We provide IT Staff Augmentation Services!

Network Security Engineer Resume

4.00/5 (Submit Your Rating)

Mount Laurel, NJ

SUMMARY:

  • Cisco Certified Network Engineer with around 9 years of experience in Routing, Switching, Firewall Security and Troubleshooting.
  • Hands - on experience in providing network support, installation and analysis for a broad range of LAN/ WAN/MAN communication systems.
  • Experience in Cisco : Physical cabling, IP addressing, Wide Area Network configurations (Frame-relay & MPLS).
  • Experience in working with Cisco Nexus Switches and Virtual Port Channel configuration.
  • Proficient in Cisco IOS for configuration & troubleshooting of routing protocols: MP-BGP, OSPF, LDP, EIGRP, RIP, BGP V4, MPLS, ISIS.
  • Good knowledge in ACL, NAT/ PAT, Ether Channel, IP Sec and VPNs . Experience in Troubleshooting for connectivity and hardware problems on Cisco Networks.
  • Experience in L2/L3 protocols like VLAN, STP, ISL, MPLS and Trunking protocols. Design and configuring of OSPF, BGP on Juniper Routers (MX960, MX480 ) and SRX Firewall (SRX240, SRX550 ).
  • Experience in set up, configuration and management of Cisco ASA Firewall in various domain such as Internet, DMZ , Business-Partner and Remote-Access VPN etc. Knowledge on cryptosystems such as RSA and AES .
  • Worked on network topologies and configurations, TCP/IP, UDP, Frame Relay, Token ring, bridges, routers, hubs and Switches.
  • Well Experienced in configuring protocols HSRP, GLBP, VRRP, ICMP, IGMP, PPP, PAP, CHAP, and SNMP . Aggregating switch links using LACP and PAGP protocols.
  • Experience in installing and configuring DNS, DHCP Server and involved in designing and commissioning WAN infrastructure for redundancy in case of link failure.
  • Extensive knowledge with VLAN's, Trunking, RSTP, SNMP, Ether Channels, HSRP, Port Security , ACL's, QoS, Traffic Policing, EIGRP, OSPF, NAT, PAT, VPN's, DHCP etc .
  • Experience working with Juniper Switches like EX-2200, EX-4200, EX-4500, M Series Routers MX5 , MX10, MX40 and MX80, Juniper Firewalls SRX100, SRX110, SRX220, SRX320, SRX650.
  • Strong hands on experience on ASA (5500, 5505, 5510, 5520, 5525-X, 5530, 5540, Etc.,)
  • Implemented security policies using ACL, Firewall, IPSEC, SSL, VPN, DMVPN, IPS/IDS, AAA (TACACS+ & RADIUS).
  • Strong hands on experience in installing, troubleshooting, configuring of Cisco ASR, 7200, 3900, 3800, and 1800 series Routers, Cisco Catalyst 6500, 4500, 3750, 2950 and 3500XL series switches
  • Extensive hand on experience with complex routed LAN networks , CISCO Routers and Switches .
  • Good experience with Security Incident and Event Management ( SIEM ), Intrusion Detection and Prevention Systems (IDS/IPS) and log management and database activity monitoring.
  • Managing global outsourced services SLA with external third party vendors on the systems and applications side such as SUN, Red Hat, HP-UX, Oracle Linux, HP-UX, Symantec (to name a few).
  • Protocols in high availability environment. Experience with different Network Management Tools and Sniffers like SNMP, HP-Open view, and Cisco works to support 24 x 7 Network Operation Center.
  • Worked with several network engineers for the understanding of Juniper SRX firewalls along with the changeover to Palo Alto. Palo Alto Firewall Management-Panorama
  • Supported enterprise environment including: Aruba controllers, Airwave and APs / Cisco wireless controllers.
  • Experience in designing MPLS VPN and QOS for architecture using Cisco multi-layer switches.
  • Hands-on configuration and experience in setting up Cisco Routers to perform functions at the Access, Distribution, and Core Layers.
  • Experience with F5 load balancers and Cisco load balancers ( CSM, ACE and GSS ).
  • Excellent customer management/resolution, problem solving, debugging skills and capable of quickly learning, effectively analyzing results and implement and delivering solutions as an individual and as part of a team. Working experience with REMEDY for ticket change management process. Strong Experience in using various tools for management, analyzing, and troubleshooting, monitoring & process automation in Lab & Production environment.

