Sr. Network & Security Engineer Resume
Irvine, CA
PROFESSIONAL SUMMARY:
- Certified Network Engineer with 8+years of experience in Network engineering, performing Analysis, Design, Implementing, and Troubleshooting with focus on performance tuning and support of large Enterprise Networks.
- Hands on Experience in configuring Cisco Catalyst 2960, 3750, 4500, 6500 and Nexus 3000, 5000, 6000, 7000 series switches, Juniper QFabric, EX, and QFX Series Switches and Brocade 2800, 3200, 3900 SAN series Switches.
- Hands on Experience with Cisco 2600, 2800, 3600, 3800, 7200, 7600 series routers, Juniper MX, PTX and ACX Series routers.
- Implementation, Configuration and Support of Checkpoint NGX R65, R70 and R71, Cisco ASA 5505, 5506 - X, 5585, 4100, Palo Alto PA-2k, PA-3k and PA-5k Firewalls and Juniper SRX100 ,110 and Juniper ISG1000, ISG2000 Series Firewall.
- Hands on experience with Cisco, Brocade, Bluecoat, Juniper, Checkpoint and Palo Alto devices.
- Experience with Bluecoat Proxy servers, LAN & WAN management.
- Implementing IP addressing schemes, LAN/WAN protocols, IP Services, to meet network requirements in different environments.
- Expertise in Configuration of Virtual Local Area Networks (VLANs) using Cisco routers and multi-layer Switches and supporting STP, RSTP, PVST, RPVST along with trouble shooting of inter-VLAN routing and VLAN Trunking using 802.1Q.
- Hands on experience on several Ticketing Tools like JIRA, Change Management, Service Catalog, HP, Remedy, IP center, ServiceNow etc.,
- Proficiently implemented traffic filters using Standard and Extended access-lists, Distribute-Lists, Route Maps and route manipulation using Offset-list.
- Hands on experience in deployment of GRE tunneling, SSL, Site-Site IPSEC VPN and DM VPN.
- Extensive hands on support of F5 Products including AFM, ASM, LTM, GTM, WOM and APM.
- Comprehensive expertise in the implementation of optimization, analysis, troubleshooting and documentation of LAN/WAN networking systems.
- Working knowledge on configuring access lists. Troubleshooting DNS/DHCP issues within the LAN network.
- Good knowledge with the technology’s VPN, WLAN and Multicast.
- Strong knowledge of Cisco and Juniper software (IOS/XR and JunOS) and hardware.
- Have basic knowledge on scripting languages like PHP, perl and python.
- Experience with all Palo Alto Networks Firewall models (PA-2k, PA-3k, PA-5k etc.) as well as a centralized management system (Panorama) to manage large scale Firewall deployments
- Knowledge of cryptography concepts, PKI, SSL, Host Security Modules (HSM), Smart cards, Symmetric, Asymmetric (Public/Private-PKI).
- Expert Level Knowledge about TCP/IP and OSI models.
- Troubleshooting the Juniper SRX100 and 110 series, Juniper NetScreen routers with Site-Site VPN, and firewalls.
- Strong work experience with the following technologies MPLS, OTV, L2VPN, VPLS, NAT, Multicast, and IPv6.
- Implemented Tufin Secure Track for tracking firewall revisions for Palo Alto FW and JuniperNet screen.
- Analyzed traffic pattern and implemented URL filtering on Palo Alto Firewalls.
- Good understanding of Wildfire and creating various policies on Palo Alto (PA 5050, PA 500).
- Experience on HTTP, telnet and SSL traffic using Wireshark, SNMP, and sniffer tool.
- Sound knowledge of Routing and Switching concepts and MPLS design.
- Experienced on network monitoring tools such as, Cacti, Wireshark, Netflow Analyzer, Solar winds, Cisco Prime, Ethereal, SNMP, Ethereal, Remedy .
- I also performed successfully wireless vulnerabilities assessment as well as network pentesting for the company.
- Extensive knowledge and experience of routing and switching protocols RIP, OSPF, EIGRP, BGP, Multicast and VLAN, VTP.
