Advance Network Security & EVE-NG Implementation

Job ID: 40046907

Budget: $250 – $750 USD

Network Security Project & EVE-NG Implementation
The goal is to build a modern, multi-layered Defense-in-Depth strategy, strengthen inter-branch connectivity, and harden critical business systems. This includes hands-on technical implementation using EVE-NG (60%), plus documentation deliverables (10%).

Tasks:
IP Addressing & Subnetting
– Departmental subnets, DMZ, firewall zones, scalable addressing for future growth.

L2/L3 Security Controls
– VLANs, ACLs, port security, DHCP snooping, DAI, storm control, and anti-spoofing.

Secure VPN Connectivity
– Encrypted site-to-site tunnels with failover for all branches.

Advanced IDS/IPS Deployment
– Install, tune, and validate IDS/IPS using simulated attacks.

Firewall High Availability
– Deploy active/active firewalls with internal, DMZ, and external zones.

AAA & RBAC Controls
– Integrate TACACS+/RADIUS and configure device-level role-based access.

End-to-End Testing
– Validate ACLs, segmentation, VPN tunnels, failover, firewall rules, and IDS/IPS alerts.

Delivery Deadline: December 12th
Project Files & Detailed Documents: Will be shared privately once we discuss further details.