TECHNICAL SKILLS:

Routing Protocols: EIGRP, OSPF, RIP, RIPV2, IGRP, BGP, TCP/IP, STP, RSTP, VLANs, LACP, MPLS, HSRP, VRRP, VTP, PAGP, GLBP, TACASS+, Radius and AAA.

Antivirus and Endpoint protection: Cisco CSA, Symantec Enterprise Edition, MacAfee Enterprise Edition.

CISCO Routers: Nexus 7K, 5K, 2K & 1K, Cisco routers (7600, 7200, 3900, 3600, 2800, 2600, 2500, 1800 series) & Cisco Catalyst switches (6500, 4900, 3750, 3500, 4500, 2900 series) Huawei AR Series Routers.

Security & VPN: PIX 500 Firewall, ASA 5505 Firewall, AIP SSM, CSC, SSM, FWSM, FortiGate, Cisco CSM, ACL-Access Control List, IPS/IDS, NAT, PAT, Cisco ACS, and Juniper Netscreen firewall, Windows Patch Management (WSUS).

Leased Line, ISDN/Dial: Up, and Frame Relay circuits, Metro Ethernet.

LAN Technology: Workgroup, Domain, RSTP, VLAN, STP, VTP, Ethernet, Fast Ethernet, Gigabit Ethernet &10 Gigabit Ethernet,802.1q

WAN Technologies: HDLC, PPP, ATM, SONET, MPLS, VPN, IPsec-VPN.

ACL, IPSec, VPN, Port: security, AAA, Zone-Based Firewalls, IOS based router security firewalls, IDS/IPS, Palo Alto firewalls.

Operating Systems and Tools: Cisco IOS, Windows NT 4.0 (Desktop/Server), Windows 2000/2003/2008 Server, Windows XP/Windows 7/8, LINUX, Solaris, Active Directory, Apache Server

Network Technologies: MANET, SONET, TDMA, FDMA, CDMA. DSL, POP3, IASS, Manage EMC Networker.

EX2200, EX4200, EX: 4500, MX-480, M Series, SRX210, SRX240

PROFESSIONAL EXPERIENCE:

Confidential - Mount Laurel, NJ

Network Security Engineer

Responsibilities:

  • Worked with Palo Alto Firewalls PA250, PA4050, PA3020 using Panorama servers, performing changes to monitor/block/allow the traffic on the Firewall. Technical assistance for LAN/WAN management and complex customer issues.
  • Provided support for troubleshooting and resolving Customer and user reported issues. Worked with Network Engineer's in the installation and configuration of firewalls. Performed route redistribution & manipulated route updates using distribute lists, route-maps & administrative distance, offset-lists.
  • Installed high availability Big IP F5, Configured LTM and GTM Services to provide uninterrupted service to customers. Configuring objects such as Load Balancer Server pools for local traffic management on F5 Load Balancers.
  • Involved setting up the TFTP server for backing up the IOS images and configuration files of Cisco Routers and Switches and troubleshooting the file servers. Upgrades, installs, configuration and administration security and monitoring tools on Linux.
  • Configuring, implementing and troubleshooting VLAN's, VTP, STP, Trunking, Ether channels. Configuring and maintenance of layer2 switching tasks which advocate VLAN, VTP, STP, RSTP, PVST, RPVST, configuring of ether channel with LACP and PAGP along with troubleshooting of inter-VLAN routing.
  • Packet capturing, troubleshooting on network problems with Wireshark, identifying and fixing problems. Implementing, configuring, and troubleshooting various routing protocols like RIP, EIGRP, OSPF, and BGP etc.
  • Maintenance of F5 Load Balancers-6600/6800
  • Technical support for Microsoft Active Directory and Citrix MetaFrame Environment. Responsible for planning and executing complex projects including network design and server installs, WAN design and implementation, VPN projects, Exchange server implementations, Office 365 migrations and disaster recovery
  • Configured Routing protocols such as RIP, OSPF, EIGRP, Static Routing and policy based routing.
  • Team member of Configuration of Cisco 7206 Router with VPN and Configuration of Catalyst switches. Configuration 7500, 7200 with OSPF and Catalyst 6505, 4500, 3550 Switches with various VLAN. Create and test Cisco router and switching operations using OSPF routing protocol, ASA 5500 Firewalls, and MPLS Switching for stable VPNs.
  • Worked on Cisco's Application Centric Infrastructure (ACI) implementation (Nexus 9K, APIC).
  • Troubleshooting the Network Routing protocols (BGP, EIGRP and RIP) during the Migrations and new client connections.
  • Hands on experience in Aruba S2500 Switches, Aruba 7200, 3600 series wireless controllers, Aruba IAP 105, Airwave Products and clear pass Servers. Configuring & managing around 500+ Network & Security Devices that includes Cisco Nexus & Arista Switches, Juniper MX Series Routers, and Juniper SRX Firewalls.
  • Experienced with Juniper EX-2200, EX-4200, EX-4500, MX-480, and M Series, SRX210, SRX240.Optimized performance of the WAN Network consisting of Cisco 3550/4500/6500 Switches by configuring VLANs. Configured OSPF and BGP on Juniper M and MX Series Routers
  • Tested JUNOS images on Juniper MX router platforms covering various protocols and technologies like OSPF, BGP, LDP, MPLS, Layer3 VPNs.
  • Worked with Cisco Catalyst 4500, 4900 Switches and Cisco 2800, 3600, 3800, 7200 & 7600 series Routers.
  • IP Address Design and Management and also managed DNS and DCHP using a Bluecoat at appliance called IPAM.
  • Expertise in installing, configuring, and maintaining Cisco Switches (2960, 3560X, 3750X, 4500-X, 4948, 4510, 6509, Nexus 2k, 5K and 7K)
  • Configured VLANs with 802.1q tagging. Configured Trunk groups, ether channels, and Spanning tree for creating Access/distribution and core layer switching architecture. Configuration and troubleshooting of Cisco 7500, 7200vxr, 3800, 3600, 2900, 2800, 2600,1800,1700 routers. Worked with Cisco Nexus, Catalyst and Aruba wireless devices.
  • Implemented, configured BGP WAN routing, converting OSPF routes to BGP (OSPF in local routing). Experience in set up, configuration and management of Cisco ASA Firewall in various domain such as Internet, DMZ, Business-Partner and Remote-Access VPN etc.
  • Analyzed the Policy rules, monitor logs and documented the Network/Traffic flow Diagram of the Palo Alto Firewalls placed in the Data Center with MS Visio.

Environment: Net Flow, TACACS, EIGRP, RIP,OSPF,BGP,VPN,MPLS,CSM,SUP720,IPAM, Ether Channels, Cisco ACI, Cisco 4510, 7200/3845/3600/2800 routers, Cisco 6509/ 3750/3550/3500/2950 Switches, Radius, SecurID, Solarwinds, citrix, Checkpoint Firewalls(SPLAT), Palo Alto, F5 Load Balancer, RSA.

Confidential, Los Angeles, CA.

Network Engineer

Responsibilities:

  • Configured OSPF over frame relay networks for NBMA and point to multipoint strategies
  • Provided redundancy in a multi homed Border Gateway Protocol (BGP) network by tunings AS-path
  • Hand on experience the configuration and implementation of various Cisco Routers and L2 Switches.
  • Assisted in troubleshooting LAN connectivity and hardware issues in the Network of 500 hosts.
  • Studied and analyzed client requirements to provide solutions for network design, configuration, administration, and security.
  • Modified internal infrastructure by adding switches to support server farms and added servers to existing DMZ environments to support new and existing application platforms.
  • Built site-to-site IPSec VPNs over Frame-relay & MPLS circuits on various models of Cisco routers to facilitate adding new business partners to new and existing infrastructures.
  • Analyzed customer application and bandwidth requirements, ordered hardware and circuits, and built cost-effective network solutions to accommodate customer requirements and project scope.
  • Involved in troubleshooting IP addressing issues and Updating IOS images using TFTP.
  • Maintained redundancy on Cisco 2600, 2800 and 3600 routers with HSRP.
  • Created a backup and recovery policy for software application and verified peripherals are working properly.
  • Possess good experience in configuring and troubleshooting WAN technologies like MPLS, T1, T3, DS3 and ISDN.
  • Responsible for implementing QOS parameter on switching configuration.
  • Involved in Design and Implementation of complex Networks related to extranet clients.
  • Troubleshooting the Network Routing protocols (BGP, EIGRP and OSPF) during the Migrations and new client connections.
  • Manage operational monitoring of equipment capacity/utilization and evaluate the need for upgrades; develop methods for gathering data needed to monitor hardware, software, and communications network performance.
  • Troubleshoot problems on a day to day basis & provide solutions that would fix the problems within their Network.
  • Monitor performance of network and servers to identify potential problems and bottleneck.
  • Performed RIP & OSPF routing protocol administration.
  • Interacted with support services to reduce the downtime on leased lines.
  • Designed and implemented VLAN using Cisco Switch Catalyst 1900, 2900, 5000 & 6000 series.
  • Configured routers and coordinated with LD Carriers and LECs To Turn-up New WAN circuits. Configuring, Maintaining the Routers and Switches and Implementation of RIP, EIGRP, OSPF, BGP routing protocols and trouble shooting.
  • Maintenance and Troubleshooting of connectivity problems using Ping, Trace route.
  • Daily responsibilities included monitoring remote site using network management tools, assisted in design guidance for infrastructure upgrade & help LAN administrator with backbone connection and connectivity issue Other responsibilities included documentation and support other teams
  • Worked towards the key areas of the project to meet SLA's and to ensure business continuity. Involved in meetings with engineering teams to prepare the configurations according to the requirement.
  • Creating change tickets according to the scheduled network changes and implementing the changes.

Environment: Cisco 3750/3550/3500/2960 switches and Cisco 3640/ 00/3845/3600/2800 routers, Cisco ASA5510, Checkpoint, F5 Load Balancer Cisco Nexus7K/5K, Checkpoint, Cisco ASA

Confidential - Houston, TX

Network Engineer

Responsibilities:

  • Configure / Troubleshoot CISCO 12000, 7500, 3800 series routers and 3560 series switch for LAN/WAN connectivity.
  • Involved in design and implementation of Data Center Migration, worked on implementation strategies for the expansion of the MPLS VPN networks
  • Experience in configuring VPC, VDC and ISSU software upgrade in Nexus 7010
  • Actively involved in Switching Technology Administration including creating and managing VLANS, Port security- 802.1x, Trucking 802.1Q, RPVST+, Inter-VLAN routing, and LAN security on Cisco Catalyst Switches 4507R+E, 6509-E and Cisco Nexus Switches 2232, 5596, 7009.
  • Troubleshooting of complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF&BGP, MPLS
  • Experience with deploying PIM Sparse-mode/Dense-mode multicasting in Campus locations.
  • Serve as part of a team of Network Engineers responsible for base wide network upgrade from Cisco Layer 3 Catalyst switches to Juniper Layer 3 EX4200 & EX3200 Switches.
  • Design, implement and administer IPv4 enterprise network infrastructure utilizing Juniper routers like Juniper MX80, MX 480 and MX960.
  • Design and implement Catalyst/ASA Firewall Service Module for various LAN's.
  • Responsible for managing Cisco routers, switches, HP switches, and F5 load-balancers using SNMP MIBs for fault detection and for fault isolation.
  • Involved in Configuration of Access lists (ACL) on checkpoint firewall for the proper network routing for the B2B Network connectivity.
  • Integrate Microsoft active directory (LDAP) into checkpoint for identity awareness and user authentication.
  • Configure and manage LDAP User management with Checkpoint Smart Directory. Implemented the policy rules and DMZ for multiple clients of the state on the Check Point Firewall.
  • Worked with several network engineers for the understanding of Juniper SRX Firewalls along with the changeover to PaloAlto. PaloAlto Firewall Management-Panorama.
  • Experienced in handling and installing Palo Alto Firewalls
  • Serve as part of a team of network engineers responsible for base wide network upgrade from Cisco Layer 3 Catalyst switches to Juniper Layer 3 EX4200 & EX3200 Switches.
  • Experience working with ASR 9000 series switches with IOS-XR
  • Involved in configuring Juniper SSG-140 and Check Point Firewall.
  • Provided Layer-3 redundancy by implementing HSRP and GLBP for High availability
  • Implementation and Configuration (Profiles, iRules) of F5 Big-IP LTM-6400 load balancers
  • Implemented Access lists and policy mapping on Juniper router installed in each branch across all the states.
  • Worked on configuration commissioning and Up Gradation of the MPLS circuits for various branch offices. Disabling all unused ports and putting them in unused VLAN.
  • Implemented, analyzed and recommended appropriate system for the out of band management monitoring. Utilizing Solar Winds for primary and disaster recovery site.
  • Monitored and responded to network anomalies utilizing Solar Winds/Orion's software and recommended appropriate network solutions for issues.