- Expertise in troubleshooting and configuring DNS, DHCP, TFTP, VPLS, SSH, FTP, ARP and NFS .
- Proficient in Cisco IOS for configuration & troubleshooting of routing protocols MP-BGP, OSPF, LDP, EIGRP, RIP, BGP v4, MPLS.
- Responsible for Polo Alto , Check Point and Cisco ASA firewall administration across global networks.
- Great team player with an ability to work under pressure on a 24x7 duty rotation.
- Willing to relocate: Anywhere
TECHNICAL SKILLS:
Cisco & Juniper Routers: 2600, 2900, 3600, 3800, 7200 and 7600, MX, PTX and ACX
Cisco L2 & L3 Switches: 2900, 3560, 3750, 4500, 4900, 6500, Nexus 3K/5K/6K/7K
LAN Technologies: Ethernet, Fast Ethernet, and Gigabit Ethernet, SMTP, VLAN, Inter-VLAN Routing, VTP, VDC, OTV, STP, RSTP, Light weight access point(LWAP), WLC.
WAN Technologies: Frame Relay, ATM, MPLS, PPP, HDLC, (E1/T1/E3/T3), DS3, OC192.
OS products/Services: DNS, DHCP, Windows (2000/2003/2008, XP), UNIX, LINUX, Microsoft products (MS office, Windows OS, Server)
RIP v1/v2, OSPF, EIGRP, IS: IS, BGP, PBR, Multicast, Route Filtering, Redistribution, Summarization, and Static Routing.
Gateway Load Balancing: HSRP, VRRP, GLBP
Various Features / Services: IOS and Features, IRDP, NAT, SNMP, SYSLOG, NTP, DHCP, CDP, TFTP and FTP.
Network Management Tools: Wireshark, Netflow Analyzer, Solar winds, Cisco Works, OpenStack Ethereal, SNMP, HP open view, Ethereal, Remedy, Putty.
Security Server Protocols: TACACS+, RADIUS
Facilities: DS0, DS1, DS3, OCX, T1/T3
Load Balancers: Cisco CSM, F5 Networks (Big-IP) LTM 8900, Cisco ACE 4710.
Operating Systems: Windows (98, ME, 2000, XP, Server 2003/2008, Vista, Windows 7), Linux
Firewall & Security: Checkpoint, Cisco ASA, Palo Alto, Juniper SRX
QOS: CBWFQ, LLQ, WRED, policing/shaping
VOIP: Cisco IP phone, Cisco 5500, 6500 series controller, Avaya 3000,6000,7200 series controllers.
Cabling: CAT 5, CAT 5e, CAT 6, CAT 6a
Vendors: Cisco, Brocade, Juniper, Checkpoint and Palo Alto.
WORK EXPERIENCE:
Confidential, Irvine, CA
Sr. Network & Security Engineer
Responsibilities:
- In-depth expertise in the analysis, implementation, troubleshooting & documentation of LAN/WAN architecture and good experience on IP services and Data center environment.
- Working in high availability Nexus Environment and provide Level 3 Network Support.
- Working closely with Data center management to analyze the data center sites for cabling requirements of various network equipment.
- Strong knowledge and hands on experience in Data Center Migration using PlateSpin.
- Involved in configuring and implementing of composite Network models consists of Cisco 7600, 7200, 3800 series routers and Cisco 2950, 3500, 5000, 6500 Series switches.
- Configured Nexus 7010 including NX-OS Virtual Port Channels, Nexus port profiles, Nexus Version 4.2 and 5.0, Nexus VPC peer links
- Security policy review and configuration in Palo Alto, Cisco ASA firewalls in US offices and data centers.
- Working with Palo Alto Firewall with Panorama Servers to create / modify rules and policies.
- Experience in implementing F5 BIG IP load balancers.
- Successfully put in Palo Alto PA 3060 firewalls to protect information Center and provided L3 support for routers/switches/firewalls.
- Worked and automated BigIQ High Availability cluster feature.
