Durgaprasad karri
Network & Security Engineer
About
Network & Security Engineer with 6+ years of experience in enterprise DDoS mitigation, routing (BGP/OSPF), Web Application Firewall operations, and hybrid cloud security environments. Proven record of protecting 250+ enterprise customers while maintaining 99.9% SLA adherence. Experienced in implementing BGP Flowspec and RTBH for large-scale mitigation (>1Tb traffic), optimizing detection policies, and improving network resilience. Strong expertise in incident response, root cause analysis (RCA), performance tuning, and secure infrastructure design.
Skills & Expertise (42)
Work Experience
SOC Analyst
Cyient
Sep 2017 - Jun 2022
Administered and tuned Radware WAF policies to protect enterprise web applications from OWASP Top 10 threats. Conducted Layer-7 forensic investigations, reducing WAF false positives by 30% through continuous rule refinement. Implemented capacity planning strategies to maintain scrubbing platform scalability during peak attack scenarios. Led the onboarding of new IP ranges and services into the DDoS mitigation platform. Performed SSL inspection troubleshooting and backend health validation via load balancer integration. Coordinated cross-functional incident response efforts during high-severity application-layer attacks. Monitored real-time security alerts via SIEM platforms (Splunk, QRadar, Elastic), and triaged 500+ alerts daily. Investigated DDoS, phishing, and web application security incidents, ensuring 98% SLA compliance. Conducted forensic analysis and IoC extraction, including malicious IPs, domains, and file hashes. Supported firewall policy reviews and troubleshooting involving NAT, ACLs, and security rule optimisation. Assisted in Layer-7 load balancer configurations, including SSL inspection and backend validation. Participated in vulnerability review processes and collaborated with infrastructure teams for remediation tracking. Developed documentation, playbooks, and SOC reporting dashboards, improving operational efficiency.
Senior Emergency Response Team (ERT) Member
WAF
Nov 2022 - Mar 2024
Managed DDoS protection services for over 250 enterprise customers, maintaining 99.9% SLA adherence. Mitigated volumetric and Layer-7 attacks exceeding 1 Tb traffic using BGP Flowspec and RTBH, reducing mitigation activation time by 40%. Configured and validated MPLS and GRE tunnels across multi-site WAN environments to ensure high availability and traffic resilience. Integrated NETSCOUT Arbor with routers and firewalls for automated diversion and real-time mitigation workflows. Optimised detection profiles, reducing false positives by 30%, and improving threat visibility. Responded to over 300 monthly monitoring alarms, resolving 95 per cent within defined SLA timelines. Conducted detailed PCAP-based traffic analysis to identify malicious payloads, abnormal network patterns, and potential security threats. Supported hybrid cloud DDoS protection for Azure-hosted and on-premises infrastructure. Served as the escalation point for complex mitigation and routing incidents in distributed production environments. Prepared incident reports, MOPs, and performance documentation to enhance operational readiness.
Network Security Engineer
Verizon
Apr 2024 - Present
Managed DDoS protection services for over 250 enterprise customers, maintaining 99.9% SLA adherence. Mitigated volumetric and Layer-7 attacks exceeding 1 Tb traffic using BGP Flowspec and RTBH, reducing mitigation activation time by 40%. Configured and validated MPLS and GRE tunnels across multi-site WAN environments to ensure high availability and traffic resilience. Integrated NETSCOUT Arbor with routers and firewalls for automated diversion and real-time mitigation workflows. Optimised detection profiles, reducing false positives by 30%, and improving threat visibility. Responded to over 300 monthly monitoring alarms, resolving 95 per cent within defined SLA timelines. Conducted detailed PCAP-based traffic analysis to identify malicious payloads, abnormal network patterns, and potential security threats. Supported hybrid cloud DDoS protection for Azure-hosted and on-premises infrastructure. Served as the escalation point for complex mitigation and routing incidents in distributed production environments. Prepared incident reports, MOPs, and performance documentation to enhance operational readiness.
Education
Certificate of Higher Education: Mechanical Engineer - Sriprakash College of Technology - JNTUK
- 2015 · Afghanistan