About Skills Experience Writing Lab Projects Certs Learning Contact

Enterprise Network Architect · Cloud Infrastructure Engineer · AI-Driven Automation

LATEEF
LAW

CCIE Enterprise CCIE Service Provider TS Clearance Active BEYA 2023

Dual CCIE-certified Network Architect and Cloud Infrastructure Engineer with 15+ years designing mission-critical networks for the Department of Defense. Currently serving as Enterprise Architect at General Dynamics — supporting 40,000+ users across the Defense Logistics Agency's global WAN. Operating at the intersection of complex routing architecture, multi-cloud infrastructure, and the future of network automation.

0
Years Experience
0
CCIE Certified
0
Users Supported
TS
Clearance Active

Who
I Am

B.B.A.
Baruch College
M.S.
Info Technology
USMC
Veteran
TS
Clearance
Honorable Discharge BEYA 2023 DoD Infrastructure

Dual CCIE-certified Network Architect and Cloud Infrastructure Engineer with 15+ years of progressive experience in enterprise networking, cloud architecture, and DoD infrastructure.

I currently serve as Enterprise Architect and Cloud Network Engineer at General Dynamics Information Technology, supporting the Defense Logistics Agency's global WAN — 40,000+ users across CONUS and OCONUS. I operate at the intersection of complex routing architecture, multi-cloud infrastructure, and DoD compliance — environments where downtime isn't measured in dollars, it's measured in operational readiness.

Beyond production infrastructure, I build at the edge of where networking meets automation and AI — Ansible-driven configuration pipelines, PowerShell STIG automation deployed in production at DLA, and AI-assisted workflow systems built on pgvector, Python, and multi-agent architectures. I'm not chasing trends — I'm applying modern tooling to real operational problems.

Technical
Expertise

01 / ENTERPRISE NETWORKING

Routing & WAN

BGP/MP-BGPOSPFIS-IS EIGRPMPLSDMVPN SD-WANGREPBR Traffic Engineering

02 / CLOUD ARCHITECTURE

Multi-Cloud & Hybrid

AzureAWSGCP OCIAviatrixvNets/VPCs ExpressRouteMulti-Cloud Design

03 / DATA CENTER

Fabric & Virtualization

Cisco ACIAPIC VMware vSphereEVPN VPLSL2TPv3

04 / SECURITY

DoD & Compliance

STIG ComplianceIPSec/IKEv2 Check Point FWDoD PKI CASP+CAP

05 / SERVICE PROVIDER

Carrier & Core

MPLS L3VPNVPLS L2TPv3RSVP-TE CSCeBGP/iBGP

06 / CERTIFICATIONS

Credentials

CCIE EnterpriseCCIE SP Azure AdminAzure Net Eng OCI FoundationsCCSA CASP+CAPNetwork+

Career
History

BEYA 2023 Modern-Day Technology Leader Award — Black Engineer of the Year Awards

Dec 2018
— Present

Cloud Network Engineer / Enterprise Architect

General Dynamics Information Technology

Defense Logistics Agency (DLA) — CONUS/OCONUS

Designing and maintaining multi-cloud infrastructure (Azure, AWS, OCI, GCP) for 40,000+ DLA users across CONUS and OCONUS. Led circuit modernization initiatives resulting in significant annual cost savings through 46 circuit transitions while improving logical traffic routing across the global WAN. Architected L3VPN-based security zone separation supporting firewall consolidation — eliminating the need for additional physical infrastructure across remote sites. Identified critical design flaws in a proposed multi-cloud SD-WAN architecture (Aviatrix), engineered a workaround solution, and kept a major DoD cloud migration on schedule while generating substantial projected savings. Orchestrated router refresh across 185 CONUS/OCONUS sites (216 devices). Tier III/IV troubleshooting of MP-BGP, OSPF, DMVPN, MPLS, and IPSec architectures. STIG-compliant network change management and SD-WAN/DoD PKI modernization.

Aug 2018
— Dec 2018

Senior Systems Engineer

NES Associates

Design, analysis, and evaluation of large complex network-centric systems for DLA ETN WAN infrastructure.

Jul 2013
— Jul 2018

Senior Network Engineer

Phoenix House Foundation

Led WAN migration across 43 locations, delivering $480,000 in annual savings. Managed LAN/WAN design, wireless networks, VPN/firewall security, and Cisco ASA upgrades.

Feb 2012
— Jul 2013

Field Network Engineer

GOS Technical Services

Enterprise network support across Cisco router/switch platforms. Data Center work for the Dept. of Energy. Cisco VoIP deployment.

Jun 2011
— Mar 2012

Network Administrator / Consultant

Tate LLC

Jan 2005
— Dec 2009

Field Technician

Verizon Communications Inc.

FiOS FTTP rollout. Copper and fiber installation, repair, and troubleshooting.

— 2001
Hon. Discharge

Communications Center Operator

United States Marine Corps

MOS 2542. TCP/IP field station setup, message transmission, and communications operations in the Fleet Marine Force.

