Senior Consultant Resume
Chicago, IL
SUMMARY
- Over 12 years of Experience in Cisco Routing and Switching, Cisco Security, Network Architecture, Engineering, Firewalls, Systems Analysis and Design, Implementation, Deployment and Maintenance.
- Experienced in Network deployments and Network security designs.
- Experienced with Installing, Configuring and Deploying Firewalls.
- Expertise in Cisco Nexus 7000, 6000, 5000, 4000 and 3000 series.
- Monitor, identify, report, and mitigate security weaknesses
- Perform risk assessments for clients and provide the findings and recommendations
- Communicate and manage client needs and expectations in all phases of their information security solutions
- Work with internal resources to ensure proper security controls are identified, implemented and tested
- Develop detailed technical recommendations to solve security issues
- Enforce Information Security policies and procedures
- Troubleshoots network access problems and implements network security policies and procedures.
- Ensures network (LAN/WAN, telecommunications, and voice) security access and protects against unauthorized access, modification, or destruction).
- Experience in Identifying and evaluating implementations of specific and general security tools (Secure Works, SharePoint, IDS, ASA, etc.)
- Expertise in F5 LTM and GTM Management
- Expertise in F5 BIG - IP LTM and Cisco CSS load balancers.
- F5 Big- IP LTM-6400 load balancers, all Clustered, 3DNS GTM Balancers, Active and Secondary Datacenter's, working with IIS 6 and up for migration
- Hands on experience with Radware Alteon load balancers.
- Maintenance of network servers such as file servers, VPN gateways, intrusion detection systems, etc.
- Experience in delivery of our proposed Wireless and Route Switch solutions centered on Cisco products
- Accountable for the performance of direct reports on a daily basis.
- Assist in testing, troubleshooting and resolution efforts when systems failures occur and interface with network operation teams.
- Assists in the development, management, and enforcement of company's network security policy.
- Proactively monitor network utilization and gather trend data for reporting as well as capacity planning purposes.
- Research and evaluate new networking technologies to improve existing infrastructure.
- Cross-train and provide backup to other Network Engineers.
- Experienced with Enterprise class data center network design and implementation.
- Experienced in Routing protocols (OSPF, EIGRP and BGP) and IPSEC VPN in a multi-site environment
- Experienced in Various WAN technologies such as DSL, cable, T1, and MPLS
- Experience with RFC 1918 private networks, firewalls, routers, and switches.
- Adept in Modeling Business Process using MS Visio and generating Workflows, Process Flows and other UML diagrams to refine and automate business process.
- Goal-oriented individual with people management skills and strong leadership capabilities.
TECHNICAL SKILLS
Operating Systems: Windows 9.x, NT, 2000, XP, 7, 8, 2003, and 2008, UNIX, Macintosh, Solaris.
Development Tools: Microsoft Office 2003, Microsoft FrontPage 2003, Microsoft Visio 2003, Microsoft Visual Studio .NET 2003, MS-SQL Server 2000, Microsoft Virtual Server 2003, Microsoft IIS Server, Blackberry Enterprise Server 4.0.
Applications: Symantec Ghost, Norton Antivirus CE & EE, WhatsUp Gold, Ethereal, Sniffer Pro, Blackberry Desktop Manager, Smarsh EM, VERITAS Backup Exec.
Protocols: RIP, OSPF, IGRP, EIGRP, BGP, ISIS, HSRP, VRRP, RSVP, MPLS, DHCP, DNS, TCP/IP, SNMP, Frame Relay, ISDN.
Hardware: Cisco 800, 1700, 2500, 2600, 2800, 3600, 7200, series routersCisco 500, 1900, 2960, 3560, 3750, 6500 series switches, Cisco Nexus 7000, 6000, 5000, 4000 and 3000 series switches.
PROFESSIONAL EXPERIENCE
Senior Consultant
Confidential, Chicago, IL
Responsibilities:
- Responsible for supporting Astellas network infrastructure in Americas.
- Implemented several B2B VPN tunnels.
- Performed AnyConnect VPN client upgrades for over 4000+ VPN users.
- Hands on experience with Cisco ACS 4.x servers.
- Managed over 500 networks devices for AAA using Cisco ACS 4.x
- Upgraded IOS on over 40 Cisco ASA 5500 firewalls and FWSM modules.
- Provided day to day operational monitoring and support for McAfee Suite of Antivirus, Antispyware/malware, and encryption.
- Resolved trouble tickets generated by McAfee reports and security threats.
- Pushed out policy updates to endpoints using McAfee Security gateway.
- Configured with F5 Load balancers in Failover for Load balancing and SSL handling
- Configured F5 BiGip to provide Load Balancing for server farm.
- Experience with configuring VIPs on F5 and Citrix load balancer which include creating policies and creating redirection rules. iRule creation on F5 BIG-IP load balancers.
