Senior Network Security Engineer
NGFW**: Cisco ASA, Firepower FTD, Fortigate. Expert in VPN (IPsec/SSL), IPS/IDS, and Zero Trust design.
2. **Network Access & Segmentation**: Cisco ISE, 802.1X, NAC, Microsegmentation. I lock down networks so threats can't move laterally.
3. **SOC & Incident Response**: SIEM (Splunk, IBM QRadar), Threat Hunting, Forensics. I wrote the IR playbooks that cut MTTR from 6 hours to 45 minutes.
4. **Vulnerability & Compliance**: Nessus, Qualys, ISO 27001, NIST CSF, Hardening (CIS Benchmarks).
5. **Infrastructure**: BGP, OSPF, Data Center Security, DR/BCP Planning.
CERTIFICATIONS: CCNP Security, CCNA Security, CCNSP, CSE1 & CSE2.