Articles &
Research

Cloud Networking · Security

IPSec Over High-Bandwidth Cloud Interconnects: The Throughput Problem No One Talks About

When security requirements mandate IPSec but a single cloud-native tunnel can't saturate a 100G interconnect, you need a real design strategy. A deep-dive into ECMP flow pinning, MACsec tradeoffs, and the backbone encryption gap the providers don't advertise.

IPSec MACsec ECMP Cloud Interconnect Network Architecture
March 2026 Read Article →

Network Automation · Lab Guide

Network Automation Lab Guide — From Manual CLI to Intent-Driven Automation

A complete 13-lab walkthrough built around a 7-level automation maturity model. EVE-NG, Ansible, NetBox, Jinja2 templates, CI/CD pipelines, and drift detection — with full working code at every level.

Ansible NetBox EVE-NG Python CI/CD Intent-Based Networking
April 2026 View Lab Guide →

Lab &
Builds

01 / NETWORK LAB

EVE-NG Network Automation Lab

Advanced simulation environment replicating DoD network infrastructure with Cisco ISE, Active Directory/DNS, Ansible control node, RADIUS/NTP server, and Cisco routing/switching devices. Developed for validating Ansible playbooks, TACACS+ authentication workflows, and routing configurations before DLA production deployment.

EVE-NG Ansible ISE/TACACS+ Cisco IOS

02 / AI / ML

AI Second Brain (PostgreSQL / pgvector)

Personal AI assistant leveraging PostgreSQL with pgvector (Supabase), Voyage AI embeddings, and custom MCP server integrated with Claude Desktop. Supports semantic memory retrieval, multi-calendar management, project tracking, and workflow automation. Secondary retrieval pipeline built on ChromaDB and OpenAI embeddings.

PostgreSQL/pgvector Python Supabase Voyage AI MCP Server

03 / AI / AUTOMATION

Multi-Agent AI Operating System

Modular multi-agent system built on Obsidian knowledge vault with specialized agents for email triage, calendar management, and workflow automation. Flask dashboard in development for orchestration and control. Applies LLM and API integration skills relevant to DevSecOps toolchain development.

Python Flask Obsidian/RAG Multi-Agent Architecture

04 / DOD / COMPLIANCE

STIG PowerShell Automation Engine

PowerShell pipeline parsing and evaluating 100+ DoD STIG CKL (Checklist) files, generating compliance reports. Deployed in production at DLA, significantly reducing manual audit time and improving security compliance deliverable accuracy.

PowerShell DISA STIG CKL Parsing DoD Compliance

05 / WEB / MULTI-CLIENT

Custom Web Builds — Multi-Client

PepTek LLC — Research-grade peptide e-commerce on Shopify with custom theme, age verification, legal disclaimers, and Bankful payment integration.

JBExclusive Studios — Barbershop booking platform with appointment scheduling and service catalog on WIX with custom CSS.

Divine Assisted Care LLC — In-home mental health nursing site with intake forms, HIPAA-conscious data collection, and full hosting management.

Shopify/Liquid API Integration Payment Systems WIX DNS/Hosting

06 / NETWORK / AUTOMATION

Python Network Automation Framework

Network automation scripts and tools integrating with Ansible and REST APIs for enterprise device management, compliance checks, and configuration auditing. Combines network engineering expertise with modern scripting for enterprise-scale workflows.

Python Ansible REST APIs Netmiko

Credentials
& Certs

CCIE

CCIE Enterprise Infrastructure

Cisco Systems

CCIE

CCIE Service Provider

Cisco Systems

AZ-104

Azure Administrator Associate

Microsoft

AZ-700

Azure Network Engineer Associate

Microsoft

OCI

OCI Foundations Associate

Oracle Cloud Infrastructure

CCSA

Check Point CCSA

Check Point

CASP+

CompTIA Advanced Security Practitioner

CompTIA

CAP

Certified Authorization Professional

ISC²

Net+

CompTIA Network+

CompTIA

Active
Learning Tracks

Container Orchestration · Cloud Architecture

Kubernetes — CKA & CKS Certification Track

Bridging 15+ years of enterprise network architecture into cloud-native infrastructure. Focused on Kubernetes networking (CNI plugins, Network Policies, service mesh), DoD-aligned security hardening (DISA STIG, Zero Trust, RBAC), and multi-cloud cluster architecture across EKS, GKE, and AKS.

Started: April 2026

Progress — 4-Phase Track

Phase 1

Foundations

In Progress

Phase 2

Networking Deep Dive

Upcoming

Phase 3

Security & DoD Compliance

Upcoming

Phase 4

Cloud Integration & Architecture

Upcoming

CKA — Target: July 2026 CKS — Target: September 2026

Filling the container orchestration gap for DoD Cloud Architect and SME IV roles.

Get In
Touch

Currently engaged full-time supporting DoD infrastructure for General Dynamics. Open to conversations about:

  • Senior architecture opportunities
  • Technical advisory discussions
  • Long-term partnerships in cloud networking, enterprise infrastructure, networking, AI-driven automation, network automation, and anything technically related
Active TS Clearance · DoD · Enterprise · Cloud · AI Automation

// Send an Email

Let's Connect

Have a role, collaboration, or question in mind? The best way to reach me is by email — messages go directly to my inbox.

ccie57597@gmail.com Send an Email →