Network Security Engineer at Deutsche Post DHL IT Services Prague
Milton Keynes, United Kingdom
A self-motivated and flexible network professional with strong IT security, project engineering and leadership skills, with over 30 years industry experience. Excellent communication skills with the ability to create and articulate IT infrastructure proposals at all levels. Well versed about new and emerging technologies. Working in the Financial, Gas, Oil, Utilities, and Communications verticals has provided the...
A self-motivated and flexible network professional with strong IT security, project engineering and leadership skills, with over 30 years industry experience. Excellent communication skills with the ability to create and articulate IT infrastructure proposals at all levels. Well versed about new and emerging technologies. Working in the Financial, Gas, Oil, Utilities, and Communications verticals has provided the ability to deliver effective and innovative network and server infrastructure solutions, working to demanding deadlines and high exit quality standards. Has a strong track record of delivering premium stock market communications feeds for high end clients all over the world. Has practical knowledge of ITIL v3 methodologies and processes and is also an, analytical, thorough, knowledgeable and target focused network professional with a good very good technical aptitude, Possesses the desire and motivation to gain more knowledge through work experience and industry career certifications specializing in network design, support, and security. Committed to building close and positive relationships with clients, vendors and colleagues alike, a positive attitude, integrity and the urgency and persistence that enable the conversion of a proposition into the end result. Specialties: Network & Infrastructure Project Management. Network & Infrastructure Design. Network & Infrastructure Troubleshooting. Network Security Using Palo Alto, Checkpoint and Juniper Next Generation Firewalls along with Cisco ASA products. Cisco Routing and Switching Technologies Cisco Nexus 5000/7000, NexOS, Fabric Extenders F5 BigIP LTM and GTM platforms Bluecoat ProxySGNetwork Security Engineer @ • Responsible for the technical review and approval of the network designs for the provision of communications for new Site to Site VPN’s, Client VPN’s, Outbound Proxy, Application Inbound, Segmentation and Firewall Miscellaneous requests for other DPDHL remote offices, and external customers, before being passed to the security review process. • Responsible post security approval for the setup and configuration for new Site to Site VPN and Client VPN requests, terminating on the tier one Juniper Netscreen or SRX and Cisco VPN Concentrator platforms to allow external traffic through to the DPDHL internal resources. • Responsible for the setup and configuration of the Site to Site, and Client VPN security policy for the internal tier two and three Checkpoint R77.50 platforms, this is where the port specific part of the policy is applied. Tier three configuration is done when higher classification resources are required. • Responsible for the setup and configuration for new internet bound proxy requests, using Bluecoats ProxySG platform to allowing HTTP/HTTPS,FTP and SLIP proxied access to internet resources. • Responsible for the setup and configuration for new Application Inbound requests, which facilitate access to DPDHL public web services via a plethora of different domain names or aliases. This involves configuring the Checkpoint R77.50 internet firewall, external F5 Big IP GTM devices for management of DNS records, internal tier two F5 BigIP LTM load balancers and Checkpoint firewalls to allow access to less sensitive DPDHL resources, and tier three segmentation Checkpoint Firewall and F5 BigIP LTM load balancers, this is required for access to data with a higher classification. • Responsible for troubleshooting all communication links using tools such as, Linux Backtrack nmap/dig, Junos CLI traceoptions, Juniper SceenOS CLI flow filter and debug, Juniper NSM, CP’s Smartview Tracker, Linux syslog, F5 BigIP console, Bluecoat Console and BT IPcontrol. Platform. From August 2014 to Present (1 year 5 months) Network Security Consultant @ • Responsible for tightening the security of Brainjuicer’s global Sonicwall firewall infrastructure in line with ISO27001 standard. This included rationalising the current security policy and ensuring that all firewall modules had renewed subscriptions for the IPS, Anti-Spyware, Anti-BOT, DLP modules. • Responsible for trouble-shooting all network issues. The main issues being the lack of Spanning-tree on dual connected switches, which