Principal Network Engineer Resume
Southlake, TX
SUMMARY:
- Over 8+ years’ experience in routing, switching, firewall technologies, systems design, administration and troubleshooting
- In - depth knowledge of deploying & troubleshooting LAN, WAN, WLAN, VPN, Frame relay, MetroEthernet, EtherChannel, IP Routing Protocols RIPv2, EIGRP & BGP, ACLs, NAT, STP, VTP, VLAN, HSRP, GLBP, VOIP, L2/L3 QOS.
- Strong hands on experience in layer 3 routing & layer 2 switching and dealt with Nexus models like 7K, 5K, 2K series, Cisco router models ASR1004/1002, 7200, 3800, 3600, 2800, 2600, 2500, 1800 series and Cisco Catalyst 6500, 4500, 3750,2900 and 3500XL series switches.
- Experience deploying F5 load balancers, SSL/Security Certificates and Load Balancing.
- Have senior/expert knowledge of Cisco routers/switches/firewalls perform EIGRP/BGP routing, work on IP/ARP/MAC issues, troubleshooting VLAN or physical connectivity to various devices, troubleshooting Cisco access-list and NAT issues.
- In-depth knowledge of Security, including VPN, ASA/PIX and IPSEC.
- Experience in trouble shooting of Cisco VOIP system and Configured Voice ports and Dial peers on the router for the VOIP call.
- Monitoring links using Hp Open view/Ciscoworks2000 and used various scanning and sniffing tools like Ethereal (Wireshark).
- Dealt with the escalation problems from Leve1, Leve2 & level 3 for routing, switching and WAN connectivity issues using ticketing system remedy.
- Provisioning and troubleshooting Ethernet services, Gigabit networks and Connectivity issues with WAN types (T1, E1, DS3, OC3, OC48 and Frame relay) data circuit debugging.
- Experience in implementation, support and trouble shooting of VLAN’s including operational knowledge of spanning tree protocol (STP), VLAN trunking, inter VLAN routing and ISL/802.1q.
- Experience in Configuration of ADSL (PPPoE, PPPoA), ISDN, leased lines and frame relay connections.
- Dealt with monitoring tools Solar Winds, deployed IPSLA with netvoint, Kiwi Cat tool and HP TopTools-created the network topology maps to use with these tools. Used Visio to design new network segments.
- Expertise in opening work tickets and providing customer/technical support for managing, securing, and monitoring remote access to network resources around the world.
- Travel to remote sites as appropriate to participate in data center moves, server installs, and team meetings.
- Exceptional Communication skills and a demonstrated ability to create and manage cohesive/productive work teams.
- Provided 7x24x365 availability and on-call support as required.
TECHNICAL SKILLS:
Expertise in LAN technologies: Ethernet, Fast Ethernet & Gigabit Ethernet, VLANS, VTP, STP, RSTP, 802.1W
Expertise in WAN technologies: Frame Relay, MPLS, leased lines & exposure to DS1, DS3, OC3, OC12, OC48, T1 /T3 & E1/E3
Expertise in WLAN technologies: Autonomous AP s, Lightweight AP s, WLC, WDS, WLSE, Standards - 802.11A, 802.11B, 802.11G
Cisco & other vendor equipments: ScreenOS, Junos, Juniper Firewall NetScreen-5200, SRX 5800, Cisco routers Nexus 7K, (7200, 3800, 3600, 2800, 2600, 2500, 1800 series), & Cisco Catalyst switches (6500, 4900, 3750, 3500, 2900, series); PIX Firewall 515/535, ASA Firewall 5505/5510, CatOS, Cisco IOS 11.x, 12.x, PIX OS 6.x, 7.x; Load Balancers Citrix Netscaler
Network Security: Configure and troubleshoot firewall rules/policies, NAT/PAT, Ingress & Egress Firewall Design, VPN Configuration, Load Balancing, IDS/IPS, URL Filtering -Websense, Kiwi Syslog Server Logging, Ethereal
Routing Protocols: RIP, IGRP, EIGRP, OSPF, IS-IS, BGP and HSRP
Infrastructure services: DHCP, DNS, SMTP, POP3, FTP, TFTP, IIS
Network Management: SNMP, CiscoWorks LMS, HP Open View NNM, MRTG 213
Microsoft Network Platforms: Configuration, troubleshooting & administration of Windows 2000/2003 networks with Active Directory services; Installation, configuration & administration of MS Exchange 2003/2000
IP Telephony: SIP, H.323, RTP, voice gateways, CCM
Platforms: LINUX, UNIX, Windows XP, NT, 2000, 2003
Database Systems: MySQL, MS ACCESS.
