Principal Network Engineer Resume
Hopkinton, MA
SUMMARY:
- Over 9 years of experience in Network Engineering and Administration.
- Strong experience in Network Design, installation, configuration and maintenance of Enterprise Networks using Cisco routers, Catalyst Switches, ASA Firewalls, Wireless Access points and Wireless bridges and Confidential Procurve switches.
- Extensive knowledge in data communication protocols and standards including TCP/IP, UDP, IEEE 802.3, Token Ring, Cable Modem, PPPOE, ADSL, Multilayer Switching, DoD standards, and IP Routing Protocols like RIP, EIGRP,OSPF& BGP.
- Experience on Network Management System and monitoring like SNMP, Cisco Works and MRTG.
- Experience in implementation, support and troubleshooting of VLAN’s including operational knowledge of spanning tree protocol (STP), VLAN trunking, inter VLAN routing and ISL/802.1q.
- Experience in implementing IP Tunneling, DES/3DES, and Access Control List (ACL).
- Extensive and In - depth knowledge in Security, including VPN, ASA/PIX & Confidential .
- Monitor, debug and resolve Cisco infrastructure issues like Routing, network hardware/Software failure, configuration, WAN outages, and performance issues.
- Experience in Implementing Cisco PIX firewall and building Wireless networks and network security policies in a highly secured and redundant configuration.
- Hands on experience with network Layer 3 routing protocols OSPF, RIP, IGRP, EIGRP, BGP etc.
- Strong experience in MPLS, ATM, Frame Relay, Confidential, VPN’s, VoIP, QoS.
- Hands on experience on Authentication protocols (CHAP, PAP).
- Worked with TACACS+ and RADIUS servers for managing user authentication and configuring shell authorization set in CISCO ACS for AAA clients.
- Strong working knowledge of ITIL processes like Incident management, change management and problem management.
- Experience with implementation of DNS and DHCP protocols.
- Configuring basic firewall rules with Access Control List (ACL).
- Created Perl scripts for logging into Cisco routers, copy logs from one network to another for analysis.
- Performed Network analysis with packet capturing tools such as Sniffers, Wire-shark and InfiniStream.
- Extensive experience using Microsoft suite such as Word, Power Point, Visio, Excel etc.
- Experience in working as part of a highly cross-functional & global team.
- Strong interpersonal, organizational communication, customer service & presentation skills.
TECHNICAL SKILLS:
Cisco Products and other equipment: Routers (2500, 2600, 2821, 2921, 3200, 3600, 3700, 3800, and 7200), Cisco L2 & L3 Switches (2900, 3560, 4500, 5000 & 6500)Cisco Nexus (7K/5K/2K), ASA 5505/5540, PIX, FWSM, Confidential Procurve Switches (2610/ 2620/2615 ), Cisco Wireless LAN Controllers (4402/5508), Cisco UCS, Cisco ISE, Cisco WCS, Cisco Access Points (1131/1230/1242/1524 ), Cisco 1310 WCB s, Cisco ACE 4710 load balancer, F5 load balancer. Arista (7050QX-32S7050SX-64/128), Brocade (VDX6940, 6740), Cisco Nexus 3172PQMellanox (SX1710, SX6790), Quanta T1048-LB9.
