Site Installation Lead Resume
5.00/5 (Submit Your Rating)
SUMMARY:
- I am a dynamic network engineer with 25 years of “hands on” experience with Confidential, switches and firewalls.
- My experience encompasses the configuration, implementation, troubleshooting, maintenance and monitoring of multi - site, multi-protocol, multi-vendor networks of all sizes.
- I've always demonstrated initiative, proficiency along with a "Can Do" attitude, and am looking for an opportunity in which I can utilize my current skill sets and expertise while acquiring new expertise in a technologically challenging environment.
- I have held numerous clearances over the last 15 years.
TECHNICAL SKILLS:
- Cisco ISR, GSR, ASR series routers
- Cisco 3750-X, 4500, 4700, 5500, 6500 and 7600 multilayer switches
- Cisco Nexus 5596 switch & 2248 Fabric Extenders
- Cisco PIX firewalls, 5500 series ASA firewalls
- Cisco Wireless LAN Controller 4400 series
- Cisco CSS 11000 series and Confidential 4710 load balancers
- F5 Big IP Load Balancers & SSL VPN servers
- Juniper SRX100/240 series firewalls & Juniper EX4200 & EX4550 switches
- Vast experience with Cisco IOS 12.x & some experience with 15.x
- Experience using Microsoft Office & Visio versions 2000 thru 2013
- Years of experience using Microsoft workstation OS’s from 2000 to Windows 7
- Some experience using Microsoft servers OS’s from 2000 to 2008, with some 2012
- Installed, configured and maintained NMS applications IP Monitor, Observer, What’s Up Gold & Nagios
- Advanced experience configuring, using and administering SolarWinds Orion
- Mid-level experience configuring, using and administering Cisco Works LME 3.0 & other modules
- Junior experience using and administering Unix & Linux servers
- 10Gig/Gig/Fast/Ethernet, TCP/IP, L2 & L3 switching, GRE, L2/L3 VPN
- MPLS, ISDN, site to site & remote access IPSec VPN, DMVPN, PPP, OC3, OC12, DS3 & DS3c, T1 & T1c, WiFi
- OSPF, EIGRP, IS-IS, MP-BGP, PBR, FHRP and static
WORK HISTORY:
Confidential
Site Installation Lead
Responsibilities:
- Participating in weekly status conference calls with sites in-line for a complete network re-engineering.
- Phased conference calls pertained to rack space, electrical requirements, equipment inventory and logistics.
- Prepared documentation IP Plan, Visio drawings, schedules, configuration files and upgrade files.
- Managed a team of 8 people while on-site to re-engineer network to new Confidential standards.
- Tier 3 support with Confidential if something didn’t go as planned and required troubleshooting.
- Worked with Confidential to migrate firewall, IDS & WAN optimizers to new IP addressing before install started.
- Used Avaya Confidential to monitor, configure network resources, and perform maintenance duties.
- Work schedule was work from home for 3 weeks then 1 week on job site performing network re-engineering.
- Mid to advanced level configuration, upgrading & maintenance of Avaya 8600’s, 5520’s & 4800 series switches.
- Beginner to Mid level use of Extra Putty & XML files.
Confidential
Network Engineer
Responsibilities:
- Network ownership(s) delineations didn’t promote many opportunities to excel.
- Core network consisted of a Juniper SSG550 & SRX240 firewalls and EX4200/4550 switches.
- Remote networks consisted of Juniper SSG5 & SRX100/240’s and Cisco SG300 switches.
- Upgrading & configuring Juniper SSG5 or SRX100’s to be dispatched to DOS sites across the globe, approx. 325 sites.
- Phone support for field engineers to complete core network configurations in order to turn up the sites.
- Use of IPsec tunneling from Trust & Untrust zones “Dual VPN” through enterprise providers network to reach our secure network, configuration and troubleshooting.
- Assisted in the creation and maintenance of network Visio maps and Excel spreadsheets pertaining to IP addressing and equipment information.
- Monitoring SolarWinds Orion for outages, degraded performance along with the addition or deletion of sites.
- Supporting network design & capacity activities for Sr. Network Engineers.
