ROLE NETWORK & INFRASTRUCTURE ANALYST ✦ METRIC 100% CSAT ON ENTERPRISE ESCALATIONS ✦ COMPLIANCE >95% SLA ACROSS GLOBAL TIME ZONES ✦ VIRTUALIZATION PROXMOX VE & LXC ✦ FIREWALL OPNSENSE & PFSENSE ✦ AI TELEMETRY GEMINI API & WEBHOOKS ✦ ITSM SERVICENOW & JIRA SERVICE DESK ✦ AUTOMATION N8N & ZAPIER WORKFLOWS ✦ CERTIFIED ITIL 4 & GOOGLE CYBERSECURITY ✦ ROLE NETWORK & INFRASTRUCTURE ANALYST ✦ METRIC 100% CSAT ON ENTERPRISE ESCALATIONS ✦ COMPLIANCE >95% SLA ACROSS GLOBAL TIME ZONES ✦ VIRTUALIZATION PROXMOX VE & LXC
AUTHORIZED TO WORK FULL-TIME IN CANADA · CLASS 5 BC LICENCE

Vaibhav
Datta_|

Network & Infrastructure Analyst / Escalation SME / SOC Analyst

Escalation SME and UFV Networking & Cybersecurity graduate with a proven track record of managing enterprise network operations and complex incident resolution. Specializes in end-to-end fault isolation across VLANs, DNS/DHCP, and proxy layers to deliver permanent fixes rather than temporary workarounds. Brings hands-on expertise in Proxmox/Linux hypervisor administration, AI-driven log telemetry (Gemini API), and a commitment to rigorous root-cause analysis (RCA).

🛡 PROVEN ENTERPRISE METRICS FIELD TESTED
100%
CSAT Rating
Tier-2 Enterprise Escalations
>95%
SLA Compliance
Global Multi-Timezone Queue
200+
Complex Incidents
Root-Cause Analysis & Permanent Fixes
4
Industry Roles
Enterprise, SMB & Global Accounts
bash — vaibhav@homelab — 80x24 vsh active
➡ whoami
Vaibhav Datta — Network & Infrastructure Analyst | Escalation SME
➡ cat credentials.txt
STATUS: Authorized to work full-time in Canada · Class 5 BC Licence · UFV BCIS
➡ curl status.opnsense.internal
HTTP/2 200 OK — OPNsense Active · Gemini API Log Telemetry Stream nominal
➡ █
01.

ABOUT ME

// PROFESSIONAL SUMMARY & LEADERSHIP

I am a Network & Infrastructure Analyst and Escalation SME, graduating with a Bachelor of Computer Information Systems (BCIS) in Networking & Cybersecurity from the University of the Fraser Valley (UFV) in Abbotsford, BC.

My experience spans full-lifecycle enterprise support: managing high-priority queues for multinational accounts, resolving tier-2 network routing and authentication bottlenecks, and conducting thorough root-cause analysis (RCA) to permanently eliminate repeat tickets. I believe true stability comes from addressing underlying configuration flaws across VLANs, DNS/DHCP, and reverse proxies rather than applying temporary patches.

Beyond operations, I engineer production-grade virtual environments using Proxmox VE, OPNsense, Docker, and Kubernetes (k3s). My recent initiatives include building an AI-monitored firewall pipeline using the Google Gemini API for automated real-time threat detection and webhook alerting.

As President of the UFV Computer Networking Club and the Robotics Club, I mentor peers in network design, hands-on lab orchestration, and competitive technology challenges.

Location & Mobility
Abbotsford, BC, Canada
Valid Class 5 BC Driver's Licence · Open to Remote & On-Site in Canada
Education
BCIS (Networking & Cybersecurity), UFV
University of the Fraser Valley · May 2026
Work Authorization
Authorized to work full-time in Canada
No employer visa sponsorship required
Leadership & Languages
President, UFV Networking & Robotics Clubs
Languages: Fluent in English, Hindi, Punjabi
02.

PROFESSIONAL EXPERIENCE

// INDUSTRY TRACK RECORD & IMPACT

Technical Support Representative, Resolution Specialist

Teleperformance · Remote
📅 May 2026 – Present · Tier-2 Escalations
  • Resolved tier-2 escalations for two major enterprise accounts, acting as the primary point of contact for 20-30 complex technical incidents per shift that Tier 1 could not close.
  • Performed advanced diagnostics on network routing, authentication workflows, and service misconfigurations using elevated privileges, while strictly following client data security protocols.
  • Guided front-line technicians on effective troubleshooting methodologies to ensure rapid incident resolution.
➔ Key Takeaway: Cultivated independent problem-solving skills in a high-pressure queue, resulting in a sustained 100% CSAT rating on complex enterprise escalations.