caused broadcast storms on the network. • Responsible for evaluating several Palo Alto UTM appliances against Check Point’s UTM appliances. • Setup and configuration of Palo Alto PA-200, PA-500, and PA3050 UTM appliances, running PAN-OS 6.03 and testing for data traffic through-put performance, and ease of configuration of IPSEC site to site VPN’s and Client /SSL VPN’s • Responsible for assessing Palo Alto’s APP-ID, USER-ID and Content-ID engines and see how they worked and then compared those functions against the similar functions on the Checkpoint UTM appliances. • Setup and configuration of Check Point UTM 2200 and 4800 appliances, running R77.10 and testing for data traffic through-put performance, and ease of configuration of IPSEC site to site VPN’s and Client /SSL VPN’s • Responsible for designing and setting up a test lab consisting of Palo Alto and Check Point UTM appliances Cisco Switches and routers. • Responsible for upgrading the Palo Alto and Check Point appliances to the latest OS and ensuring that the appliances had internet connectivity to ensure automatic application ID signature and Anti-BOT/Spyware signature were always up to date. • Responsible for configuring span-ports on the production LAN switches so that the evaluation appliances could get a copy of the current network data traffic to assess the risks and also to highlight how many more issues these UTM appliances actually picked up. • Work with Check Point and Palo Alto engineers to get the best out of the new PAN-OS 6.03 and R77.10 operating systems. From May 2014 to August 2014 (4 months) Network Specialist @ • Responsible for re-building Nokia IPSO HA Cluster after incorrect operation caused VPN performance and connectivity issues with network file shares and Microsoft outlook access. • Responsible for the setup and configuration of communications links using VPN’s and IPOI links terminating on the Checkpoint IPSO R71.30 platforms • Responsible for trouble-shooting Routing, Switching and security issues on BwD’s global network, which utilises HP 7500 IRF solution in the core of the LAN on each site, with Janet MPLS WAN connections for the internet • Performing a network and security audit and creating documentation and Visio diagrams to enable the 3rd line support of BwD’s network infrastructure. • Responsible for the IP address and VLAN change Bwd’s fifteen storey tower block and Old town Hall to move away from a single VLAN spanning More than one building and also to rationalise the IP address space. • Working with and troubleshooting on a daily basis all routing issues involving OSPF and BGP using Wireshark protocol analyser. • Build new HP IRF virtual switch stacks to replace legacy Cisco switching equipment. • Deal with BAU network related issues to ensure faults and interruptions are swiftly rectified in compliance with the service levels. From September 2013 to May 2014 (9 months) Blackburn, United KingdomNetwork Consultant @ • Responsible for trouble-shooting Routing, Switching and security issues on Apple’s global network, which utilises 6500 VSS solution in the core of the LAN on each site, with Verizon and C&W MPLS WAN connections for the internet • Carry out moves, adds and changes to the datacomms infrastructure as required by the business. • Communicate and support the process for investigation and resolution of datacomms problems to ensure faults and interruptions are swiftly rectified in compliance with the service levels, and to liaise with suppliers when necessary • Configuration of Cisco 6509E Series Catalyst switches and other network devices as required. • Working with and troubleshooting on a daily basis all routing issues involving OSPF and BGP • Responsible for auditing Apples’s Global network in order to create up to date network diagrams. • Responsible for Infoblocks proactive network monitoring and troubleshooting using the historical statistics for network devices. • Responsible for creating and implementing Apple change requests using ITIL change management Methodology. From June 2013 to September 2013 (4 months) London, United KingdomSenior Network Consultant @ Performing a network and security audit and creating documentation and Visio diagrams to enable the 3rd line support of VSG's network infrastructure. From April 2013 to June 2013 (3 months) Northampton, United KingdomSenior Network Engineer @ • Responsible for trouble-shooting Routing, Switching and security issues on Tate and Lyle’s global network utilising Cisco Nexus 5000 series and 2000 fibre extenders. • Responsible for managing WAN service provider Orange for any global WAN issues from start to finish. • Provide 3rd Line support for datacomms infrastructure to ensure