About Eric
đŻ Network & Security Architect | IP/MPLS, PKI, SD-WAN, Secure IoT
- Networking : OSPF, BGP, MPLS, IS-IS, RIP, EIGRP, LDP, IGMP, PIM, STP, VRRP, HSRP, GLBP, Ethernet, ATM, PPP, SIP, NTP
- Security : Fortinet, Cisco ASA/ISE, Checkpoint, firewalling, VPN, IPsec, PKI EJBCA, SCEP, EST, Radius, Tacacs, 802.1X
- Systems & supervision : VMware vSphere/vCenter, Nagios, Centreon, Cacti, Unix (Redhat/Debian), LDAP, monitoring, accounting
English
Native or bilingual
Spanish
Conversational
Experience
- VENTE-PRIVEE, DSI/NETWORK TEAMNetwork and Security EngineerTELECOMMUNICATIONSSeptember 2016 - September 2017 (1 year)Saint-Denis, FranceMission: LAN/WAN network and security architecture and engineeringï¶ LAN/WAN network architecture and engineering:âą Redesign of Vente-PrivĂ©e's Internet access as part of the internalization of the CDN activity:⊠BGP ordering and configuration of new IP transits and IX peering⊠Development of the migration plan and intervention of migration of old transits⊠Automation of BGP configurations (python script to PeeringDB)⊠Configuration of BGP routing optimization (Border6 NSI Optimizer)âą Datacenter infrastructure redesign:⊠Deployment of Nexus 9K in EVPN/VXLAN Fabric⊠Interconnection to the Vente-PrivĂ©e national MPLS loop⊠Automation of configurations with Ansibleâą Deployment of the Vente-PrivĂ©e national MPLS loop:⊠PE/CE configuration⊠Development of the interconnection with the Internet-Edgeï¶ Development and Recipes of prototypes:⊠Deployment of the Vente-PrivĂ©e national MPLS loop:⊠EVPN/VXLAN + MPLS + BGP-LU validation on QKF5K/10K Juniperï¶ Production:âą Maintaining the network in operational condition:⊠Opening flows on FWs⊠Deployment of new needs (VLANs, public/private IP scopes)⊠Monitoring setup⊠Incident resolutionEnvironment: Fortinet Firewalls (1000A/620B/3016), Checkpoint Firewalls (GaĂŻa/IPSO), Juniper Switches/Routers QFX5100/QFX10002/EX3400/EX3300, Juniper SRX 220H, Juniper MAG-4610, Cisco Router ASR 9602, Cisco 2960 Switches, Cisco Nexus 5K, Cisco 4500 Switches, Cisco Nexus 93108T-EX, Cisco ACS, Ansible, phpipam, infoblox, VMWare vSphere vCenter (Virtualization)...
- OBS UNITĂ D'INTĂGRATION DE SOLUTIONS,Network Engineer/ArchitectDecember 2012 - July 2016 (3 years and 7 months)93170 Bagnolet, FranceMission: Data Engineering for tailor-made offers for OBS Key Account clients (banks/insurance)ï¶ Network architecture and development of Low Level Design LAN/WAN:âą Development of integrated/managed technical solutionsâą Writing technical reference instructions for industrial deploymentâą Exhaustive validation of equipment outside the OBS engineering catalogâą Development and Recipes of prototypesâą Writing Test Specifications for validation of solutions by the clientâą Support to Industrial Production Centersâą Writing technical reference instructions (LLD) for the industrial deployment of solutionsâą Verification of the conformity of configurations generated by industrial production toolsâą Perl scripting for industrial configuration of parksâą Declaration and monitoring of incidents with equipment manufacturers (N3 Support) for equipment specific to the solutions deployedâą Requests for validation of new functionalities from OBS engineering in accordance with the specificities of the solutionsâą Interventions on sensitive sites (DATA Centers...)Environment: Orange Business Services Enterprise Backbone, Juniper Router MX960, Cisco Router ESR10K, Branch Router Cisco C800 C1900 C2900 C3900 ASR 1000 Series, Cisco 2960 Switches, Juniper QFX5100, Juniper EX4300, OneAccess, Alcatel system environment (telephony) DATACORE and Netapp (Storage) and VMWare vSphere vCenter (Virtualization)...
- ORANGE CONNECTIVITY & WORKSPACE SERVICES,Network Engineer/ArchitectTELECOMMUNICATIONSOctober 2017 - Today (8 years and 8 months)91300 Massy, FranceLAN, WAN, VPN, Datacenter Network Architecture and Engineering (RTE, GRTGaz, ENEDIS)Pre-Sales & Strategic Consultingâą Analysis of expressed and unformulated needsâą Assessment of the existing and recommendations for evolutionâą Advice on evolution priorities and infrastructure sustainabilityâą Presentation of targets, quantification and allocation of the solutionArchitecture, Validation & Deploymentâą Deployment of POC in isolated environmentâą Development of technical solutions and writing of HLD/LLDâą Performing validation tests, integration into productionâą Providing models for the industrial deployment tool (orchestrator)Datacenter Design â INUIT Networkâą Proxy chaining for Fortinet antivirus updatesâą Integration of a PKI (EJBCA) for IPsec security (unsecured sites)âą Automatic deployment of routers and X.509 certificates via API, EST, SCEPâą Migration from Cisco ACS to ISE, redesign of access policiesâą Network / security compliance verification, review of integrator deliverablesMaintaining operational & security conditionsâą Choice of equipment, software versions, upgrade strategyâą Writing operating procedures, pre-deployment testsâą Interventions on site or remotelyOperating procedures & automationâą Steering development (consistency control of flow matrices)âą Provisioning optimization (Fortimanager)Notable projectsâą Automation & securing radio/IPSec multiVPN collection with X.509 lifecycle managementâą Global upgrade of the Fortinet parkâą RSA strong authenticationâą Deployment of an IoT PKI (IPsec collection) with automatic allocation of certificatesEnvironment: Cisco (C8300, 4500X, 2960, 2520), Nokia SR12/SRa4/SAR 7750, Fortinet 1500D/500D/200D, Fortimanager, PKI EJBCA
Recommendations
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- CES-BADGE Projects and ICT (Major)Télécom SudParis Management (INT Management)2009CES-BADGE Projets et TIC (Major)
- D.U.T Network and Telecommunications EngineeringUniversité Créteil Paris XII2007
Certifications
- CCNPCisco / Pearson Vue2012
- CCIE Routing & Switching (Written)Cisco / Pearson Vue2015