Tier 1 Help Desk Support

Edusecure · Remote, Part-Time
📅 April 2025 – April 2026 · Solo Shift Specialist
  • Delivered multi-timezone remote support for SMB clients as a solo shift technician, managing tickets via ServiceNow within strict SLAs.
  • Resolved endpoint, DNS, and authentication issues efficiently across phone and chat support channels.
  • Managed user lifecycles, including account provisioning, password resets, and access permissions across diverse client directories.
➔ Key Takeaway: Mastered time-management and prioritization as a solo technician, consistently exceeding a 95% SLA compliance rate across global time zones.

Cybersecurity Analyst - Network & Infrastructure Support

The Unified · Abbotsford, BC
📅 May 2024 – August 2024 · Root-Cause Analysis
  • Resolved 50+ network infrastructure and Windows endpoint incidents by correlating DNS, firewall, and endpoint logs to implement permanent fixes rather than temporary workarounds.
  • Deployed workstations, installed structured cabling, and configured peripherals to support local environments.
  • Maintained comprehensive change logs during infrastructure updates to ensure rollback safety and compliance.
➔ Key Takeaway: Developed deep analytical troubleshooting skills by pivoting to log-driven root-cause analysis, which reduced recurring endpoint failures by an estimated 40%.

IT Service Desk Coordinator - Intern

Precision Infomatic · Noida, India
📅 May 2023 – August 2023 · Samsung India Account
  • Supported 100+ enterprise users—including high-profile accounts like Samsung India—delivering consistent technical assistance and troubleshooting.
  • Assisted with Active Directory domain controller configuration, OU structuring, and GPO deployment for a major warehouse site.
  • Identified recurring incident patterns and bottlenecks within the support queue to update internal documentation.
➔ Key Takeaway: Honed process-optimization skills by analyzing incident trends, successfully cutting repeat tickets in targeted categories by 30%.
03.

TOPOLOGY & ARCHITECTURE

// INTERACTIVE ENTERPRISE TESTBED

🖍 Enterprise Proxmox, OPNsense & AI-Monitored Network Stack

Click any node below to inspect IP subnets, 802.1Q VLAN tags, firewall ACLs, and live Wireshark traces.

VLAN 10 (Management) VLAN 20 (Corporate AD) VLAN 30 (DMZ / Web) VLAN 40 (SOC & AI Tap)
Cloudflare Edge Zero Trust Ingress OPNsense / pfSense 10.10.10.1 / WireGuard Proxmox VE + LXC VLAN 10 // 10.10.10.10 Ubuntu VMs / Docker Windows Server DC VLAN 20 // 10.10.20.5 AD DS / GPO / DNS Ubuntu DMZ Node VLAN 30 // 10.10.30.15 Nginx / NPM / Tailscale Gemini AI SOC Tap VLAN 40 // 10.10.40.20 Python Log Pipeline
VLAN 10 (Management Trunk) OPERATIONAL · 99.98% UPTIME

OPNsense & pfSense Edge Gateway

Firewall, Router, WireGuard & Tailscale Ingress

IP / Subnet: 10.10.10.1 /24 (Gateway)
Firewall Rules: Strict 802.1Q Inter-VLAN ACLs, TLS Termination, Drop Invalid TCP Flags
Enabled Services & Roles
OPNsense SPI Tailscale Mesh WireGuard VPN Unbound DNS Gemini API Log Hook
🔍 Live Wireshark Packet Trace (Promiscuous SPAN)
> ICMP Echo (ping) request id=0x0042 seq=1 ttl=64 -> Pass through WAN filter
> OPNsense filterlog: pass in on igb0: 10.10.20.5 -> 10.10.10.1: proto UDP (DNS: 53)
> AI Telemetry [Gemini API]: Real-time analysis completed (0 anomalous flows detected)
04.

SOC THREAT SIMULATOR

// INTERACTIVE INCIDENT MITIGATION

🛡 Test Incident Response & Threat Defense in Real-Time

Select an adversarial attack vector below to simulate live packet flow and observe defensive countermeasures.

