Sunteți pe pagina 1din 6

ONICEAG GEORGE

Infrastructure Engineer - Orange

Age 27 from Bucuresti, not married

Contact details

Email: george.oniceag@gmail.com Tel: 0744347056


Address: bld. Ion Mihalache nr.96 bl.44B sc.A ap.5 et.3

Professional experience

Experience by IT Hardware : 1 year and 3 months


departments Engineering : 3 years and 10 months

Dec 2016 - present Infrastructure Engineer - Orange


11 months Bucharest | Engineering | IT / Telecom

Context:
Network and System Infrastructure (NSI) team is part of the Orange Group, IMT/OLPS division, which mainly
delivers services to the Service platforms in Orange, such as Messaging, Cloud environment, Device
Management, Authentication, to more than 30 affiliates.
OLPS delivers a lot of activity types for these platforms, from Basic Technical Service, Release Managing to
Development and Platform and Service Integration and consultancy.
NSI team provides service to many Products and Projects across Orange with Network Engineering, System
Expertise, Service Integration, Cloud Solutions and Application Integration.

Responsibilities:
- Integration, Testing and Acceptance Network infrastructures (physical and virtual)
- Prepare engineering documents, procedures and solutions for deployment
- Troubleshoot, report and resolve issues, if possible, appearing during installation, integration and
acceptance phases
- Improve existing scripts/tools/processes or Develop new ones, according to the needs, in order to facilitate
the automation/ease of installation, configuration, testing, operation, etc
- Open source tools and solutions
- Network infrastructure management, appliance installation and configuration
- Management of the virtual and physical infrastructure (advanced setup and configuration)
- Provide transversal, cross project support (coaching/mentoring) and expertise for colleagues and
collaborators
- Follow-up and coordinate important actions in the designated projects (migrations, interventions, major
changes, etc)

Aug 2015 - Dec 2016 System Administrator - Bitdefender


1 year and 5 months Bucharest | Engineering | IT / Telecom

Job Responsabilities:
- Integration, Testing and Acceptance Network infrastructures (physical and virtual)
- Prepare engineering documents, procedures and solutions for deployment
- Ensure networking systems are kept in required configuration profile;
- Ensure hardware infrastructure performs as required;
- Provide system administration services for Linux/UNIX and Windows infrastructure;
- Troubleshoot Linux/UNIS systems identifying hardware and networking issues;
- Maintain, troubleshoot and Improve the existing VPN infrastructure (client access and POP comunication);
- Assume other duties/project as they arise and be responsible to the needs of the department;
- Improve existing scripts/tools/processes or Develop new ones, according to the needs, in order to facilitate
the automation/ease of installation, configuration, testing, operation, etc
- Actively contribute to all ongoing and new internal projects;
- Keeping up-to-date with the latest position related technologies;

www.ejobs.ro
CV Oniceag George | Pag. 1/6
contact@ejobs.ro
- Ensuring the operational procedures are up to date and effectively applied;
- Meet the SLAs;
- Open source tools and solutions
- Network infrastructure management, appliance installation and configuration
- Follow-up and coordinate important actions in the designated projects (migrations, interventions, major
changes, etc)

Network Technologies used: CISCO, Juniper, HP;


Virtualization Technologies used: VMware;
Network Supervision Tools: Centreon (Nagios based open-source monitoring tools), Cacti.

Apr 2015 - Aug 2015 Infrastructure Engineer - Orange


5 months Bucharest | Engineering | IT / Telecom

Context:
Network and System Infrastructure (NSI) team is part of the Orange Group, IMT/OLPS division, which mainly
delivers services to the Service platforms in Orange, such as Messaging, Cloud environment, Device
Management, Authentication, to more than 30 affiliates.
OLPS delivers a lot of activity types for these platforms, from Basic Technical Service, Release Managing to
Development and Platform and Service Integration and consultancy.
NSI team provides service to many Products and Projects across Orange with Network Engineering, System
Expertise, Service Integration, Cloud Solutions and Application Integration.