high availability. • Carry out moves, adds and changes to the datacomms infrastructure as required by the business. • Communicate and support the process for investigation and resolution of datacomms problems to ensure faults and interruptions are swiftly rectified in compliance with the service levels, and to liaise with suppliers when necessary • Configuration of Cisco 6509E Series Catalyst switches and other network devices as required. • Working with and troubleshooting all routing issues involving OSPF and BGP • Responsible for auditing Tate and Lyle’s Global network in order to create up to date network diagrams. • Responsible for Solar-winds Orion proactive network Monitoring and trouble-shooting using the historical statistics for network devices. • Responsible for creating and implementing Tate and Lyle change requests using ITIL change management processes as and when required. From January 2013 to March 2013 (3 months) London, United KingdomCisco TAC Engineer @ • Responsible for trouble-shooting routing, switching issues on the full Cisco router and switch product range and also security issues on the full Cisco PIX/ASA and VPN Concentrator product range for ONI Plc’s customers. • Responsible for creating and implementing customer change requests as and when required. From June 2012 to November 2012 (6 months) Senior Network Security Specialist @ • Responsible for full project lifecycle using ITIL v3 methodologies for new EMEA/APAC stock exchange feeds being brought to market by Thomson Reuters. • Responsible for the delivery of the following feeds to our test and production environments; Tokyo SE Arrowhead, London SE, Turquoise Derivatives, Equities and Millennium, BATS, NYSE Euronext, Equiduct, Dow Jones, Burgundy, TOM Genium INET, NASDAQ OMX, NGM, Deutsche Boerse CEF, XETRA, Bogata SETFX, Swiss GLOX and DRT2F, D2F Fiji and many more. • Responsible for the network designs for the provision of communications (VPN, Leased lines, Service Provider MPLS, and IPOI) links to the various stock exchanges globally. • Responsible for the setup and configuration of communication links using VPN’s and IPOI links on the Checkpoint R65/R75 platforms, and also MPLS and Leased lines, which terminated locally on Cisco 7600 routers and then handed off to separate VLAN’s on Cisco 6500's for distribution. • Responsible for the build, setup and performance tweaking of back-end Windows 2008/Linux servers to handle the market data and ticker data. • Responsible for liaising with the stock exchanges and internal developers to create the necessary security policies on the Checkpoint platforms for the various market data feeds. • Responsible for performance testing and monitoring of market data feeds and communication links using tools such as MRTG, PRTG, IPerf, JPerf, Wireshark and Solarwinds. • Responsible for the routing, trouble-shooting and management of the IP multicast data streams and also the TCP back-link recovery and re-request channels for the exchange feeds. • Responsible for drawing up the development and production network designs. • Responsible for the build, setup and implementation of new Linux SPLAT Checkpoint firewalls. • Magazine article regarding TOM Genium INET feed I was responsible for getting to market before Bloomberg - http://www.automatedtrader.net/headlines/76062/reuters-includes-tom-market-data From June 2009 to June 2012 (3 years 1 month) Senior Network Engineer @ Responsible for managing the migration of MPLS services provided by Colt Telecom for UK regional and European based international offices and Singtel for Asia Pacific and USA based International offices to MPLS services provided by Verizon for all offices. Total of 18 International offices. Responsible the planning and migration/implementation of new scaleable high availability infrastructure solutions per office using ITIL methodologies and adhering to Cisco’s three tier hierarchical design principles utilizing high-end Cisco Catalyst layer 2 and 3 switches. Installation, configuration and troubleshoot Cisco 1700, 2600, 3700 routers, 2950, 3550, 3750, 4500 series catalyst switches. Installation, configuration and troubleshoot Supervisor VI, IV layer 3 switch modules for Cisco 4507E switches also responsible for the setup of VTP, VLAN Trunks, Data VLAN’s, VOIP VLAN’s and QoS configurations for voice and video traffic. Responsible for testing and recording performance of newly supplied Verizon MPLS circuits. Responsible for testing and recording performance of voice and video QoS characteristics end to end across the MPLS WAN. VOIP and Video Conference call quality end to end testing with users and 3i / Avaya ASE engineers. Responsible for failover testing of Verizon