Programming: Knowledge of C, C++, Java
Documentation: MS Office, MS Visio
PROFESSIONAL EXPERIENCE:
Principal Network Engineer
Confidential, Southlake, TX
Environment: The operation of a large Wide Area/Local Area “IP” Network which is built on MPLS backbone. The network is comprised of multi-vendor routers, Ethernet switches, and load balancers which supports various large scale service networks: WSN (Wireless Service Network), EDN (Engineering Data Network), RAN (Radio Access Network) and IT (Information Technology) Network.
Responsibilities:
- Generate precise methods of procedure (MOPs) which will be implemented by Operations team to support complex changes.
- Lead in building two new 10,000 sqft Data Centers for Terremark with all Cisco(CRS,7K,2K, ASR9K) transport gear deployed
- Experience working on projects involving scalable routing solution to migrate the routes of legacy cisco 12K/6500.
- Worked on projects building new POD’s including DMZ with all Juniper(MX,EX,QFX,SRX) transport gear deployed
- Experience migrating the 10G transport backbone to 100G for Cisco CRS and Juniper MX-960
- Worked on leading multiple projects to migrate apps in phases to the new transport POD build
- Experience with data center converged networking (FCoE) based on Cisco Nexus 7000/5000/2000 architecture as well as the Nexus 1000V.
- Worked in building a new 10,000 sqft Data Center in Texas using cisco FabricPath moving from the conventional collapsed core design.
- Experience working with different Vendor SLB (CSS, ACE, F5, A10) projects.
- Deep exposure to Juniper data center products such as Ex/Mx Series Routers (specific model numbers such as MX-480, EX-3800, MX-960)
- Working with enterprise or carrier class Cisco routers/Switches such as 12000 series, 7600 series, or CRS, ASR 9K (specific model numbers such as XR12000, 12016, 12010, 12406, CRS-3, 7604, 7613)
- Responsible for the quotes/PO’s submitted to meet the roadmap from strategic planning team
- Participate in forums and projects with other Transport Systems teams to discuss and solicit feedback on the standard integration plans and method of procedures.
- Responsible for managing activities, Upgrading IOS - Upgrading hardware and installing new devices, - Tuning (Configuration), make standardization for the topology.
- Provide networking solution deployment, and technical documentation for the VZW WAN, LAN, and Network Equipment Centers.
- Carried out performance monitoring & documentation of relevant network segments to ensure data integrity & environmental safety
- Acts as high level, expert technical consultant on highly complex design issues to customers and less experienced personnel.
- Provide on-call support as necessary.
Senior Network Engineer
Confidential, Dallas, TX
Environment: Planning and designing clients network infrastructures from ground up and 3rd level support to the Network Operations. Network devices and Technologies include Cisco Routers/Switches, Nexus 7K,,5K,2K, Load-Balancers ACE, VPN concentrators, infoblox, Netqos ustream as well as others for all data centers and branches
Responsibilities:
- Develop and/or update standards, roadmaps and guiding principles for Network Communications.
- Deployment of new hardware in compliance with ONCOR standards and best practices need to create as-built documentation at the end of project.
- Hands-on experience configuring and installing Cisco technologies including routers, IOS & Nexus switches, wireless devices and Firewalls.
- Strong working knowledge using VPN technologies, encryption and tunneling protocols such as Cisco DMVPN, IPSEC, GRE, and L2TPv3
- Worked on project to Cleanup firewall(Juniper SRX) policies and implement firewall rules in Juniper Netscreen and Cisco ASA firewalls.
- Configure, modify and maintain zone-based firewall policies for the corporation
- Established Standards, Policies & Procedures for Network Infrastructure, in collaboration with the Network Operations team.
- Creates and maintains the Reference Architecture for the Network environment including; switches, network design, Virtualization technologies, TCP/IP, Latency, EIGRP, MPLS, LAN and WAN solutions, and tools to provision, monitor and manage within the environment.
- Provide network solutions for delivering services in RFID, Site Surveys, Controller Configuration and Indoor & Outdoor Wireless Solutions
- Design, implementation and troubleshooting of 802.11a/b/g/n technology & wireless guest access solutions.
- Experience turning up and testing complex Controllers, NCS, WCS and Cisco WIFI installations.
- Configuring/Troubleshooting of Cisco Routers 3800, 3900, 7600 and Nexus 7K,5K,2K switches
- DNS, DHCP, IP Address Management experience with Infoblox.
- Experience in the deployment, configuration, integration, support, and administration of new infoblox.
- Creating/updating well detailed engineering documents for projects involved.
- Advises senior management regarding the current operational status networks. Keeps management abreast of all pertinent developments.
- Assigns work and provides direction with regard to timeliness and completion of project objectives. Addresses performance issues within prescribed guidelines. Provides performance input upon completion of project.
Network Engineer
Confidential, Memphis, TN
Environment: Corporate office architecture in the migration/building of two new Data Centers bringing 80% virtualization.
Responsibilities:
- Working in migrating existing Data center and network infrastructure from HQ to a new data center for optimal functionality and management.
- Design and deploying a new data center for redundancy and zero network down time during disaster/natural calamity.