Responsibilities:
- Integration, Testing and Acceptance Network infrastructures (physical and virtual)
- Prepare engineering documents, procedures and solutions for deployment
- Troubleshoot, report and resolve issues, if possible, appearing during installation, integration and
acceptance phases
- Improve existing scripts/tools/processes or Develop new ones, according to the needs, in order to facilitate
the automation/ease of installation, configuration, testing, operation, etc
- Open source tools and solutions
- Network infrastructure management, appliance installation and configuration
- Management of the virtual and physical infrastructure (advanced setup and configuration)
- Provide transversal, cross project support (coaching/mentoring) and expertise for colleagues and
collaborators
- Follow-up and coordinate important actions in the designated projects (migrations, interventions, major
changes, etc)

May 2014 - Apr 2015 Junior Infrastructure Engineer - Orange


1 year Bucharest | Engineering | IT / Telecom

Context:
Network and System Infrastructure (NSI) team is part of the Orange Group, IMT/OLPS division, which mainly
delivers services to the Service platforms in Orange, such as Messaging, Cloud environment, Device
Management, Authentication, to more than 30 affiliates.
OLPS delivers a lot of activity types for these platforms, from Basic Technical Service, Release Managing to
Development and Platform and Service Integration and consultancy.
NSI team provides service to many Products and Projects across Orange with Network Engineering, System
Expertise, Service Integration, Cloud Solutions and Application Integration.

Responsibilities:
- Integration, Testing and Acceptance Network infrastructures (physical and virtual)
- Prepare engineering documents, procedures and solutions for deployment
- Troubleshoot, report and resolve issues, if possible, appearing during installation, integration and
acceptance phases
- Improve existing scripts/tools/processes or Develop new ones, according to the needs, in order to facilitate
the automation/ease of installation, configuration, testing, operation, etc
- Open source tools and solutions
- Network infrastructure management, appliance installation and configuration
- Management of the virtual and physical infrastructure (advanced setup and configuration)
- Provide transversal, cross project support (coaching/mentoring) and expertise for colleagues and
collaborators
- Follow-up and coordinate important actions in the designated projects (migrations, interventions, major
changes, etc)

Dec 2013 - May 2014 Junior Data Network Engineer - Telekom Romania

www.ejobs.ro
CV Oniceag George | Pag. 2/6
contact@ejobs.ro
6 months Bucharest | Engineering | IT / Telecom

Operating and maintaining the core network infrastructure.


- Maintaining the MPLS switched network ;
- Maintaining the BGP topology (Routing Tables, Filters, and Redistribution);
- Maintaining both the internal and external ASA Firewalls;
- Maintaining the OSPF internal areas and adjacencies with client equipment;
- Working with the TDN team in order to implement the best solution for our network;
- Executing a monthly Health Check on the core equipment, and reporting any hardware problems to the
Field Office.

Jun 2011 - Aug 2012 Network Administrator - EKRON PRODIMPEX SRL


1 year and 3 months Bucharest | IT Hardware | Media / Internet

Responsibilities:
- Ensure the good operation of the companies network and systems.
- Ensure data security and confidentiality

Education

2013 - 2015 Master's degree - Universitatea Politehnica Bucuresti, Facultatea de Electronica


Telecomunicatii si Tehnologia Informatiei
TSAC, Tehnologii si Software Avansat de Telecomunicatii | Bucuresti

2009 - 2013 Bachelor's degree - Universitatea Politehnica Bucuresti, Facultatea de Electronica


Telecomunicatii si Tehnologia Informatiei
RST, Retele si Siteme de Telecomunicatii | Bucuresti

2005 - 2009 High School - Liceul Teoretic " Nicolae Iorga"


Matematica-Informatica Bilingv Engleza | Bucuresti

Skills

General skills
vmware esxi, VMware, vmware vcenter, vmware vcloud, vmware vorchestrator, vrealize, OSPF, MPLS, BGP, EIGRP, Network
Administration, Cisco, MySQL, centreon, rundeck, kubernetes, docker, DNS, ose, Ipsec, Firewalls, ids/ips, Linux, rhel, Linux
CentOS, Linux Ubuntu, WLan, microsoft server, ssl vpn

Foreign languages

French - Beginner, English - Advanced

Other info

Trainings
Redhat: Containerizing Software Applications online DO276
period Aug 2017 - Aug 2017

VMware vCloud : Install, Configure, Mange [v5.5]


period Jul 2014 - Jul 2014

VMware vSphere : Install, Configure, Mange [v5.5]


period Jun 2014 - Jun 2014

ArcSight Security Solutions

www.ejobs.ro
CV Oniceag George | Pag. 3/6
contact@ejobs.ro
period Feb 2014 - Feb 2014