MPLS circuits and measuring and recording performance of delay sensitive thin client sessions back to UK based data centre. Responsible for the configuration of Peer to Peer Remote access VPN’s and L2L VPN’s using PPTP and GRE IPSEC Tunnels on Cisco 7301 router with hardware acceleration modules. Responsible for the configuration and migration of PIX / ASA5505 / ASA5510 security Appliances to newly migrated LAN Infrastructure per office. Responsible for the configuration and migration of Cisco 2006 or 4400 Wireless LAN Controllers to newly migrated LAN Infrastructure per office. Responsible for supplier management of Verizon Colt Telecom and Singtel, MPLS WAN and ADSL service providers. From August 2008 to June 2009 (11 months) Senior Network Engineer @ Responsible for upgrading the collapsed Distribution/Core of the LAN into separate Core and Distribution layers. Migration of Access layer form Layer 2 to Layer 3 using EIGRP Stub Networks and equal cost routing. Provide 3rd Line support for datacomms infrastructure to ensure high availability. Carry out moves, adds and changes to the datacomms infrastructure as required by the business. Communicate and support the process for investigation and resolution of datacomms problems to ensure faults and interruptions are swiftly rectified in compliance with the service levels, and to liaise with suppliers when necessary Configuration of Cisco 6509E Series Catalyst switches and other network devices as required. Installation and setup of Cisco 7941 and 7961 IP phones. Setup of VOIP QoS and CoS and Policy Maps for new IP Telephony installations. Troubleshoot and rectify IP telephony issues Use of Cisco Call Manager to modify and manage Cisco IP telephones. Working with and troubleshooting all routing issues involving OSPF and BGP Conduct regular network audits, performance checks and reviews to ensure maximum network stability and reliability at all times. Involvement in projects to sustain, extend or improve the efficiency, capacity and quality of the datacomms Infrastructure. Create and amend Problem Determination Guides. Create, review and amend Network schematics/documentation Ensure the ITIL change control procedures are followed for live systems Provide assistance with Engineering design projects as required From September 2007 to July 2008 (11 months) Senior Network Engineer @ Provide 3rd Line support for Backbone Network and LLU (Local Loop Unbundling) role out. Technical assessments and configuration analysis of Network faults. Implement, document and support the LLU role out in the UK Configuration of Cisco 10000 Series Routers, switches and other network devices as required. Setup of new Multi-service access nodes (MSAN) and Digital Subscriber line access Multiplexers (DSLAM) for each Telephone Exchange across the UK. Troubleshoot and rectify and communication problems encountered within a telephone exchange. Working with and troubleshooting all routing issues involving OSPF and BGP Conduct regular network audits, performance checks and reviews to ensure maximum network stability and reliability at all times. To provide emergency break fix solutions while primarily working with Cisco and Huawei but also other vendors to achieve a more permanent workaround or fix. Create and amend Problem Determination Guides. Liaise and assist internal departments (Architecture, Core Design Group, etc). Liaise with customers providing reports and analysis of faults. Provide assistance with Engineering design projects as required Create, review and amend Network schematics/documentation From March 2006 to September 2007 (1 year 7 months) 3rd Line Network Engineer @ -Responsible for the design, planning and implementation of scalable high availability infrastructure solutions adhering to Cisco’s three tier hierarchical design principles utilising high-end Cisco Catalyst layer 2 and 3 switches. -Installation, configuration and troubleshoot Cisco 1700, 2600, 3700 routers, 2950, 3550, 3750, 4500 series catalyst switches. -Installation, configuration and troubleshoot Supervisor V layer 3 switch modules for 4500 series switches also responsible for the setup of VTP, VLAN Trunks, Data VLAN’s VOIP VLAN’s and QoS configurations for Voice traffic -Working with and troubleshooting all routing issues involving OSPF and RIPv2 -Responsible for the implementation of Network Instruments Network Observer single/multi-segment LAN WAN analyser, trouble-shooting and network performance trending tools. -Responsible for connecting F5 Big IP load balancers to the current network infrastructure to load balance traffic to Share-point servers. -Installation and configuration of Cisco Catalyst 3750 PoE for use with newly installed Avaya