Senior Network Engineer Resume
Omaha, NE
SUMMARY:
- Over 8+ years of IT experience in design, development, implementation, troubleshooting and maintenance of complex Network& Security devices, Network Security, Linux Kernel Programming.
- In - depth Cisco technology experience/knowledge in design, implementation, administration and support.
- Strong hands on experience in installing, configuring, and troubleshooting of Cisco 7600, 7200, 3800, 3600, 2800, 2600, 2500 and 1800 series Routers, Cisco Catalyst 6500, 4500, 3750, 2950 and 3500XL series switches.
- Advanced knowledge of OSI model, TCP/IP, Internet technologies, system security, firewall infrastructure, network architecture and Cisco network routing / switching (Layer 2 and 3) experience, including LAN and WAN, design and implementation which includes Layer 1 to Layer 7 experience
- Expertise in network protocols, Firewalls and Communication Network design.
- Experience with Troubleshooting tools for example protocol analyzers, load generators & network traces
- Working knowledge of frame relay, MPLS services,OSPF, BGP and EIGRP routing protocols, NATing, sub-netting, also including DNS, WINS, LDAP, DHCP, http, HTML, HTTPS, TCP/IP, UDP, SNMP, OSPF, RIP, IPSEC, PPTP, VLAN, STP (Spanning tree Protocol), RTSP & Multicasting protocols
- Corporate trainer for certification like CCNA, CCNP, Hardware & Networking.
- Hands on experience on Code Upgrade for Cisco Routers including 7200, 3900, 2900, 881, 891 and Switches including 6500, 4500, Nexus 9K, Nexus 7k, Nexus 6k, Nexus 5k, Nexus 4k, ASR 9K, ASR 1K.
- Designing, Implementing and Troubleshooting Cisco 3750, 3550, 3560, 2924, 6509-V-E, 6513, 6504, 6503, 6506, 6500 series switches
- Installing and Configuring Cisco switches 2960, 3560, 4500, 6500, 4900, 2900, 3750, Nexus 5000,Nexus 7000, WS-C4948, Juniper EX, QFX and Alcatel 7705 SAR series.
- Hands-on expertise with routers 2600, 2900, 3600, 3900, 7200, 7600, ASR-901, ASR-903,, ASR 5500, ASR-9010 and Juniper ACX, E, M, MX960 series
- Working Knowledge on Devices like Juniper SRX240, Alcatel5620 SAM, 9500 MPR and Omni switch 6400.
- Also prepared documentation for various Vlans and Voice subnetworks and worked on Visio for the same
- Experience working with Cisco Nexus 2148 Fabric Extender and Nexus 5000 series to provide a Flexible Access Solution for a datacenter access architecture Expertise in installing, configuring and troubleshooting Juniper EX Switches (EX2200, EX2500, EX3200, EX4200, EX4500, EX8200 series
- Working knowledge with Load Balancers F5 LTM like 3900, 6900 for various application
- Enterprise Routing experience using protocols RIP v1 & 2, EIGRP, OSPF and BGP
- Expertise in installing, configuring and troubleshooting Juniper Routers ( E,J,M and T-series)
- Experience through Hand-on Experience with configuring T1.5, Gigabit Ethernet, Channelized T3 and full T3, OCX, ATM, Frame-Relay and VOIP (Voice-Over Internet Protocol).
- Experience with design and implementation of Virtual Switching System (VSS)
- Implementing 3750 Stackable switches using Cisco StackWise technology. Experience to review and evaluate current and future design issues as required maintaining network integrity, efficient data flow.
- Excellent Verbal, written communication skills and Interpersonal skills with ability to work with large teams as well as independently with minimum supervision & Team Player
- In-depth knowledge of Linux Kernel Programming (Module Programming)
- Proficient with network hardware and technologies including routers, switches, firewalls, Ethernet, Fast Ethernet, Gigabit Ethernet, Frame Relay and Wireless devices.
- Hands-on experience in configuring Cisco routers to perform functions at the Access, Distribution, and Core layers.