- Designed network connectivity and network security, between various offices and data center. Installed and implemented network infrastructure & devices to build new sites.
- Performed troubleshooting, and configuration aspects on the WAN Frame-Relay, ATM, MetroEthernet, T1, DS3, OC3 & OC48, . Installed and configured various network devices in Data Center, besides installation of leased lines in data center. Worked as a liaison with major telephone and special circuit providers to resolve WAN circuit outages on a daily basis.
- Worked on Corporate MPLS network. Evaluate & understood the business need, requirement & suggested cost effective solution for integration & implementation of MPLS network.
- Worked with application and QA team to implement DR & load testing.
- Worked on setting up a test lab for Nexus 7K, 5K & 2K connecting to Xigo & blade servers.
- Implemented a network test lab for Argo application for new data center scalability.
- Design and implement new WAN architecture scalable for VOIP and can support QoS using MPLS.
- Configure and verify basic IP Phone support Voice VLAN, Trust and CoS options.
- Established IPSEC-VPN tunnels with ASA firewall for Vendors and remote sites . Build new two ASA to perform VPN lan to lan tunnels and remote user sessions replacing old VPN 3060.
- Designed perimeter security policy; Implemented Firewall ACL’s, allowing access to specified services. Enabled IDS signatures in Firewall & fine-tuned TCP & UDP
- Responsible for layer 2 security, securely managed all switches and routers, and deployed a syslog server to proactive network monitoring.
- Used KiwiCat tools to manage configurations from desktop for network devices, including routers, switches and firewalls. Generate network device configuration reports, such as port, MAC, APR and version details.
- Implemented NetQos to consolidate information from each remote site into actionable intelligence for generation of over 150 reports, including SLAs levels.
- Implemented the Cisco secure access control servers to offer centralized command and control for all user authentication, authorization and accounting.
- Worked on load testing of network infrastructure during the project phases for new applications simulating 2000 users.
- Key contributions include troubleshooting of complex LAN /WAN infrastructure that includes routing protocols EIGRP & BGP.
- Installed and set up monitoring tools Solar Winds to provide real-time, centralized network management across multiple locations with real-time status of each location in its own independent dashboard.
- Support the telephony specialist in the phased migration from PBX based systems to VOIP. Configured separate Vlans for VOIP to implement QoS and security for VOIP.
- Involved with the Systems team to Install, configure, & maintain AD, DNS, DHCP on Windows 2000 Server, also configured a FTP server; Installed configured & maintained MS Exchange Server.
- Experience in troubleshooting of Nortel switches using SMLT protocol using IST (Inter switch trunk) Operation.
- Specific knowledge in the set up and operation of Nortel Layer 2 and 3 switched networks operating on a Nortel 8600 chassis.
- Experienced in the design and operation of Cisco and Juniper network products and Cisco IOS and JUNOS.
- Responsible for meetings with customer to determine project requirements, making technical recommendations, providing cost analysis, creating statements of work, and creating project documentation using MS VISIO.
- Provide front end on-call network support 24x7 for all network infrastructures in the co-operation.
- Other responsibilities included documentation, presenting design and change control.
Systems Administrator
Confidential
Environment: Large branch office environment with Cisco routers 2900, 3600, switches 2900, 2800, 1900 firewall, and VPN concentrator.
Responsibilities:
- Responsible for Internal and external accounts and, managing LAN/WAN and checking for Security Settings of the networking devices (Cisco Router, switches) co-coordinating with the system/Network administrator during any major changes and implementation.
- Responsible for the installation, configuration, maintenance and troubleshooting of the company network. Duties included monitoring network performance using various network tools to ensure the availability, integrity and confidentiality of application and equipment.
- Installation & configuration of Cisco VPN concentrator 3060 for VPN tunnel with Cisco VPN hardware & software client and PIX firewall.
- Configured Firewall logging, DMZs & related security policies & monitoring.
- Creating Private VLANs & preventing VLAN hopping attacks & mitigating spoofing with snooping & IP source guard.
- Involved in troubleshooting of DNS, DHCP and other IP conflict problems.
- Implementation of name resolution using WINS & DNS in TCP/IP environment.
- Configured FTP server for inside/outside users & vendors.
- Designs the security architecture for highly complex transport and application architectures addressing well known vulnerabilities and using access control lists that would serve as their primary security on their core & failover firewalls.
- Used various scanning and sniffing tools like Wireshark.
- Enabled STP Enhancements to speed up the network convergence that include Portfast, Uplinkfast and Backbonefast.
- Configured network access servers and routers for AAA Security (RADIUS/ TACACS+)
- Provides expert technical support in troubleshooting highly complex data, voice or video network and hardware problems; researches and analyzes significant, complex network problems that require evaluation of intangibles, such as downstream effects on client satisfaction; assesses and evaluates current and future systems.
- Participate in 24 x 7 incident & problem support.