- Expertise in creating custom iRules, Health monitors, VIP’s, pools, nodes for F5 LTM/GTM .
- Supporting OSPF and BGP based on the network by resolving level 2 & 3 problems of internal teams & external customers of all locations.
- Configured Reverse Proxy, URL filtering and content filtering using Bluecoat proxy SG devices.
- Configuring and testing Multicast for both IPv4 and IPv6 routing in Data Environment.
- Manage project task to migrate from Cisco ASA firewalls to Palo Alto firewalls.
- Performing troubleshooting on VPN connectivity issues, slow network connectivity issues, identifying the root cause of the issues.
- Planned and implemented new infrastructure in Data Center Implementing Security Solutions using Palo Alto Pa-5000/3000, Cisco ASA, Checkpoint firewalls R75, R77.20 Gaia and Provider-1/MDM.
- Experience with configuring OTV between the data centers as a layer 2 extension.
- Hands on experience on F5 BIGIP LTM 11.2, F5 BIGIP GTM, F5 BIGIP APM and F5 BIGIP ASM.
- Provided TCP/IP, DNS and DHCP troubleshooting and installation
- Migrated IPv4 addresses to IPv6 addresses using mechanisms like Tunnel Broker, Transport Relay Translation (TRT), NAT64, DS-Lite and DNS64.
- Performed OSPF, BGP, DHCP Profile, HSRP, IPv6, Bundle Ethernet implementation on ASR 9K redundant pair.
- Configured Cisco switches for L2 and L3 VLAN between Data centers over IP on Nexus 7710 switches.
- Configuring and testing Multicast for both IPv4 and IPv6 routing in Data Environment.
- Troubleshooting Multicast issues between Juniper devices.
- Configuration, Troubleshooting and Maintenance of Palo Alto Firewalls (160+ firewalls) - PA200, PA2000 series, PA3000 series, PA4000 series and PA5000 series.
- Managing and configuring Aruba Wireless devices and Cisco Access Points.
- Experience with Firewall migrations from Juniper SRX to Cisco ASA.
- Replace branch cisco routers with new Juniper MX-80, MX-104 routers as a part of branch network refresh project.
- Working with and supporting VMware technologies in, high availability, and fault tolerant datacenter environment.
- Knowledge on SDN field trials, two factor authentication, security bastion access, mutli-data center active/active networking/security, and VXLAN networking.
- Performed VPN/VRF secure designs over BGP enabled MPLS and dedicated WANs.
- Providing desktop support for over 300 end-users either by phone, remote desktop (Real VNC) and hands on to troubleshoot and resolve issues
- Install and configure network equipment applicable to test environment, which included Cisco CRS and ASR9K devices running IOS XR.
- Implement configurations on Cisco ASR 9K, CRS, ASR 1K and 7600 running IOS XR, IOS XE and IOS respectively.
- Configuring RIP, OSPF and Static routing on Juniper M and MX series Routers
- Support third party products and technologies within the ACI ecosystem such as VMware ESX, F5, OpenStack.
- Performing OTV to extend L2 VLANs between data centers over IP on Nexus7018 switches.
- Managed inventory of all network hardware, Management and Monitoring by use of SSH, Syslog, SNMP, NTP.
- Implemented Silver Peak SDWAN technology to maximize routing efforts within the network
- Worked on Juniper based data center platform configured, implementation, troubleshooting on Juniper EX series switches and MX series routers and SRX firewalls.
- Program managed the ACE & PS Services Teams, the premier Aruba Customer WLAN Engineers.
- Design and deployment of MPLS QOS, MPLS Multicasting per company standards.
- Troubleshooting routing issues on Cisco and Juniper routers running protocols like BGP, OSPF, EIGRP
- Troubleshooting Layer 2 issues, Spanning Tree protocol (STP), RSTP, MST, VTP, VLAN on Cisco - 6500 series Switches and Juniper EX-4200 switches.
- Experience in working with load balancer for converting CSS to ACE.
- Worked with network services like DNS, DHCP, DDNS, IPv4, IPv6 , IPsec , VPN , VRF etc.
