We provide IT Staff Augmentation Services!

Network Security Engineer Resume

3.00/5 (Submit Your Rating)

Erie, PA

SUMMARY:

  • 6+ years of experience in testing, troubleshooting, implementing, optimizing and maintaining enterprise data network and service provider systems.
  • Experience in areas system administration and networking for infrastructure management.
  • Experience in setting up IT infrastructure including Wide Area Network (WAN), Local Area Network (LAN), Network Management and Security.
  • Experience in securing and monitoring across the network with ACL, Firewall and IPSEC VPN.
  • Configured and maintained IPSEC and SSL VPN's on Palo Alto, Cisco ASA Firewalls.
  • Expertise in installing configuring and troubleshooting routing protocols like RIPV2, EIGRP, OSPF, NAT, BGP, STP, HSRP and GLBP.
  • Proficient in installing and configuring Cisco switches (2900, 3500, 3700, 6500 series).
  • Proficient in installing and configuring Cisco routers (800, 1800, 2800 and 3800 series).
  • Involved in F5 LTM and GTM planning, designing and implementation.
  • Implementation, Configuration and Support of Checkpoint (NGX R71, R75, R77) Juniper Firewalls (SRX5400, SRX5600 and SRX5800), Cisco Firewalls (ASA 5505).
  • Experience in handling Profiles, Monitors, VIP’s, Pool Members, iRules in F5 Network load balancers.
  • Outstanding experience in designing and configuring of Layer 2 / 3 networking features such as VLAN, STP, VTP, 802.1X, Port Security, L2PT and SPAN.
  • Proficient on deployment services like DDI (BlueCat proxy servers), VOIP, NAT and QoS.
  • Experience in working with Microsoft Azure (Azure DNS, Application Gateway, Traffic Manager and Load Balancer) and Amazon AWS (EC2, Elastic search and Load Balancers).
  • Experience in VPN (Virtual Private Network) and MPLS configuration for secure connection between server and client architecture.
  • Proficient in Configuring Virtual Local Area Networks ( VLANS ) using Cisco routers and multi - layer Switches and supporting STP , RSTP , PVST , RPVST along with trouble shooting of inter-VLAN routing and VLAN Trunking using 802.1Q in catalyst switches.
  • Upgraded IOS image for Cisco routers and switches.
  • Hands-on experience in providing network support, installation and analysis for a broad range of LAN/WAN/MAN technologies including T1, Point to Point, ATM and Frame Relay communication systems.
  • Configured IPSec VPN (Site-Site to Remote Access) encryption mechanism to manage LAN/WAN to support routing protocol to provide secure session between sites.
  • Worked with rule-based configuration on Cisco ASA, Palo Alto and Checkpoint firewalls.
  • Skilled in monitoring tools Wireshark, Nmap, Snort Snarf and Packet Player.
  • Experience in documentation network diagram and Technical Specifications using Microsoft VISIO and Office.

TECHNICAL SKILLS:

Routers: Cisco 800,1800, 2500, 2600, 2800, 3600, 3750, 3800,4300,7200.

Cisco Switches: Cisco 2900, 3500, 4000, 4500, 5000, 5800, 6500, 9300.

Other Vendors: Nexus 2k, 3k, 5k and 7k.

Routing Protocol: RIP, EIGRP, BGP, IGRP, OSPF and HSRP.

Network Management: Wireshark, SNMP, Nmap and Solar winds.

Application Protocol: DNS, DHCP, FTP, TFTP and SMTP

LAN technologies: Ethernet, VLAN, Port Channel, STP, RSTP and Port Security.

Frame Relay, ATM, HDLC, VPN, IP: Sec and PPP.

Network Security: TACACS+, RADIUS, NAT/PAT and VPN configuration.

Cloud Operations: Azure, AWS

Languages: Python, Perl.

Operating System: Windows XP, 7, 10, Windows server 2003, 2008 and Linux.

Documentation: Microsoft Visio and Microsoft Office.

PROFESSIONAL EXPERIENCE:

Confidential, Erie, PA

Network Security Engineer

Responsibilities:

  • Configured and resolved troubleshooting problems on Cisco switches 2960, 3550 and Cisco routers 800, 3600, 4300.
  • Involved in Organizing network infrastructure on Router, Switch configuration for Planning and Modernization.
  • Involved in configuration of Access-List on ASA firewalls and MPLS, VPN connections for the proper network routing for the b2b network connectivity.
  • Perform Site survey for LAN/WAN hardware, software including Router, Switch, AP (Cisco, Aruba) and server for business needs and recommended solution.
  • Implementing and monitoring all Layer-2 devices and layer-3 Switching Tasks for internal networks.
  • Troubleshoot and resolved issues for network and server connectivity for sites.
  • Connected switches using the trunk links, configured trunk port and implement granular control over VLAN to extend network infrastructure.
  • Having working experience with OSPF, BGP and MPLS for internal Lan communication.
  • Experience with manipulating various BGP routing attributes (Local preference, Route-Map, AS-Path) to load balance between DMVPN and MPLS links.
  • Configured fast-ethernet and sub interface allocation for inter-VLAN routing with multi-layer switching and implemented Static Routes for local connectivity.
  • Integrated NAT/PAT to provide access to the server from private network to public network. Implemented extended Access-List to filter network traffic.
  • Converted legacy Aruba wireless AP to new Cisco 1832 AP for better connectivity.
  • Monitoring, Testing and Resolving Wireless network issues using CUCM for network efficiency and maintenance issues.
  • Resolving any escalated Hardware and Software issues related to LAN/WAN.
  • Configured and installed Cisco 891F and 4331 routers in the remote location for backup circuit through AT&T MPLS network.
  • Upgraded the bandwidth and capacity of network by replacing new Router and line cards.
  • Documenting Network problem and changes working with multiple management environments.
  • Overseeing migration of WAN links from T1 network to new service provider for better network connectivity and performance.
  • Configuring and troubleshoot VPN for Site-Site.
  • Monitoring Network performance to improve the backup strategy using Solar-Winds and NetScout and made changes if necessary.
  • Troubleshoot problems identified in monitoring tools with putty, Secure-CRT and native tools.
  • Updating network documentation and Documenting Technical Specification using MS Office Suite.

Environment: LAN/WAN, VPN, VLAN, MPLS, BGP, OSPF, EIGRP, ASA, ARUBA, PUTTY, SECURE-CRT, MS OFFICE.

Confidential, Stratford, CT

Network Engineer

Responsibilities:

  • Installed and configured cisco routers 2500, 2600, 2800, 3600, 7200 and cisco switches 2900, 3550, 4900 and 5500 and Nexus 5k,7K and 9K switches.
  • Implemented and configured Router, Switches and Terminal Servers to support WAN Links.
  • Configuration and daily management of network/security devices including F5 BIG-IPs , Check Point firewalls, Cisco ASA Firewalls, Cisco switches and routers.
  • Maintaining and trouble-shooting network operations like connectivity issues, performance or functionality.
  • Configured and Maintained Cisco ASA 5550 series for high end security on Access Control list and firewall.
  • Cisco IOS firewall, Pix firewall and ASA firewall configuration and Troubleshooting.
  • Added rules to the checkpoint firewall through smart dashboard and smart view tracker application.
  • Cisco VPN technologies (IPsec Site to Site, Remote Access SSL VPN and DMVPN).
  • Worked on TCP / IP services, IP Addressing and Subnetting ( DNS, DHCP & SMTP ).
  • Experience in managing Cisco Redundancy Protocol ( HSRP, VRRP, GLBP, VSS and IP SLA ).
  • Worked on Cisco Nexus 7K series switches whose hardware is based on Cisco ACI.
  • Configured and maintained IPSEC and SSL VPN's on Cisco ASA Firewalls. Also responsible for administering and troubleshooting the Checkpoint, and ASA firewall.
  • Configured IPSec VPN (Site-Site to Remote Access) on Cisco ASA (5200) series firewalls.
  • Configured VLAN, inter VLAN, SNMP on switches for optimizing the performance of the network.
  • Implemented Multiple Label Switching (MPLS) network using frame relay and OSPF.
  • Implemented Client to Site and Site to Site VPN to direct customers and direct vendors.
  • Working with the rule base and its configuration in Cisco ASA and Checkpoint firewalls.
  • Experience in designing and implementing of load balancers F5, BIG-IP for control and optimization in network traffic.
  • Developed a networking system that has information encryption, decryption, compression, sending and decompression features via TCP and UDP protocol using Python .
  • Configured and utilized many different protocols such as OSPF, ISIS, BGP/MP-BGP, MPLS, LDP, Multicast, IPv4/IPv6 protocols.
  • Utilized knowledge of Spanning Tree Protocol, BGP, MPLS, OSI model layers 1-2 to create network layouts.
  • Creating Virtual IP address, Pools and Persistence profiles on F5 LTM’s.
  • Creating Wide IPs with various load balancing methods like, Global Availability, Topology and Round Robin.
  • Having working experience on monitoring tools like Wireshark, InfoBlox and Nmap for monitoring network traffic across the network.
  • Build and maintain documentation using Microsoft Visio for updating in network topology.

Environment: LTM, GTM, BIG-IP, ASA, BGP, OSPF, MPLS, LDP, DNS, DHCP, SMTP, HSRP, VRRP, GLBP, VSS, IP SLA , STP, WIRESHARK, INFOBLOX, Nmap.