LAN Technologies: Fiber-Channel, FCoE, Ethernet, Fast Ethernet, and Gigabit
Ethernet, VLAN, Inter: VLAN Routing, VTP, STP, RSTP, RPVSTLWAP, WLC
WAN Technologies: Frame Relay, ATM, ISDN, PPP, HDLC, CSU/DSU, DS0, DS1, DS3OCX, T1/T3
Firewalls/VPNs: ASA, PIX, Cisco VPN 3000 series Concentrator
OS products/Services: Alcatel Lucent-VitalQIP, DNS, DHCP, Windows (2000/2003, XP7), UNIX, LINUX, Microsoft SQL Server 2000/2005, VMwareCitrix, NOS6.0.1, EOS 4.14.7M, MLNX-OS, Cumulus Linux, CentOS 6.5
Protocols/Services: Routing Protocols (RIP, IGRP, OSPF, EIGRP, BGP, RIPNG), QoSHSRP, VRRP, TCP/IP, UDP, ESP Confidential, MPLS, PPP, VoIP, SIP, H.323WAN accelerators
Network Management/ Testing Tools: HPNA, Wireshark, SNMP, Fluke, NetScoutnGeniusInfiniStreamCisco Works, Ethereal, Riverbed, IXIA Optima XM2, IPERFEchidna, MongoDoctor
Security Server Protocols/VOIP: AAA (TACACS+ & RADIUS),H.323/SIP/MGCP, Cisco ATA/Cisco IP Phones, AS5300/AS5350/IPS/IDS
Languages: C, C++
PROFESSIONAL EXPERIENCE:
Confidential
Principal Network Engineer, Hopkinton, MA
Responsibilities:
- Currently working as a Network Engineer with Confidential ’s GHE Storage and Ethernet connectivity division.
- Responsible for qualifying and supporting use of Ethernet switches in EMCs storage products such as VNX, VMAX, XtremeIO, Islion and converged infrastructure solutions like VBLOCK, VSPEX and so on.
- Collaborate across multiple disciplines such as hardware, software, manufacturing, server & storage to ensure product requirements are being implemented to meet program goals.
- Responsible for creating and updating design and functional validation plans of embedded switch products including developing solutions to complex engineering problems.
- Configure and upgrade Cisco 3172PQ, Brocade VDX6940 and Arista 7050SX-128 series switches to meet Confidential SAN standards and involved in executing DVT plan for these switches.
- Configure and troubleshoot VLAN and port-channel issues, speed and duplex mismatch, layer 3 switch issues, default gateway configuration, spanning tree, hardware and firmware related issues.
- Involved in completing two AC Power line testing projects as per Confidential corporation’s environmental requirements 108000336 standards to meet quarterly program goals.
- Involved in deploying and troubleshooting network solutions based on Cisco Data Center technologies including Nexus series switches 7k, 5k and 2k and Catalyst 6500 switches.
- Configure and troubleshoot routing protocols (BGP, OSPF, RIP), WAN/LAN topologies, MPLS, VPNs, ACLs, firewalls (FWSM and ASA), SSL, Confidential and supporting hardware.
- Installed Nexus 7010 core switches and Nexus 5010 and 2148 server access switches. Configured 7010’s with multiple distribution VDC’s running EIGRP for route propagation.
- Created firewall application inspection policies to ensure use of Layer 7 deep protocol inspection and validation in addition to Layer 2 - Layer 4 firewall rules.
- Implementing security policies using ACL, Firewall, Confidential, SSL, VPN, IPS/IDS, AAA.
- Performed security audits of perimeter routers, identifying missing ACLs.
- Configured Cisco ASA 5520 firewall to use multiple security levels and interfaces.
- Configuring Site to Site Confidential tunnels over Internet based on encryptions like DES, 3DES, AES with hashing MD5, SHA and ACL rules.
- Provide L3 Network support including operation, change management and request fulfilment for network devices such as routers, switches, firewalls and Load balancers.
- Documented lab test plans and reports, develop procedures and new configurations, provide training for operations departments and other engineers, provide written troubleshooting, debugging, and problem detail to vendors.
Confidential
Network Operations Engineer, Quincy, MA
Responsibilities:
- Worked as a Network operations engineer providing support to a large retail client consisting of over 750 Confidential & Confidential and Giant-C stores as well as Confidential USA corporate locations.
- Responsibilities include troubleshooting layer 2/ layer 3 issues arising in the Network environment and resolve them prior escalations and ensure SLA’s are met.
- Administer and manage the network infrastructure using management tools such as HPNA, CSM, NetQoS, Tivoli/Remedy, Netview/ Netcool, Air-Defense appliance, Putty Console and CLI.