- Providing on-demand software, hardware, IP and performance reports using Orion and proprietary applications.
- Supporting field engineers from across the globe to troubleshoot their networks and associated hardware.
- Assisted in configuring, installing and testing Juniper switches to migrate data center network from 1gig to 10gig .
- Performed some “Technical Writing” phase I documenting How To’s including basic configuration and advanced for implementing new features; port security, configuration for various hardware devices.
- Monitored 3rd party WAN circuits and opened tickets to stay within SLA parameters.
- Assisting in migration from Juniper SSG platforms to SRX throughout the entire network.
- Updating “Policy” configurations as requirements changed at the remote locations.
- Mid to advanced level Juniper ScreenOS configuration & troubleshooting.
- Mid to advanced level Juniper JunOS configuration & troubleshooting.
- Mid-level use of Zone based firewalling.
- Mid-level Juniper IPsec VPN troubleshooting.
- Entry to mid-level Juniper Vrouter configuration and troubleshooting.
- Entry to mid-level Juniper Policy configuration, troubleshooting and verification.
- Entry to mid-level Cisco SG300 configuration and troubleshooting.
- Entry-level SolarWinds IPAM configuration and evaluation.
- Entry-level SolarWinds NTM configuration and evaluation.
Confidential
Sr. Network Engineer
Responsibilities:
- Negotiations with vendors which resulted in the negotiation of substantially discounted annual contract with our current Confidential scanning vendor.
- Our internal Penetration Testing was performed May 15, 2015 and Confidential were found.
- Reviewed and assisted completing Confidential compliance documentation with client in order to understand the goal(s) we were being asked to meet.
- Worked with client to research and select Confidential scanning vendors to support our compliance goals.
- Assessed current network design, hardware, traffic flows, personnel roles and security posture along with reviewing current network documentation to develop a stronger security posture that is compliant too.
- Created a Proof of Concept lab to mock up new network design and traffic flows to test required connectivity.
- Segmented network by configuring & installing Cisco IOS routers to act as Transparent and Routed firewalls using a combination of Reflexive & CBAC based access-lists.
- Implemented a dual factor authentication solution for SSL VPN remote access on clients Sonic Wall firewall.
- Using Dell SecureWork Qualys to perform external scans to identify vulnerabilities accessible from the internet on the network equipment and workstations, followed by remediating them before a formal Penetration Test performed by our Confidential scanning vendor.
- Using Confidential LanGuard 11.5 to perform internal scans on network & workstations to identify internal vulnerabilities and remediating them before a formal Penetration Test performed by our Confidential scanning vendor.
- Implementing advanced security features on switches, routers, firewalls to secure clients printers, workstations and servers.
- Remediating items external & internal Confidential scanning found such as out of date Service Packs, out of date versions of security applications, unused/open ports, self-signed SSL certificates and other common vulnerabilities.
- Updated network documentation, including Visio drawings and Excel spreadsheets to reflect network changes, policy changes and the reasoning behind the various technologies in use to secure the network.
- Upon completion of internal Penetrating Test results, additional remediation may take place and possibly additional network design enhancements if they are required or not, then the project will be completed.
- Enhanced Cisco router security feature design, configuration and implementation.
- Enhanced Confidential LanGuard knowledge and experience.
- Mid-level configuration of Sonic Wall firewalling rules, content filtering and security policies.
- Understanding of Confidential compliance, Confidential scanning, Confidential terminology and IT security in more depth.
Confidential
Sr. Network Engineer, Alexandria, VA
Responsibilities:
- Discovered a major Windows permission issue causing a “File Lock” issue and affecting the user backups.
- Assisted in implementing newly acquired Cisco Confidential blade servers.
- All upgrades I performed were successful with minimal down time or vendor support required.
- Initiating the build out our Guest network and later the in corporation of our wireless network.
- Upgraded and configured FortiMail e-mail appliance which encrypts outbound e-mails, quarantines inbound e-mail and supports other features.
- Some ForeScout NAC appliance configuration to ensure non- Confidential devices were automatically put on the Guest VLAN and received Guest network DHCP settings for internet access.