- Researched, beta-tested, and implemented the JHelpWork suite of statistical analysis and data visualization software.
- Proficient with Cisco Confidential 5500 series firewall.
- Hands on experience on Zone Based firewall and Proventia MX 1004 firewalls.
- Good domain knowledge in Linux source code 2.6x & Shell scripting
- Network security including NAT/PAT, ACL, VPN Concentrator.
- Basic and advance F5 load balancer configurations, including migrating configurations from Cisco ACE to F5 and general troubleshooting of the F5 load balancers
- Well Experienced in configuring protocols HSRP, GLBP, VRRP, ICMP, IGMP, PPP, HDLC, PAP, CHAP, and SNMP.
- Designing, Implementing and Troubleshooting Cisco Routers (2800,2900,3900,3800,7600) using Static, RIP, IGRP, OSPF, EIGRP & experience with Checkpoint, Cisco PIX & Confidential devices
- Primary responsibility is to design and deploy various network security & High Availability products like Cisco Confidential and other security products.
- Well experienced in configuring gateway redundancy protocols like HSRP, GLBP, PPP and SNMP.
- Juniper: EX-2200,EX-4200, EX-4500, MX-480, M Series, SRX210, SRX240
- Strong Hands on experience in installing, configuring and troubleshooting of Cisco 12404,12406,7600, 7200, 3800, 3600, 2800, 2600, 2500 and 1800 series Routers, Cisco Catalyst 6500, 4500, 3750, 2950 and 3500XL series switches.
- Worked on Load BalancerF5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability
- Experience with Juniper SRX 240 Firewalls
- Network Security - Anomaly Detection in Attack Prevention System, Network and Host IPS/IDS, Cisco PIX firewall, Vulnerability scanning, Penetration testing, Buffer Overflows, Cross Site Scripting,
TECHNICAL SKILLS:
LAN Technologies: Ethernet, Fast Ethernet, Gigabit Ethernet, LWAPs, IEEE 802.11, Token Ring, Workgroup, Domain, HSRP, DNS, Static, VLAN, STP, VTP, Ether Channel, Trunks.
WAN Technologies: HDLC, PPP, Channelized links (E1/T1/E2/T2), Leased Line, ISDN/Dial-Up, Frame Relay circuits, Metro Ethernet, ATM, SONET, MPLS, VPN, IPsec-VPN.
Routing Protocols: OSPF, EIGRP, BGP, RIP v1/v2, Route redistribution, Route filtering, Summarization, Static route, OSPF, BGPv4, MP-BGP.
Routers dealt with: Cisco 7606, 7609, 3845, 3660, 2921, 2691, 1812, Juniper MX series and T series routers
VoIP Devices: Cisco IP phones, Cisco 5500, 6500 series controller
Switching Technologies: VLANs, Inter VLAN routing and Port Channels, VTP, Spanning Tree Protocols like PVST+, RSTP+, Multi-Layer Switching, Port security, VSS, CEF and DCEF
Switches dealt with: Nexus 5548, 5596, 56128P, 6000, 7009, 7018; Cisco Catalyst: 6506, 6509, 4928, 4948, 4507, 4510, 3750G, 3750X, 3560, and 2960
Network Security Technologies: Confidential 5550/5540 Firewalls, Juniper SRX Firewall, PaloAlto firewall PA 200, 3000, Check points, Access Control Lists, IPsec, IDS, and IPS
Firewalls: Cisco Confidential 55XX series, Juniper SSG140, Checkpoint R75, R76
Network Management: Wireshark, SNMP, Netflow, Solarwinds, VMware
Load Balancers: F5 Network (Big-IP) LTM 8900 and 6400
Redundancy Protocols: HSRP, GLBP, VRRP
NEXUS Features: VDC, VPC, VRF, FEX, Fabric Path, F & M Series line cards
GRE Tunneling, Remote Access VPN, Site: to-Site VPN, Confidential 5505 Firewall, AIP SSM, CSC SSM, FWSM, Fortigate, ACL- Access Control List, IPS/IDS, NAT, PAT, SYSLOG, NTP, DHCP, CDPTFTP, FTP Cisco ACS, Juniper Net Screen firewall, Palo Alto Firewalls, Windows Patch Management (WSUS).
