Sr. Design Engineer Resume
Sf, CA
PROFESSIONAL SUMMARY:
- Over 9.5 years of extensive hands - on experience with complex routed LAN and WAN networks, Confidential routers, switches, ASA and PIX firewall deployment.
- Over 5 years of F5 and Confidential load balancer.
- Experience with different Wide Area Networking media and line encapsulations: Frame Relay, ISDN BRI, T1/E1, CSU/DSU, Synchronous Serial, HDLC and PPP.
- Over 2 years’ experience programming routers and switches, and performing troubleshooting tasks for connectivity, speed, and packet loss issues.
- Familiar with VOIP and Wireless controllers.
- Ability to design hierarchical network structures and assign sub networks over various physical media
- Advanced Router/Switch knowledge such as managing and configuring boot image files, creating and configuring VLANS, and writing Access Control Lists for security purposes
- Knowledge and experience using Routed Protocols: TCP/IP; and
- Routing Protocols: RIP, IGRP, EIGRP, and OSPF
- Seven years of experience building, troubleshooting, and upgrading computers in general.
- Excellent customer management/resolution, problem solving and debugging skills with good verbal/written communications and presentation skills.
TECHNICAL SKILLS:
LAN Technologies: VLAN, VTP, Inter-vlan routing, STP, RSTP, PVST
WAN Technologies: Frame Relay, ISDN, PPP, ATM, MPLS, exposure to DS1, DS3, OC3, OC12, OC48T1 /T3 & E1/E3
WLAN Technologies: Autonomous AP’s, Lightweight AP’s, WLC, WDS, WLSE, Standards - 802.11a802.11b, 802.11G
Network Hardware: Confidential routers (7200, 3800, 3600, 2800, 2600, 2500, 1800 series), & Confidential Catalyst switches (6500, 4900, 3750, 3500, 2900, series), Confidential Nexus 5000 series ; PIX Firewall 506/515/525/535 , ASA Firewall 5520/5550, CatOS, Confidential IOS 11.x, 12.x, PIX OS 6.x, 7.x; Load Balancers ( Confidential ), Junipers M320, T640
Network Security: NAT/PAT, Ingress & Egress Firewall Design, VPN Configuration, Internet Content Filtering, Load Balancing, IDS/IPS, URL Filtering
Routing Protocols: MPLS,PIM,RIP, IGRP, EIGRP, OSPF, BGP, IS-IS, HSRP, VRRP, GLBP
Infrastructure Services: DHCP, DNS, SMTP, POP3, FTP, TFTP, IIS ---
Network Management: SNMP, Confidential Works LMS, HP Open View NNM, MRTG 2.13, Ethereal Sniffer
IP Telephony: SIP, H.323, RTP, voice gateways, CCM
Tools: /Documentation: Opnet, cascade, netqos, netscout, MS Office, MS Visio
Programming Skills: C, C++, bash, python
PROFESSIONAL EXPERIENCE:
Confidential, SF, CA
Sr. Design EngineerResponsibilities:
- Perform a capabilities assessment of network services and technologies including inter - dependencies to support our services.
- Collaborate with engineers to identify risks and gaps, determine level of effort and timeline, and develop execution plans.
- Deliver network documentation, and all typical design and architecture documentation of services and solutions for consumption by engineering, deployment, and operations teams.
- Formulate and implement standards for network products and services with respect to monitoring and overall management, including but not limited to configuration management, lifecycle management, vulnerability management and process management for continual service improvement.
- Work closely with cross-functional teams across multiple Infrastructure disciplines and other stakeholders to gather and define requirements and objectives for which solutions are required to meet.
- Provide input into networking requirements and operational guidelines, with a focus on meeting demands of a rapidly growing and scaling global service.
- Contribute towards new and on-going technology projects.