CCNA Exploration:Network Fundamentals


period May 2008 - Jul 2008

Seminary "Citizenship and it's Relation to your identity"


period Apr 2008 - Apr 2008

CCNA Exploration: Routing Protocols and Concepts


period Feb 2008 - Apr 2008

CCNA Exploration: LAN Switching and Wireless


period Oct 2007 - Jan 2008

CCNA Exploration: Accessing the WAN


period Aug 2007 - Oct 2007

Projects
Kermit - Platform as a Service (PAAS)
period Jan 2017 - Oct 2017
ased on docker and Redhat Openshift (Kubernetes alternative), this project consists in automating the deployment of the custom Rhel OSE
platform across multiple cloud environments (vmware, openstack). The automation of the OS installation and configuration is done with
Ansible which executes the following global steps: OS configuration in order to support the OSE platform, OSE install, OSE post install
customization, dedicated platform monitoring, dedicated platform logging, horizontal scalability when/if needed. The cloud instace automation
consists in Terraform playbooks for Openstak based cloud, and powershell scripts for vmware environments.

Automated OpenSource Cloud Routing infrastructure


period Mar 2016 - Nov 2016
An automated system for deploying cloud routers . This system consisted of configuring via Puppet a linux system to act as a cloud router.
Using a set of templates, each machine is configure with quagga, OSPF, NTP, DNS,DHCP, DHCPm and SNMP+NRPE, keepaliveD. All these
services are not only installed, but also configured so that upon restart the machine joins the routing domain and starts acting as the gateway
for the configured backend network. Also the machine is cluster ready in case redundancy is needed for the gateway.

OpenSource Self-Deployed DMVPN Solution


period Jan 2016 - Jul 2016
An automated security solution comprised of Quagga (OSPFD), Puppet with Foreman and Strongswan or OpenVPN(aggregated bundle links)
. This Dynamic Multipoint Virtual Private Network was built on the strongswan dynamic policy IKEv2 IPsec VPN that automatically map all
exiting GRE tunnels. As an alternative base encryption system Stongswan could be replaced with OpenVPN that offerend built int IP
transport over aggregated tap bonds to improve troughput. Authentication is done on a PKI infrastructure and certification distribution and
re-inrolement is done via the Puppet CA. The GRE tunnels and IPSEC or OpenVPN configurations are distributed via Puppet . The dynamic
route distribution is done via OSPF multi-area protocol established over the GRE/Bond tunnels.Therefore HA is ensured at L3 OSI layer for all
nodes, while scalability is done by Puppet who automatically configures or reconfigures each node when a new one is added to the
architecture. This solution includes both physical and virtual appliances and also applies to the AWS environment.

Cross Platform Enduser VPN


period Nov 2015 - Mar 2016
A End-User Security solution designed for remote access to the company internal resources from both user laptops and mobile devices . This
platform consisted of two independed cisco ASA5524-X-Firepower located in redundant locations that provided both IPSec VPN tunnels and
DTLS (Dynamic TLS) tunnels. Authentication consisted of a two factor mechanism based on Certificates and AD Passwords. The
synchronization of configuration files was made via automated scripts because of the different geolocations in which they were placed.
Redundancy was ensured by both DNS and Anyconnect connection profiles. Additional security was enforced via NPS profiles that ensure
device compliance on connect. Certificate enrolment/reinrolement was done automatically via a handler on the CISCO ASA and an SMS
authorization code

Cross Platform Enduser VPN


period Nov 2015 - Mar 2016
A End-User Security solution designed for remote access to the company internal resources from both user laptops and mobile devices . This
platform consisted of two independed cisco ASA5524-X-Firepower located in redundant locations that provided both IPSec VPN tunnels and
DTLS (Dynamic TLS) tunnels. Authentication consisted of a two factor mechanism based on Certificates and AD Passwords. The
synchronization of configuration files was made via automated scripts because of the different geolocations in which they were placed.
Redundancy was ensured by both DNS and Anyconnect connection profiles. Additional security was enforced via NPS profiles that ensure
device compliance on connect. Certificate enrolment/reinrolement was done automatically via a handler on the CISCO ASA and an SMS
authorization code

Cross Platform Supervision Solution


period Aug 2015 - Dec 2015

www.ejobs.ro
CV Oniceag George | Pag. 4/6
contact@ejobs.ro
Open source tool (Centreon) configured in a horizontal
scalable architecture to provide supervision across all infrastructure services. Architecture
comprised of a Galera Cluster MariaDB databae with load balancing features, distributed core
engine processing for management and poller configuration, horizontal poller distribution for
10K + service checks and analysis, custom scripts for both OS monitoring (Linux/Window)
and physical network appliances (Cisco HP Juniper), external RRD clustered processing,
triggered notification and escalation system and HA functionality , everything to provide a
99.9% service availability.