AAA Architecture: TACACS+, RADIUS, Cisco ACS
Operating Systems: Windows (98, ME, 2000, XP, Vista, Windows 7, 8.1), Linux
Microsoft tools: Microsoft Visio, Microsoft office
PROFESSIONAL EXPERIENCE:
Confidential, Omaha, NE
Senior Network Engineer
Responsibilities:
- Responsible for turning up BGP peering and customer sessions, as well as debugging BGP routing problems.
- Perform root cause analysis on the problems coming across Project execution
- Maintained a BGP/MPLS infrastructure
- Experience with configuring Virtual Server and Configuring Load balancing methods in F5 LTM
- Experience with Firewall Administration, Rule Analysis, Rule Modification
- FABRIC PATH in nexus...
- Testing E911, voicemail, Media gateways
- Configuration and Installation of Cisco Nexus 9K, 7K, 5K, 6K, ASR 1000 series
- Experience with Network Redesign of branch and Campus Networks. This includes changes to both the voice and data environment.
- Provided detailed Central Office design in the form of relay rack placement, DSX-1, DSX-3, and FDP placement and cable ladder design.
- Implemented Load Balancing between Cisco L3 Switch by HSRP and GLBP
- Configuring RIP, OSPF and Static routing on Juniper M and MX series Routers
- Design and implementation of data visualization and user interface solutions.
- Worked on High availability networks like ASR 9K, Cisco Nexus devices such as 2k, 5k.7k, 9k
- Installed wireless routers, OS, cabling and termination, connectivity to switch rooms.
- Worked on migrating the F5 LTM 5100 version 9.2 to 5100 LTM versions 9.4 and F5 GTM configurations.
- Enabled STP attack mitigation (BPDU Guard, Root Guard), using MD5 authentication for VTP, disabling all unused ports and putting them in unused VLAN and ensuring DHCP attack prevention where needed
- Experience in configuring vdc, fex pinning, fex port-channel, port-channel, peer keep alive, peer link.
- Experience in working and designing configurations for vPC, vPC domian, vpc peer-gateway, vPC peer-switch, auto-discovery, and vPC single sided, vPC double sided, NX-OS, VFR, Otv, fabric path.
- Experience with migrating the Partner IPSEC VPN tunnels from one data center to another data center.
- Experience with deploying the Layer 3 MPLS VPN in all the Branches and Campus locations.
- Replace Campus Cisco 6509 End of Life hardware with new 4507/4510 devices.
- IOS upgrade in Nexus 7010 through ISSU (In service software upgrade)
- Provided redundancy in a multi homed Border Gateway Protocol (BGP) network by tuning AS-path.
- Worked on Juniper J series j230, M 320 routers and EX 3200 series switch.
- Experience in working with Nexus 7010, 5548, 5020, 2148, 2248 devices.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's Confidential 5500/PIX
- Security appliance, Failover, DMZ zoning, &Configuring VLANs/routing/NATing with the firewalls as per the design
- Designed and configured the commands for QoS and Access Lists for Nexus 7K and 5K.
- Configuring Virtual Chassis for Juniper switches EX-4200,Firewalls SRX-210
- Conversions to BGP WAN routing. Which will be to convert WAN routing from OSPF to BGP (OSPF is used for local routing only) which involves new wan links.
- Configuration of Voice FX0 ports on the routers for SRST (Survivable Remote Site Telephony) and SRST testing after carrier numbers are ported over.
- Experience with Cisco Call manager.
- Installing and configuration and troubleshooting of various Cisco switches like 2900 series, 2950 series, 3550 series, Nexus 5000 and Nexus 7000 series and juniper EX series.