- Troubleshot or re-configured any of the network equipment if there was service degradation detected or to add an enhancement as requested by management.
- Configured FortiNet Analyzer for reports requested by management including security, VPN usage and users.
- Created and updated network Visio maps and Excel spreadsheets pertaining to IP addressing and equipment info.
- Upgraded modules, configured, and maintained SolarWinds Orion to monitor the network, servers, WAN circuits and provide reports and e-mail alerts.
- Interacted with 3rd party vendors for internet and private WAN circuits for service outages, degradation and change requests.
- Interacted with 3rd party vendors the company used for out-sourced resources and leased hardware for hardware problems, RMA’s or field service.
- Remediated security holes revealed by 3rd party Confidential security audits, in servers, network equipment and network appliances.
- Provided network support for IBM blade chassis that was housing a VMware / MS 2003 server environment.
- Use of SDE ticketing system to open/resolve/close tickets for the Network department.
- Resolved numerous network related issues to poorly designed or misconfigured features.
- Improved network resiliency by correctly configuring HA failover on data center Confidential core switches.
- Prepared networking requirements for installing a few Cisco Confidential servers and Cisco Confidential blade system.
- Used VCenter to assist System Administrator in monitoring and maintaining virtual servers on IBM blade chassis.
- Implemented DOS policy alerts so the firewall would report on security attacks whereas they weren’t before.
- Assisted Systems Engineer completing a Windows AD migration from 2003 to 2008.
- Advanced configuration of SolarWinds Orion, including creating monitors & alerts for SSL certificate expiration dates after major outages caused due to SSL certificates expiring.
- Entry-level Cisco Confidential installation and configuration.
- Entry to mid-level Operations support for VMware.
- Entry to advanced skills in configuring and troubleshooting FortiNet firewalls and appliances.
- Mid-level to advanced SolarWinds Orion design & configuration.
- Mid-level Juniper firewall configuration and troubleshooting.
Confidential
Sr. Network Engineer
Responsibilities:
- This contract focused on Beyond Daily Activities.
- Configured, maintained & upgraded of Sonic Wall TZ210 firewall.
- Supported configuration and implementation of Avaya IP VPN phones for remote call center support.
- Troubleshot and resolved reports of network latency, loss of internet access, VPN phone problems, site to site VPN tunnels & remote access VPN.
- Designed, tested & troubleshot HA failover, which unearthed a DNS problem with secondary ISP which I resolved with provider.
- Evaluated Cisco Configuration Professional for customer use.
- Prepared network monitoring servers for syslog, SNMP, RDP and console services.
- Prepared proposal for a forklift network upgrade to 1GB to the desktop.
- Maintained support contracts with Cisco, Sonic Wall, Comcast, Dell, Symantec & Atlantech.
- Prepared an annual support contract to cover network maintenance items, additions to the network, pc & server and additional services.
- Entry to mid-level Sonic Wall configuration and troubleshooting
- Reinforced and enhanced Cisco HA configuration and troubleshooting skills.
- Reinforced Cisco remote & site to site VPN tunnel configuration and troubleshooting skills.
- Entry to mid-level Avaya IP phone IPsec VPN tunneling configuration.
Confidential
Sr. Network Engineer
Responsibilities:
- This contract focused on Beyond Daily Activities.
- Installed Cisco 3750-X model switch stacks with X-PS as directed to support GSK network migration and tested interconnectivity, routing and 10gig fiber links.
- Assisted Confidential Sr. Network Engineer in preparing migration of Confidential users and all Confidential network resources from their Juniper based network to a Cisco based GSK network due to company merger.
- Assisted the Sr. Network Engineer configuring the Juniper network EX4200's in production environment to allow the migration from the Confidential IP address space to the GSK IP address space in preparation for moving the physical connectivity after a 1 week burn in period.
- Prepared a lab to represent a small scale model of their Juniper network in order to test the addition of layer 3 interfaces, the addition of OSPF routing statements and other commands to support upcoming migration of the Call Manager & Confidential to their new Cisco network.
- Critical in troubleshooting the Phase I IP addressing migration for the Unity & Call Manager servers by providing solutions to allow for connectivity of Unity & CM servers on old & new IP address space.
