Build your professional network on facebook via our app Go to app
Puneet Seth Network Engineer-Security, Cisco Systems
 
Puneet Seth's Profile
Puneet Seth
Network Engineer-Security, Cisco Systems
Cisco Systems
confidential
confidential
New Delhi / NCR, India
Toostep 
Professional summary

2 YEARS

Puneet Seth's Experience
Current :

Aricent Technologies

Working from 2007

Brief summary :

. IBM DAKSH from June 2007 till Aug 2008 (where worked on network and isp support) . Aricent Technologies (FROM August 2008 - till date) Designation: Network Engineer - Security (CISCO TAC) Firewall/IPS Configuration/Troubleshooting PIX Firewall Configuration/Troubleshooting ASA 5500 series Configuration/Troubleshooting IPS/IDS Appliance Configuration/Troubleshooting IOS IPS Configuration/Troubleshooting CBAC Configuration/Troubleshooting ZBF Mitigating and Preventing Network Attacks VPN Configuration/Troubleshooting RA VPN on ASA/IOS Configuration/Troubleshooting L2L VPN on ASA/IOS Configuration/Troubleshooting Easy VPN on ASA/IOS Configuration/Understanding of WebVPN/SSL on ASA/IOS. Configuration/Understanding of DMVPN Hands on experience on IPSec/Gre over IPSEC. Monitoring SNMP management. Understanding of Monitoring tools like Cisco Works, PRTG, MRTG, Net-SNMP. Monitoring and Reporting. Sniffing for traffic analysis. Security on Switches Understanding of Switch-port Security Understanding of DHCP-Snooping Security on ROUTERS (Data plane protection, IOS FW, Control Plane Protection, Control Plane policing) Restricting/Allowing access to network resources with the help of ACLs. Understanding of NBAR, PBR. ROUTING Understanding of Dynamic Routing protocols like RIP, EIGRP and OSPF. Restricting use of network resources using following URL-filtering using Softwares Like Websense/N2H2,Ironport Blocking P2P. Blocking IM. Web-Caching with BlueCoat Proxy or Squid.

Current :

Network Engineer-Security, Cisco Systems

Communications and Networking

Working from 2007

Previous :

Jr. Network Engineer, Aricent Technologies

Worked from 2007 to 2011

Brief summary :

. Code Affairs Technologies from June 2007 till Aug 2008 (where worked Jr. Network Engineer) . Aricent Technologies for CISCO TAC (FROM August 2008 - till date) Designation: Network Specialist (Level 2) - Security (CISCO TAC) RESPONSIBILITIES AT CISCO TAC Have been a part of Cisco TAC- Firewall/Security Team for over 3 years. Proactively monitor, review and drive the resolution of all customer Service Requests handled as an individual. Provide support for highly complex Network Upgrades and Network Migration activities. Perform root cause analysis and diagnosis of highly complex networking problems and issues. Do recreate in test labs to resolve highly complex problems. Function as a mentor to train other junior/new CSEs. Have given trainings to new joinees for ASA / IPS / ZBF Product Line. Has worked as SME within the team for ASA/IPS/ZBF and CBAC/SNMP features. Do technical and process related documentation on the Team Database so that it could be helpful to new people coming in. Act as the main focal point for highly complex network problem resolution. Contact the Escalation chain when and where required to engage right support to make sure we provide better customer service without any hindrance. Yanking Service Requests from junior CSEs whenever things just start to look going away from them (because of lack of experience and knowledge) to make sure it doesnt impacts the end customers business. Doing Case Reviews for other Engineers in team whenever see them stuck on a technical issue. Impart trainings on new keywords and new IOS codes. Firewall/IPS Configuration/Troubleshooting PIX Firewall Configuration/Troubleshooting ASA 5500 series Configuration/Troubleshooting IPS/IDS Appliance Configuration/Troubleshooting IOS IPS Configuration/Troubleshooting CBAC Configuration/Troubleshooting ZBF Mitigating and Preventing Network Attacks VPN Configuration/Troubleshooting RA VPN on ASA/IOS Configuration/Troubleshooting L2L VPN on ASA/IOS Configuration/Troubleshooting Easy VPN on ASA/IOS Configuration/Understanding of WebVPN/SSL on ASA/IOS. Configuration/Understanding of DMVPN Hands on experience on IPSec/Gre over IPSEC AAA Configuration/Troubleshooting on CISCO ACS. Providing Role Based Access to Different Users. Doing authentication, authorization and accounting for Access to Network Devices. Providing Network Access to users only based on successful authentication. Monitoring SNMP management. Understanding of Monitoring tools like Cisco Works, PRTG, MRTG, Net-SNMP, Nimsoft. Use of Net flow. Monitoring and Reporting. Sniffing for traffic analysis. L2 Security Understanding of Switch-port Security Understanding of DHCP-Snooping Private Vlans L3 Security (Data plane protection, IOS FW, Control Plane Protection, Control Plane policing) Restricting/Allowing access to network resources with the help of ACLs. Understanding of NBAR, PBR. Restricting use of network resources using following URL-filtering using Websense/N2H2, Ironport Blocking P2P. Blocking IM. Web-Caching with BlueCoat Proxy or Squid. PROTOCOL: TCP/IP, SNMP, DNS, DHCP, SMTP, ARP, FTP, TFTP, HTTP.

Puneet Seth's Education

dav public school

India
From 1990 to 2003
 
 
 
 
Puneet's communities
35952 members, 590 jobs, 1219 articles, 574 questions, 1505 debates, 422 idea contests.
22054 members, 610 jobs, 812 articles, 392 questions, 599 debates, 256 idea contests.
13156 members, 54 jobs, 255 articles, 114 questions, 438 debates, 179 idea contests.
Puneet's contributions
With the increasing development of network ,various network attack appears. The relationship between the attack method and the result are:- Ping Sweep:- Determine live hosts Identify devices Port Scan:- Identify operating systems , Determine potential...
Best practices for attack mitigations:- 1. Keep patches up to date. 2.Inform users about social engineering 3.Develop a dynamic security policy 4.Disable unnecessary services (give hackers a run for their money)
This happens quite often in all companies and the best way to prevent is using good built in gpo's in ur organization and using well known AAA servers like TACACS+ OR RADIUS. AAA SERVERS ARE USED FOR AUTHENTICATION , AUTHORIZATION ACCOUNTING. These...
Try and use the advantages of today's world stateful based firewall. it keeps a track of all udp , tcp based connections from your local network to the internet i.e. less secure zone. and more then traffic going out of you LAN is the traffic coming...
hire a third party or use online tools to ur luck to check what all ports i mean to say services are open on the device which is directly connected to the internet with a public ip (i.e without any natting) even known as upstream router try and use...
 
Related Topics
Share open source security, security threats, security issues, application...
2 debates , 1 question