Yaswanth Reddy

Hello, I'm

Yaswanth Reddy

Senior Network & Security Engineer

Designing resilient network architectures, securing enterprise infrastructure, and automating operations across hybrid cloud environments.

8+
Years Experience
50+
Projects Delivered
3
Cloud Platforms
4
Certifications

About Me

Building the Backbone of Enterprise IT

I'm a Senior Network & Security Engineer with 8+ years of experience designing, implementing, and securing large-scale enterprise network infrastructures. I specialize in bridging the gap between traditional networking and modern cloud-native architectures.

My career spans financial services giants like Capital One and Freddie Mac, where I've led critical network transformations — from SD-WAN migrations to zero-trust security implementations — while maintaining five-nines availability for mission-critical systems.

I'm passionate about network automation and infrastructure-as-code, reducing manual operations and human error through intelligent tooling and well-designed CI/CD pipelines for network changes.

Network Architecture

Designing scalable BGP/OSPF networks spanning multi-site enterprise environments

Security Engineering

Implementing zero-trust frameworks, firewall policies, and threat detection systems

Cloud Networking

Architecting AWS, Azure, and GCP network connectivity with high availability

Network Automation

Building automation pipelines with Ansible, Python, and Terraform to eliminate manual ops

Career

Work Experience

Capital One

Senior Network Engineer

2021 — Present

McLean, VA

  • Architected and deployed enterprise SD-WAN across 200+ branch offices, reducing WAN costs by 40%
  • Led zero-trust network segmentation project securing 50,000+ endpoints across hybrid cloud environments
  • Automated network provisioning with Ansible and Terraform, cutting deployment time from weeks to hours
  • Designed multi-region AWS Transit Gateway topology supporting 99.99% availability for core banking services
  • Established BGP route policies and traffic engineering for 10 Gbps inter-datacenter links
SD-WANAWSZero TrustAnsibleBGPTerraform

Freddie Mac

Network Security Engineer

2018 — 2021

McLean, VA

  • Designed and implemented next-gen firewall policies across Palo Alto PA-5200 series at all data centers
  • Led SOC integration with SIEM platform, reducing mean time to detect security incidents by 60%
  • Deployed AWS GuardDuty and Security Hub across 150+ AWS accounts with automated remediation playbooks
  • Built IDS/IPS tuning framework eliminating 85% of false-positive alerts while maintaining full coverage
  • Managed PCI-DSS and SOX compliance network controls, passing all external audits without findings
Palo AltoSIEMGuardDutyPCI-DSSIDS/IPSSOC

Capri Global

Network Engineer

2015 — 2018

Mumbai, India

  • Designed and managed MPLS backbone network connecting 30+ branch offices across India
  • Implemented Cisco ISE NAC solution providing 802.1X authentication for 10,000+ devices
  • Migrated legacy frame-relay WAN to MPLS/VPN, improving reliability from 95% to 99.9%
  • Deployed QoS policies prioritizing voice and video traffic for unified communications rollout
  • Configured and maintained Cisco ASA and Checkpoint firewall clusters at all regional offices
MPLSCisco ISE802.1XQoSASACheckpoint

Expertise

Technical Skills

Networking

BGPOSPFMPLSSD-WANEIGRPSTP/RSTPVLANsQoSVXLANEVPNCisco IOS/NX-OSJuniper Junos802.1X / NACDMVPN

Security

Palo Alto NGFWCheckpointCisco ASA/FTDZero TrustIDS/IPSSIEM (Splunk)VPN (IPSec/SSL)DDoS MitigationSOC OperationsPCI-DSSSOX ComplianceAWS Security HubGuardDuty

Cloud

AWS Transit GatewayAWS Direct ConnectAzure Virtual WANAzure ExpressRouteGCP Cloud InterconnectVPC DesignSecurity GroupsCloudFormationCloud WANPrivateLinkRoute 53AWS Shield

Automation

AnsiblePythonTerraformNAPALMNornirNetMikoREST APIsGit/GitHubJenkins/CI-CDDockerYANG/NETCONFJinja2Bash scripting

Credentials

Certifications

ANS

AWS Certified Advanced Networking

Specialty

Amazon Web Services

2023

SCS

AWS Certified Security

Specialty

Amazon Web Services

2022

AZ-700

Azure Network Engineer Associate

AZ-700

Microsoft Azure

2023

CCNA

Cisco Certified Network Associate

CCNA

Cisco Systems

2019

Portfolio

Featured Projects

A selection of enterprise-grade network and security engineering projects

Hybrid Cloud Network Architecture

Designed and deployed a multi-cloud network architecture connecting AWS, Azure, and on-premise data centers using Transit Gateway, ExpressRoute, and MPLS backbone. Achieved 99.99% uptime with sub-5ms latency between regions.

AWS Transit GatewayAzure ExpressRouteBGPMPLSTerraform

Firewall Policy Automation

Built a Python/Ansible automation framework to manage 10,000+ Palo Alto firewall rules across 15 data centers. Reduced policy deployment time from 3 days to 2 hours with full audit trail and rollback capabilities.

PythonAnsiblePalo AltoPan-OS APIGit

Enterprise SD-WAN Migration

Led full SD-WAN migration for 200+ branch sites from legacy MPLS to cloud-first SD-WAN. Implemented dynamic path selection, application-aware routing, and centralized management reducing OPEX by 40%.

SD-WANCisco ViptelaBGPMPLSQoS

Network CI/CD Pipeline

Developed a full CI/CD pipeline for network configuration changes using GitLab CI, Ansible, and NAPALM. Implemented automated testing, syntax validation, and staged rollouts to eliminate human error in network changes.

GitLab CIAnsibleNAPALMNornirPython

AWS GuardDuty Threat Detection

Deployed AWS GuardDuty across 150+ accounts in an AWS Organization with centralized findings in Security Hub. Built Lambda-powered automated remediation for common threat patterns, achieving <5 min MTTR.

AWS GuardDutySecurity HubLambdaPythonCloudFormation

Compliance Automation Framework

Built automated compliance monitoring and reporting for PCI-DSS and SOX across network infrastructure. Generates real-time dashboards and automated evidence collection, saving 200+ hours/quarter in audit prep.

PCI-DSSSOXPythonSplunkAWS Config

Get In Touch

Contact Me

Have a project in mind or want to connect? Drop me a message.

Let's Connect

I'm open to discussing network architecture consulting, security assessments, cloud migration projects, or full-time opportunities.