- Implement security concepts in a network environment, including next generation firewalls, application firewalls, network firewalls, IPSEC, SSL VPN, Load Balancers, Network Access Control, and perimeter facing solutions, as well as in Campus and Data Center infrastructures.
Confidential
Sr. Design Engineer, East Hamilton, CA / Chicago, IL
Responsibilities:
- Design data center and traffic engineer
- Create environment based on requirement for clients
- Implement and manage Confidential and juniper appliances
- Migration from netscalers to F5
- Configuring F5 and netscalers LTM/GTM
- Configuring and managing nexus 7k
- Aws -configuring network component
- Setup troubleshoot routes OSPF and BGP
- Provide support /plan security policies and appliances PCI compliance
- Audit devices and ports lockdown
- Support review and implement production changes.
- Respond to tickets/call from NOC
- Configuring and managing nk7 n5k
- Configure F5 LTM vips /ssl offloading /i-rules/ASM policy and GTM --WIPS/
- Plan and prepare cutover for migration of services from netscalers to F5
- Engage with clients for their requirements and setting up environment
- Implementing and troubleshooting Juniper Mx 80 and nexus 7k gateways
- Applying filter / FBF a per requirements
- Implementing BGP to connect with new peers and importing/exporting routes .
- Implementing L3MPLSvpn with different sites
- Managing and implementing SRX and ASA firewalls - policies /ipsec vpn / split-tunneling
- ASA - IPSEC / SSL webvpn /Split tunneling
- Installation and implanting switches in layer 2 domain
- Planning and implementing OSPF and BGP
- Working with vendors to get the services.
- Design and implement network infrastructure working with application Architect team
- Testing the environment, and analyzing the results
- A10 - configuring vips /ssl offloading
- F5 -- irules /ASM/APM /iapp . GTM - setting up / WIPS configuration
- GW - Nexus 7k --configuring VDC/SVI /Routes
- Conduct security audits to find vulnerabilities
- Nk7k configuration and management
- BGP/MPLS peering
Confidential
Network Design Engineer /Operation Manager, Menlo Park, CA
Responsibilities:
- Provide support in day to day operations of corpnet network
- Support and manage Confidential /Juniper routers and switches.
- Work and suggest design and development of new services as proof of concept
- Recommend network equipment and configuration guidance based on request.
- Deploy performance management tools like NetQOS, OpNet and cascade.
- Configure and manage gigamon switches h series
- Planning and managing security rules and pushing changes on a daily routine.
- Working with WAN accelerators and VPN setup .With Troubleshooting
- Routing protocols: Planning, implementation and support for BGP and OSPF
- Supporting voice and video for the existing environment.
- Nk7k, ASA and juniper configuring and troubleshooting
Confidential
Lead design Eng, San Jose, CA
Responsibilities:
- Work closely with the internal clients and be able to execute change requests from end users.
- Review application migration plans, document project progress via established organizational tracking tools and report results.
- Maintain basic network functionalities and deployment needs including topology changes, Subnetting and troubleshooting.
- Assist in the assessment and resolution of complex network problems including workarounds.
- Build field relations with internal clients in order to meet their overall requirements.
- Capturing load balancing requirements, GSS and other features in order to meet the requirements.
- Environment: Nk7k, Confidential /netscalers, ASA, NK1k
Confidential
Sr Network Engineer, San Francisco, CA
Responsibilities:
- Implementation of multi-protocol networks including OSPF and BGP to include communication links for voice, video and data, servers, email systems and associated peripheral devices and gateways including Internet connectivity. Configurations for routers including IPsec VPNs and GRE tunnels.
- Configuring, Installing, testing and documenting data network transport components, primarily Ethernet switches. Configuring VoIP, QoS, CoS, SONET/SDH, ATM, MPLS, 802.1Q/w/x/D, RF and microwave technologies.
- Managing MPLS / LAN based configuration of internal LAN based VRF and mapping them to the VLAN for tagging Switching related tasks included implementing VLANS, VTP and configuring on Fast-Ethernet channel between switches. Creating and testing scripts for F5 load balancers and ways to optimize it.
