Security Tower Manger Resume
Charlotte, NC
SUMMARY:
- Network Engineer Professional with 9+ years of Experience in network design, implementation, troubleshooting and managing large - scale enterprise networks in the past;
- Provided Level-2 & 3 support for Network Operations Center as per Organizational standards.
- Ability to manages, Installs, maintains, and troubleshoots wired and wireless networks and infrastructure including: LAN, WAN, MAN switches, access points, wireless controllers, routers, fiber optic & UTP cabling
- Expertise in Cisco Routing, Switching and Security with Cisco hardware/software experience.
- Documents network and cable plant infrastructure wired and wireless.
- Excellent management, debugging and capable of quickly learning, effectively analyzing results, implement deliver solutions as an individual and work with the Team.
- Offshore and onsite coordination. Daily and weekly reports for all network support.
- Transition of network activities for L1 and L2.
- Documentation and knowledge database creation, Incident problem and change management.
- Experience in Wireless Networks (Cisco and Confidential )
- In depth knowledge and hands-on experience in Tier II ISP routing Policies, Network Architecture, IP Subnetting, VLSM, TCP/IP, NAT, DHCP, DNS, FT1/T1/FT3/T3 SONET POS OCX/GigE circuits, Firewalls.
- Design and configuring of OSPF, BGP on cisco devices.
- Experience with multi-homed ISPs actively balancing and optimizing at least four ISPs simultaneously.
- A comprehensive and thorough understanding of BGP route optimization and path selection.
TECHNICAL SKILLS:
Platform: Hardware/Software
LAN Technologies: Ethernet, Fast Ethernet, VLAN, VTP, STP, RSTP, PVST
WAN Technologies: Frame Relay, ISDN, PPP, HDLC, ATM, MPLS, Leased Lines, Cable modem, DWDM, DS1, DS3, T1, T3, OC3, OC12, OC48
Network Hardware: Cisco hardware (7600, 6500, 4500, 4000, 3550, 2900), Confidential (MX240, M320), CISCO Switches 1900, 2950, 2960G. Core Catalyst 4503, 4507 RE, Catalyst 6500/6503/6507, Cisco PIX 500 series, Cisco ASA 5500 series, Nexus 2k, 5k, 7k and 9k
Protocols: RIP, RIP V2, EIGRP, OSPF, IS-IS, BGP, HSRP, VRRP, MLPPP, DNS, SMTP, SNMP, FTP, LDP, WLAN 802.11/802.11 e, WEP and POP3.
Network security: NAT/PAT, ACL’s, IPSEC VPN, IKE, Ingress and Egress filtering, IDS, IPS, URL filtering.
Firewalls: Checkpoint Firewall, Cisco ASA-IOS, Confidential .
Proxy: BlueCoat ProxySG
Network Management: Cisco WAN Manager, Cisco works 2000
Monitoring Tools: Experience with Solar Winds, Cisco Works, Wireshark Analysis and Monitoring
Authentication: RADIUS, TACACS+, Digital certificates
Operating systems & tools: CISCO IOS 12.x, Sun Solaris 8/9, Win NT, 2000, 2003, 2008, XP (Desktop/Server)
PROFESSIONAL EXPRERIENCE:
Confidential, Charlotte, NC
Security Tower Manger
Environment: LAN, WAN, Cisco 7200, ACX 1000, PTX 3000, Confidential Netscreen, Cisco ASA, Bluecoat Proxy, Cisco catalyst 6509, 4510, 4506, 2900 series switches, IPSec VPN, SSL VPN, Site-Site VPN, Access-Lists, SRX, J-Series Routers and firewalls and NAT.
Responsibilities:
- Responsible for managing Cisco ASA, Cisco Secure ACS, VPN Concentrator, Cisco ScanSafe, Symantec Endpoint Protection Manger, QualysGuard Vulnerability Management.
- Trouble shooting/ACL configuration in Cisco ASA
- VPN creation for Confidential external contractor.
- Cisco Scansafe to whitelist and blocklist the malicious links.
- Symantec Manger upgradation, working in Symantec.
Confidential, Charlotte, NC
Network Engineer
Environment: - TCP/IP, DNS, DHCP, Firewalls, Routers, IDS, VPN, switches, load balancers, 10G fiber, Wi-Fi controller and access points
Responsibilities:
- Responsible for maintaining and ensuring the proper functioning of all network devices (i.e. Confidential routers/switches, Cisco Routers/Switches, Confidential Netscreen firewalls, Cisco ASA firewalls, and load balancers (LTM)).
- The design and implementation of new solutions and improving resilience of the current environment.
- Configure, troubleshoot, and implement network, Computing, and Unified Communication environments.
- Configured OSPF and BGP on Confidential M and MX series Routers
- Securing network systems by establishing and enforcing policies, and defining and monitoring access.
- The support and administration of firewall environments in line with IT security policy.
- Capacity management and audit of IP addressing and hosted devices within data centers.
- Design and Implementation of Cisco 5500 ASA firewall.
- Microsoft Data centers, worked on Nexus 2k, 5k, 7k, and 9k.
- Implementing Checkpoint Firewall (Gaia) for management (Smart Dashboard, Smart Monitor), Logging (Smart Log, Smart View Tracker).
- Managing AAA server like RADIUS and TACACS+ using Cisco ACS v4.2.
