I help enterprises fix broken NAC deployments and implement new ones that stick. Across FortiNAC, Forescout, ClearPass, Cloudpath, and Cisco ISE. I stay until your team can run it without me.
The Problem
Because the implementation was never finished. The vendor leaves after go-live. The SI moves on. And your team inherits a system nobody fully understands.
NAC licensed, racked, and running — as a RADIUS server. 30+ features reduced to one function. You're paying for a platform you're barely using.
“We'll enforce next quarter.” Month 9: still in monitor mode. Year 2: someone asks why the ₹40L investment hasn't produced a single compliance report.
“Show me which devices accessed your ERP last month.” Silence. NAC deployed, enforcement on — but logging wasn't configured. Control without evidence.
Services
Not recommendations on paper. Hands-on implementation and remediation. I work with your team until the deployment is operational and your people can manage it independently.
Your NAC is deployed but not delivering. I audit what's there, identify the gaps, and bring it to full operational status — profiling, enforcement, compliance reporting, the works.
New NAC deployment done right. Five-phase methodology from discovery through documentation. Phased rollout, no big-bang. Your team trained and ready before I leave.
Switching vendors or consolidating after M&A? I map policies across platforms, design the unified framework, and execute the migration without losing enforcement.
SASE architecture design, ZTNA implementation strategy, and vendor-neutral advisory for organizations moving beyond traditional perimeter security.
Platforms
I've implemented, troubleshot, and rescued deployments across every major NAC platform. I recommend what fits your environment — not what pays me a commission.
Approach
Every engagement follows the same discipline. No shortcuts, no skipped phases.
Audit your network, profile every device, understand your AD, map what exists before touching anything.
Policy architecture mapped to your business rules. VLAN strategy. Guest, BYOD, IoT separation. Stakeholder sign-off.
One location. Monitor mode first, enforcement second. Tune policies against real traffic before scaling.
Gradual expansion, department by department. Communication plan. Clear escalation path. Never big-bang.
Documentation, runbook, team training. The “bus test”: can your team run this without me? If not, I'm not done.
About
I spent 7 years at Fortinet watching the same pattern: enterprises buy NAC, deployment starts strong, six months later it's shelfware. Not because the technology failed — because the implementation did.
Before Fortinet, I worked at Palo Alto Networks, Forescout, and Aruba — seeing NAC from every angle across 28+ years in enterprise security. I've designed solutions for banks, hospitals, manufacturers, and retail chains across India, Nepal, and the Middle East.
Now I fix those deployments. I stay with projects until they actually work. Not until the contract says I'm done — until the customer says it's done.
That's the difference between selling security and delivering it.
ISC² Certified Information Systems Security Professional
Applied AI for enterprise technology solutions
Aruba Certified Design Expert — wireless & NAC
BFSI, Healthcare, Manufacturing, Retail, IT Services
Results
Anonymized case studies from actual client engagements.
NAC was running as a RADIUS server — no profiling, no segmentation, no guest portal. Brought to full operational status in 4 weeks. Now audit-ready and enforcing across all branches.
Two financial institutions merged. Both had different NAC vendors. Policies conflicting, devices falling through cracks. Consolidated into one unified enforcement framework with single-pane visibility.
A “minor” profiling rule change quarantined every POS terminal across 200 stores. Emergency rollback and remediation completed in 4 hours. Built rollback procedures to prevent recurrence.
Let's Talk
30-minute discovery call. I ask questions, you talk. We figure out if I can help. You walk away with clarity — whether we work together or not.
Or reach out directly: peeyush@smartitsol.in