15+ Years Rebuilding networks, security, and platforms in production

Building systems & networks into secure, automated, cloud‑ready platforms.

Lead Network Engineer with deep experience in Cisco Nexus/IOS, ASA, AWS networking, and security frameworks (CIS Hardening, DISA STIG). I design and migrate multi‑site networks, enforce compliance, and use Python/Ansible and AI‑driven tooling to keep environments resilient.

Lithia Springs, GA 30122 (Remote friendly)
CCNP • Security+ • CKS • AWS Security • Active DoD Secret
Multi‑site Cisco • AWS VPC • Juniper Mist
Systems & Network Engineering

End‑to‑end enterprise systems and network engineering.

From core routing and Nexus datacenter fabrics to Juniper Mist wireless and virtualization, I treat the network and systems stack as one integrated platform—designed for uptime, security, and scale.

Multi‑Site Network Core

Designing and operating Cisco‑based WAN/LAN across 40+ distributed enterprise locations with BGP, OSPF, MPLS, and QoS.

Cisco Nexus / IOS‑XR BGP / OSPF / MPLS VXLAN QoS

Wireless & Access

RF‑driven Wi‑Fi design with secure access, RADIUS, WPA2/WPA3, and predictive surveys using Ekahau.

Juniper Mist Cloud Cisco WLC Ekahau RF Surveys 802.11ax

Systems & Virtualization

Integrating Windows Server, Linux (Red Hat, Ubuntu), VMware, and Hyper‑V into resilient network designs.

VMware / Hyper‑V Linux / Windows Server On‑prem & Hybrid

Observability & Uptime

Designing monitoring to hit 99.9%+ SLAs with fast troubleshooting, clear runbooks, and proactive alerting.

SolarWinds Wireshark CloudVision Analytics Custom Python Tools

DevOps & Cloud Platforms

Building cloud-native infrastructure with Kubernetes, Terraform, and CI/CD pipelines for automated deployments.

Kubernetes Terraform CI/CD Pipelines Git / Bash

Automation & Scripting

Developing network automation with Python (Netmiko, Paramiko, Requests), Ansible, and REST APIs for config management.

Python (Netmiko/Paramiko) Ansible REST APIs Bash Scripting

Cloud & Cyber Security

Senior cloud infrastructure security with expertise in Kubernetes hardening, AWS security architecture, and cloud-native threat mitigation.

CKS (Kubernetes Security) AWS Security Specialty CCSK Zero Trust
Cloud & Security Rebuilders

Rebuilding networks around cloud and security first.

I help teams refactor legacy architectures into cloud‑aware, compliance‑aligned designs with AWS VPCs, Direct Connect, VPNs, and hardened Cisco infrastructure following CIS and DISA STIG standards.

Cloud‑Connected Enterprise Network

ITility LLC · Jun 2022 – Sep 2024

Designed multi‑site Cisco infrastructure integrated with AWS VPCs, Direct Connect, and Transit Gateway, enforcing segmentation and secure hybrid connectivity across campus and cloud.

AWS VPC / TGW Direct Connect Hybrid Networking Cisco Nexus

CIS & DISA STIG Hardening Program

ITility LLC · Jun 2022 – Sep 2024

Led CIS Hardening and DISA STIG standards implementation for Cisco Nexus, IOS, and ASA platforms, achieving 100% compliance validation with repeatable checklists, audits, and remediation workflows.

CIS Benchmarks DISA STIG Compliance Frameworks Security Posture

Secure VPN & Access Control Architecture

Multiple Clients · 2020 – 2024

Built IPSec/SSL VPN designs, RBAC policies, and segmented access to enforce least privilege and Zero Trust‑aligned architectures across distributed sites.

IPSec / SSL VPN RBAC Zero Trust Principles ASA Firewalls

Multi‑Phase Network Migration

GDIT · Nov 2020 – Feb 2022

Executed zero‑downtime network migrations with rigorous change control, testing, and vendor coordination across multi‑phase data center modernization efforts.

Zero Downtime Change Management Data Center Modernization

Enterprise Wireless Security Rollout

WIPRO · Nov 2023 – Nov 2024

Deployed enterprise‑grade wireless with WPA2/WPA3, RADIUS authentication, and predictive RF surveys supporting seamless roaming and mobility across 40+ sites.