VOIP solution. -Installation and configuration of Avaya VOIP Telephones. VOIP call quality testing with users and Avaya ASE engineers. -Responsible for the implementation and up keep of access-list security on all internal layer three switches and external routers. -Responsible for over seeing 2nd and 3rd line day to day operations -Responsible for Nokia / Checkpoint firewall rule additions, deletions and changes. -Responsible for raising ITIL approved change requests for all network related changes. -Responsible for monitoring and troubleshooting WAN connections over MPLS for consistent performance due to the extensive use of Windows Thin Client, which is delay sensitive IP traffic. Liaising with colt an BT to get any performance issues fixed. Responsible for supplier management of Colt Telecom and BT who provided MPLS WAN and ADSL services. From August 2005 to March 2006 (8 months) 3rd line Support Engineer @ Responsible for the design, planning and implementation of scalable high availability infrastructure solutions adhering to Cisco’s three tier hierarchical design principles utilising high-end Cisco Catalyst layer 2 and 3 switches. Installation, configuration and troubleshoot Cisco 1700, 2600, 3700 routers, 2950, 3550, 3750, 5500, and 6500 series catalyst switches. Installation, configuration and troubleshoot MSFC and MSFC II layer 3 switch modules for 6500 series switches and RSM modules for 5500 series also responsible for the setup of VTP, VLAN Trunks and VLAN’s Working with and troubleshooting all routing issues involving OSPF and RIPv2 Responsible for, the installation, set-up, configuration and troubleshooting Cisco Content Switches 11504 and 11506 with secure content accelerators. Also Global Site Selectors 4480 and 4490. Theses devices were used to load balance the internet/intranet traffic across a resilient platform for the NHS SPINE. Responsible for the implementation of Network Instruments Network Observer single/multi-segment LAN WAN analyser, trouble-shooting and network performance trending tools. Responsible for the implementation and upkeep of access-list security on all internal layer three switches and external routers. Responsible for over seeing 2nd and 3rd line day to day operations Providing out of hours support for all 3rd line escalations Responsible for providing 2nd/3rd line support to the NHS SPINE Responsible for providing 3rd line support for all IP Data connections from CPE routers to PE devices Proactive monitoring using network management tools such as Omnibus and Smarts. Responsible for all CPE point to point connections and terminations Responsible for the day-to-day management and trouble-shooting of National NHS Spine network using tools such as HP Openview, Ciscoworks and Solar winds. From August 2003 to August 2005 (2 years 1 month) Project Engineer @ Responsible for scope and definition of LAN/WAN upgrade projects assigned to myself. Once a project had been scoped and defined by myself, I was then responsible for raising the Project Implementation plan for sign off by management. . Responsible for attending meetings with third parties such as Cisco Gold Partners and BT to ensure that services such as Leased lines and LES 100/1000 circuits and Cisco equipment were delivered on time to ensure project deadlines were adhered to. Responsible for the design, planning and implementation of high availability infrastructure solutions adhering to Cisco’s three tier hierarchical design principles utilising high-end Cisco Catalyst layer 2 and 3 switches. Responsible for installation, configuration and troubleshooting Cisco 1700, 2600, 3640, 3700, 4000, 7200 routers, Cisco Catalyst 2900,3550, 3750, 5500, 6500 switches. Responsible for the installation, set-up and configuration of MSFC and MSFC II layer 3 switch modules for 6500 series switches and route switch modules on 5500’s utilising EIGRP for equal cost routing and HSRP and STP for platform redundancy. Responsible creating new VLAN’s. This included editing and updating Checkpoint Firewall – 1, security policies to allow access to these feeds for specific IP Subnets. Responsible for the implementation of Network Instruments Network Observer single/multi-segment LAN WAN analyser, trouble-shooting and network performance trending tools. Responsible for the installation of Network Observer software based RMON/RMON2 and Advanced probes globally to enable our team to trouble-shoot and provide performance analysis and statistics in real time for remote sites in the Far East, USA, South America and Australasia. Responsible Set-up of test Cisco Aironet Wireless LAN for review by management to assess for suitability for company wide use. From January 2003 to August 