Office Network Infrastructure Setup

Designed and deployed a complete local area network (LAN) for a new office site. This involved planning the network topology, configuring core networking equipment, and ensuring secure and efficient connectivity for all staff members.

Key Responsibilities

  • Designed network topology including VLAN segmentation for different departments.
  • Configured MikroTik routers for load balancing and failover.
  • Deployed Ubiquiti Unifi Access Points for seamless Wi-Fi coverage.
  • Implemented DHCP and DNS servers for efficient address management.
  • Set up VPN access for remote workers to securely connect to the office network.
  • Conducted cable management and termination for structured cabling.

Enterprise CCTV Surveillance Deployment

Led the installation and configuration of a comprehensive IP-based CCTV system for a large facility. The project focused on high-availability recording, remote monitoring capabilities, and integration with existing network infrastructure.

Key Responsibilities

  • Installed 50+ IP Cameras (Hikvision & Dahua) across critical monitoring points.
  • Configured NVRs (Network Video Recorders) for 24/7 recording with RAID storage.
  • Set up remote viewing access via mobile apps and desktop clients (SmartPSS).
  • Implemented separate VLAN for CCTV traffic to prevent network congestion.
  • Troubleshot camera connectivity issues in challenging physical environments.
  • Provided training to security staff on system operation and footage retrieval.

IT Asset & System Upgrade Program

Executed a company-wide initiative to upgrade aging hardware and software to improve employee productivity and security compliance. This involved mass hardware replacements and OS migrations with minimal downtime.

Key Responsibilities

  • Upgraded 100+ workstations from HDD to SSD for improved performance.
  • Migrated operating systems from Windows 10 to Windows 11 Pro.
  • Performed RAM upgrades on laptops and desktops.
  • Maintained detailed asset inventory documentation before and after upgrades.
  • Configured user profiles and restored data backups post-upgrade.
  • Disposed of old hardware securely according to company policy.

Secure Remote Access Implementation

Implemented a secure VPN solution to allow staff to work from home safely. This project was critical for business continuity and required strict security policies to protect company data.

Key Responsibilities

  • Configured L2TP/IPsec and OpenVPN on MikroTik routers.
  • Set up firewall rules to restrict VPN traffic to specific internal resources.
  • Created user accounts and distributed connection guides to staff.
  • Monitored VPN logs for suspicious activity and unauthorized access attempts.
  • Optimized bandwidth management (Queues) to prioritize business applications.
  • Provided remote troubleshooting support using AnyDesk and TeamViewer.

Centralized Access Control System

Deployed an electronic access control system for office security. Integrated the system with the network for centralized management and reporting of entry/exit logs.

Key Responsibilities

  • Installed magnetic locks, keypads, and biometric readers (ZKTeco).
  • Wired access control panels to the central network switch.
  • Configured ZKAccess software for user management and time attendance.
  • Integrated access control alerts with the security monitoring center.
  • Issued RFID cards and registered fingerprints for all employees.
  • Maintained the system database and performed regular backups.

Self-Hosted Metabase & No-Code Platform

Deployed a robust self-hosted data analytics and application development environment on a VPS. This solution enabled the company to visualize data with Metabase and build custom internal tools using NocoBase, all running securely in Docker containers with custom subdomains.

Key Responsibilities

  • Provisioned and secured a Linux VPS (Virtual Private Server) for hosting services.
  • Implemented Docker and Docker Compose to containerize Metabase and NocoBase applications.
  • Configured Nginx Proxy Manager to handle reverse proxying and SSL termination.
  • Set up custom subdomains (e.g., analytics.company.com, app.company.com) for easy access.
  • Managed DNS records to point subdomains to the VPS IP address.
  • Established automated backup routines for Docker volumes and databases.