Environment: Cisco 12000, 7500, 3800 series routers and Cisco 3560 series switches, Juniper EX4200, EX3200 Switches, Juniper MX80, MX480, MX960 Routers, F5 ADC, FHRP: HSRP, GLBP, ASR 9000, Juniper SSG-140, Cisco Nexus Switches 2232, 5596, 7009, Checkpoint Firewall, VLAN, 802.1Q Trunking.

Confidential, CA

Wireless Network Engineer

Responsibilities:

  • Install and perform repairs to hardware, software, or peripheral equipment, following design or installation specifications.(Cisco Switches 3560, 3650, 3750, 3800 series Cisco Routers 891,4320, 4330, 6800 Nexus 10k)
  • Read technical manuals, confer with users, or conduct computer diagnostics to investigate and resolve problems or to provide technical assistance and support.
  • Refer major hardware or software problems or defective products to vendors
  • Install & Troubleshoot Load Balancer VIPS/internal and external (Netscaler)
  • Strategic IT Consulting, including plan, develop, and implement IT solutions that maximize business productivity
  • Deployed and Supported 14,000 Cisco & Meraki and Aruba AP's ( Cisco 1142, 3500, 3600, 3800 Meraki MR16, MR32, MR64, Aruba IAP 207/305)
  • Perform IT assessments and IT audits
  • Configure and Supported Cisco & Aruba Wireless Controllers (Cisco 5500, 5520, 8540 Aruba 7210/7220)
  • Designed and Deployed Cisco Identity Engine 1.2-2.3 (Radius/AAA/802.1x wireless and wired )
  • Designed and Supported Aruba Airwave & Clear pass
  • Design / Troubleshoot network connections (BGP, OSPF, EIGRP, OTV, HTTP, FTP, SMTP, DNS, TCP)
  • Designed and Deployed wireless infrastructure for new sites and pre-existing
  • Provide High level support for Ethernet connections (Physical/Data Link )
  • Perform vendor evaluation and negotiation on behalf of multiple client
  • Implement, configure and manage enterprise wireless hardware software and management systems (NCS/Prime Infrastructure 1.4-3.4, Cisco MSE 7.4- CMX 10.3) establishing networking environment by designing system configuration, directing system installation, defining, documenting, and enforcing system standards; maximizing network performance by monitoring performance, troubleshooting network problems and outages, scheduling upgrades and collaborating with network architects on network optimization the support and administration of firewall environments in line with IT security policy; configuration of routing and switching equipment
  • Resolve escalated hardware and software issues related to LAN/WAN
  • Identify opportunities and solutions for improving efficiencies with emerging technologies, including Cisco routers/switches and router wireless systems

Environment: Windows 2003/2008 Server, XP, Windows 7, TCP/IP, SQL, VB, .NET, Exchange, Windows Server 2003/2008 R2/2001 SBS/2012, VMWare, Sonic Wall, Cisco Any Connect Server/Client, Cerner Apps, Citrix, Sophos Encryption, CompuSEC Encryption, Solar winds, Cisco IOS, Cisco Prime Infrastructure 1.2-3.3 . Cisco LMS, Cisco MSE, CA Service Desk, Linux Redhat, Aeroscout Mobile view. Cisco AP/Wireless Controll.