- Design to implement IP based Video Surveillance in the 1100+CBNA branches and HVAC controls, Add VoIP subnet to Branch Devices
- Deliver best practices guidance for managing Palo Alto Networks firewalls.
- Design and implementation of GET VPN architecture used for multicast and unicast communication on an existing IP VPN.
- Decommission serial T3 circuits and replace with MPLS circuits. MPLS clouds were provided by carriers ATT, Verizon or Level 3.
- WAN Pilot project to convert branch from dual T1 circuits to iWAN only broadband circuit. To Enable Internet WAN connectivity for the Lab in Hauppauge. Test and turn-up IWAN link and disable the 2 existing T1 circuits, running branch on IWAN only. After testing was completed site will be placed back on either dual TDM circuits or TDM with IWAN backup circuit.
- Support Blue Coat Proxy in explicit mode for users trying to access Internet from Corp Network.
- Experience Branch Relocation: Connect workstation, servers, etc. Rack and stack Pre-configured new hardware and connect the circuits. Work with Carrier to test and turn-up circuits.
- Experience in design and implementation of new branch/New Campus test and turn up.
- Implementing & Troubleshooting of T1, MUXES and CSU/DSU and data circuits.
- Experience on designing and troubleshooting of complex BGP and OSPF routing problems,
- Involved in configuring IP Quality of service (QoS)
- Worked on Layer 2 protocols such as STP, VTP, STP, RSTP, PVSTP+, MST and other VLAN troubleshooting issues and configuring switches from scratch and deployment
- Involved in designing and implementing QOS and policy map to 2800 series routers for all the branches
- Implementing VoIP solutions using SIP & H.323 for Cisco routers 2851, also have sound knowledge of Avaya VoIP products
- Manage and provide guidance to junior members of the team.
- Experience with configuring Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 5000
- Implementing and Maintaining Network Management tools (OPAS, Solar Winds, Cisco Works)
- Involved in the modification and removal (wherever necessary) of BGP from the MPLS routers.
- Configuring IPSEC VPN (Site-Site to Remote Access) on SRX series firewalls.
- Responsible for Checkpoint firewall management and operations across our global networks.
- Designed, validated and implemented LAN, WLAN & WAN solution to suite client’s needs.
- Configured and designed LAN networks with Access layer switches such as Cisco 4510, 4948, 4507 switches.
- Troubleshooting connectivity issues through Blue coat as well writing and editing web policies.
- Experience with Project documentation tools & implementing and maintaining network monitoring systems and experience with developing network design documentation and presentations using VISIO
Confidential, Dr Pataskala, OH
Senior Network Engineer
Responsibilities:
- Design and implement campus switch network with Cisco Layer 3 switches (3750, 4500 and 6500) in multi VLANs environment and inter-VLAN routing, HSRP, ISL trunk, ether channel.
- Hands on experience installing Sup720 for Cisco 6509-E series and its Gigabit Ethernet port deployment in the Core network
- Experience in working with Cisco Nexus 2148 Fabric Extender and Nexus 5000 series to provide a flexible Access Solution for datacenter access architecture.
- Performing different test scenarios like PTT, SUAT, SMS, MMS, TTY, Field Data Throughput (FDP), and Field Call Performance (FCP) on LTE and HSPA devices
- Configuring HSRP between VLANs, Configuring Ether-Channels, Port Channel on 6500 catalyst switches
- Configuring PAGP and LACP protocol along with BFD link detection protocol
- Experience with hybrid CatOS to Native Cisco IOS code migration involving Catalyst 6503 to Catalyst 6504 switches
- Design and configuring of OSPF, BGP on Juniper Routers and SRX Firewalls.
- Involved in setting up Voice VLANs on distribution switches, and configuring access switches ports for AVAYA IP PHONES
- Provided tier 3 support for company’s IT staff and end users on networks, VOIP and Wireless issues
- Configured EIBGP load balancing and ensured stability of BGP peering interfaces.