WPA2 / WPA3 RADIUS Ekahau Juniper Mist

Automated Compliance Validation

WIPRO · Nov 2023 – Nov 2024

Developed automated network compliance validation aligned with CIS Hardening and DISA STIG requirements, reducing drift and human error through infrastructure‑as‑code.

Python / Ansible Compliance Automation Config Management

Kubernetes & CI/CD Platform

ITility LLC · Jun 2022 – Sep 2024

Designed and deployed Kubernetes-based container orchestration platform with Terraform IaC and CI/CD pipelines, enabling automated application deployments with Git-based workflows.

Kubernetes Terraform CI/CD Git

Python Network Automation Suite

Multiple Clients · 2020 – 2024

Built comprehensive Python automation suite using Netmiko, Paramiko, and Requests libraries for device configuration, API integrations, and network state validation across multi-vendor environments.

Python (Netmiko/Paramiko) REST APIs Bash Multi-vendor

Cloud Infrastructure Security Program

Multiple Clients · 2022 – 2024

Designed and implemented senior-level cloud security architectures including Kubernetes cluster hardening, AWS security controls, IAM policies, and Cloud Security Alliance best practices for enterprise workloads.

Kubernetes Security (CKS) AWS Security Specialty CCSK IAM & RBAC
Architect Blueprints & AI/ML Networks

Blueprints for networks that use automation and AI to stay healthy.

I capture architectures as living blueprints: from Python/Ansible‑driven config generation to AI‑assisted troubleshooting with Mist Marvis and intelligent monitoring—reducing MTTR and provisioning time.

Infrastructure‑as‑Code Blueprint

GDIT · Nov 2020 – Feb 2022

Automated configuration generation for Cisco and Juniper using Python (Netmiko, Paramiko, Requests), Ansible, Terraform, and CI/CD pipelines, creating reusable blueprints for VLANs, routing, and firewall policies with Git version control.

Python (Netmiko/Paramiko) Ansible Terraform CI/CD Git REST APIs

AI‑Assisted Wireless & Network Operations

WIPRO · Nov 2023 – Nov 2024

Combined Mist Marvis AI‑driven troubleshooting with SolarWinds and custom Python tooling to cut MTTR by 60%, using intelligent insights and automated checks across 40+ sites.

Mist Marvis AI SolarWinds 60% MTTR Reduction Proactive Monitoring

Network Automation Factory

WIPRO · Nov 2023 – Nov 2024

Built reusable automation runbooks using Python, Ansible, Bash, and Git that standardize provisioning and compliance validation, reducing device deployment time by 70% across Cisco Nexus, IOS, and ASA environments.

Python / Ansible Bash Scripting Git Version Control 70% Faster Deploys

Architecture Blueprint Components

Network Topology Diagrams

Logical and physical network diagrams with VLAN segmentation, routing protocols, and security zones.

Security Architecture

Firewall policies, VPN tunnels, RBAC models, and Zero Trust segmentation aligned with CIS/DISA STIG.

Cloud Integration Design

AWS VPC architecture, Direct Connect, Transit Gateway, and hybrid connectivity blueprints.

Automation Workflows

Python (Netmiko, Paramiko, Requests), Ansible, Terraform, Git, Bash, REST APIs, Jinja2 templates, and CI/CD pipelines for config management.

AI/ML Network Operations

Mist Marvis AI troubleshooting, predictive analytics, and intelligent alerting for proactive ops.

Compliance & Audit Frameworks

CIS Hardening checklists, DISA STIG validation, and audit‑ready documentation for federal standards.

Cloud & Cyber Security

Kubernetes Security (CKS), AWS Security Specialty, CCSK frameworks, and senior cloud infrastructure protection.

Contact

Let's talk about rebuilding your network and platforms.

Whether you need a security‑aligned rebuild, a hybrid network design, or automation and AI/ML‑driven operations, I can help design and deliver a resilient blueprint.

Reach out directly

Name Andrew Boyd
Phone 412-292-5007
Location Lithia Springs, GA 30122 · US Citizen
Website 1engineers.net
Open to lead / senior IC roles, cloud/network rebuild projects, and consulting engagements.

How I typically engage

Assessment & Discovery:
Audit current network, wireless, and cloud connectivity to surface risk, technical debt, and opportunities.

Blueprint & Roadmap:
Propose a phased blueprint for security‑aligned, automated, cloud‑ready architecture with clear milestones.

Implementation & Transfer:
Lead or support implementation, documentation, and knowledge transfer for your team to own and operate.