You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Alassane TallAT

Alassane Tall

NETWORK/SECURITY/CLOUD AZURE ARCHITECT certified

€450/day
Paris, FR
15+ years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Alassane

Network, security, and AZURE cloud architect with over 19 years of experience, certified in Microsoft AZURE, AWS, FORTINET, HPE/ARUBA, and TERRAFORM. I am ready to leverage all my skills and experience to meet your projects, including:

• ON-PREMISE and AZURE CLOUD network architecture
• Network and security architecture for small, medium, and large sites
• Definition of security policies, securing networks and IS
• Writing of Technical Design Documents (DAT) and Low-Level Designs (LLD)
• Management of cloud migration projects and design of Azure Landing Zones, ensuring environment compliance and writing associated documentation.
• Evolution of campus and datacenter IS
• Handling obsolescence
• Operation of network and security equipment.
• Writing operational procedures
  • French

    Native or bilingual

  • English

    Native or bilingual

Can work on-site
Paris (up to 50km)

Experience

  • KRALISS
    Network and AZURE Cloud Architect
    DIGITAL AND IT
    October 2019 - March 2025 (5 years and 4 months)
    Courbevoie, France
    - Definitions / Studies / Implementations / Deployment / Administration of LAN, WAN, SD-WAN, Campus WIFI, industrial sites, and Datacenter architectures.

    - SDWAN: Design and deployment of single-site and multi-site SD-WAN networks in client-server mode and implementation of IPsec VPNs for partner connections and SD-WAN clients.

    - Deployment and configuration of FORTINET firewalls 80F, 200E, 600E, 1100E, 2500E and integration into FORTIMANAGER

    - Deployment and configuration of PALO ALTO firewalls PA-410R, PA-800, PA-3400, PA-7000 and integration into PANORAMA

    - Analysis of gaps between target and existing architecture, then design/optimization of target N2 and N3 architectures in VISIO format.

    - AZURE CLOUD: Migration of part of the ON-PREMISE infrastructure to AZURE, including:
    => Deployment of VNETs segmented into multiple SUBNETs.
    => Creation of virtual WANs connected to virtual HUBs
    => Deployment of HUB AND SPOKE architecture
    => Interconnection of sites to AZURE CLOUD via S2S and P2S VPNs
    => Deployment of UDRs (Route Tables)
    => Deployment of ALB (Azure Load Balancer) virtual firewalls (AZURE firewall and FORTINET)

    - Feasibility studies for migration projects (LAN, WAN, and WIFI) in collaboration with stakeholders.

    - Launching POCs, monitoring, and validation of different project stages.

    - Writing Technical Design Documents (DAT)/High-Level Designs (HLD) for core/distribution/access switches
    => CISCO CATALYST C92XX, C93XX, C94XX, C95XX.
    => ARUBA HPE 55XX, ARUBA OS 29XX, ARUBA CX 63XX and 83XX.

    - Writing WIFI 6 DAT and deployment and migration from WIFI 5 to WIFI 6 on user sites. WIFI controllers 72XX, WIFI APs AP-3XX, AP-5XX

    - Writing WIFI Android/IOS DAT (dedicated to corporate BYOD mobile devices - COPE – COBO – COSU) coupled with the AIRWATCH MDM (Mobile Device Management) solution for enrollment, configuration, and security of mobile devices
    Cloud Azure Terraform Fortinet Palo Alto WIFI 6
  • BANQUE DE FRANCE / GRDF / BNP PARIBAS / BOURSORAMA BANQUE / SFR
    Network and Security Architect
    BANKING AND INSURANCE
    August 2006 - September 2019 (13 years and 2 months)
    Courbevoie, France

    - Design and deployment of end-to-end private, public, and hybrid Cloud hosting platforms with Disaster Recovery Solutions (DRS) for clients like the Ministry of Justice, Canal+, Priceminister, Cdiscount, TNT, Lactalis, Vitalia, Générale de Santé, etc.

    - Writing Technical Architecture Documents (DAT) and creating/updating network and security diagrams using Microsoft Visio.

    - Design and architecture of network and security infrastructures based on client needs, managing public and private network addressing plans.

    - Deployment, configuration, and maintenance of => F5 BIG IP (BIG IP VIPRION, 2400 and 4400), FORTINET (200A, 300A, 3810A) and VDOMs, CHECKPOINT (R71, R75 via PROVIDER1) and FWBUILDER.

    - Deployment, configuration, and maintenance of CISCO NEXUS 5000 and 7000 switches, FEX 2000 switch connections, implementation of VRFs, PBR, ACLs, and static routing rules. Propagation and management of VLANs, spanning-tree, and port-channels.

    - Deployment and configuration of FORTINET firewalls in cluster mode, implementation of filtering rules, static routes, virtual firewalls (VDOMs), integration of firewalls into FORTIMANAGER

    - Upgrade of F5 Load Balancers (BIG IP 8900). Transition from version 9.5 to version 11.5. Post-intervention monitoring, VIP implementation and maintenance, and CLI troubleshooting.

    - Upgrade of CHECKPOINT Firewalls. Transition from version R75.47 to version R77.20. Post-intervention monitoring, log analysis, and CLI troubleshooting.

    - Deployment and configuration of an SSL VPN on CISCO ASA with dual authentication (MFA), management of user groups, LDAP groups, and troubleshooting.


    - Definition of security policies and network security.

    - Proposal for network evolution and security policies (Management of new IP addressing for the new DATACENTER).

    - Management of DNS records on INFOBLOX

Recommendations

Be the first to recommend Alassane

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Certifications

Skill set (11)

Categories