- Worked with Infoblox for secure DNS, DHCP and IPAM.
- Supported Infoblox appliances grid environment for DNS, DHCP and IP Address Management tools (IPv4), for the State Farm enterprise network.
- Working on Configuring and Managing F5 GTM for Data Centers, DNS Management and Integrated with DNS Vendors for DNS Security Management.
- Worked with Cisco ACE GSS 4400 Series global site selector Appliances.
- Experience with Security- Firewalls , NAT / PAT, IPSEC, S2S .
- Experienced working with Nexus OS, IOS, CATOS and Nexus 7K, 5K & 2K Switches
- Knowledge of with API’s for troubleshooting Network issues using Wireshark and NTOP
- Configured static NAT , dynamic NAT , dynamic NAT overloading.
- Ensure that all system in the domain have McAfee Antivirus Protection Installed.
- Back up a Cisco IOS to a TFTP server and Upgraded and restored a Cisco IOS from TFTP server.
- Responsible in troubleshooting on Cisco ISE added new devices on network based on policies on ISE .
- Created and tracked incident tickets via Service Manager 7, Service Manager 9, and Remedy
- Performing network monitoring, providing analysis using various tools like Wire Shark, Solar winds, SNMP.
- Configuring DNS and DHCP configuration in Inflobox.
- Wrote PowerShell/PowerCLI script to migrate machine to VMWare NSX environment. This included using RESTful APIs to manage IPAM addressing in Infoblox.
- Implemented Security policies using ACL, Firewall, IPSEC SSL, IPS/IDS, AAA (TACACS+RADIUS).
- Documenting network configuration for all new equipment and creating equipment configuration backups and monitoring to work with existing network systems.
- Worked on the security levels with RADIUS, TACACS+.
- Worked on connecting to database and fetch the data with Perl/Python.
- Experience with Blue Coat URL filtering with white listing and blacklisting URL, creating rules for content filtering.
- Managing SSL orders, SSL renewal using Verisign as trusted CA and SSL implementation and administration.
- Worked on Change request using Tufin Secure change.
Environment: Nexus 2k/5k/7k, Cisco 6500/7500/7200 Routers, Juniper MX-80, MX-104 Routers, Cisco 3550/4500/6500 switches, Cisco ASR 9k, LAN, WAN, OSPF, RIP, BGP, EIGRP, HSRP, PPP, VPN, Checkpoint, Cisco ASA, McAfee EPO, Cisco ISE, Wire Shark, SNMP, Solar Winds, Remedy, F5 load balancer.
Confidential, Raleigh, NC
Network Engineer
Responsibilities:
- Day-to-day work involves scheduling firewall policy provisioning and working with users to identify connectivity related issues and troubleshoot using both Smart Utilities and CLI.
- Efficiently exploitation ServiceNow tool for generation of tickets, distribution severity to incidents, following up with incident standing and troubleshooting incidents.
- Monitored the system performance using Splunk and created daily and weekly dashboard reports
- Excellently used Splunk to research and monitor incident management and incident resolution issues.
- Implementation configuration and troubleshooting of Checkpoint firewall R75.40.
- Worked on Check Point Security Gateways and Cisco ASA Firewall.
- Worked on F5 Enterprise Manager 3.1 version to manage multiple F5 LTM devices from single-pane view.
- Firewall Clustering and High Availability Services using Cluster XL on Check Point.
- Configuring and tweaking Core XL and Secure XL acceleration on Check Point gateways.
- Assist with Cisco ASA, based VoIP infrastructure implementation including of QoS, IPsec, VSLM, VPN and management of Cisco ASA firewalls, Network Access Control (NAC) and IP Address assign reusable information science addresses to DHCP shoppers.
- Configured Easy VPN server and SSL VPN to facilitate various employees' access internal servers and resources with access restrictions.
- Managed and assisted in the integration of the Tufin Orchestration Suite into the Ameriprise ticketing system and ITIL process.
