شهاب UDDIN, Core Network Engineer, CCIE#51390

شهاب UDDIN

Core Network Engineer, CCIE#51390

Gulf Air

البلد
البحرين - المنامة
التعليم
بكالوريوس, B.Sc in Electrical & Electronics Engineering
الخبرات
17 years, 6 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :17 years, 6 أشهر

Core Network Engineer, CCIE#51390 في Gulf Air
  • البحرين - المنامة
  • أشغل هذه الوظيفة منذ ديسمبر 2016

Technical duties and Responsibilities @ Gulf Air

• Responsible for all networking projects in Gulf Air as a team leader
• Troubleshooting any incident, resolve it and perform the root cause analysis as well as document it for future reference
• Monitor and health check of Gulf Air networking devices
• Documentation of any changes in Gulf air network by updating the support documents and diagram.
• Assist management in terms of procurement, tender evaluation, preparing business cases, RFP RFTetc.
• Mitigate any security vulnerabilities, along with updated security notification, OEM and vendor
• Responsible for security, network access controls in Gulf Air for PCI-DSS compliance.


Achievements and completed major projects at Gulf Air, Bahrain

• PCI-DSS (Payment card industry data security standard) compliance project:
Achieved PCI-DSS compliance for Gulf Air, working in a capacity as a consultant and Implementing the network level controls by Identify and analyse legitimate traffic for PCI-DSS zone to Non PCI-DSS zone, which includes applying various levels of traffic restriction using 4500 switch, Nexus 5K, hardening network devices in terms of security and Strengthening the SSL certificate cipher suites used in f5.

• F5 Link Controller project, documentation and implementation in GF Head Quarter which includes publishing Gulf Air services in coordination with domain provider and load balance them across multiple ISPs

• AWS migration project for Gulf Air DR site which includes designing the VPCs, on premises data migration using IPSEC VPN, security, architecture the network in coordination with AWS to reflect the similar data flow and firewall using the PALOALTO instance

• F5 LTM/APM project, documentation and implementation which includes load balancing GF services, creating portals, SSL VPN, posture assessment, user access policies by integrating with AD


• F5 DDOS project, documentation and implementation which includes creating various policy objects in order to protect Gulf published services over Internet

• SonicWALL SSL VPN project, documentation and implementation for Gulf Air outstation offices

• Migration from PIX firewall to ASA firewall and then Firepower Next Gen Firewall which includes designing, documentation, configuration and consists of packet filtering, inspection, policy based Nat using high availability

• IPS project, documentation and implementation which includes applying the inspection and restriction on various network segments and achieving compliance certificate by the OEM to meet industry standards.

• Centralizing the authentication, authorization and accounting using CISCO ACS for accessing the network devices.

• ADSL project, designing, documentation and implementation for Gulf Air Headquarter which includes configuration of switches, security and various levels of access control using Cyberoam.

• Bahrain New Airport project for Gulf Air offices in coordination with various companies.

• Redesigning GF LAN architecture and redundancy by using CISCO 4500 Distribution switches, 6500 core switches using VSS, OSPF routing and port-channel all over GF network

• Gulf Air Wireless LAN controller project, documentation and implementation which consists of CISCO vWLC along with CISCO ACS & Radius server authentication for the users, Isolating Guest network for ADSL connection and assigning SSIDs based on AP groups

• Implementation of Disaster recovery site and establishing secure connectivity with GF headquarter in order to maintain business continuity

• Migrating mission critical IPSEC VPN connection (Flight Plan application) from Juniper Devices to CISCO network devices, which includes manipulating the ACLs, routes, NAT, IP SLA for backup connection and documentation

• IPSEC VPN project for mission critical applications which consists of designing, documentation, traffic analysis, security assessment, configuring VPN using ASA firewall, IOS 2900 routers and 6500 Core switches

Network Engineer, CCIE# 51390 في Almoayyed International Group
  • البحرين - المنامة
  • مايو 2012 إلى ديسمبر 2016

Professional Experience
May 2012 - Till Date
Network Engineer, Bahrain
Almoayyed International Group, http://www.almoayyedintl.com

