Network Security Engineer

Network Security Firewall Wireshark Linux

Work Experience Overview

This role focused on implementing advanced network security measures to protect critical infrastructure at King's College London. Working within a specialised cybersecurity team, I developed and deployed defensive mechanisms against common network attacks while ensuring system availability for legitimate users.

As part of a specialised cybersecurity team at King's College London, I was responsible for network defence implementation and security analysis on critical infrastructure. This project-based role involved working in a collaborative team environment with an emphasis on practical application of cybersecurity principles.

Key Outcomes

Reduced vulnerability to denial-of-service attacks significantly through strategic firewall configuration
Maintained 99.7% network availability during active attack simulations
Implemented real-time monitoring system that substantially reduced attack detection time
Network Topology Diagram
Figure 1: Network Topology - King's College London VM Network Security Test Environment

Key Responsibilities

  • Designed and configured secure network environments using virtualised systems
  • Conducted thorough analysis of network traffic patterns and identified security vulnerabilities
  • Implemented robust firewall configurations to protect against multiple attack vectors
  • Performed security testing through simulation of various network attacks (TCP SYN flooding, ICMP flooding, TCP Reset attacks)
  • Monitored and analysed network performance metrics during normal operation and under attack conditions
  • Documented security incidents, mitigation strategies, and system performance

Technical Achievements

  • Successfully defended against SYN flood attacks with custom-configured iptables firewall rules utilising hashlimit modules
  • Developed rate-limiting security mechanisms that reduced attack impact while maintaining service for legitimate users
  • Created comprehensive traffic analysis reports using Wireshark and tcpdump
  • Implemented network performance monitoring to detect anomalous behaviour during attacks
  • Conducted detailed protocol-level security analysis of TCP/IP traffic
  • Achieved significant improvement in network resilience against denial-of-service attacks

Selected screenshots showcasing my network security implementation work at King's College London. More comprehensive technical documentation, including detailed configuration files and security audit reports, can be provided upon request.

Technologies Used

Linux (Kali)
Iptables
Wireshark
tcpdump
iperf3
hping3
netwox
TCP/IP
ICMP
Virtual Machines

Experience Impact & Reflection

This role significantly enhanced my practical understanding of network security principles and developed my ability to implement effective defensive measures against common network attacks while maintaining system functionality for legitimate users.

Working with the Security Research Team at King's College London provided invaluable hands-on experience with real-world security challenges and cutting-edge defence methodologies. The knowledge gained from this experience has directly contributed to my expertise in network security implementation and analysis.

The solutions implemented during this project demonstrate my ability to:

  • Analyse complex network security threats and develop appropriate countermeasures
  • Balance security requirements with system performance and availability
  • Document and communicate technical findings to both technical and non-technical stakeholders
  • Work collaboratively in a fast-paced security research environment