Network System Engineer Resume
MichigaN
SUMMARY
- Cisco R&S, firewalls, BGP - IP, F5 professional around 6 years of experience in providing solutions, implementation, network designing, configuration of Cisco routers and switches, troubleshooting of complex networking system.
- Maintaining Core Switches, Distribution switches and Access switches, creating VLANs and configuring VTP.
- Optimized performance of the WAN virtualization network consisting of Cisco 2900/3550/4500/6500 switches by configuring VLANs.
- Upgrading Cisco 2950/2960 series switches to Cisco Sg350 and Cisco SG350 XG for server room switches.
- Installed 802.11 a/b/g/n Ethernet standards for wireless Technology.
- Implemented the IP Phone (VOIP) project of entire hospital and changed the phone system from analog to digital.
- Deal with the escalation problems for Routing, Switching and WAN connectivity issues using ticketing system like SolarWinds ticketing system/Remedy Ticketing System
- Implementation of Checkpoint Firewall 4.1 to protect and authenticate local-net and DMZ. Defined policies,
- Implemented security policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA (TACACS+ & RADIUS)
- Good knowledge and experience in Installation, Configuration and Administration of Windows Servers 2000/2003, Active Directory, FTP, DNS, DHCP, TFTP, Linux OS under various LAN and WAN environments.
- Installing physical servers like Buffalo Tera station in the server room.
- Maintaining Dell servers like Power Edge VRTX M630, Power edge R530, R820 servers and did cloud backups using AWS/ Azure.
- Router configuration for L2/L3 LAN and WAN networks and Intra company networks.
- Experienced working on network monitoring and analysis tools like, SOLAR WINDS, CISCO works and SD-WAN by Riverbed steelhead, L3VPN over network, multi-tenant segment routing, Cisco ASA firewall 9.x, OSPFv3, EIGRP classic and name-mode (wide metrics),VxLAN, VRF and VRF-lite, VMWare.
- Configuring networkdevices for TACACS+, Syslog, SNMP, DHCP and DNS.
- Configuration of 2500, 4000 series Cisco Wireless LAN Controllers for access points.
- Planning the placement of wireless access points and maintaining wireless devices to provide seamless connectivity.
- Backing up and upgrading Cisco IOS using TFTP server.
TECHNICAL SKILLS
Networking Technologies: LAN/WAN, TCP/IP, Frame Relay, VPN, VLAN, VTP, NAT, PAT, STP
Networking Hardware: Cisco, Juniper, Meraki, Nexus
Routing Protocols: OSPF, ISIS, EIGRP, RIP, MPLS, IS-IS, BGP, Multicasting, Static, STP, RSTP, VLANs, VTP, PAGP, LACP, HSRP, VRRP, IPv4 and IPv6
Security Technologies: PAP, CHAP, Cisco PIX, ASA, Fortinet, Checkpoint, Cybersecurity
Network Monitoring: SolarWinds, Wireshark, Infoblox
Routers: CISCO ASR/ISR 4300,4400,4500,2800,3800,7200, Juniper M & T Series
Switches: CISCO 2960,3750,3850,9200,9300, CAT 6800 Nexus 7k,5k,2k
Firewalls: Barracuda, Cisco ASA, Meraki
Load Balancers: F-5 (BIG-IP), NetScaler (Citrix) LTM 2000, 3900, 5000, 6400, 6800, 8900LAN Ethernet (IEEE 802.3), Fast Ethernet, Gigabit Ethernet.
WAN: Frame Relay, ISDN, ATM, leased lines & exposure to PPP, DS1, DS3
AAA Architecture: TACACS+, RADIUS, Cisco ACS, ISE
Wireless: WLAN Controllers 4404/5508/5760 and access points models 3500/3600/3700 series, Cisco, Meraki and Aruba
Capacity&performance: Cascade Riverbed (Flow Monitor), WAN Killer
Simulation Tools: GNS3, VMware, Vsphere
Programming Languages: C, C++, Python
Operating System: Windows, UNIX, LINUX, Cisco IOS, NX-OS
PROFESSIONAL EXPERIENCE
Confidential, Michigan
NETWORK SYSTEM ENGINEER
Responsibilities:
- Draw the entire network diagram of the hospital and track down each CISCO devices using GUI monitoring.