- Experience with converting WAN routing from EIGRP/OSPF to BGP (OSPF is used for local routing only) which also involved converting from Point to point circuits to MPLS circuits.
- Configuring and troubleshooting perimeter security devices like stop NGX R77 Gaea, Provider-1/MDM, Secure Platform, Palo Alto and ASA Firewalls.
- Upgraded load balancers from Radware to F5 BigIPv9 which improved functionality and scalability in the enterprise. Managed the F5 BigIP GTM/LTM appliances to include writing iRules, SSL offload and everyday task of creating WIP and VIPs
- Palo Alto style and installation (Application and URL filtering, Threat bar, information Filtering)
- Configuring rules and Maintaining Palo Alto Firewalls & Analysis of firewall logs exploitation varied tools.
- Performing network monitoring, providing analysis using various tools like HP Openview, Wireshark, Solarwinds, SNMP etc.
- Proficient in checking the network's security protocols, system features and good hands on experience in the manual testing of l2, l3 protocols.
- Experience with deploying PIM Sparse-mode/Dense-mode multicasting in Campus locations.
- Configured and managed policies on Palo Alto firewalls using Panorama GUI
- Completed basic configurations on the F5 Big-IP LTMs and GTM load balancer on existing network to split traffic on web-servers.
- Implemented Cisco and Aruba Wireless Controllers, Aruba Wireless Access Points at corporate site as a part of WLAN Infrastructure.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
- Successfully put in Palo Alto PA 3060 firewalls to protects information Center and provided L3 support for routers/switches/firewalls.
- Troubleshoot fiber optic infrastructure, TCP/IP layer 2/3 connectivity, software and hardware bug issues, OSPF and BGP routing, and multitude of customer requested issues as they arise.
- Experienced using Palo Alto Panorama to manage global firewall deployments.
- Implemented Zone primarily based Firewalling and Security Rules on the Palo Alto Firewall
- Provide technical Support for F5 load balancers (GTM, LTM), Bluecoat proxy, Firewalls (ASA, Checkpoint, Palo Alto) and IPS/IDS systems
- Maintained and managed networks running EIGRP and BGP routing protocols Regularly performed firewall audits around stop Firewall-1 solutions for purchasers.
- Configuration of routing protocols EIGRP and BGP for little to medium sized branches supported company branch standards, together with distribution and route maps.
- Provided full visibility and notification of authorized and unauthorized network access with integration of CISCO ASA and NAC solution.
- Managed NAC appliances- Profiler and Access manager, to create endpoint profiles for the new devices and monitoring the unauthorized access.
- Performed Proof of concept with Splunk, Tripwire, Qualys and RSA Envision tools
- Monitored application servers using different APM's such as NetScalar, NewRelic, AppDynamics and ExtraHop. We used different kinds of APM's as part of POC on different hosts to identify best APM tools.
- Build IT security infrastructure together with stop, Juniper and Palo Alto firewalls
- Configuring Juniper Net Screen Firewall Policies between secure zones exploitation NSM (Network Security Manager).
- Setup Multicast Routing to alleviate the traffic across the network.
- Installation & configuration of Microsoft Proxy Server 2.0 and Inflobox DNS, DNCP and IP Address Management.
- Experienced on working with JunOS on Juniper Routers and Switches.
- Backup and restore of stop and Cisco ASA Firewall policies.
- Administration Big IP F5 LTM for all Local Load balancing and use GTM for load balancing across Data Centers.
- Networking protocols such as L2 protocols (STP, RSRP, IEEE802, 1Q, VTP, ARP) and L3 protocols (RIP, OSPF, IP, ICMP, BGP).
- Planning, designing and configuration of various Cisco ISE deployment strategies (Standalone, Distributed Setups) and rollout to production environment.
- Monitoring Traffic and Connections in stop and Cisco ASA Firewall
- Manage project task to migrate from Cisco ASA firewalls to examine purpose firewalls.
- Configuring MAB clients on the nexus devices and testing them in the lab before pushing them to the production.
- Involved in troubleshooting of DHCP and other IP conflict problems.