- Assisted Sr. Infrastructure Engineer to shoot fiber runs across the campus to interconnect the remote buildings to the core data centers for the new GSK Cisco switch stacks.
- Assisted Sr. Infrastructure Engineer in installing new Cisco WAP's throughout campus, along with testing them with a Public & Private SSID and created a checklist to record accessible network resources.
- Assisted Sr. Infrastructure Engineer in locating and moving critical copper connections to allow for critical resources to be migrated to new network before phones, users and printers were to be migrated.
- Assisted in migrating laboratory appliance and workstation connections from Confidential to GSK network to allow a team of GSK network engineers to perform patching, updates and upgrades before being migrated to the GSK network.
- Decommissioned Confidential network which consists of Juniper EX4200 switches, Juniper SRX routers/firewalls and Cisco 4500's which was the final phase of the migration to the GSK network.
- Collected, inventoried, documented user pc's, mobile phones, IP phones, printers, and other pc accessories for asset recovery in remaining days of the contract period.
- Entry to advanced level Juniper EX4200 switch configuration.
- Entry to mid-level Cisco 3750-X switch configuration.
- Entry-level Cisco Unity and Call Manager configuration.
Confidential
Systems Engineer, Herndon, VA
Responsibilities:
- Network backbone consisted of nearly 50 Cisco 6509E’s for access, distribution and core infrastructure, with Cisco Confidential ’s, Confidential modules and F5 load balancers in a multi-tenant Active/DR data center configuration.
- Systems Engineer team member for a large and remote data center offering standard server/client services and cloud computing solutions such as IAAS services.
- Coordinated with multiple teams concerning where to locate new clients and ensure they had all the power, rack space and access to network resources as we progressed through the various steps of turning services on paper to actual network access on the data center floor.
- Participated in on-site meetings and conference calls with clients and other internal teams/departments to help develop plan to implement customers project.
- Assigned projects by management and team leads which consisted of creating EWO’s (Engineering Work Order) to turn new clients, turn up additional services or to reallocate resources within the data center for the client, updating documentation consisting of Visio maps and Excel spreadsheets.
- Assisted in preparing migration from Cisco Confidential ’s to Cisco ASA’s & Palo Alto firewalls for 10gig capacity, free up module slots and to move firewalling outside of chassis.
- Assisted in preparing configurations pertaining to the load balancing requirements for clients using integrated Confidential modules and F5 LTM’s.
- Created Nexus switch baseline which was approved by local & remote management.
- Worked with “Hands On Crew” in remote data center to build out Nexus lab using newly created configuration baseline.
- Critical in integrating Nexus 5596 w/2248 FEX bundles and some Brocade MLX16E’s into the network at the access layer to extend 10gig network resources throughout data center.
- Entry to mid-level Cisco Nexus configuration, design and troubleshooting.
- Entry to mid-level Brocade MLX16e configuration and operation.
- Advanced Visio feature usage.
- Advanced Excel feature usage.
- Entry-level Confidential configuration.
- Entry to mid-level Confidential configuration.
Confidential
Sr. Network Engineer, Bethesda, MD
Responsibilities:
- Initiated and created small scale lab of legacy to new environment for testing servers, applications and appliances before they were moved from legacy gear to new gear - found numerous issues with some medical devices going from 100mb to 1gig.
- Initiated and completed building out a satellite office space and parts depot in secondary campus data center.
- Contracted for “Tech Refresh Project” where current Nortel equipment will be replaced with Cisco equipment.
- New network consists of Cisco 3750-X access switch stacks connected to a pair of Cisco 6509-E switches configured to support VSS.
- Maintained, upgraded, operated and monitored the NNMC ( Confidential ) network along with a number of peripheral networks for any outages, degraded service(s) or escalations from the Help Desk.
- Migrated current Nortel access switches the new Cisco VSS switch core network when possible.
- Provided assistance in designing and implementing new data closets in the newly erected buildings that included power, patch panels, cabling, turning up newly configured switch stacks, UPS installation and configuration.