2003 (8 months) Technical Project Lead Engineer @ Responsible for the management, deployment and documentation of Checkpoint SecurRemote clients to all Logicom remote access users across Europe. Responsible for the installation and configuration for RSA ACE Authentication Server for the management of the RSA SecureID authentication key fobs and tokens which were issued to each remote access user. Responsible for the addition of new security policy and static routes on Cisco PIX and Checkpoint firewalls as part of the remote access and network spilt projects. Responsible for Logicom’s UK/European network split project. This involved separating Logicom’s network infrastructure from ICL’s as part of the firm’s management buyout. Responsible for the installation, set-up and configuration of 3500, 4000, and 6500 series catalyst switches. Responsible for the installation, set-up and configuration of MSFC and MSFC II layer 3 switch modules for 6500 series switches. Responsible for attending meetings with third parties such as Cisco Gold Partners and BT to ensure that services such as Leased lines and LES 100/1000 circuits and Cisco equipment were delivered on time to ensure project deadlines were adhered. Responsible for drawing and maintaining network drawings using Visio 2000. From July 2001 to December 2002 (1 year 6 months) Project Lead engineer @ Responsible for scope and definition of LAN/WAN upgrade projects assigned to myself on behalf of EDS for OTI. Once a project had been scoped and defined by myself, I was then responsible for raising the Project Authorisation Request for sign off by the customer (OTI) and supervising the project through to completion. Responsible for reporting assigned project status to my superiors as well as the customer’s management team. Responsible for managing the staff and resources assigned to my projects. Responsible for attending meetings with third parties such as Dimension Data, MCI WorldCom and BT to ensure that services such as Leased lines and LES 100/1000 circuits and Cisco equipment were delivered on time to meet project deadlines. Responsible for the design, planning and implementation of high availability infrastructure solutions adhering to Cisco’s three tier hierarchical design principles utilising high-end Cisco Catalyst layer 2 and 3 switches. Responsible for setting up test environments utilising the equipment assigned to the project to ensure that the solution put forward was suitable for the customer. This test environment and configuration had to be approved by the customer (OTI) to ensure that it complied with the companies IT strategy. Responsible for the installation, set-up and configuration of 3500, 4000, and 6500 series catalyst switches. Responsible for the installation, set-up and configuration of MSFC and MSFC II layer 3 switch modules for 6500 series switches utilising OSPF for equal cost routing and HSRP and STP for platform redundancy. Responsible creating new VLAN’s for external live data feeds for OTI Gas and Oil Trading Systems. This included editing and updating Checkpoint Firewall – 1, security policies and scripts to allow access to these feeds for specific IP Subnets. Responsible for the backing up of the various configuration files to central management database for the switches and MSFC’s, which were installed by me. From July 2000 to July 2001 (1 year 1 month) Network Engineer @ From April 1999 to July 2000 (1 year 4 months) Network Engineer @ From September 1998 to April 1999 (8 months) Network/Systems Engineer @ From October 1997 to September 1998 (1 year) Network Engineer @ From March 1997 to October 1997 (8 months) 2nd line Network Engineer @ From August 1996 to March 1997 (8 months) Systems Engineer @ From August 1995 to August 1996 (1 year 1 month) CCNA, CCDA, CCNP @ Self Study (Professional Qualifications) From 2002 to 2004 Stantonbury Campus From 1984 to 1986 Cornwall Comprehensive From 1981 to 1984 Becoming an effective project manager @ The Open University Adrian Greaves is skilled in: Cisco Technologies, Data Center, ITIL, WAN, CCNP, VMware, Firewalls, VoIP, Virtualization, CCNA, Network Security, Juniper, Routers, Switches, OSPF
Deutsche Post DHL IT Services
Network Security Engineer
August 2014 to Present
Brainjuicer Group PLC
Network Security Consultant
May 2014 to August 2014
Blackburn with Darwen Borough Council
Network Specialist
September 2013 to May 2014
Blackburn, United Kingdom
Apple
Network Consultant
June 2013 to September 2013
London, United Kingdom
VSG Vision Security Group
Senior Network Consultant
April 2013 to June 2013
Northampton, United Kingdom
Tate & Lyle
Senior Network Engineer
January 2013 to March 2013
London, United Kingdom
ONI Plc.