- IPSEC VPN (site-to-site), client to site VPN’s on Cisco 3000 Concentrators and Cisco VPN client.
- Implementation of IPSEC VPN for remote users using Cisco VPN Client and Cisco Secure ACS.
- Document all the installations and configurations using Visio and Word, Configured packet filtering & NAT (Network Address Translation) for securing internal network, security policies for the training room machines, perform regular patches and updates on time.
- Design and Implementation of F5 load balancer configurations, including migrating configurations from Cisco ACE to F5 and general troubleshooting of the F5 load balancers.
- Experience on load balancing strategies/techniques, expertise in application switching/traffic management, knowledge of persistence and SSL certificates.
- Hands on with Blue Coat URL filtering with white listing and blacklisting URL, creating rules for content filtering.
- Remote support of on-site engineers and end users/customers.
- Troubleshooting of DNS, DHCP and other IP conflict problems.
- NOC responsibilities to Network monitoring to maintain network uptime, patching, VLAN creation and trunking, routed subnet creation, and lots of layer 1 to 3 troubleshooting.
- Perform basic systems testing and operational tasks (installation of patches, network connectivity testing, etc.)
- Support multiple technical teams in 24 x 7 environment operational environments with high uptime requirements. Varied shift schedules may include day or evening hours.
Confidential, CA
Network Engineer/ Wireless Engineer
Environment: LAN, WAN, Cisco 7200, Confidential ACX 1000, PTX 3000, Confidential Netscreen, Cisco ASA, Bluecoat Proxy, Cisco catalyst 6509, 4510, 4506, 2900 series switches, IPSec VPN, SSL VPN, Site-Site VPN, Access-Lists, Confidential SRX, J-Series Routers and firewalls and NAT.
Responsibilities:
- Design and Implementation of Cisco catalyst 6506, 3700 & 2900 series switches.
- Primary responsibility is to design and deploy various network security & High Availability devices
- Provided Cisco Router Configuration Support along with installation, Configured EIGRP.
- Configuration of switches and WIFI devices across all the locations Trouble shooting in Network environment.
- Noc duties on performance to assist senior technical personnel to predict future issues or outages.
- Monitor a wide variety of information and network systems that include, but are not limited to telecommunications circuits, LAN/WAN systems, routers, switches, firewalls, VoIP systems, servers, storage, backup, operating systems and core applications.
- Expert level of knowledge in advanced 802.11 wireless technologies.
- Expert in configuring VDC, VPC domain, Vpc peerlink. Nexus 2k, 5k, 7k
- Implementation of Wireless Networks
- Implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, Ether channel, STP, RSTP and MST. Implementation of HSRP, VRRP for default gateway and Redundancy
- Management of Check Point and Cisco ASA firewall across global networks.
- Management of Load Balancers for administrating and monitoring global & local traffic.
- Configuration management and implementing changes as per ITIL standards.
- Configuring Network Address Translation (NAT) according to the connectivity requirements.
- Collect and review performance reports for various systems, and report trends in hardware and application
- Project support of Ethernet services, commissioning support, provisioning support
- Core Network support (IP/Ethernet). Troubleshoot, isolate and fix IP/Ethernet troubles. Communicate with customers during and after course of troubleshooting. Support Layer 2 services (e-line, e-LAN), Internet services (DIA) (to include BGP support), and Core network.
- Mentoring and training to the junior Engineers.
- Network and Security Design and Implementation, Strong understanding of security equipment and operation.
Confidential, New York, NY
Design and Implementation
Responsibilities:
- Analyze business requirements to develop technical network solutions and their framework.
- Design, test, and inspect data communications systems.
- Perform network modeling, analysis, and planning.
- Install hardware such as switches, routers, and wireless devices.
- Write functional requirements/specifications documents.
- Assess vendor development/test strategies.
- Extensive experience configuring, maintaining and troubleshooting LANs. Particularly at layer 2 and layer 3.
- Strong, thorough, in-depth knowledge of TCP/IP, experience with IP, TCP, UDP, IPsec, DNS, ARP, HTTP, SSL, among other protocols.
- Experience with Application Discovery and Dependency Mapping tools such as Riverbed.
- Extensive experience developing and troubleshooting a SOA environment.
- Experience with troubleshooting end to end communication between a user and a service.
- Experience in working with Cisco Load Balancers
- Hands on Open stack command line interfaces to use admin commands configuration the Firewall rules and policies
- Monitoring the network, troubleshooting network problems, implementing changes, communicating and working closely with vendors, customers, system administrators.
Confidential, Fairfax, VA
Technical Support
Responsibilities:
- Taking care of LAN & WAN related issues.
- Worked on MPLS network with connecting the clients etc
- Worked on LAN & WAN expansion.
- Worked on Firewall up gradation and internet circuit up gradations.
- Taking care of all type VPN tunnels and different client connectivity’s.
- Configuring & Maintenance optimization devices.
- Installation & configuration of the L3 devices in network.
- Installation & configuration of access points in related issues..
- Monitoring devices in daily basis.
- Trouble shooting network issues.
- Planning & scheduling preventive maintenance of LAN network services and devices.
Environment: LAN, WAN and MPLS Network, VPN tunnels and Internet circuit, Bluecoats & alteon, L3 Network devices.