PACKET FLOW INSPECTION MITIGATED · SYN COOKIES ACTIVE
☠
Botnet Attacker
198.51.100.42 (Spoofed)
🛡
OPNsense Firewall
Stateful Inspection
🖥
DC01 & Web Nodes
10.10.20.5 : 445 / 80
Defensive Posture: Active Automated Triage Target Impact: 0.0% Downtime
SOC LIVE INCIDENT & SYSLOG STREAM PORT 514 / UDP
05.

TECHNICAL SKILLS

// INDUSTRY COMPETENCIES & TOOLING
🌐 Networking & Protocols
TCP/IP DNS & DHCP 802.1Q VLANs Subnetting (CIDR) Switch/Router Config TLS Termination Reverse Proxy (Nginx, NPM) WireGuard Tailscale Mesh Wireshark pfSense & OPNsense
🖥 Systems & Endpoints
Windows 10/11 macOS Linux (Ubuntu, Alpine, WSL2) Windows Server 2019 Active Directory (AD DS) Group Policy (GPO)
⚙ Automation & Virtualization
Proxmox VE LXC Containers Docker Compose Kubernetes (k3s) Bash Scripting Python Automation Git & GitHub n8n Orchestration Zapier Webhooks Google Gemini API Claude Pro
📋 ITSM & Escalation
ServiceNow Jira Service Desk Incident Lifecycle SLA Management Root-Cause Analysis (RCA) Runbook Documentation ITIL 4 Standards
🔒 Identity & Productivity
Microsoft 365 Exchange Online Google Workspace Role-Based Access (RBAC) Multi-Factor Auth (MFA) User Provisioning
06.

INFRASTRUCTURE & LABS

// ENGINEERING IMPLEMENTATIONS
01

AI-Monitored Proxmox & OPNsense Architecture

Real-Time Log Ingestion with Google Gemini API & Automated Webhook Alerting

2025 – PRESENT AI Telemetry & Defense

Engineered a production-grade Proxmox hypervisor hosting isolated Ubuntu VMs, secured by an OPNsense edge firewall and segmented VLANs. Developed a custom Python pipeline leveraging the Gemini API to continuously ingest and analyze OPNsense traffic logs, identifying anomalous network behavior in real-time. Configured webhook integrations to trigger instant SMS notifications for critical security events, streamlining incident response and ensuring rapid human-in-the-loop decision-making.

Gemini API
Real-Time Anomaly Scoring
Instant SMS
Webhook Alert Latency < 2s
OPNsense & VLANs
Strict Segmented Isolation
Proxmox VE OPNsense Gemini API Python Webhooks Docker
// AI-DRIVEN TELEMETRY PIPELINE
OPNsense Firewall [filterlog] ➜ Syslog Ingestion Daemon (Python)
  ➜ Batch Parsing & Anomaly Extraction via Google Gemini API
  ├── [Nominal Traffic] ➜ Aggregate metrics to local Prometheus time-series
  └── [High Severity Anomaly / Lateral Port Scan] ➜ Trigger Instant Webhook SMS to On-Call Phone
# Python: Real-Time OPNsense Log Ingestion with Google Gemini API
import os
from google import genai

client = genai.Client(api_key=os.environ["GEMINI_API_KEY"])

def evaluate_firewall_telemetry(log_batch):
    prompt = f"""
    Evaluate the following OPNsense drop logs for anomalous traffic spikes, 
    unauthorized lateral movement, or brute-force attempts.
    Return JSON with fields: 'threat_detected', 'severity', 'recommendation'.
    
    LOGS:
    {log_batch}
    """
    response = client.models.generate_content(
        model="gemini-2.5-flash",
        contents=prompt
    )
    return response.text

Enables instantaneous contextual threat triage, cutting manual log parsing time by 90% and empowering solo administrators with enterprise-grade autonomous monitoring.

02

Event-Driven Data Aggregation & Notification Pipeline

Automated Workflow Orchestration with Self-Hosted n8n & Zapier

2025 Workflow Automation

Engineered an automated workflow orchestration pipeline using self-hosted n8n and Zapier to continuously aggregate structured data from distributed public APIs and web endpoints. Implemented conditional logic and regex filtering to evaluate incoming data payloads against predefined technical criteria, filtering out noise and flagging high-priority events. Integrated automated webhooks to dispatch real-time summaries and instant notifications, reducing manual tracking overhead and eliminating data lag.

