Network Security Engineer Resume
Erie, PA
SUMMARY:
- 6+ years of experience in testing, troubleshooting, implementing, optimizing and maintaining enterprise data network and service provider systems.
- Experience in areas system administration and networking for infrastructure management.
- Experience in setting up IT infrastructure including Wide Area Network (WAN), Local Area Network (LAN), Network Management and Security.
- Experience in securing and monitoring across the network with ACL, Firewall and IPSEC VPN.
- Configured and maintained IPSEC and SSL VPN's on Palo Alto, Cisco ASA Firewalls.
- Expertise in installing configuring and troubleshooting routing protocols like RIPV2, EIGRP, OSPF, NAT, BGP, STP, HSRP and GLBP.
- Proficient in installing and configuring Cisco switches (2900, 3500, 3700, 6500 series).
- Proficient in installing and configuring Cisco routers (800, 1800, 2800 and 3800 series).
- Involved in F5 LTM and GTM planning, designing and implementation.
- Implementation, Configuration and Support of Checkpoint (NGX R71, R75, R77) Juniper Firewalls (SRX5400, SRX5600 and SRX5800), Cisco Firewalls (ASA 5505).
- Experience in handling Profiles, Monitors, VIP’s, Pool Members, iRules in F5 Network load balancers.
- Outstanding experience in designing and configuring of Layer 2 / 3 networking features such as VLAN, STP, VTP, 802.1X, Port Security, L2PT and SPAN.
- Proficient on deployment services like DDI (BlueCat proxy servers), VOIP, NAT and QoS.
- Experience in working with Microsoft Azure (Azure DNS, Application Gateway, Traffic Manager and Load Balancer) and Amazon AWS (EC2, Elastic search and Load Balancers).
- Experience in VPN (Virtual Private Network) and MPLS configuration for secure connection between server and client architecture.
- Proficient in Configuring Virtual Local Area Networks ( VLANS ) using Cisco routers and multi - layer Switches and supporting STP , RSTP , PVST , RPVST along with trouble shooting of inter-VLAN routing and VLAN Trunking using 802.1Q in catalyst switches.
- Upgraded IOS image for Cisco routers and switches.
- Hands-on experience in providing network support, installation and analysis for a broad range of LAN/WAN/MAN technologies including T1, Point to Point, ATM and Frame Relay communication systems.
- Configured IPSec VPN (Site-Site to Remote Access) encryption mechanism to manage LAN/WAN to support routing protocol to provide secure session between sites.
- Worked with rule-based configuration on Cisco ASA, Palo Alto and Checkpoint firewalls.
- Skilled in monitoring tools Wireshark, Nmap, Snort Snarf and Packet Player.
- Experience in documentation network diagram and Technical Specifications using Microsoft VISIO and Office.
TECHNICAL SKILLS:
Routers: Cisco 800,1800, 2500, 2600, 2800, 3600, 3750, 3800,4300,7200.
Cisco Switches: Cisco 2900, 3500, 4000, 4500, 5000, 5800, 6500, 9300.
Other Vendors: Nexus 2k, 3k, 5k and 7k.
Routing Protocol: RIP, EIGRP, BGP, IGRP, OSPF and HSRP.
Network Management: Wireshark, SNMP, Nmap and Solar winds.
Application Protocol: DNS, DHCP, FTP, TFTP and SMTP
LAN technologies: Ethernet, VLAN, Port Channel, STP, RSTP and Port Security.
Frame Relay, ATM, HDLC, VPN, IP: Sec and PPP.
Network Security: TACACS+, RADIUS, NAT/PAT and VPN configuration.
Cloud Operations: Azure, AWS
Languages: Python, Perl.
Operating System: Windows XP, 7, 10, Windows server 2003, 2008 and Linux.
Documentation: Microsoft Visio and Microsoft Office.
PROFESSIONAL EXPERIENCE:
Confidential, Erie, PA
Network Security Engineer
Responsibilities:
- Configured and resolved troubleshooting problems on Cisco switches 2960, 3550 and Cisco routers 800, 3600, 4300.
- Involved in Organizing network infrastructure on Router, Switch configuration for Planning and Modernization.
- Involved in configuration of Access-List on ASA firewalls and MPLS, VPN connections for the proper network routing for the b2b network connectivity.
- Perform Site survey for LAN/WAN hardware, software including Router, Switch, AP (Cisco, Aruba) and server for business needs and recommended solution.
- Implementing and monitoring all Layer-2 devices and layer-3 Switching Tasks for internal networks.
- Troubleshoot and resolved issues for network and server connectivity for sites.
- Connected switches using the trunk links, configured trunk port and implement granular control over VLAN to extend network infrastructure.
- Having working experience with OSPF, BGP and MPLS for internal Lan communication.
