Project Portfolio
Over 11 years of enterprise-grade deployments across banking, manufacturing, hospitality, education, and service industries. Due to NDA obligations, client names are not disclosed — but sector, technology stack, and measurable outcomes are shared below.
A professional reference letter from senior management is available upon request.
1. Enterprise Network Architecture & Data Center
Data Center Fabric Modernization — Banking Sector
Role: Senior Network Security Engineer | Istanbul, 2022–2025
- Engineered dual data center fabric using Cisco NDFC with active-active design
- Migrated 100+ switches to VXLAN/BGP-EVPN architecture with zero downtime
- Improved throughput by 25% and enabled centralized automation and visibility
Cisco NDFC Nexus 9000 VXLAN BGP-EVPN
Network Infrastructure Renewal — Global Packaging Manufacturer
Role: Network Security Lead | Multi-site, 2018–2022
- End-to-end renewal across multiple factory locations
- Integrated Cisco ISE, AnyConnect, and Email Security with endpoint protection
- Reduced recurring security incidents by 25% through improved segmentation
Cisco Catalyst 9000 ISE Fortinet FGT AMP
Hotel Network Infrastructure Deployment — Hospitality Sector
Role: Network Security Lead | Istanbul
- Designed and implemented full wired and wireless infrastructure
- Installed 200+ Aruba APs and 50+ switches, achieving 99.9% uptime via HA design
- Configured Fortinet firewall for guest/staff segmentation
Aruba APs Fortinet Firewall VLAN Segmentation Guest Wi-Fi
Load Balancer Renewal & Migration — Banking Sector
Role: Senior Network Security Engineer | Istanbul, 2022–2025
- Migrated 30+ F5 LTM/GTM devices from 2000 to 5000 series (TMOS 13.x → 15.x)
- Performance improvement up to 6×, zero-downtime HA migration
- Reduced manual operations by 50% through automated configuration and health monitoring
F5 LTM F5 GTM TMOS 15.x HA Clustering SSL Offloading
2. Cybersecurity & Zero Trust Deployments
SSL VPN & Zero Trust Implementation — Banking Sector
Role: Senior Network Security Engineer | Istanbul, 2022–2025
- Deployed Fortinet SSL VPN for 10+ companies, 500+ users
- Integrated FortiClient, FortiEMS, and MFA for identity-based access control
- Achieved 99.9% uptime with centralized Zero Trust monitoring
Fortinet NGFW FortiClient FortiEMS MFA Zero Trust
Palo Alto GlobalProtect VPN Migration — Banking Sector
Role: Senior Network Security Engineer | Istanbul, 2022–2025
- Migrated 1,000+ user VPN infrastructure to Palo Alto NGFW with GlobalProtect
- Implemented granular, role-based access with MFA
- Reduced VPN-related incidents by 35%
Palo Alto NGFW GlobalProtect MFA Role-Based Access
Enterprise Network Modernization & Automation — Manufacturing (TR/EG)
Role: Network Security Lead | Turkey & Egypt, 2018–2022
- Architected and deployed Cisco DNA Center integrated with ISE, Umbrella, Stealthwatch, and Firepower
- Enabled policy-based VLAN provisioning, 802.1X automation, and AI-driven analytics
- Reduced operational workload by ~60% through automated workflows
- Published as a Cisco Success Story — one of the first large-scale DNA Center & Stealthwatch integrations in Turkey
Cisco DNA Center ISE Umbrella Stealthwatch Firepower Catalyst 9000
Firewall Policy Optimization & SOC Integration — Banking Sector
Role: Senior Network Security Engineer | Istanbul, 2022–2025
- Audited and optimized 30+ firewall rulebases
- Automated alerting and compliance reports via FortiManager and FortiAnalyzer
- Reduced false-positive alerts by 40%
FortiManager FortiAnalyzer Compliance Automation SOC
3. Network Automation, Observability & Analytics
SOC Threat Visibility & Splunk Dashboard Integration — Banking Sector
Role: Senior Network Security Engineer | Istanbul, 2022–2025
- Integrated firewall and IPS logs into unified Splunk dashboards
- Designed multi-layer dashboards for DDoS, internal, and external attack visibility
- Reduced incident triage time by 40%
Splunk SIEM Fortinet IPS Check Point Dashboard Automation
Python-Based Network Automation for Capacity Planning — Banking Sector
Role: Senior Network Security Engineer | Istanbul, 2022–2025
- Developed Python scripts to collect inventory data from Cisco Nexus switches
- Automated reporting on port utilization and SFP counts
- Reduced policy/object handling time from 2–3 hours to 5–10 minutes
Python Cisco Nexus DevOps Integration Capacity Planning
Network Packet Broker Upgrade & Migration — Banking Sector
Role: Senior Network Security Engineer | Istanbul, 2022–2025
- Replaced legacy Ixia NPB systems with next-generation infrastructure
- Enhanced visibility, packet filtering, and capture efficiency across SOC tools
Ixia NPB Network Visibility SOC Integration
SLA Monitoring & Reporting Framework — Multi-Customer
Role: Network Security Lead | 2018–2022
- Implemented Zabbix monitoring and Grafana dashboards for SLA-based customers
- Provided weekly and monthly performance reports (CPU, memory, interface utilization)
- Improved uptime SLA from 97% to 99.9% across monitored environments
Zabbix Grafana SolarWinds SLA Reporting
4. Collaboration & Unified Communications
Cisco CUCM Deployment — Petrochemical & Aviation Sectors
Role: Network Security Engineer / Lead | 2014–2022
- Consolidated 5+ companies’ IP telephony into a single CUCM cluster
- Deployed Cisco Jabber for 3,000+ employees
- Implemented Expressway Edge/Core for VPN-less external access
Cisco CUCM Jabber Expressway SIP Trunk IM&P
Technologies & Vendors
| Category | Technologies |
|---|---|
| Firewall | Cisco Firepower, Fortinet FortiGate, Palo Alto NGFW, Check Point |
| Switching | Cisco Catalyst 9K, Nexus 9K, HP Comware, Aruba |
| Security & NAC | Cisco ISE, Aruba ClearPass, 802.1X, FortiEMS |
| VPN & Remote Access | GlobalProtect, FortiClient, AnyConnect, ZTNA |
| Automation | Python, Bash, Cisco DNA Center, FortiManager |
| Monitoring | SolarWinds, Splunk, Zabbix, Grafana, FortiAnalyzer |
| Load Balancing | F5 LTM, F5 GTM |
| Wireless | Aruba, Cisco Meraki, Cisco WLC |
A professional reference letter from senior management is available upon request.
Contact me for project details or consulting inquiries.