Confidential

Network Administrator

Responsibilities:

  • Key responsibility of LAN and WAN maintenance and troubleshooting any network related problems.
  • Co-ordinate with peers and customers dealing with wireless network innovations also responsible for maintaining wireless IPS infrastructure.
  • Migrated Sites from EIGRP to OSPF.
  • Coordinating with Vendors for creating and modifying firewall and NAT rules and Maintaining Site to Site and SSL VPN.
  • Extensively worked on redistribution from RIP to OSPF and OSPF to RIP by implementing Hub and Spoke topology with a Frame Relay Switch.
  • Worked on OSPF using features like TSA, SA, NSSA and route summarization. Configured EBGP/IBGP policies also tested BGP attributes such as Local Preference, MED, AS-PATH, Community and Weight.
  • Performed load balancing and application level redundancy by deploying F5 BIG-IP LTM 6500.
  • Experience in Cisco: Physical cabling, IP addressing, Wide Area Network configurations (MPLS), Routing protocol configurations (EIGRP, OSPF, and BGP).
  • Configuring switch ports (VLAN tagging, switch port mode, Port Channel) at distribution and Access layers for new server builds and critical server movement as per requirement.
  • Infrastructure trouble shooting and TCP/IP Protocols Experience.
  • Configured and maintained Cisco 2900 series switches including VLANs and Trunking protocols.
  • Maintained a Network with more than 600 Network Devices, some 25,000 end hosts, and the other Network devices like DHCP, DNS Servers.
  • Co-ordination with Hardware vendors, software vendors and service Providers.
  • Helped the Network team to install new switches and routers and configure the IOS according to the requirement.
  • Assisted in backup, restoring and upgrading the Router and switch IOS.
  • Attended Team meetings and provided comments on existing network and the recommendations to improve the current Network Performance.
  • Identifying technical problems and debugging hardware and software related to LAN's/ WAN's.
  • Monitoring and Maintaining inventory reports of Network devices.
  • Responsible for network availability, Network redundancy, bandwidth planning, routing issues.

Environment: Cisco 2500, 2600, 2800, 2900 series routers; Cisco 1900, 2900, 3500 series catalyst Switches; OSPF, BGP, VPN; F5 BIG-IP LTM 6500

Confidential

Network L1 Engineer

Responsibilities:

  • Designed and deployed networks as per the company's requirement. Handled different tasks such as network address assignment, assignment of routing protocols, etc.
  • Assisted in creating and upgrading network protocols in networks.
  • Implementation & trouble shooting of complex WAN, LAN, VLANS, and private VLANS.
  • Working on Routing, Switching, Firewalls, Network Configuring, troubleshooting & designing
  • Using 2800 series routers, 2950 catalyst switches, as well as Cisco ASA Firewall.
  • Managing Cisco Layer 2, Layer 3 switches & Routers on the network.
  • Resolving routing and switching related real time performance issues
  • Responsible for Internal and external accounts and, managing LAN/WAN and checking for SSL Security Settings of the networking devices (Cisco IOS, Router, switches), coordinating with the system/Network administrator during any major changes and implementation.
  • Used tools Wireshark, Packet Sniffer and Microsoft Network Analyzer for monitoring Local Area Network connections (LAN's) and Wide Area Network Connections (WAN) for Network connection and failure issues.

Environment: Cisco 3750/3550/3500/2960 switches and Cisco 2600, 2800, 3700, 3825, 7200 routers.

We'd love your feedback!