- Upgrading F5 software, managing pools of servers. Design, Implement and configured HSRP on different location of office on the switched Network and Managing the Entire multilayer switched network. Proficient in Adaptive Security Device Manager (SDM) and used it while performing security audit on routers.
- Configuring firewall rules in Confidential PIX, ASA firewall environment. Configuring Checkpoint firewall and accept/reject rules for network traffic. Configured Client VPN technologies including Confidential 's VPN client via IPSEC.
- Implemented Site-to-Site VPNs over the Internet utilizing 3DES, AES/AES-256 with ASA Firewall. Configured Protocol Handling, Object Grouping and NAT on ASA Firewalls. Configured Firewall logging, DMZs and related security policies and monitoring.
- Designed perimeter security policy; Implemented Firewall ACL's; Allowed access to specified services; Enabled IDS/IPS signatures in Firewall & fine-tuned TCP & UDP. Proficient in Adaptive Security Device Manager (ASDM)
- Involved in Installing and Configuring a Confidential secure ACS server for AAA authentication (RADIUS/TACACS+). Using load balancers and Confidential with multiple components for efficient performance and to increase reliability through redundancy.
- Migration from Frame Relay/ATM network to MPLS based VPN for customer's WAN infrastructure.
Environment: Confidential 6500 S/w with FWSM hardware, Security: NAT, ASA Firewalls & SDM, MPLS-VPN, Authentication Servers, Frame Relay, F5 Load Balancers, Wireless Networking hardware, GRE Tunnels.
Confidential
Network Engineer
Responsibilities:
- Managing Events for Three Locations with 7 Departments.
- Configured DHCP server and given IP addressing dynamically to the clients.
- Provide Customer Service.
- Confidential CallManager 2, 3, 4 or 5 (CCM). Confidential Unified Communications Manager Business Edition (CUCM BE).
- Troubleshooting F5 load balancers.
- Setup VOIP devices using Confidential and non Confidential IP phones.
- Handling Client Queries and Requirements.
- Maintaining and troubleshooting network and computer issues.
- Networking Devices Include Confidential Switches and routers. Juniper VPN Client.
Confidential
Network and Security Engineer
Responsibilities:
- Configured WEB VPN (SSL VPN) using Confidential Any Connect client for Linux, MAC-OS and WIN VISTA users. Provide on call support on a rotation basis. Configured DHCP server with firewalls. Configure Site to Site and Remote access VPN. Configured the security level of Inside and Outside interfaces to allow traffic.
- Configuration of F5 load balancers, creating profiles, implementing I-rules, Hands on with F5 Firepass and ARX appliances. Design and Implement DMZ for FTP, Web and Mail Servers with Confidential PIX 525, PIX535, ASA5550 and 5520 firewall.
- Configured NAT and PAT on the Confidential PIX Firewalls for the Internal Systems. Placed access control list (ACL) on inside and outside interfaces on the PIX Firewall. Configured Turbo ACL.
- Network and Security Design Architect Assistant and Network Fine Tuning
- Needs to Study Existing Network and redesign network. Needs to work on Security, Routing and Switching. Design the new network security policy, Routing and Switching. Work with Change Control Board and Implement the changes.
- New Server Farm Connectivity
- Create New VLAN on 6500 Series switches. Assign Port to the VLAN. Define security policies as per Server team requirement. Configure Trunking.