- Provide tier 3 and 4 support for Confidential USA retail stores and corporate locations on a 24/7 On-call rotation schedule.
- Monitor and Manage trouble-ticketing system (BMC Remedy) ensuring accurate and up-to-date information.
- Configure and troubleshoot routing protocols such as RIP, OSPF, EIGRP, BGP and HSRP. Troubleshoot VLAN and spanning tree issues, duplex mismatch, RF Coverage and interference issues, hardware and firmware upgrades.
- Create and manage local VLANs based on department function, configure ports with static VLAN assignment, 802.1Q trunks, and dynamic ISL trunking using PAgP for layer 2 forwarding.
- Open and manage RMA Service-Requests with Cisco and Confidential (TAC) for device replacement as well as obtaining technical assistance when troubleshooting hardware andsoftware issues.
- Installed and Configured Cisco ASA 5505/5540 firewalls and configured remote access Confidential VPN on ASA 5505.
- Implement an Confidential Site-to-Site VPN between the Cisco ASA5505 at gas station and Cisco 1841 ISR with a security IOS image at the main store.
- Implement a Clientless SSL VPN (WebVPN) to allow users to establish a secure, remote-access VPN tunnel to the Cisco ASA 5505 using a web browser.
- Involved in replacing core and distribution layer switching with Cisco Nexus 7000 utilizing VDCs and 10g VPCs to server and user access.
- Datacenter upgrades from C6500s to Nexus 7k/5k/2k, double-VPC between distribution and access layer switches, single-VPC to servers.
- Added WS-6509 4-port Gigabit Ethernet line card on a 6506-E series switch to support 40G Ethernet per port solution. Also enabled the 10G Ethernet mode operation by configuring port groups.
- Used F5 to customize the dynamic distribution of global traffic.
- Configured F5 BIG IP GTM to distribute application traffic to the desired data center and directed the traffic to other servers in case of server overload.
- Deploy Load Balancing solutions on F5 BigIP platform and configure F5 BigIP system for new VIP creation and related Layer 4 - 7 profiles.
- Supported F5 LTM & GTM Versions 9 & 10 for troubleshooting, implementation and daily support.
- Configure and replace Cisco 1310 wireless bridges, Cisco 1131, 1242, 1524 series access points, Cisco and Confidential switches and Cisco 2821, 2921 ISR routers as a part of break-fix.
- Support the lab users providing solutions to the problems, installing software packages, creating Perl scripts for UNIX/NT, managed and documented the lab network as needed.
- Work with third party vendors and field technicians and make VLAN configuration changes on the go.
- Performed wireless site surveys using survey tools such as Fluke Networks AirMagnet and documented heat maps.
- Experience with Cisco ACE 4710 load balancers and load balancer techniques.
- Extensive experience in configuring and troubleshooting Cisco WLC 4402, 5508 wireless controllers.
- Identified and troubleshoot issues such as coverage, interference, broadcast, delay time-out, signal strength, WPA authentication, PSK, encryption, channel settings and so on.
- Document network incidents and changes working in diverse management environments.
- Provide remote assistance to level 2 engineers and field technicians during break fix and replacement of hardware devices.
- Provided technical documentation on troubleshooting techniques for access points and wireless bridges and shared it with my teammates and Level 2 engineers.
- Ensure thorough network documentation, including maintaining each sites network matrix, backup configurations and network diagrams using MS Visio and MS office tools and upload them to SharePoint Folder.
Confidential
Network Consultant, Quincy, MA
Responsibilities:
- As a part of Confidential Project, involved in configuring and replacing Cisco switches with Confidential switches at over 750 Confidential USA retail stores.
- Replaced over 4000 Cisco 2960 switches with Confidential Procurve-2610 switches at all the retail locations and also provided assistance during the installation.
- Configure switches per the configuration template and test the functionality prior shipping the equipment to the site.