- Upgrading IOS on 2960 and using 2960 switch as a PAGP between VSS
- Working knowledge of PPP Protocol with Enhanced Flex WAN module on 6500 catalyst switch
- Involved configuring ppp multilink group, dialer group, PPP authentication protocols like PAP, CHAP
- Working knowledge of Terminal server and the configurations
- Experience in configuring routing protocols like EIGRP,RIPv2, OSPF & BGP and Cisco ACS protocols like RADIUS and TACACS
- Involved in setting up Voice VLANs on distribution switches, and configuring access switches ports for AVAYA IP PHONES
- Involved in university campus for VOIP network management and troubleshoot.
- Worked on Data, VoIP, security as well as wireless installations and technologies.
- Designed MPLS VPN and QoS for the architecture using Cisco multi-layer switches
- Cisco IOS experience on 3600/7200 class hardware in complex WAN environment and experience on Cisco OS
- And IOS on CAT6500 in a complex data center environment
- Coordinated with senior engineers with BGP/OSPF routing policies and designs, worked on implementation
- Strategies for the expansion of the MPLSVPN networks
- Configuring, maintaining and troubleshooting of Net Screen, Palo Alto, and Firemon Firewalls.
- Experience with design and implementation of Data center migration at NBC Universal
- Data center migration was involved in Access, Distribution and Core layers.
- Experience with design and implementation of Virtual Switching System (VSS) for both User segment and server segment using 6509-V-E catalyst switches
- Working knowledge with 10 gigabit Supervisor Engine 720 on 6500 catalyst switches
- Implementing 3750 Rack/Stack switches using Cisco Stack Wise technology
- Upgraded load balancers from Radware to F5 BigIP v9 which improved functionality and scalability in the enterprise. Managed the F5 BigIP GTM/LTM appliances to include writing iRules, SSL offload and everyday task of creating WIP and VIPs.
- Experience with migration Hybrid based Cisco CatOS and Native Cisco IOS on 6500 catalyst switches.
- Involved in migration of WLAN segment on the LAN Core. Also, involved in configuring wireless VLANS
- Working knowledge of configuring VOICE VLANS on core, Distribution layer switches
- Configured Access ports with Voice VLANS and Service Policy for VOIP Phones
- Installation of L3 Switching Engine policy Feature Card & Distributed Forwarding Card DFC3C
- Working knowledge of Firewall service module FWSM UPGRADE, FWSM RULESET conversion
- Converting access-lists to Firewall rule sets on FWSM module with 6509-E Catalyst switches
- Designing and Implementing firewall rules and modifying existing rules in Palo Alto, Cisco ASDM, Juniperz SRX and checkpoint firewalls.
- Converting CatOS to Cisco IOS Config Conversion on distribution layer switches
Confidential
Network Engineer
Responsibilities:
- Responsible for designing and implementation of customer's network and Security infrastructure.
- Involved in complete LAN, WAN, Extranet redesign (including IP address planning, designing, installation, pre configuration of network equipment, testing, and maintenance) in both Campus and Branch networks.
- Experience working with ASR 9006 with IOS-XR.
- Experience with converting Cisco 6500 IOS to Cisco Nexus NX-OS in the data center environment.
- Experience working with Nexus 7010, 5020, 2148, 2248 devices.
- Experience with configuring Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 5000.
- Experience configuring VPC, VDC and ISSU Software upgrades on Cisco Nexus 7010.
- Experience in Configuring, upgrading and verifying the NX-OS operation system.
- Responsible for Cisco Confidential firewall administration across our networks.
- Support customer with the configuration and maintenance of Confidential firewall systems.
- Design and configuring of OSPF, BGP on Juniper Routers and SRX Firewalls.
- Configuring IPSEC VPN on SRX series firewalls.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's Confidential 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
- Provided Load Balancing towards access layer from core layer using F5 Network Load Balancers.
- Managed the F5 BigIP GTM/LTM appliances to include writing iRules, SSL offload and everyday task of creating WIP and VIPs.
- Knowledge and skill of 802.11 a/b/g/n LAN normal for wireless Technology.