Cisco TAC Engineer
June 2012 to November 2012
Thomson Reuters
Senior Network Security Specialist
June 2009 to June 2012
3i Plc
Senior Network Engineer
August 2008 to June 2009
ITV
Senior Network Engineer
September 2007 to July 2008
Tiscali
Senior Network Engineer
March 2006 to September 2007
3i Group plc
3rd Line Network Engineer
August 2005 to March 2006
BT Exact (NHS Spine Project)
3rd line Support Engineer
August 2003 to August 2005
Elsevier Science - Oxford
Project Engineer
January 2003 to August 2003
Logicom ILC Limited
Technical Project Lead Engineer
July 2001 to December 2002
BP
Project Lead engineer
July 2000 to July 2001
3Com
Network Engineer
April 1999 to July 2000
KPMG
Network Engineer
September 1998 to April 1999
London Electricity
Network/Systems Engineer
October 1997 to September 1998
JP Morgan
Network Engineer
March 1997 to October 1997
KPMG
2nd line Network Engineer
August 1996 to March 1997
Vodafone
Systems Engineer
August 1995 to August 1996
• Responsible for the technical review and approval of the network designs for the provision of communications for new Site to Site VPN’s, Client VPN’s, Outbound Proxy, Application Inbound, Segmentation and Firewall Miscellaneous requests for other DPDHL remote offices, and external customers, before being passed to the security review process. • Responsible post security approval for the... • Responsible for the technical review and approval of the network designs for the provision of communications for new Site to Site VPN’s, Client VPN’s, Outbound Proxy, Application Inbound, Segmentation and Firewall Miscellaneous requests for other DPDHL remote offices, and external customers, before being passed to the security review process. • Responsible post security approval for the setup and configuration for new Site to Site VPN and Client VPN requests, terminating on the tier one Juniper Netscreen or SRX and Cisco VPN Concentrator platforms to allow external traffic through to the DPDHL internal resources. • Responsible for the setup and configuration of the Site to Site, and Client VPN security policy for the internal tier two and three Checkpoint R77.50 platforms, this is where the port specific part of the policy is applied. Tier three configuration is done when higher classification resources are required. • Responsible for the setup and configuration for new internet bound proxy requests, using Bluecoats ProxySG platform to allowing HTTP/HTTPS,FTP and SLIP proxied access to internet resources. • Responsible for the setup and configuration for new Application Inbound requests, which facilitate access to DPDHL public web services via a plethora of different domain names or aliases. This involves configuring the Checkpoint R77.50 internet firewall, external F5 Big IP GTM devices for management of DNS records, internal tier two F5 BigIP LTM load balancers and Checkpoint firewalls to allow access to less sensitive DPDHL resources, and tier three segmentation Checkpoint Firewall and F5 BigIP LTM load balancers, this is required for access to data with a higher classification. • Responsible for troubleshooting all communication links using tools such as, Linux Backtrack nmap/dig, Junos CLI traceoptions, Juniper SceenOS CLI flow filter and debug, Juniper NSM, CP’s Smartview Tracker, Linux syslog, F5 BigIP console, Bluecoat Console and BT IPcontrol. Platform.
What company does Adrian Greaves work for?
Adrian Greaves works for Deutsche Post DHL IT Services
What is Adrian Greaves's role at Deutsche Post DHL IT Services?
Adrian Greaves is Network Security Engineer
What industry does Adrian Greaves work in?
Adrian Greaves works in the Information Technology and Services industry.
Who are Adrian Greaves's colleagues?
Adrian Greaves's colleagues are Lars Pappe, Daniel Kautz, Bastian Porzner, Katrin Tremel, Joel Rambaldini, Robin Prendes, and Roland Wrede
Enjoy unlimited access and discover candidates outside of LinkedIn
One billion email addresses and counting
Everything you need to engage with more prospects.
ContactOut is used by
76% of Fortune 500 companies