- Configured ACLs (Standard, Extended and Named) to allow users all over the company to access different applications and blocking others.
- Participated in on call support to troubleshoot the configuration and installation issues.
- Configured switches with port security and 802.1x for enhancing customer’s security.
Environment: Palo Alto PA-7000, PA-5000, PA-3000 and PA-500 Series Cisco ASA 5500 and 4100 series Check Point and Juniper SRX firewalls, EIGRP and BGP, VPC, VDC, OTV, Inflobox Juniper switches and routers, F5 load balancer.
Confidential
Network Operation Engineer
Responsibilities:
- Configured Routing protocols such as RIP, OSPF, EIGRP, MPLS, static routing and policy based routing.
- Project lead for Cisco VoIP Integration for multiple Corporate offices.
- Regular upgrade and maintenance of Juniper Switches & Routers .
- Upgraded IOS, and JunOS images on Cisco and Juniper Devices.
- Configuring, testing, troubleshooting multiple vendor device platforms like Cisco routing and switching: Cisco ASR9010, ASR901, ASR903 , Catalyst Cisco 7609, 2960 , and Juniper routing and switching devices: MX960, MX 480, ACX2200, EX2200, ALU service aggregation router: 7705 SAR 8 and 7750 service routers.
- Major deployment projects including VOIP, Network Monitoring, and conversion of field locations to MPLS.
- Configured Multicasting protocol for IPTV and Multicast over GRE tunnels.
- Managed the F5 BigIP GTM/LTM appliances to include writing iRules, SSL offload and everyday task of creating WIP and VIPs.
- Working on Evergreen project for Cisco devices migration for more than 200 sites and configuring L3, L2, Distribution and Access layer to load balance traffic.
- Installing and configuring new cisco instrumentation as well as Cisco catalyst switches 6500, Nexus 7010 , Nexus 5548 and Nexus 2k as per the need of the corporate.
- Troubleshooting routing issues on Cisco and Juniper routers running routing protocols like BGP, OSPF, EIGRP.
- Configuration and troubleshooting of many link types i.e. SONET Controllers for sub E1/T1, E3/T3 and POS controllers for STM1 links.
- Configuring VLAN's, Self IP's& Routes on F5 load balancers.
- Open and monitor TAC and RMA cases with our vendors as required.
- Configured and deployed PIM multicast Routing
- Experience in Installing and configure the VMware NSX appliances for a setup including VMware vSphere, VMware NSX and Openstack.
- Provide Wi-Fi configurations and connectivity using Virtual Network Computing ( VNC) application for WAP adoptions on Juniper Ex2200 and 2100.
- Installation and configuration of virtualization using VMware.
- Build Clusters on SRX240, EX4200, 4500 Juniper series and Cisco 3750 switches
- Troubleshooting Layer 2 issues, Spanning Tree protocol, RSTP, MST, VTP, VLAN on Cisco - 6500 series Switches and Juniper EX-4200 switches
- Experience in troubleshooting in a Splunk Enterprise environment.
- Configured VLANs with 802.1q tagging & Configured Trunk groups, ether channels, and Spanning tree for creating Access/distribution and core layer switching architecture.
- Worked with F5 Load balancing, IDS/IPS, Bluecoat proxy servers and Administrating.
- Security policy review and configuration in Palo Alto and Juniper SRX Firewall in Datacenter.
- Configure, troubleshoot, install, and manage Juniper J and M series routers, Juniper NetScreen firewalls to include ISG 2000, NS-5200, and SSG series
- Install and configure puppet server and Customizing Linux servers using puppet server
- Implementation of TCP/IP & related Services-DHCP/DNS/WINS and Upgrading Firewall versions.
- Experienced in working with BIG-IP Edge Portal and BIG-IP Edge Client.
- IPv4 addressing, VLANs, Basic WAN (Frame Relay) connectivity and troubleshooting.
- Installation, Configuration and upgrades of Redhat Linux 4/5.
- Worked on configurations and installations Linux servers using PXE and Kick start.
- Provided on-call support for installation and troubleshooting of the configuration issues.