Confidential, Union, NJ

Network Engineer

Responsibilities:

  • Implementing traffic engineering on top of an existing Multiprotocol Label Switching ( MPLS ) network using Frame Relay and Open Shortest Path First ( OSPF ).
  • Hand on experience the configuration and implementation of various Cisco Routers and L2 Switches.
  • Responsible for configuration, monitoring on security of network infrastructure in LAN/WAN network environment.
  • Configured access-list, distribute-lists and route map for applying traffic filters for network performance.
  • Understanding and implementation of IPSEC in VPN technology and make sure everything is in place.
  • Installing the Network devices in datacenter environment and clearly articulate complex network designs and drawings through documentation ( Visio ) as well as verbal training sessions.
  • Experience in Configuring Site-to-Site and Remote Site VPNs , NAT / PAT policies.
  • Managing Cisco Secure ACS for TACACS+ , RADIUS authentications.
  • Experience on designing and troubleshooting of EIGRP , OSPF routing issues.
  • Configured and resolved various OSPF issues in an OSPF multi area environment.
  • Hands-on experience with Cisco Routers and Switches, TCP/IP , Routing Protocols ( BGP/OSPF ), and IP addressing .
  • Configured & maintained LAN , WAN , VPN , WLAN , and Firewalls on Cisco Routers for end users.
  • Configuring MPLS , VPN (IPSEC, GRE) in VPN concentrators and QOS in integrated networks ( Data, Voice and Video ).
  • Installed and configured of Juniper J-Series (J2350) and M-Series (M10) routers.
  • Worked primarily on firewall analysis and modification of rule and administration.
  • Configured and installed CISCO ASA firewall for intrusion prevention and antivirus.
  • Installed and configured the ACE and CSM for firewall/Server Load balancing for Cisco Catalyst switches.
  • Configuring VLAN , STP , Port security , SPAN , Ether channel in Cisco Composite Networks.
  • Configured routers and modems, troubleshot issues related to broadband technologies for Residential and Business Customers .
  • Configured & Maintained Cisco 2600, 2800, 3200 series routers including IOS upgrades.
  • Monitoring network performance and work closely with client and system administrator for any immediate change in the network.

Environment: MPLS, OSPF, BGP, EIGRP, LAN, WAN, TCP/IP, VLAN, VPN, STP, SPAN, IOS, TACACS+ , RADIUS, NAT/PAT, ASA, JUNIPER J & M, ACE, CSM.

Confidential

Network Engineer

Responsibilities:

  • Configured and installed Cisco routers of 2600,2800,3200 and 4000 series.
  • Configured and installed Cisco switches of 2900,3500 and 3700 series.
  • Designed, implemented and provided operational support of routing/switching protocols in complex environments including, OSPF, EIGRP (Single Area and Multi Area).
  • Implemented privileged access on new user over the network environment.
  • Configured DNS (Domain Name Serves), Active Directory Services and Internet Information Service for IP Management.
  • Involved in fixing DNS, DHCP and any other IP conflict problem.
  • Configured access list for filtering and control traffic over the security for client access.
  • Tested routers and Line Cards using Smart Bits and done Performance Analysis of both LAN/WAN infrastructure.
  • Interacted with business users from a service delivery and service support perspective.
  • Hands-on experience with Routers, Switches, TCP/IP, Routing Protocols (EIGRP/OSPF), and IP addressing.
  • Planned, tested and evaluated various equipment, systems, IOS's and procedures for use within the network / security infrastructure.
  • Monitoring network performance and bandwidth utilization with Wireshark and Nmap.
  • Ensure network performance and data availability through prevention of network upgrade and maintenance.
  • Create and maintained documentation over network diagram using Microsoft VISIO.

Environment: CISCO ROUTERS (2600,2800,3200 & 4000), CISCO SWITCHES (2900, 3500 & 3700), OSPF, EIGRP, DNS, DHCP, LAN, WAN, TCP/IP, WIRESHARK, NMAP, MICROSOFT VISIO.

Confidential

Jr. Network Engineer

Responsibilities:

  • Configured and installed CISCO Routers (1800, 2800 Series).
  • Configured and installed CISCO Switches (3550, 4500 Series).
  • Worked in configuring cisco routing protocols in RIP and EIGRP on Cisco Routers for Network communications.
  • Hands on Experience on Installation and configuration of workstations for IP based LAN Network.
  • Configured VLANs, Private VLANs, VTP and Trunking on switches.
  • Worked on various Sniffing tools like Ethereal and Packet Sniffer.
  • Backups of Cisco router configuration files to a TFTP server.
  • Gained knowledge in IP Subnetting (VLSM and FLSM).
  • Maintaining hardware, software and security problems within the network.
  • Support and analyzing LAN and WAN network issues.
  • Documented the design, implementation and troubleshooting procedures.

Environment: CISCO ROUTERS & SWITCHES (1800,2800 & 3550,4500 SERIES), RIP, EIGRP, LAN, VLANs, VTP, TFTP, VLSM, FLSM

We'd love your feedback!