Environment: Confidential Routers 2600, 2800 and 7200 series, Confidential Switches Cat 1900, 2900, 3500, 4500 and 6500 series, NX 5k and 7k, Confidential PIX 525, 535, ASA 5520, 5550, Confidential VPN 3000 Series Concentrator and FWSM module Firewalls, Confidential CSS load balancer, Routing protocols EIGRP and OSPF, Switching Protocols STP, VTP, RSTP and VLAN, Firewall Security Protocols like NAT, PAT, IPSec, GRE, VPN, LAN technologies like Ethernet, Fast Ethernet, Gig Ethernet and Fiber Optic, WAN technologies Leased Line, ISDN, Frame Relay, T1, T3, E1, E3, OC3 and xDSL, Also worked Confidential Works and Sniffer, Network Diagrams using MS Visio, Troubleshooting WAN Routing, LAN Switching and Firewall Security Issues, On Call support on a rotation basis.
Confidential
Data Center Network Engineer
Responsibilities:
- Responsible for the Installation, configuration and troubleshooting of Data center network. Involved in troubleshooting of EBGP and IBGP peering issues in BGP to provide better connectivity to ISP's and remote offices. Manage and Maintain VPN mesh components and architecture, to include MBGP routing protocols.
- Responsible for OSPF route engineering to ensure network stability to also include MPLS/LDP configuration for traffic engineering. Troubleshooting MPLS VPNs issues like LDP-Synchronization, improper route target comminutes.
- Experienced with Confidential Catalyst switches and CatOS for Confidential 6513 and 6509 Gigabit Ethernet switches. Provided support on the Juniper M -Series and Juniper T -Series routers. Ensured stability of BGP peering interfaces and Border Router configurations.
- Worked on Route-Reflectors to troubleshoot BGP issues related to customer route prefixes, BGP route filtering policy problems, ORF etc. Scaling of IGP and BGP in the core. Implemented various BGP scaling techniques like Route Refresh, Peer groups, Route flap damping.
- Worked on routing protocol related issues such as static, RIP, EIGRP (Variance and un-equal cost load balancing) and OSPF. Provided Tier 3 Layer 2 switching support to Layer 2 access customers, to include VLAN load balancing and Spanning Tree configurations.
- Issues related to VLAN, VLAN Trunking, HSRP fail overs, related issues. Worked on Gigabit Ethernet service related issues troubleshooting Catalyst 6500 switches, 3560 switches. Worked on issues related to customer access-lists and various security features.
- Maintain effective communications with vendors, peers and clients in resolution of trouble-tickets, equipment RMAs and support requests. Assist in the architecture, evaluation and recommendations related to purchasing and installing hardware, software related to IP Networking and VOIP.
- Monitored network traffic and developed capacity planning initiatives, making necessary recommendations for additional resources or hardware. Serial communication, Modbus and RTUs. Responsible for planning, installing, configuring and managing IP and VoIP network and carrier interconnections.
- Monitor IP network performance against company Service Level Agreements (SLA's). Provide support for the following Layer 2 broadband technologies, Fast Ethernet, Gigabit Ethernet, ATM, FR and Sonet. Firewall upgrade and deployment in the UNIX environment.
- Reviewed business or functional requirements to develop manual test plans. Responsibilities include writing and executing Test Plan, Desk level procedures and Test Case Documents for smooth network operations.
Confidential
Network Security Engineer
Responsibilities:
- Configuration and maintenance LAN networks with switches such as Confidential 4507, 4510. Configured VLAN's, Private VLAN's, VTP, dot1.Q trunking on switches. Configuring all the end ports as access ports using port fast and implementing BPDU guard.
- Experience in Per-VLAN Spanning Tree (PVST) for maintaining instance for each VLAN configured in the Network. Hands on with PLCS and RTUS. Design and Implement DMZ for FTP, Web and Mail Servers with Confidential PIX 506, PIX515.
- Configured NAT and PAT on the Confidential PIX Firewalls for the Internal Systems. Placed access control list (ACL) on inside and outside interfaces on the PIX Firewall. Configured Turbo ACL. Migration of PIX to ASA. Configured Failover for high availability.
Environment: Confidential Routers 2600, 2800 and 3800 series, Confidential Switches Cat 1900, 2900, 3500, 4500 series, Confidential PIX 506, 515.