- Experience with manipulating various BGP routing attributes (Local preference, Route-Map, AS-Path) to load balance between DMVPN and MPLS links.
- Configured fast-ethernet and sub interface allocation for inter-VLAN routing with multi-layer switching and implemented Static Routes for local connectivity.
- Integrated NAT/PAT to provide access to the server from private network to public network. Implemented extended Access-List to filter network traffic.
- Converted legacy Aruba wireless AP to new Cisco 1832 AP for better connectivity.
- Monitoring, Testing and Resolving Wireless network issues using CUCM for network efficiency and maintenance issues.
- Resolving any escalated Hardware and Software issues related to LAN/WAN.
- Configured and installed Cisco 891F and 4331 routers in the remote location for backup circuit through AT&T MPLS network.
- Upgraded the bandwidth and capacity of network by replacing new Router and line cards.
- Documenting Network problem and changes working with multiple management environments.
- Overseeing migration of WAN links from T1 network to new service provider for better network connectivity and performance.
- Configuring and troubleshoot VPN for Site-Site.
- Monitoring Network performance to improve the backup strategy using Solar-Winds and NetScout and made changes if necessary.
- Troubleshoot problems identified in monitoring tools with putty, Secure-CRT and native tools.
- Updating network documentation and Documenting Technical Specification using MS Office Suite.
Environment: LAN/WAN, VPN, VLAN, MPLS, BGP, OSPF, EIGRP, ASA, ARUBA, PUTTY, SECURE-CRT, MS OFFICE.
Confidential, Stratford, CT
Network Engineer
Responsibilities:
- Installed and configured cisco routers 2500, 2600, 2800, 3600, 7200 and cisco switches 2900, 3550, 4900 and 5500 and Nexus 5k,7K and 9K switches.
- Implemented and configured Router, Switches and Terminal Servers to support WAN Links.
- Configuration and daily management of network/security devices including F5 BIG-IPs , Check Point firewalls, Cisco ASA Firewalls, Cisco switches and routers.
- Maintaining and trouble-shooting network operations like connectivity issues, performance or functionality.
- Configured and Maintained Cisco ASA 5550 series for high end security on Access Control list and firewall.
- Cisco IOS firewall, Pix firewall and ASA firewall configuration and Troubleshooting.
- Added rules to the checkpoint firewall through smart dashboard and smart view tracker application.
- Cisco VPN technologies (IPsec Site to Site, Remote Access SSL VPN and DMVPN).
- Worked on TCP / IP services, IP Addressing and Subnetting ( DNS, DHCP & SMTP ).
- Experience in managing Cisco Redundancy Protocol ( HSRP, VRRP, GLBP, VSS and IP SLA ).
- Worked on Cisco Nexus 7K series switches whose hardware is based on Cisco ACI.
- Configured and maintained IPSEC and SSL VPN's on Cisco ASA Firewalls. Also responsible for administering and troubleshooting the Checkpoint, and ASA firewall.
- Configured IPSec VPN (Site-Site to Remote Access) on Cisco ASA (5200) series firewalls.
- Configured VLAN, inter VLAN, SNMP on switches for optimizing the performance of the network.
- Implemented Multiple Label Switching (MPLS) network using frame relay and OSPF.
- Implemented Client to Site and Site to Site VPN to direct customers and direct vendors.
- Working with the rule base and its configuration in Cisco ASA and Checkpoint firewalls.
- Experience in designing and implementing of load balancers F5, BIG-IP for control and optimization in network traffic.
- Developed a networking system that has information encryption, decryption, compression, sending and decompression features via TCP and UDP protocol using Python .
- Configured and utilized many different protocols such as OSPF, ISIS, BGP/MP-BGP, MPLS, LDP, Multicast, IPv4/IPv6 protocols.
- Utilized knowledge of Spanning Tree Protocol, BGP, MPLS, OSI model layers 1-2 to create network layouts.
- Creating Virtual IP address, Pools and Persistence profiles on F5 LTM’s.
- Creating Wide IPs with various load balancing methods like, Global Availability, Topology and Round Robin.
- Having working experience on monitoring tools like Wireshark, InfoBlox and Nmap for monitoring network traffic across the network.
- Build and maintain documentation using Microsoft Visio for updating in network topology.
Environment: LTM, GTM, BIG-IP, ASA, BGP, OSPF, MPLS, LDP, DNS, DHCP, SMTP, HSRP, VRRP, GLBP, VSS, IP SLA , STP, WIRESHARK, INFOBLOX, Nmap.
Confidential, Union, NJ
Network Engineer
Responsibilities:
- Implementing traffic engineering on top of an existing Multiprotocol Label Switching ( MPLS ) network using Frame Relay and Open Shortest Path First ( OSPF ).
