Network Security Engineer Resume
SUMMARY
- Extensive experience in Networking with Cisco Certified Network Engineer, performing Network analysis, design, Implementing, planning with a focus on performance tuning and support of large Networks.
- Strong knowledge in Cisco Routing, Switching and Security with Cisco hardware/software (heavy Cisco shop) experience.
- Experience working on Cisco Catalyst Series3750, 4500, 4900, 6500; Nexus 2000, 5000, 6000 and 7000 series switches.
- Extensive work experience with Cisco Routers, Cisco Switches, Load Balancers and Firewalls.
- Experience in layer - 3 Routing and layer-2 Switching. Dealt with Nexus models like 7K, 5K, 2Kseries, Cisco router models like 7200, 3800, 3600, 2800, 2600, 2500, 1800 series and Cisco catalyst 6500, 4500, 3750, 3500, 2900 series switches.
- Experience with next-generation firewalls like Checkpoint firewalls, Cisco ASA, Fortinet firewalls, Palo Alto Firewalls, Cisco WSA/CWS, VPN, Cisco ACS, Cisco ISE, IPS.
- Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, Ether channel, STP, RSTP and MST. Implementation of HSRP, VRRP for Default Gateway Redundancy.
- Configuring VRRP & GLBP and VLAN Trunking 802.1Q & ISL, STP, Port Security on Catalyst 6500 Switches.
- Experience with design and implementation of Virtual Switching System (VSS) for both User segment and server segment using 6509-V-E catalyst switches.
- Experience with design and implementation of Data center migration
- Involved in troubleshooting of DNS, DHCP and other IP conflict problems.
- Knowledge of Cisco Meraki Cloud managed Switches (MS250, MS350, MS410) and SD-WAN (MX 65, MX100, MX400)
- Responsible for Check Point and Cisco ASA firewall administration across global networks.
- Experience in working with Cisco Nexus Switches and Virtual Port Channel configuration.
- Worked on F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
- Design and configuring of OSPF, BGP on Juniper Routers (MX960, MX480) and SRX Firewalls (SRX240, SRX550).
- Managed several security environments for TippingPoint IPS, Bluecoat proxy, Fortinet Firewalls.
- In-depth knowledge and hands-on experience in Tier II ISP Routing Policies, Network Architecture, IP Subnetting, VLSM, TCP/IP, NAT, DHCP, DNS, FT1 / T1 / FT3 / T3 SONET POS OCX / GigE circuits, Firewalls.
- Strong knowledge of TACACS+, RADIUS implementation in Access Control Network.
- Experience in Designing and assisting in deploying enterprise Network Security and High Availability Solutions for ASA.
- Experience in configuring and installing Brocade routers and switches.
- Experienced in Troubleshooting layer 2 and 3 issues on Brocade Campus routers and switches
- Experience working with Cisco Nexus 2148 Fabric Extender and Nexus 5000 series to provide a Flexible Access Solution for a datacenter access architecture Expertise in installing, configuring and troubleshooting Juniper EX Switches (EX2200, EX2500, EX3200, EX4200, EX4500, EX8200 series).
- Enterprise Routing experience using protocols RIP v1 & 2, EIGRP, OSPF and BGP.
- Expertise in installing, configuring and troubleshooting Juniper Routers (E, J, fM and T-series).
- Implementing security policies using Cryptography, ACL, SDM, PIX Firewall, IPSec, VPN and AAA Security on different series of routers.
- Experience with different Network Management Tools and Sniffers like Wireshark (ethereal), HP-Open view, RSA envision, and Cisco works to support 24 x 7 Network Operation Center.
- Experience with F5 load balancers and Cisco load balancers (CSM, ACE and GSS).
- Basic and advance F5 load balancer configurations, including migrating configurations from Cisco ACE to F5 and general troubleshooting of the F5 load balancers.
- Blocking the network traffic from malware using Fortinet and checkpoint
- Efficient at use of Microsoft VISIO/Office as technical documentation and presentation tools.
- Knowledge of JUNOS platform and worked with IOS upgrade of Juniper devices.
- Experience with different Network Management Tools and Sniffers like Wireshark (ethereal), HP-Open view, RSA envision and Cisco Works to support 24 x 7 Network Operation Center.
TECHNICAL SKILLS
CISCO Platforms: Cisco routers (7600, 7200, 3900, 3600, 2800, 2600,2500, 1800 series) & Cisco Catalyst switches (6500, 4900, 3750, 3500, 4500, 2900 series),Cisco VSS, Nexus 7K, 5K, 2K & 1K.
JUNIPER Platforms: SRX, MX, EX Series Routers and Switches.