- Assisted level 2 engineers and field technicians during the switch installation.
- Update HPNA with the device hostname and IP address info and add them to Tivoli monitoring.
- Involved in after hour project implementation, hardware installation and configuration changes.
- Modify and update share-point folder with all the latest documents consisting of store refresh, store remodeling, LAN diagrams and configuration templates.
- Performed Confidential site certification at Confidential distribution facility in Assonet, MA to validate the proper installation of mesh access points ( AIR LAP1522AG) as well as confirm Confidential performance and coverage in the trailer parking lot area.
- To perform the site survey used a laptop with 802.11a/b/g wireless adapter, AirMagnetWiFi Analyzer-v8.7, AirMagnet Survey PRO-v7.2 and Cisco Spectrum Expert - v3.3.52.
- Verify that AP hardware is mounted correctly and confirm that connectivity is established back to the wireless controller(AIR WLC5508), via Ethernet cabling or, in the case of mesh AP’s, wireless backhaul to the root AP.
- Used AirMagnet Survey Pro v7.2 to map RF coverage for each AP individually by collecting data (RSSI, SNR, packet retry percentages, etc.) throughout its cell. Evaluate and merge all AP data together for a complete view of the targeted wireless coverage area and identify potential shortcomings.
- Collect device information for each AP, including hostnames, IP addresses, MAC addresses, and current power and channel settings. Suggest or make changes to AP transmit power, channels, or controller settings as necessary.
- Performed a wireless spectrum analysis to identify potential sources of RF interference.
- Configured and replaced 2821 routers with 2921 ISR series routers as a part of router upgrade project.
- Upgraded IOS version on over 4000 Access points after identifying bug on the older version.
- As a part of warehouse refresh, replaced over 40 switches within the change window provided by the client with zero down time in a 24X7X365 operations facility.
- Updated HPNA and VitalQIP with device IP, host name, serial number and asset tag info.
- Upload the documentation consisting of configuration templates and Visio designs to the SharePoint.
Confidential
Network Engineer, San Diego, CA
Responsibilities:
- Involved in complete LAN, WAN development (including IP address planning, designing, installation, configuration, testing, and maintenance).
- Deployed and implemented corporate infrastructure using IP protocols RIP, OSPF, EIGRP and BGP.
- Extensive knowledge and troubleshooting in data communication protocols and standards including TCP/IP, UDP, IEEE 802.3, Token Ring, Cable Modem, PPPOE,ADSL, Multilayer Switching, DoD standards.
- Performed installation and configuration of Cisco Switches, Routers, Telnet, CSU/DSUs, network management and analysis tools.
- Configured & Maintained the Local Network using 2900 series Switches and Cisco 2800 routers.
- Configured and installed the 3800 series Routers in place of older 1800 series Routers.
- Configured and implemented ASA/PIX Firewall.
- Upgrading IOS versions on Cisco Switches and Router through Cisco Network Assistance and TFTP.
- MPLS configuration throughout the company with BGP protocols.
- Designed corporate security infrastructure using Cisco VPN concentrators, and ASA firewalls, IDS and FWSM.
- Configured STP prioritization for selection of a Root Bridge.
- Configured switches with RSTP protocols for switching in the organization.
- Monitored network performance and implemented performance tuning using Riverbed.
- Involved in L2/L3 Switching Technology Administration including creating and managing VLANs, Port security, Trunking, STP, InterVlan routing, LAN security.
- Troubleshooting of complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF & BGP.
- Used Load balancer ACE and load balancing techniques for efficient performance and to increase reliability through redundancy.
- Configured Client VPN technologies including Cisco’s VPN client via Confidential .
- Configured Protocol Handling, Object Grouping, and NAT on ASA Firewalls.
- Migration from Frame-Relay/ATM network to MPLS-based VPN for customer’s WAN infrastructure.
- Configured ASA Security Appliance to allow inbound SSL, WWW, SMTP, FTP traffic in to the DMZ server.
