Project page

Multi-Site Network Architecture Evaluation

Enterprise SD-WAN future-state architecture with redundancy, segmentation, and centralized security controls

Project snapshot

This project evaluates a multi-site enterprise network and recommends a more resilient future-state design built around SD-WAN, layered security, and operational standardization. The goal was to address single points of failure, uneven security controls, and growing demand for cloud, voice, and video services across multiple locations.

This project evaluates a multi-site enterprise network and recommends a more resilient future-state design built around SD-WAN, layered security, and operational standardization. The goal was to address single points of failure, uneven security controls, and growing demand for cloud, voice, and video services across multiple locations.

Primary issues identified

Recommended architecture

Segmentation and access control

The proposed design separates traffic into dedicated network segments for data, voice, video, servers, management, and guest access. I like that this approach reduces unnecessary east-west exposure, improves troubleshooting, and supports stronger access control through ACLs, policy enforcement, and authenticated network access.

Performance and continuity improvements

AreaImprovementBenefit
AvailabilityDual hubs and redundant WAN linksBetter uptime and failover support
SecurityNGFWs, MFA, centralized monitoringStronger and more consistent protection
PerformanceQoS for voice and video trafficImproved experience for real-time services
ScalabilityTemplate-based deployment and standardizationFaster onboarding for new sites

Why it matters

I think this project works well in a portfolio because it shows both analysis and design. It is not just a diagram. It demonstrates how I evaluate risk, map business needs to technical controls, and build a practical architecture that improves resilience, security, and growth readiness.