- Worked with MHS & DISA to work with telco circuit providers when there are any problems with our internet circuits or point to point circuits supporting peripheral networks; circuits vary in size from T-1 to OC-12.
- Supported the engineers of other vendors contracted to install new network equipment on the NNMC network then incorporating their support into our support services such as wireless, video surveillance and others.
- Tier III level support to the Help Desk representatives, management and other engineers from various departments.
- Monitored and maintained NMS application EM7 to provide monitoring of network devices via SNMP v3.
- Lead engineer in creating a lab environment representing on a small scale the access, distribution and core legacy network and a small scale representation of the network we were migrating to for testing of new applications, services on both networks vs using the production network.
- Lead engineer in turning up new Cisco 6509-E’s in the primary data center and configuring them and the core Cisco equipment for migrating servers and their associated services from former data center.
- Designed and implemented alternative network connectivity for some medial departments and/or facilitate the moving of complete departments since some buildings were being demolished then new ones erected.
- Entry to mid-level Cisco VSS design, configuration and troubleshooting.
- Entry to mid-level Cisco 3750-X switch stack design, configuration and troubleshooting.
- Entry to mid-level Nortel 8600 configuration and troubleshooting.
Confidential
Sr. Network Engineer
Responsibilities:
- This contract focused mostly on Beyond Daily Activities.
- Assisting with daily network activities like monitoring, addressing any outages or complaints of service degradation and interacting with various department heads.
- Lead engineer role in removing leased Cisco 6509’s from the network, replacing with purchased Cisco 6513’s.
- Lead engineer migrating Cisco equipment, network and data circuits to a newly built data center.
- Designed, configured and tested a temporary wireless solution using Cisco LWAP’s versus using a WiSM blade in the newly installed 6513’s to provide wireless access until a complete enterprise wide design can be designed, configured and implemented.
- Designed, configured and tested a multi-group Cisco WebVPN solution on a Cisco ASA in preparation to replace current Cisco 3000 VPN concentrator with the requirement that users were locked into their groups & IP address space.
- Relocated Cisco 6509’s to headquarters then prepared & shipped them back to leasing company before the leases end for a tremendous savings to the company.
- Mid-level to advanced ASA WebVPN design, configuration and troubleshooting.
- Entry to mid-level standalone Cisco WAP design, configuration and troubleshooting.
Confidential
Sr. Network Engineer, Rockville, MD
Responsibilities:
- Multiple networks on-site which included their clients and their corporate - mostly Cisco network equipment; routers, switches, VPN servers, ASA’s and Cisco load balancers.
- Sr. Network Engineer on a team of network engineers responsible for designing, configuring and implementing network & internet connectivity after moving a newly acquired client’s network from their provider’s location.
- Interacted with ISP during new site turns up to acquire new IP address space, design NAT/PAT solutions, DNS pushes and for routing of new IP address space.
- Created Word documents and Visio maps documenting the new clients and the corporate network.
- Implemented changes to the network that our clients requested.
- Maintained Visio network maps up to date as the clients’ or corporate network changes.
- Troubleshot routing, VPN, VLAN’g and load balancing / CSS - Confidential URL redirection problems.
- Created Cisco TAC tickets for problems where serious difficulties resolving were encountered.
- Designed and turned up a Network Monitoring network in preparation of implementing SolarWinds Orion.
- Implemented SolarWinds Orion before the contracts end then turning over to System Administrator to customize configuration.
- Installed, registered, upgraded, configured ASA integrated AIP-SSM 10 modules and configured associated IME management software suite.
- Implement Cisco AnyConnect client VPN & WebVPN for internal users and external clients.
- Assist ing migrating load-balanced traffic off the CSS 11000 platform and on to the Confidential 4710 with some assistance from Cisco TAC.
- Redesign & configure their customers’ network to eliminate single points of failure.
- Design and implement a small branch office into their local network using T-1’s & VPN encryption.
- Mid-level to advanced level Cisco ASA design, configuration and troubleshooting.
- Entry to mid-level Cisco Confidential configuration and troubleshooting.
- Entry to mid-level Cisco Anyconnect design, configuration and troubleshooting.
- Entry-level SolarWinds Orion configuration.