Technical duties and Responsibilities

Responsible for both consultative pre-sales and post-sales implementation/support.
Pre-sales - Present and explain various LAN/WAN networking technologies to clients. Guide clients through requirements gathering. Formulate solutions consisting of hardware, software, licensing and engineering services. Create bill of materials, statements of work and Visio design diagrams.
Post-Sales - Implement, upgrade and troubleshoot complex LAN/WAN solutions. Provide administrator-level training to clients as needed. Deliver and present final project documentation.
Work and collaborate with project teams consisting of CompuNet engineers, client resources, contract resources and 3rd party vendors.
Deliver best-practice network designs and implementations producing reliable, available and scalable network solutions.
Anticipate IT industry trends and future directions, understand client business objectives, and incorporate this information into proposed architectural solutions to fit future needs and initiatives.
Perform analysis, diagnosis and fault isolation of existing client network issues.
Discover, audit and document client infrastructures.
Provide technical thought leadership while interacting closely with clients.
Deliver consistent and frequent project status updates to CompuNet Engineering Managers and/or assigned Project Managers.
Maintain and increase technical certifications based upon certification requirement changes and business market requirements
Provide mentoring and support to junior staff members

Achievements and completed major projects at Almoayyed International Group, Bahrain
• Complete project from presales to deployment and migration of IP TELEPHONY SYSTEM for MINISTRY OF ISLAMIC AFFAIRS on their data center

• Project management and implementation for HAJ GULF Bahrain which includes
CISCO ASA FIREWALL, IRONPORT, SOURCE FIRE

• Project management and implementation for HIDD Power company Bahrain which includes
CISCO ASA FIREWALL, IRONPORT, SOURCE FIRE


• Project management and implementation for Guardian Glass house which includes
➢ Call manager using BE6K, UCS C200, VMWARE and CUCM 10.0
• IBN khuldoon National School Project management and implementation which includes
Structured cabling, fiber cabling,
4500-x switches using VSS, Redundancy and port channeling for all access switches (2960-x), Policy based routing for multiple ISPs
Redundancy among 5508 Wireless LAN controller, 2700 access points (160 aps)
Cyberoam firewall for application visibility and control, anti-x, LDAP integration and Internet user login using captive portal
• Project Management and implementation of network security with Cyberoam CR500i, Virtual WLAN controller and CISCO prime using UCS for Bahrain Bayan school which consists of 60 access points with integration to Microsoft LDAP for authentication

• MODERN MECHANIC
Cyberoam firewall for application visibility and control, load balancing among dual ISPs, individual user Internet access policy based on schedule and anti-x

• TAZUR insurace company project management and implementation which includes
Migration of old firewalls to the new ASA 5515-X, Dual ISPs with policy based routing,
VPN (site-to-site, any-connect, web vpn clientless),
Application visibility and control, anti-x, ACTIVE-DIRECTORY integration and Internet user login

• Ministry of Foreign Affairs on Network security, Data and wireless Network Upgradation, monitor and manage the network for AMC

• Bahrain CIVIL AVIATION AFFAIRS network for IPT, Data and Network Security and achieve customer satisfaction. Monitor and manage the network for AMC


• Achieve satisfaction among AMC customers

Network Engineer في Flora Limited
  • بنجلاديش
  • يناير 2009 إلى مايو 2012

January 2009 - May 2012
Flora Limited, Dhaka as Systems Engineer, http://www.floralimited.com
Technical duties and Responsibilities
• Provide solution and consult different issues related to Network infrastructure, Security and VOIP. Also design large scale networks for enterprise.
• Guide our technical team for implementation, troubleshooting and in some large scale projects work closely with the implementation team.
• Network planning, deployment, manage and monitor of a large network of Flora Limited and also manage an IT support team.
• Maintain and configure OSPF for my internal network within 22 Flora POP’s & 24 client’s POPs and internet connectivity using MPLS, BGP as well.
• Maintain and monitor Flora limited IP telephony network for optimum performance and quality within 22 Flora POP.
• Network Impacts Studies
Analyzes of impact on network routing and security impacts studies due to introduction of new services, releases, expansions or re-configurations of network, routing and security.
• Prepare BOM based on customer requirement/RFQ
• Research all sorts of existing and emerging technologies to build a state of the art and robust network

Achievements and completed projects at Flora Limited, Bangladesh
VOICE over IP networks
• Implementation of IP telephony & integrating it with traditional phone system for Mutual Trust Bank Limited (MTBL) on their data center

• Implementation of IP telephony & integrating it with traditional phone system for FLORA Limited data center

ROUTING, SWITCHING & Network Security

• Implementation and commissioning of State of the ART network for Bangladesh Research and Education Network (BDREN)
➢ Configuration of BGP Using CISCO ASR 1000 series router on BDREN

• Complete project from presales to deployment of Palo alto networks at National Bank Ltd on their DATA center.