- Migration of existing IPSEC VPN tunnels from Pre-Shared key to Authority for purpose of scaling.
- Implemented site to site VPN in Juniper SRX as per customer.
- Monitoring and troubleshooting network issues between client site and 85 remote sites with legacy switches and routers.
- Worked on Configuring Juniper MX/EX/QFX routers and switches using CLI.
- Install and configure network monitoring tools like Remedy, JIRA, Change Management .
- Worked on Juniper J series J230, M 320 routers and EX 3200 series switch.
- Design and Implement DMZ for FTP , Web and Mail Servers with Cisco PIX 506, PIX 515 .
- Done troubleshooting of TCP/IP problems and connectivity issues in multi-protocol Ethernet environment.
- IOS upgrade 1900, 2900, 3500 series Cisco Catalyst switches and 2500, 2600, 3600 series Cisco routers using TFTP .
Environment: Cisco Catalyst switches and 2500, 2600, 3600, Juniper EX, QFX series Switches, Juniper ACX, MX Series routers Cisco ASR9010, ASR901, ASR903 routers and f5 BIG IP, Palo Alto PA-5000 and PA-300 Firewalls, Remedy, JIRA, Change Management, Service Catalog, IP center.
Confidential
Network Engineer
Responsibilities:
- Migration of RIP V2 to OSPF, BGP routing protocols.
- Configured and installed Cisco routers 2500, 2600, 3601 and 4000 series .
- Configured EIGRP for Lab Environment.
- Implemented ISL and 802.1Q for communicating through VTP .
- Created VLAN and Inter- VLAN routing with Multilayer Switching.
- Configuring rules and Maintaining Palo Alto Firewalls & Analysis of firewall logs using various tools.
- Successfully installed Palo Alto PA 3060 firewalls to protects Data Center and provided support
- Implemented Positive Enforcement Model with the help of Palo Alto Networks.
- Configured and maintained IPSEC and SSL VPN's on Palo Alto Firewalls.
- Implemented Zone Based Firewalling and Security Rules on the Palo Alto Firewall
- Configuration, Troubleshooting and Maintenance of Palo Alto Firewalls - PA200, PA2000 series, PA3000 series, PA4000 series and PA5000 series.
- Provided technical Support for Brocade ADX 1000 Load balancer in data center.
- Performed administrative support for RIP, OSPF routing protocol.
- Maintained redundancy on Cisco 2600, 2800 and 3600 routers with HSRP .
- Real time monitoring and network management using Cisco Works LMS .
- Involved in troubleshooting IP addressing issues and Updating IOS images using TFTP .
- Monitoring network performance to improve the backup strategy using Net rep, Solar winds .
- Configured and deploying Cisco catalyst 6506, 4948E, 4510 switches and Cisco 3660, 3845, and 7609 series Routers.
- Wrote script in Python for automation of testing jobs.
- Manage and Support an international TCP/IP Cisco LAN/WAN environment for Corporate Infrastructure
- Remotes into network devices to perform troubleshooting and configurations using Telnet and SSH via Putty.
- Experienced in Troubleshooting layer 2 and 3 issues on Brocade Campus routers and switches.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500 .
- VNC, RDP and Configuration Manager 2012 Remote Control used to access end user computers and virtual VMware Horizon View Client VDI desktop sessions for troubleshooting.
- Managed and implemented multiple sites, installing, upgrading, and troubleshooting data center Brocade 6670's, MLX's, and router and connected links with protocols MPLS, BGP, EBGP and OSPF.
- Brocade core switches configuration for redundancy/troubleshoot Inter VLAN, routing, static VLANs, and port channels
- Involved in the troubleshooting aspects of complex network infrastructure using the routing protocols like EIGRP, OSPF & BGP .
Environment: Cisco 2600, 2800,3600,4000,6506, 4948E, 4510 switches, Brocade 2800, 3200,3900 SAN Switches and Cisco 3660, 3845, and 7609 series Routers and Palo Alto PA-300, PA-3K, PA-5K Firewall, F5 load balancer.