Puneet Seth's Profile
Puneet Seth's Experience
| Current : |
Aricent Technologies |
|
Working from 2007 | ||
Brief summary :
. IBM DAKSH from June 2007 till Aug 2008 (where worked on network and isp support) . Aricent Technologies (FROM August 2008 - till date) Designation: Network Engineer - Security (CISCO TAC) Firewall/IPS Configuration/Troubleshooting PIX Firewall Configuration/Troubleshooting ASA 5500 series Configuration/Troubleshooting IPS/IDS Appliance Configuration/Troubleshooting IOS IPS Configuration/Troubleshooting CBAC Configuration/Troubleshooting ZBF Mitigating and Preventing Network Attacks VPN Configuration/Troubleshooting RA VPN on ASA/IOS Configuration/Troubleshooting L2L VPN on ASA/IOS Configuration/Troubleshooting Easy VPN on ASA/IOS Configuration/Understanding of WebVPN/SSL on ASA/IOS. Configuration/Understanding of DMVPN Hands on experience on IPSec/Gre over IPSEC. Monitoring SNMP management. Understanding of Monitoring tools like Cisco Works, PRTG, MRTG, Net-SNMP. Monitoring and Reporting. Sniffing for traffic analysis. Security on Switches Understanding of Switch-port Security Understanding of DHCP-Snooping Security on ROUTERS (Data plane protection, IOS FW, Control Plane Protection, Control Plane policing) Restricting/Allowing access to network resources with the help of ACLs. Understanding of NBAR, PBR. ROUTING Understanding of Dynamic Routing protocols like RIP, EIGRP and OSPF. Restricting use of network resources using following URL-filtering using Softwares Like Websense/N2H2,Ironport Blocking P2P. Blocking IM. Web-Caching with BlueCoat Proxy or Squid. | ||
| Current : |
Network Engineer-Security, Cisco Systems |
|
| Communications and Networking | ||
Working from 2007 | ||
| Previous : |
Jr. Network Engineer, Aricent Technologies |
|
Worked from 2007 to 2011 | ||
Brief summary :
. Code Affairs Technologies from June 2007 till Aug 2008 (where worked Jr. Network Engineer) . Aricent Technologies for CISCO TAC (FROM August 2008 - till date) Designation: Network Specialist (Level 2) - Security (CISCO TAC) RESPONSIBILITIES AT CISCO TAC Have been a part of Cisco TAC- Firewall/Security Team for over 3 years. Proactively monitor, review and drive the resolution of all customer Service Requests handled as an individual. Provide support for highly complex Network Upgrades and Network Migration activities. Perform root cause analysis and diagnosis of highly complex networking problems and issues. Do recreate in test labs to resolve highly complex problems. Function as a mentor to train other junior/new CSEs. Have given trainings to new joinees for ASA / IPS / ZBF Product Line. Has worked as SME within the team for ASA/IPS/ZBF and CBAC/SNMP features. Do technical and process related documentation on the Team Database so that it could be helpful to new people coming in. Act as the main focal point for highly complex network problem resolution. Contact the Escalation chain when and where required to engage right support to make sure we provide better customer service without any hindrance. Yanking Service Requests from junior CSEs whenever things just start to look going away from them (because of lack of experience and knowledge) to make sure it doesnt impacts the end customers business. Doing Case Reviews for other Engineers in team whenever see them stuck on a technical issue. Impart trainings on new keywords and new IOS codes. Firewall/IPS Configuration/Troubleshooting PIX Firewall Configuration/Troubleshooting ASA 5500 series Configuration/Troubleshooting IPS/IDS Appliance Configuration/Troubleshooting IOS IPS Configuration/Troubleshooting CBAC Configuration/Troubleshooting ZBF Mitigating and Preventing Network Attacks VPN Configuration/Troubleshooting RA VPN on ASA/IOS Configuration/Troubleshooting L2L VPN on ASA/IOS Configuration/Troubleshooting Easy VPN on ASA/IOS Configuration/Understanding of WebVPN/SSL on ASA/IOS. Configuration/Understanding of DMVPN Hands on experience on IPSec/Gre over IPSEC AAA Configuration/Troubleshooting on CISCO ACS. Providing Role Based Access to Different Users. Doing authentication, authorization and accounting for Access to Network Devices. Providing Network Access to users only based on successful authentication. Monitoring SNMP management. Understanding of Monitoring tools like Cisco Works, PRTG, MRTG, Net-SNMP, Nimsoft. Use of Net flow. Monitoring and Reporting. Sniffing for traffic analysis. L2 Security Understanding of Switch-port Security Understanding of DHCP-Snooping Private Vlans L3 Security (Data plane protection, IOS FW, Control Plane Protection, Control Plane policing) Restricting/Allowing access to network resources with the help of ACLs. Understanding of NBAR, PBR. Restricting use of network resources using following URL-filtering using Websense/N2H2, Ironport Blocking P2P. Blocking IM. Web-Caching with BlueCoat Proxy or Squid. PROTOCOL: TCP/IP, SNMP, DNS, DHCP, SMTP, ARP, FTP, TFTP, HTTP. | ||
Puneet Seth's Education
dav public school |
|
| India | |
| From 1990 to 2003 | |
Sponsored Jobs
Featured Career Adviser
Puneet's communities
|
35952 members, 590 jobs, 1219 articles, 574 questions, 1505 debates, 422 idea contests.
|
|
22054 members, 610 jobs, 812 articles, 392 questions, 599 debates, 256 idea contests.
|
|
13156 members, 54 jobs, 255 articles, 114 questions, 438 debates, 179 idea contests.
|
Puneet's
contributions
With the increasing development of network ,various network attack appears. The relationship between the attack method and the result are:- Ping Sweep:- Determine live hosts Identify devices Port Scan:- Identify operating systems , Determine potential... |
Best practices for attack mitigations:- 1. Keep patches up to date. 2.Inform users about social engineering 3.Develop a dynamic security policy 4.Disable unnecessary services (give hackers a run for their money) |
This happens quite often in all companies and the best way to prevent is using good built in gpo's in ur organization and using well known AAA servers like TACACS+ OR RADIUS. AAA SERVERS ARE USED FOR AUTHENTICATION , AUTHORIZATION ACCOUNTING. These... |
Try and use the advantages of today's world stateful based firewall. it keeps a track of all udp , tcp based connections from your local network to the internet i.e. less secure zone. and more then traffic going out of you LAN is the traffic coming... |
hire a third party or use online tools to ur luck to check what all ports i mean to say services are open on the device which is directly connected to the internet with a public ip (i.e without any natting) even known as upstream router try and use... |
Related Topics
2 debates
, 1 question
Viewers also viewed
|
(65 Points)
|
|
(261 Points)
|
|
(461 Points)
|