Networking Concepts: Access-lists, Routing, Switching, Subnetting, Designing, CSU/DSU, IPSec, VLAN, VPN, WEP, WAP, MPLS, VoIP, Bluetooth, Wi-Fi.
Firewall: ASA Firewall (5505/5510), Checkpoint, Palo Alto, Cisco ASA.
Network Tools: Wireshark, Solar Winds, SNMP, Cisco Works.
WAN Technologies: Frame Relay, ISDN, ATM, MPLS, leased lines & exposure to PPP, DS1,DS3, OC3, T1 / T3 & SONET.
LAN Technologies: Ethernet, Fast Ethernet, Gigabit Ethernet, & 10 Gigabit Ethernet, Port-channel, VLANS, VTP, STP, RSTP, 802.1Q
Security Protocols: SSL-VPN, IPSEC, Cisco ACI
Networking Protocols: RIP, OSPF, EIGRP, BGP, STP, RSTP, VLANs, VTP, PAGP, LACP, MPLS, HSRP, VRRP, GLBP, TACACS+, Radius, AAA.
Operating System: Windows 7/XP, MAC OS X, Windows Server 2008/2003, Linux, UNIX
PROFESSIONAL EXPERIENCE
Network Security Engineer
Confidential
Responsibilities:
- Configuration, troubleshooting of Fortinet (FortiGate) Firewalls 92d, 200d, 300d, 300e, 500D.
- Troubleshooting firewall cisco ASA 5510, 5520, Palo Alto firewall 200,820,3020.
- Configuration of IPsec tunnel, troubleshooting of IPsec tunnel (Phase I and Phase II).
- Configuration and Troubleshooting SSL VPN.
- Configuration and troubleshooting in Forti-manager.
- Installing, monitoring, configuring and troubleshooting of Cisco 1800, 1900, 2960x, 3750, 3850, 3900, 4500, 9300, 9200, 9400, 9500 series routers.
- Policy creation and troubleshooting in Fortinet firewall and cisco firewall.
- Configuration of GRE tunnel and troubleshoot.
- NAT configuration and troubleshooting.
- Cisco CUCM call manager.
- Experience in Networking tool-Solar winds (NPM), MRTG, Syslog server.
- Responsible for checking the Log of Security devices as well Maintenance.
- Managing LANs, WANs and wireless communication system (CISCO MERAKI AP).
- Monitoring, reviewing and evaluating performance in daily basis of network engineers in team.
- Configuration and troubleshooting of routing protocols BGP, and OSPF.
Network security Engineer
Confidential
Responsibilities:
- Belongs to Global Network Control Group (Data Center).
- Configuration, troubleshooting of Fortinet (FortiGate) Firewalls 200d, 300d, 300e, 1500D.
- Troubleshooting firewall cisco ASA 5510, 5520.
- Configuration of IPsec tunnel, troubleshooting of IPsec tunnel (Phase I and Phase II).
- Configuration and Troubleshooting SSL VPN.
- Forti-Analyzer.
- Installing, monitoring, configuring and troubleshooting of Cisco 1800, 1900, 2960x, 3750, 3900, 4500, 9300, 9400, 9500 series routers and Dell switches 5324, 4000 series.
- Policy creation and troubleshooting in Fortinet firewall and cisco firewall.
- Configuration of GRE tunnel and troubleshoot.
- NAT configuration and troubleshooting.
- MITEL Controller (Voice-Over IP) (version 5.4,11.0,11.0) configuration (User creation and call rerouting).
- Experience in Networking tool-Op-Manager, Syslog server.
- Responsible for checking the Log of Security devices as well Maintenance.
- Managing LANs, WANs and wireless communication system (CISCO MERAKI AP, AEROHIVE AP, Ruckus AP).
- Monitoring, reviewing and evaluating performance in daily basis of network engineers in team.
- Configuration and troubleshooting of routing protocols BGP, and OSPF.
Network Engineer
Confidential
Responsibilities:
- Belongs to Network Control Group (Data Center).
- Installing, monitoring, configuring and troubleshooting of Cisco 1800, 1900, 3900, 4500, series routers.
- Configuration, troubleshooting of Fortinet(FortiGate) 200d
- Troubleshooting firewall cisco ASA 5505.
- Configuring and troubleshooting IPsec vpn.
- GRE tunnel configuration and troubleshooting.
- Responsible for checking the Log, Maintenance of Backup etc. for Security and Network Devices.
- Configuring and troubleshooting firewall.
- Managing LANs, WANs, Internet, Intranet and wireless communication system of all branches.
- Testing network performance and ensuring stable connection across all branches.
- Monitoring, reviewing and evaluating performance in daily basis of network engineers in team.
- Deploying Router, Switches, Firewall Devices.