- Installed Cisco routers and redundant BigIP F5 load balancers to provide uninterrupted service to customers
- Recommending, Provisioning, configuration, migrations, upgrades of F5 BigIP LTM 3400, 6400, 8900 running v4.x to 10.2.x, Active/Standby, F5 4000 Enterprise Manager.
- Managed 20+ BigIP F5 clusters.
- Migrated over 500 Virtual IP's to new clusters
- Managed Radware Alteon load balancers.
- Hands-on experienced in Network Security, firewall, DMZ design, IPSec VPN, PKI, Network monitoring, Network gateways, Network design / topologies, and Networking protocols.
- Designed solutions to challenging Security problems and Security Designs.
- Provided scalable planning for the security of systems and applications as well as how they are to be tested and monitored
- Responsible for ensuring that the data stored in computers are secure from hackers
- Review designs and assess risk from product development and other teams in subject area
- Experienced in Web gateways, firewall, IPS/IDS, VPN, DMZ and proxies
- Implemented and managed network monitoring tools like Nagios and Solarwinds Orion NPM, NCM, APM and other modules.
- Created, deployed and managed BigIP F5 load balancer nodes and pools.
- Migrated, created, and managed pools and clusters in F5 BigIP GTM 3DNS load balancers across multiple Datacenters.
- Managed and supported Cisco Nexus 5000, 4000, 3000 series switches.
- Experience in Debugging, testing and engineering Network Firewall configurations.
- Investigate and resolve security vulnerability matters of significance and to ensure proper functioning of security systems.
- Maintains communication with management and customers regarding status of security system procedures, processes and software development and problems.
- Develops detailed design using best of breed security equipment including firewalls, intrusion detection systems (IDS), and access control servers
- Experienced in supporting the full system engineering life-cycle, including requirements analysis, design, development, integration, test, and implementation of classified network systems for our customer.
- Support and managed BlueCoat security gateway.
- Develop, test and deploy new security solutions for two-factor authentication, network segmentation and DLP
- Assist other Infrastructure and Development teams with security solution evaluations
- Create and maintain accurate and up-to-date documentation of security infrastructure
- Extensive experience using Cisco IOS on routers/switches.
- Security Architect facilitates security across the enterprise by translating requirements into secure designs that balance business needs with risk management.
- Develop, implement and maintain corporate and ASP policies, procedures, and controls.
- Implement complex Check Point firewall clusters, VPN devices, IDS/IPS solutions.
- Experienced with Network Designs, Configurations and supporting the whole life cycle of the production and Provide Post production Support.
- Supported the project from scoping requirements through actual launch of the project.
- Experience in communicating with users, other technical teams, and management to collect requirements, describe software product features, and technical designs.
- Provide training to staff and update them with the latest technologies.
- Experience in Documenting the environment, Documenting the new implementations and Updating Visio Designs.
- Performed chassis replacement on Cisco 6500 core switches.
- Implemented IOS upgrades on Cisco routers, switches and firewalls.
- Implemented and supported day-to-day operational changes on the BigIP F5 load balancers.
- Implemented and supported day-to-day operational changes on Riverbed Web Accelerators (Stealhead).
- Managed, maintained and supported Riverbed Cascade Enterprise Profilers.
- Assisted offshore Cisco CallManager Voice team in handling operational support requests.
Infrastructure Specialist
Confidential, Chicago, IL
Responsibilities:
- Lead a team consisting of Windows and Linux engineers, DB administrators, and NOC/TOC support engineers responsible for over 1600 servers, 1200 workstations, and MS SQL databases.
- Design and implementation new network infrastructure utilizing privately built DWDM fiber-optic ring and an entirely new network architecture using best practices and technology standards. Deploy and support proprietary software and trading tools
- Architect and implement client, vendor and exchange network connectivity solutions utilizing a variety of methods as well as a vendor sourced solutions. Provide pre and post sales technical support at meetings with both new and potential clients.
- Setup new Cisco ACS 5.x server.
- Migrated over 300+ network devices from Cisco ACS 4.x to ACS 5.x
- Configured with F5 Load balancers in Failover for Load balancing and SSL handling
- Configured F5 BiGip to provide Load Balancing for server farm.
- Experience with configuring VIPs on F5 and Citrix load balancer which include creating policies and creating redirection rules. iRule creation on F5 BIG-IP load balancers.
- Installed Cisco routers and redundant BigIP F5 load balancers to provide uninterrupted service to customers
- Recommending, Provisioning, configuration, migrations, upgrades of F5 BigIP LTM 3400, 6400, 8900 running v4.x to 10.2.x, Active/Standby, F5 4000 Enterprise Manager.
- Migrated VIP and server farms from Cisco CSS to F5 LTM load balancers.
- Migrated over 500 Virtual IP's to new clusters
- Managed Radware Alteon load balancers.
- Managed and maintained Riverbed Steelhead Web Accelerators.
- Hands-on experience using Riverbed Cascade Profilers and Shark appliances for troubleshooting complex packet drop issues.
- Established policies and procedures related to Systems security and integrity.