- Configured Standard and Extended ACLs for security.
- Configured FTP server for inside/outside users and vendors.
- Involved with a Team to configure voice VLANs and implemented QoS for VOIP.
- Created access control lists that would serve as the primary security on their core and failover Firewalls.
- Managed applications and network performance with network analyzers, NGenius, NetScout and Netflow monitoring.
- Managed the network performance using Cisco works LMS 3.1, Confidential OpenView.
- Install and maintain various server technologies including, TCP/IP, Active Directory, Routing and Remote Access, Terminal Services, Microsoft Exchange 2003.
- Participated in on call support in troubleshooting the configuration and installation issues.
- Develop documentation set for each site using Microsoft Office Suite and Visio.
Confidential
Network Engineer, Cleveland, OH
Responsibilities:
- Involved in Configuring and implementing of Cisco Enterprise Composite Network model (Enterprise edge)
- Installed and configured Cisco Routers (1800, 2500, 2600, 2800, 3700, 3800, 7200series routers) and Cisco Access Routers (AS 5300 Series)
- Configured networks using routing protocols such as RIP, IGRP, OSPF, EIGRP, IS-IS, BGP and route redistribution.
- Configured the networks using multicasting protocols and QoS.
- Installed and Configured Cisco (2950, 3500, 4000, 4500, 5000, 6500 Series switches)
- Involved in troubleshooting L2/L3 environments.
- Installed and configured Cisco ASA 5505 firewall and configured remote access Confidential VPN on Cisco ASA 5505.
- Planned and implemented various security projects including (IPS/IDS Deployment, network monitoring, and network architecture)
- Implemented HSRP on the Cisco 2948G Layer 3 switches and EIGRP, OSPF on 2 Cisco 2610 routers, the Layer 3 switch, 3 Cisco 3500XL Switches, Cisco 3524XL switches for load balancing and fail over.
- Working on protocols like HTTP, HTTPS, SMTP, POP3, LDAP, SNMP, DNS, DHCP, NTP, FTP.
- Design and Implement new WAN architecture scalable for VoIP and can support QoS using MPLS.
- Involved in installation of Cisco 3845 ISR routers which was the CE equipment for MPLS
- Used Perl scripting for running commands on Cisco routers to get instant information and also to consolidate account creation process.
- Installing and designing, supporting and managing a Cisco wireless LWAPP environment, supporting both 802.11a (5Ghz) and 802.11b/g (2.4Ghz) environment
- Working knowledge of Confidential technologies like 802.11a/b/g/n and configured wireless access points using WEP, WPA2 standards.
- Experience in Wireless technologies: RF, Wi-Fi, WI-Max etc.
- Monitoring and Tracking of network response time and availability using Cisco Works.
Confidential
Network Support Engineer, San Antonio, TX
Responsibilities:
- Responsible for designing and implementation of customer’s network infrastructure.
- Involved in complete LAN, WAN development (including IP address planning, designing, installation, Configuration, testing, and maintenance)
- Involved in Switching Technology Administration including creating and managing VLANs, Port security, Trunking, STP, Rapid PVST+, InterVlan routing, LAN security.
- Use and maintain routing protocols EIGRP and OSPF on the Routers in the network.
- Studied in a Lab Testing environment the Migration of Frame Relay WAN to MPLS based VPNs.
- Involved in installation of 3845 series Routers at branch office edge and 7200 ASR series router at the Zonal office Edge.
- Involved with a Team to configure voice VLAN’S and implemented QoS for VOIP.
- Implemented and monitored the network using network sniffing and scanning tool as Wireshark, Ethereal.
- Proficient in Adaptive Security Device Manager (ASDM).
- Configured and Implemented Site-to-Site VPNs on Cisco ASA 5540 between branch offices.
- Configured ACL to allow only authorized users to access the servers.
- Developed and documented critical Disaster Recovery strategies.
- Other responsibilities included documentation and supporting other teams.