- Other responsibilities included documentation and supporting other teams.
- Experience working with BGP attributes such as Weight, Local-Preference, MED and AS-PATH to influence inbound and out bound traffic.
- Designed and implemented Cisco VoIP infrastructure for a large enterprise and multi-unit office environment. Met aggressive schedule to ensure a Multi-office reconfiguration project which was successfully delivered
- Involved in Switching Technology Administration including creating and managing VLANs, Port security, Trunking, STP, Intervlan routing and LAN security.
- Use and maintain routing protocols EIGRP, OSPF and BGP on the Routers in the network & also worked on BGP Route Reflectors, Confederations.
- Deployed a large-scale HSRP solution to improve the uptime of collocation customers, in the event a core router became unreachable.
- Configured and designed LAN networks with Access layer switches such as Cisco 4510, 4948, 4507 switches.
- Installed new Cisco routers/switches/ Confidential 's, Juniper and Palo Alto, F5 firewall.
- Configuring Virtual Chassis for Juniper switches EX-4200, Firewalls SRX-210.
- Implemented HSRP on the Cisco 2948G Layer 3 switches and EIGRP, OSPF on 2 Cisco 2610routers, the Layer 3 switch, 3 Cisco 350XL Switches, Cisco 3524XL switches for load balancing and fail over.
- Configuring Confidential Firewall and accept/reject rules for network traffic.
- Extensive knowledge and troubleshooting in data communication protocols and standards including TCP/IP, UDP, IEEE 802.3, Token Ring, Cable Modem, PPPOE, ADSL, Multilayer Switching, DoD standards.
Confidential
Network Design Engineer
Responsibilities:
- Experience in configuring routing protocols like EIGRP, RIP v2, OSPF & BGP and Cisco ACS protocols like RADIUS and TACACS.
- Implemented Site-to-Site VPNs over the internet utilizing 3DES, AES/AES-256 with Confidential and JUNIPER SRX Firewalls Worked on configuring and supporting Cisco Confidential, Checkpoint, Juniper firewalls.
- Configuring STP for switching loop prevention and VLANs for data and voice along with Configuring port security for users connecting to the switches.
- Understanding & Implementation of IPSEC & GRE tunnels in VPN technology.
- Involved in designing L2VPN services and VPN-IPSEC authentication & encryption system.
- Experience in HSRP standby troubleshooting & Experience in configuring & upgrading of Cisco IOS
- Implementing & Troubleshooting of T1, MUXES and CSU/DSU and data circuits.
- Have experience with Cisco Works LAN Management Solution.
- Installed and configured of Juniper J-Series (J2350) and M-Series (M10) routers.
- Experience in migration of Frame-relay based branches to MPLS based technology using multi-layer stackable switch like 6500 series and 2800 series router.
- Worked on F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
- Basic and advance F5 load balancer configurations, including migrating configurations from Cisco ACE to F5 and general troubleshooting of the F5 load balancers.
- Involved in design and implementation of Data Center Migration, worked on implementation strategies for the expansion of the MPLS VPN networks.
- Involved in configuring IP Quality of service (QoS).
- Experienced in WAN environments, installing and troubleshooting data circuit problems (MPLS, T1).
- Involved in designing and applying QOS and policy map to 2800 series routers for all the branches.
- Involved in designing GRE tunnels for encryption of data flow from source to destination.
- Implementing VoIP solutions using SIP & H.323, also have sound knowledge of Avaya VoIP product
- Hands on experience with Cisco 3500, 3750, 4500, 6500 series equipment and configuring and deploying and fixing them with various modules like Gig card, VPN SPA card, WIC card.
- Applying crypto maps and security keys for the branches, ISAKMP (Internet security association key management protocol) for establishing Security associations (SA) cryptographic keys.
- Experience with Project documentation tools & implementing and maintaining network monitoring systems (Cisco works & Net info, Info man Virtual Change) and experience with developing network design documentation and presentations using VISIO.
- Experience on designing and troubleshooting of complex BGP and OSPF routing problems.