- Configured Cisco 7200 series routers with GRE tunnels / Site-to-Site VPN to receive multicast from various exchanges (CME, CBOT, BM&F).
- Very good understanding of multicast routing and switching (PIM SM, PIM DM, IGMP). Configured multicast routing for various exchanges (NYSE, AMEX, ARCA, NASDAQ, CME, LIFFE, EUREX).
- Skilled knowledge of RIP, EIGRP, BGP and OSPF.
- Configured/ administered/ deployed several Cisco 12000, 10000 and 6500 series.
- Configured channelized DS3 card on the Cisco 12000 series router for managing T1 lines.
- Experience working with multiple carriers for transport line turn ups (Level 3, LightTower, SFTI, Cogent, AboveNet, Anova, EUNetworks, GlobalCrossing, Verizon, XO, Spread Networks).
- Implemented and maintained network performance testing software like PRTG and MRTG.
- Implemented and managed network monitoring tools like Nagios and Solarwinds Orion NPM, NCM, APM and other modules.
- Implemented Perl scripts for network monitoring tasks.
- Hands on experience working with transport equipment like Tellabs Nano 7100, Transmodes, Nortel Optera OM3500, BTI Systems.
- Deployed and managed various Fujitsu switches (XG2600, XG2000, XG0448, and XG0224).
- Deployed and managed various ultra-low latency Arista7124 SX layer 3 switches.
- Experience working with 5505, 5510, 5520 and 5550 model ASA's.
- Experience working with the latest ASA IOS (8.3, 8.4)
- Implemented and managed SSL VPN using Radius server (Cisco Any connect) on ASA 5550.
- Implemented and configured ACS on all the network equipment (Cisco, Fujitsu, and Transmode).
- Experience working with Cisco 3750, 4948, 2811, 2600, 7200, 6500, 12000, 10000 series switches and routers.
- Managed and supported Cisco Nexus 5000, 4000, 3000 series switches.
- Implemented Cisco Call Manger cluster and migrated over 400 phones from Nortel CS1000 to Cisco.
- Implemented Cisco load balancers cluster for firm’s proprietary analytics web application.
- Implemented email spam firewalls and enterprise VPN solutions.
- Supported McAfee Security Gateway for endpoint security.
- Pushed out regular policy updates in McAfee security gateway.
- Monitored security related logs and events to identify potential threats.
- Implemented and administered Websense Web Security Gateway for web content filtering and DLP.
- Orchestrated the implementation of VMware vSphere 4.1 cluster, converting over 200 physical servers to virtual servers, leading to significant savings.
- Managed software and hardware contracts. Audited contracts and worked with vendors to terminate unused services and reduced costs. Negotiated key contracts with vendors and reduced costs.
Senior Network Engineer
Confidential, Chicago, IL
Responsibilities:
- Architect, implement and manage LAN and WAN development leading to a scalable and flexible infrastructure that minimizes the reliance on consultants.
- Source, recommend vendors and negotiate terms for all infrastructure needs including data, voice and internet telecommunications, networking hardware and service agreements.
- Standardize network and server hardware configurations resulting in significant savings in support expenses.
- Act as primary technical contact for all client, vendor and exchange connectivity.
- Design and implement corporate solutions for email, internet, virus protection, disaster recovery, data storage and backup, system and bandwidth monitoring, resulting in an improved level of professionalism and data integrity.
- Monitor perimeter and internal networks for intrusion and hacks (DoS, DDoS, attack signatures, etc).
- Perform upgrades on existing network equipment to resolve various network problems.
- Guided several move and network infrastructure migration projects at different clients.
- Configured over 200+ Site-to-Site & Remote Access VPNs on PIXs, VPN Concentrators, IOS routers and ASAs
- Configured multi-homed BGP with HSRP, to provide full fault tolerance and automatic failover capabilities, for several clients.
- Configured/ Administered/ Deployed several Cisco 6500 series switches.
- Created support procedures, written documentation and Visio network diagrams
- Designed, Implemented and support several Cisco Call Manager Express solutions.
- Performed network, LAN, server and desktop support at all levels.
- Maintained and supported daily, weekly and monthly backups for servers & network configurations.
- Configured and maintained email spam firewalls.
- Designed highly redundant and fault tolerant networks for the financial industry clients.
Network Engineer
Confidential
Responsibilities:
- Provided Network operations support using People Soft CRM.
- Assisted with establishing Network Operations Center (NOC) to proactively monitor the network resulted in better SLA and network performance.
- Created business cases for supporting network infrastructure upgrades and changes.
- Coordinated with change management team for all changes that would likely interface with the Network.
- Designed and configured HSRP for redundancy.
- IOS upgrade and router hardening for 2600, 3600, 7200 routers and 6500, 2900, and 3500 series of switches.
- Created Visio diagrams and other documentation. Updated existing documentation.
- Investigated & resolved network issues using troubleshooting skills & network sniffers.
- Configured Cisco VPN 3000 Concentrator to allow VPN clients.
