP-SLA on the required NW & Security devices.

• Participate in configuring and troubleshooting EastNets new Data Centers based on Spine-Leaf Architecture by Cisco SDN (ACI) using APIC controllers.

• Configure F5 Network Load Balancers (LTM, GTM) and applying security application policies using F5 WAF for EastNets internal network .

• Create and configure Palo Alto Enterprise Data Loss Prevention (E-DLP) data patterns and filtering profiles to prevent accidental data misuse, loss, or theft.

• Participate in preparing Security Hardening Template for all security devices & servers installed on all EastNets sites.

• Participate in preparing and publishing EastNets new VPN connectivity Troubleshooting Guide.

NW engineer في EastNets FZ-LLC Amman-Jordan
  • الأردن - عمان
  • أكتوبر 2010 إلى سبتمبر 2016

• Participate in upgrading EMC RSA Authentication server in for EastNets DR site from 6.1 up to 8.1 then to 9.0.
• Design & Build virtual Data Center for EastNets DR site based on VMware technology and using ESXi 4.1 server, vCenter 5.0 server& Vsphere Client4.0 & Web Client applications.
• Install, configure & tune monitoring tool (ME Op-Manager), Desktop Central & Firewall Analyzer for all EastNets sites.
• Upgrade virtual Data Center running on ESXi 4.1 to ESXi 5.5, vCenter 6.0 & Vsphere client 5.5.
• Participate in setting up & preparing EastNets Incident & Change Management Policy.
• Participate in Preparing EastNets VPN connectivity Troubleshooting Guide.
• Participate in preparing Security Hardening Template for all security devices & servers installed on all EastNets sites.
• Provide the needed answers for external Vulnerability, Assessment / Penetration Test Reports carried out by 3rd party security auditors on customer VPN boxes.

Senior Datacom Engineer في MABCO Group Amman-Jordan
  • الأردن - عمان
  • يونيو 2007 إلى سبتمبر 2010

• Participate in setting up the designs for the last-mile solutions compatible with backbone networks for ISPs as: Orange JO, Zain & Umniah (Formerly Batelco).
• Install & configure OneAccess routers as a POC for the customers.
• Provide 1st & 2nd level of technical support to customers as ISPs: Orange JO, Zain & Umniah using phone calls or/and using support forums tickets.
• Provide 3rd level of support to Orange JO engineers & helping them with OneAccess devices configuration.
• Install, configure & troubleshoot NW devices as: Cisco Routers & Switches.
• Install, configure & troubleshoot security devices as: Juniper SSG, Cisco ASA, Symantec DLPs & Blue Coat (Proxy SG & Cash Engine) on the customer sites .
• Participate in configuring & commissioning Kulacom Wi-Max sites .

Pre Sales Engineer في TEN Amman Jordan
  • الأردن - عمان
  • فبراير 2006 إلى مايو 2007

• Install & configure Core ATM SPS & MPS switches (New Bridge).
• Install & configure DSLAMs & (IP-based) DSLAMs (Alcatel-Lucent.
• Configure last mile CPE (routers & modems) using NW tools & utilities embedded within ATM Network Management System machine.
• Troubleshoot digital services lines (Physical Layer) using specific testing & diagnosing tools.
• Prepare & test IMMSP platform to provide Triple Play services (ADSL, Video on-Demand (VoD), Audio (VoIP) over Fiber cables (FTTH, FTTO, FTTC) as a last mile connectivity.

الخلفية التعليمية

بكالوريوس, Electric And Communication Engineering
  • في Princess Sumaya University For Technology
  • فبراير 2024

Princess Sumaya University Oct , 1999 – Feb , 2004 . Good , Electronics (Computer & Telecommunication Engineering) .

بكالوريوس, Electronics (Computer & Telecommunication
  • في Princess Sumaya University
  • فبراير 2004
الثانوية العامة أو ما يعادلها, Scientific Semester
  • في Al Ittihad Secondary School
  • يونيو 1999

Specialties & Skills

IT Risk
IT Security
IT Project Management
ISO 27001
Security Audits
CISCO ROUTERS
VIRTUAL PRIVATE NETWORKS (VPN)
CHANGE MANAGEMENT
CLOUD COMPUTING
DATA CENTERS
DISASTER RECOVERY
PROFESSIONAL NETWORKING
AZURE ACTIVE DIRECTORY
BUSINESS CONTINUITY
ACTIVE DIRECTORY
Cloud Architect
Cloud Networking & Security
Cloud Security Auditing
ISMS Implementation

اللغات

الانجليزية
متمرّس

التدريب و الشهادات

ISO27K1 Lead Implementor (الشهادة)
تاريخ الدورة:
August 2019
TOGAF & Enterprise Architect (تدريب)
معهد التدريب:
Allison LMS site
تاريخ الدورة:
October 2023
المدة:
10 ساعات

الهوايات

  • Reading (IT & Scientific Fiction) Travelling , Sports : Football , Tennis Table , Walking