- Hand on experience the configuration and implementation of various Cisco Routers and L2 Switches.
- Responsible for configuration, monitoring on security of network infrastructure in LAN/WAN network environment.
- Configured access-list, distribute-lists and route map for applying traffic filters for network performance.
- Understanding and implementation of IPSEC in VPN technology and make sure everything is in place.
- Installing the Network devices in datacenter environment and clearly articulate complex network designs and drawings through documentation ( Visio ) as well as verbal training sessions.
- Experience in Configuring Site-to-Site and Remote Site VPNs , NAT / PAT policies.
- Managing Cisco Secure ACS for TACACS+ , RADIUS authentications.
- Experience on designing and troubleshooting of EIGRP , OSPF routing issues.
- Configured and resolved various OSPF issues in an OSPF multi area environment.
- Hands-on experience with Cisco Routers and Switches, TCP/IP , Routing Protocols ( BGP/OSPF ), and IP addressing .
- Configured & maintained LAN , WAN , VPN , WLAN , and Firewalls on Cisco Routers for end users.
- Configuring MPLS , VPN (IPSEC, GRE) in VPN concentrators and QOS in integrated networks ( Data, Voice and Video ).
- Installed and configured of Juniper J-Series (J2350) and M-Series (M10) routers.
- Worked primarily on firewall analysis and modification of rule and administration.
- Configured and installed CISCO ASA firewall for intrusion prevention and antivirus.
- Installed and configured the ACE and CSM for firewall/Server Load balancing for Cisco Catalyst switches.
- Configuring VLAN , STP , Port security , SPAN , Ether channel in Cisco Composite Networks.
- Configured routers and modems, troubleshot issues related to broadband technologies for Residential and Business Customers .
- Configured & Maintained Cisco 2600, 2800, 3200 series routers including IOS upgrades.
- Monitoring network performance and work closely with client and system administrator for any immediate change in the network.
Environment: MPLS, OSPF, BGP, EIGRP, LAN, WAN, TCP/IP, VLAN, VPN, STP, SPAN, IOS, TACACS+ , RADIUS, NAT/PAT, ASA, JUNIPER J & M, ACE, CSM.
Confidential
Network Engineer
Responsibilities:
- Configured and installed Cisco routers of 2600,2800,3200 and 4000 series.
- Configured and installed Cisco switches of 2900,3500 and 3700 series.
- Designed, implemented and provided operational support of routing/switching protocols in complex environments including, OSPF, EIGRP (Single Area and Multi Area).
- Implemented privileged access on new user over the network environment.
- Configured DNS (Domain Name Serves), Active Directory Services and Internet Information Service for IP Management.
- Involved in fixing DNS, DHCP and any other IP conflict problem.
- Configured access list for filtering and control traffic over the security for client access.
- Tested routers and Line Cards using Smart Bits and done Performance Analysis of both LAN/WAN infrastructure.
- Interacted with business users from a service delivery and service support perspective.
- Hands-on experience with Routers, Switches, TCP/IP, Routing Protocols (EIGRP/OSPF), and IP addressing.
- Planned, tested and evaluated various equipment, systems, IOS's and procedures for use within the network / security infrastructure.
- Monitoring network performance and bandwidth utilization with Wireshark and Nmap.
- Ensure network performance and data availability through prevention of network upgrade and maintenance.
- Create and maintained documentation over network diagram using Microsoft VISIO.
Environment: CISCO ROUTERS (2600,2800,3200 & 4000), CISCO SWITCHES (2900, 3500 & 3700), OSPF, EIGRP, DNS, DHCP, LAN, WAN, TCP/IP, WIRESHARK, NMAP, MICROSOFT VISIO.
Confidential
Jr. Network Engineer
Responsibilities:
- Configured and installed CISCO Routers (1800, 2800 Series).
- Configured and installed CISCO Switches (3550, 4500 Series).
- Worked in configuring cisco routing protocols in RIP and EIGRP on Cisco Routers for Network communications.
- Hands on Experience on Installation and configuration of workstations for IP based LAN Network.
- Configured VLANs, Private VLANs, VTP and Trunking on switches.
- Worked on various Sniffing tools like Ethereal and Packet Sniffer.
- Backups of Cisco router configuration files to a TFTP server.
- Gained knowledge in IP Subnetting (VLSM and FLSM).
- Maintaining hardware, software and security problems within the network.
- Support and analyzing LAN and WAN network issues.
- Documented the design, implementation and troubleshooting procedures.
Environment: CISCO ROUTERS & SWITCHES (1800,2800 & 3550,4500 SERIES), RIP, EIGRP, LAN, VLANs, VTP, TFTP, VLSM, FLSM