BGP Neighbor and Route Manipulation Project


period Jan 2014 - Jun 2014
Present an advanced use case for the BGP protocol in for a complex service provider network infrastructure . The scope was to show how
BGP protocol can provide dynamic routing convergence across both a Service Provider Infrastrcuture and it's clients. The dome for this project
was build in GNS3 using emulated CISCO and Juniper routers. The project covered the following points: speed optimized convergence by
adapting BGP metrics coefficients and timeouts, use advance BGP features for route manipulation and high-availability (weight, local
preference, IMP, AS-Path, BFD, ADD-path, route dampening, NSF ) , BGP and IGP Interaction (with NHT and NFA) , BGP PIC and
Multiple-Path Propagation, segregation based on BGP communities and removal of the need of IBGP full-mesh byusing RR (route reflectors)

FlexVPN implementation and adaptation in a stadard cloud emulated telecom architecture


period Jan 2014 - Jul 2015
Adapt and implement the FlexVPN framework in a standard telecom architecture emulated in a cloud environment. The paper explains how
this framework can be adapted to a common architecture to increase and ease the deployment and horizontal scale of an existing security and
encryption system for a telecom company.
The architecture was build in a VMware virtualization environment consisted of two hypervisors and a central vCenter control machine. The
vCSR routers (by CISCO) have been integrated in this cloud environment to create a fluid environment. The architecture itself consisted of 4
vRouters that were interconnected though a dynamic field of IPsec (IKEv2) tunnels that were dynamically coordinated by two redundant hubs .

Out-Of-Band Management Project


period Dec 2013 - May 2014
As the name describes, this project purpose was to offer a secondary management system for disaster recovery. Nominated as Project
Manager by my superiors, I coordinated with the Architectural Design Department, Transmissions Department and Field Teams in order to
distribute and install the necessary equipment (HP and Perle serial Consoles). The configuration of the system was accomplished by me along
with my colleagues from the Core Department, thus implementing a stand-alone secondary equipment management system. The main
challenge in this project was to assure interoperability and transparency between different vendor equipment (Cisco, Huawei, HP, and
ExtremeWare).

Graduation Thesis: Authentication Services in WLAN access networks


period Jan 2013 - Jun 2013
The theme of this project is the case study on authentication services for wireless networks and especially security requirements posed by
such a network, with practical applications in a WLAN implementation that meets the requirements of a secure network from the point of view
network access security. The present work is aimed at identifying existing security and authentication element in a wireless network WLAN
and creating a guide that pointed the configuration requirements, and on the basis of several penetration tests that have been carried out,
action will be suggested to improve the security of access to the communication network.

Certifications
CCIE Routing & Switching Written Exam
period Apr 2014 - Oct 2017
License CSCO11473463

CCNP Security
period Jul 2013 - Oct 2017

CCNA Security
period Jun 2013 - Oct 2017

Cisco ASA Specialist


period Apr 2013 - Oct 2017

Cisco VPN Security Specialist


period Mar 2013 - Oct 2017

Cisco Firewall Security Specialist


period Mar 2013 - Oct 2017

Cisco IPS Specialist


period Aug 2012 - Oct 2017

www.ejobs.ro
CV Oniceag George | Pag. 5/6
contact@ejobs.ro
Cisco IOS Security Specialist
period Jul 2012 - Oct 2017

CCNP Routing and Switching - Cisco Certiefied Network Professional


period Sep 2011 - Oct 2017

CCNA Routing and Switching - Cisco Certified Network Asociate


period Aug 2008 - Oct 2017

Cambridge ESOL Level 2 Certificate In ESOL International


period Mar 2008 - Oct 2017

Prizes and Distinctions


First Place at the International Competition NAG 2009 (Network Academy Games) - NetRIiders Competition SeriesFirst
acquired on Jun 2009

First Place at "AcadNet" National Competition - networking division


acquired on Mar 2009

Driving license
Category B
acquired on 08 Aug 2008

www.ejobs.ro
CV Oniceag George | Pag. 6/6
contact@ejobs.ro

S-ar putea să vă placă și