Zero Data Lag
Real-Time Event Triggers
Regex & Logic
Intelligent Noise Suppression
Multi-Channel
Webhooks, SMS & Email
n8n Zapier REST APIs Webhooks JSON Automation Workflows
// AUTOMATED WORKFLOW FLOWCHART
Public APIs & Endpoints ➜ n8n Webhook Ingestion ➜ JSON Schema Normalizer
  ├── [Conditional Evaluation & Regex Filtering] ➜ Discard low-priority noise
  └── [High Priority Event] ➜ Webhook Dispatch ➜ Instant Summary Notification
// n8n Custom Code Node: Conditional Filtering & Severity Scoring
const items = $input.all();
const prioritized = items.filter(entry => {
  const payload = entry.json;
  const isHighSeverity = payload.severity === 'critical' || payload.error_count > 5;
  const matchesRegex = /failed|timeout|refused/i.test(payload.status_message || '');
  return isHighSeverity || matchesRegex;
});
return prioritized;

Eliminated manual tracking overhead across external data sources, delivering actionable notifications directly to engineers within seconds.

03

Enterprise Multi-Hypervisor Homelab & Active Directory

50-User Simulated Corporate Network with Strict VLAN Segmentation

2024 – PRESENT Virtual Infrastructure

Multi-hypervisor stack on Proxmox VE and XCP-ng. Windows Server 2019 Domain Controller with Active Directory Domain Services, hierarchical Organizational Units (OUs), Group Policy Object (GPO) baselines, RBAC, and DNS/DHCP simulating a 50-user corporate network. VLAN segmentation isolating management, corporate, and DMZ traffic with Tailscale and WireGuard secure remote access.

50+ Accounts
Simulated Corporate Users
4 Isolated VLANs
Strict 802.1Q Segregation
WireGuard / Tailscale
Zero Port Forwarding VPN
Proxmox VE Windows Server 2019 Active Directory GPO Tailscale WireGuard
// ENTERPRISE HOMELAB SEGREGATION
WAN ➜ OPNsense / pfSense Gateway [10.10.10.1]
  ├── [VLAN 10: Management] ➜ Proxmox VE 8.x Host [10.10.10.10]
  ├── [VLAN 20: Corporate] ➜ Windows Server 2019 DC01 (AD DS, GPO, DNS, DHCP)
  ├── [VLAN 30: DMZ] ➜ Ubuntu 22.04 LTS (Nginx, Reverse Proxy)
  └── [VLAN 40: SOC Tap] ➜ Syslog Collector & Gemini API Anomaly Engine
# PowerShell: Inactive Account Audit & GPO Enforcement
$InactiveCutoff = (Get-Date).AddDays(-90)
$Accounts = Get-ADUser -Filter { LastLogonDate -lt $InactiveCutoff -and Enabled -eq $true } `
  -Properties LastLogonDate, Department |
  Select-Object Name, SamAccountName, Department, LastLogonDate

foreach ($User in $Accounts) {
  Disable-ADAccount -Identity $User.SamAccountName
  Write-Host "Disabled inactive account: $($User.SamAccountName)" -ForegroundColor Yellow
}

Maintains 99.98% uptime with complete segment isolation, replicating full enterprise Active Directory governance and zero-trust remote access.

07.

CERTIFICATIONS

// VERIFIED INDUSTRY CREDENTIALS
📋

ITIL 4 Foundation

ITSM Lifecycle & Service Delivery
✓ CERTIFIED
🛡

Google Cybersecurity

Security Operations, SIEM & Defense
✓ CERTIFIED
⚙

ServiceNow Fundamentals

Incident, Problem, Change & SLA Management
✓ CERTIFIED
🔒

Fortinet NSE 1 & 2

Network Security Associate
✓ CERTIFIED
💻

IBM IT Support Professional

Enterprise Infrastructure Support
✓ CERTIFIED
🎓

CompTIA Network+ & Security+

Enterprise Networking & Security Defense
● IN PROGRESS (TARGET 2026)
08.

CONTACT & DISPATCH

// INITIATE COMMUNICATION

Whether you are seeking an experienced Network & Infrastructure Analyst, an Escalation SME with a proven 100% CSAT track record, or a Systems Administrator ready to make an immediate impact across Canada or remotely — let's talk. I respond promptly.

./send_message.sh --interactive SECURE DISPATCH