Avinash Prasad Burman

[email protected] +91-9570155232 Sec-130 Noida, UP
LinkedIn: https://www.linkedin.com/in/avinash-prasad-burman-4b3a4a1b9/

PROFESSIONAL SUMMARY

To utilize my expert network skills to deliver error-free, engaging, and high-quality content for a variety of clients and industries. Experienced Network Security Administrator with 9 years in designing secure, scalable enterprise cloud environments, leading security transformations, and managing risk via NGFW Checkpoint, ASA, CSW and SIEM. I am also skilled in cost optimization, cloud migration, security compliance and leveraging IaC tools such as Terraform and ARM templates. Strong in delivering scalable, stakeholder collaboration, cloud readiness assessments, and cost-effective architectures aligned with the business needs.

WORK EXPERIENCE

Network Admin
12/2020 - Present
Tata Consultancy Services Ltd.
Understanding customer requirement from network & security POV for architecture transformation
Deployed and upgraded Checkpoint Cloud Guard firewalls across cloud and on-prem environments
Configured and managed firewalls (Check Point, Cisco ASA) and F5 LTM for perimeter defence, ensuring optimal traffic control and security across both cloud and on-prem environments
Deploy scalable cloud infrastructure on GCP and Azure, aligning with CIS benchmarks and Zero Trust frameworks, enabling secure, scalable connectivity
Migration/Cutover & replacing of Cisco ASA firewalls to Cisco CSW for improved network performance and security
Implementing firewall policies on Azure firewall, NSG, routing, VM deployment
Manage VMs and underline resources, Implement, manage, and secure storage with shared access keys, Azure backup, and Azure File Sync
Use Azure DNS domains, zones, record types, and resolution methods
Manage subscriptions, billing, and role-based access control regarding Azure users and groups
Migration planning and implementation from on premise to azure
Utilize Azure Monitor to configure alerts and review the Azure Activity Log
Integrated and optimized SIEM (Chronicle) for real-time threat detection along with SolarWinds and cloud-native monitoring tools for proactive visibility and automated event response
Implement and troubleshot VeloCloud SD-WAN for optimized, resilient, and secure branch connectivity in distributed environments
Automated security controls using Terraform and GitLab CI/CD, ensuring consistent and secure policy deployment across multi-cloud firewalls
Design, implementation, and maintenance of secure LAN/WAN and DMVPN networks using Cisco routers/switches, Meraki, and Aruba switches
Worked with Riverbed for WAN optimization, improving network performance, and Lantronix for device access and connectivity management
Moderating contracts and troubleshooting issues within Cisco ACI to enhance data centre operations
Managed DC-DR failovers, migrations, and new commissioning, ensuring high availability and continuity across both cloud and on-prem infrastructures
Administered ClearPass for network access control, Infoblox for IP address management, and DNS/DHCP services, ensuring consistent and secure IP infrastructure
Managed IAM, service accounts, and policies across multi-cloud environments, enforcing least-privilege access and policy-driven controls
Led incident response and forensic analysis using Azure Security centre, Cloud Audit Logs, and SCC for efficient threat mitigation
Advised clients and pre-sales teams on secure, scalable network and cloud solutions, aligning infrastructure with business goals and compliance requirements

EDUCATION

BCA
01/2014
Ranchi University (R.U) GPA: 68.42%
Intermediate (I. Sc)
St. Paul college
Matriculation
Carmel high school

SKILLS

Technical Skills: Azure Security (AZ-500), Azure Networking (AZ-700), Azure Fundamentals (AZ-900), Google Cloud Platform, Checkpoint Cloud Guard, Cisco Routing & Switching, Cisco ASA Firewall, Cisco Tetration, VPN Technologies, VeloCloud SD-WAN, BIG-IP LTM, Backbox Automation, SIEM Solutions, Splunk, Chronicle, Meraki Switches & Access Points, Hyper-V Virtualization, VMware Virtualization, Infoblox IPAM/DNS/DHCP, Proxy Security (McAfee Web Gateway, Cisco Umbrella), Network Protocols (TCP/IP, BGP, OSPF, NAT, PAT, ACL, NSG), Azure DNS, MS Entra ID, Multi-Factor Authentication, Conditional Access, Defender for Cloud, Role-Based Access Control, Zero Trust Network Access, Cloud Access Security Broker
Soft Skills: Incident Response, Root Cause Analysis, Risk Assessment, Mitigation Planning, Documentation & Reporting, Cross-Functional Communication, Team Leadership, Mentoring, Vendor Management
Tools: ServiceNow, CA Tools, SolarWinds, Lantronix, Antivirus Solutions (Trend Micro, McAfee)
Other: Azure Certified, CCSA Certified, CCNA Certified, Compliance Standards, Network Security Best Practices

CERTIFICATIONS

Cisco Certified Network Associate (CCNA)
Checkpoint Certified Security Administrator (CCSA)
Microsoft Certified: Azure Security Engineer Associate (AZ-500)
Microsoft Certified: Azure Network Engineer Associate (AZ-700)
Microsoft Certified: Azure Fundamentals (AZ-900)