• NAC implementation on EXIM Bank Ltd. data center

• Security devices implementation on Mutual trust bank Ltd. new data center

• Implementation of Intranet Network and Security for FLORA Limited data center
• Implementation of Intranet Network and Security for Al-Arafah Islami Bank Limited data center (AIBL)

• Implementation of EIGRP and OSPF for Mercantile Bank Ltd. data center

• Designing and Implementation of multiple area OSPF, site-to-site for National Bank Ltd. all over Bangladesh


• Implementation of ASA and BGP on ONE Bank Ltd. data center

• Implementation of ASA on Olympic Industries Ltd. data center


• Configuration of BGP between Central Bank of Bangladesh and JANATA bank, RUPALI bank, KRISHI BANK etc. for automated check clearing process.

• Provided hands on training for National Bank Ltd. & Mercantile Bank Ltd. (topics covered: Basic routing, switching and security)

• Provided hands on training on multiple area OSPF, BGPv4 and MPLS for the employees of Mango Teleservices Ltd. (International Internet Gateway)

• Contributed for Bangladesh govt. by providing extensive training for Ministry of planning SICT on routing, switching, security, hands on PIX firewall and implementing it as well

• Developed a IP networks lab using GNS3 for our research and development purpose

CISCO System Eng في American International University-Bangladesh
  • بنجلاديش
  • نوفمبر 2006 إلى ديسمبر 2008

Responsibilities
• As an authorized Instructor of CISCO networking academy conduct regular CCNA classes
• Monitoring the AIUB network infrastructure and troubleshooting problems as deemed necessary
• Structure cabling (UTP, Optical Fiber), configuring CISCO routers and switches, installing and configuring wireless access points.
• Provide comprehensive reports stating the current status of the network infrastructure and suggest ways and means to meet the growing needs of the organization.
• Installing and configuring different servers using LINUX OS and monitoring them as well.
Achievements
• Designed the structured cabling infrastructure connecting 5 campuses of AIUB using Panduit® products
• Configured CISCO routers, Layer 2/3 switches at the core network operation
• Designed and implemented VLANs throughout the university LAN using CISCO Catalyst switches
• Performed site survey, designed wireless LAN solutions using CISCO, LinkSys wireless routers and access points.

الخلفية التعليمية

بكالوريوس, B.Sc in Electrical & Electronics Engineering
  • في AMERICAN INTERNATIONAL UNIVERSITY-BANGLADESH
  • أكتوبر 2006

CGPA 3.14 out of 4. PROJECT EXPERIENCES •Performed design project and thesis on “Radio Remote Control Using DTMF Signal” •Submitted case study on WAN TECHNOLOGY •Visited Ghorashal Power Station and submitted report based on how to generate electricity. •Submitted report on ORGANIZATIONAL CULTURE OF GRAMEEN PHONE under the course of Business Communication.

الثانوية العامة أو ما يعادلها, SCIENCE
  • في B.M.H.M.H SCHOOL & COLLEGE
  • يونيو 2001

Result-76.5% Other activities 1.Young editor in QATAR'S PENINSULA newspaper. 2.Scout in QATAR.

Specialties & Skills

Routing Protocols
Cisco Catalyst Switches
Cisco Security
Cisco Wireless
Cisco Call Manager
• Switching – VTP, RSTP, STP, Etherchannel, MSTP, port security, 802.1x, SPAN, RSPAN, VOICE VLAN, MA
• Security- ASA, PIX, Security context, security policies, ACLs, IPS, content security, Next gen fir
• Voice- CUCM, Telepresence, CME, Voice gateway, MGCP, SIP, H.323, IVR, IVR Scripting, FXO, FXS, E1,
CCIE# 51390
• Troubleshooting in the field of Routing, switching, security and voice.
• Routing – OSPF, BGP, EIGRP, policy based routing, MPLS, IPv6, EEM scripting, IP services, Multicas

اللغات

الانجليزية
متمرّس
الأوردو
مبتدئ
الهندية
مبتدئ
البنغالي
متمرّس

التدريب و الشهادات

Professional (تدريب)
معهد التدريب:
CCIE# 51390, CCNP SECURITY, CCNP VOICE
تاريخ الدورة:
March 2008