- Prepare equipment orders based on templates. Develop detailed template-based plans including implementation, testing and back out procedures for allnetwork implementations, network management, upgrades and modifications.
- Assist in creating network design standards for hardware and software.
- Using CNA tool, I made a track on each cisco switches/ routers and corrected each error every time.
- Mapping healthcare products like CareVue, Insight and I-Doc applications.
- Developing and maintain Network Documentation (Visio diagrams, Excel spreadsheets, Word documents, etc…).
- Configure and troubleshoot network elements in a test environment.
- Implemented the IP Phone (VOIP) project of entire hospital and changed the phone system from analog to digital.
- Experience working with market data networks and dealing with clients and deploying network designs
- Involved in design and implementation of Data Center Migration, worked on implementation strategies for the expansion of the VPN networks.
- Technology support given for CiscoACI, Meraki, NSX, Open Source solutions, AWS/Azure VPC, Arista &VxLAN.
- Configuring IP (Internet Protocol), EIGRP, OSPF routing protocols.
- Deal with the escalation problems for Routing, Switching and WAN connectivity issues using ticketing system like SolarWinds ticketing system.
- Hands on experience in Installation, Configuration and Administration of Windows Servers 2000/2003, Active Directory, FTP, DNS, DHCP, TFTP, Linux OS under various LAN and WAN environments.
- Vendor management of Microsoft office 365/Exchange licenses and VOIP licenses.
- Router configuration for L2/L3 LAN and WAN networks and Intra company networks.
- Responsible for installation, troubleshooting of firewalls (Cisco firewalls and checkpoint firewalls).
- Implementation of Checkpoint Firewall 4.1 to protect and authenticate local-net and DMZ. Defined policies,
- Implemented security policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA (TACACS+ & RADIUS)
- Add Trunks, Spanning Tree protocol, Port-Security, VLAN-MAPs and DOT1X for Switches and Wireless.
- Creating VLANs and stacking up Ethernet ports department wise VLANS.
- Uses UNTANGLE networking firewall software to monitoring the host devices.
- Experience working with High performance data center switches.
- Experience in ASA, SourceFire,FirepowerManagement Center for VMware & Sensors BIG-IP F5 LTM, ASM, and APM.
- Hands on experience implementing HSRP, NTP, SNMP, NAT Access control, QOS, Route-maps, Multicast etc.
- Worked on Cisco LMS, Aruba 225, 325, AP groups, SSID’s, Authentication rules, 802.1X for Wireless etc.
- Configuration and troubleshooting on Routers of IPSec VPNs, MPLS (Multiprotocol Label Switching) VPNs using Static Route for new customer site deployment.
- Good hands on experience with Linux, Cisco IOS, Nexus OS (NX-OS) and Unix.
- Built a VPC established the site-to- site VPN connection between Data Center and Azure/ AWS (Amazon Web Services)
- Created different application policies in the ACI including Tenants, Application Network Profile (ANP), End Point Group (EPG), Contracts, Subjects and Filters
- Having experience in cybersecurity like blocking websites on Trend Micro anti-virus.
- Migration of existing IPSEC VPN tunnels and Firewall rules from one Data Center to another Data Center.
- Responsible for Updating Access-list, prefix-list to 2500 Retail Routers.
- Accessing cybersecurity platforms to maintain the security of enterprise network from malicious attacks.
- Experiencing in using management tools, SNMP, Syslog, Sniffer, and Wireshark.
- Experience with LAN protocols like STP, RSTP, VTP, VLAN and Port Channel Protocols like LACP, PAGP.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500 with ACL, NAT, Object Groups, Failover, Multi-Contexts.
- Installing Barracuda NextGen firewall F280 and F380 for the guest Wi-Fi purpose.
- Responsible for layer 2 securities which was implemented using a dedicated VLAN ID for all trunk ports, setting the user ports to non-trucking, deployed port security when possible for user ports
- Enabled STP attack mitigation (BPDU Guard, Root Guard), using MD5 authentication for VTP, disabling all unused ports and putting them in unused VLAN.
- Upgrading Cisco 2950/2960 series switches to Cisco Sg350 and Cisco SG350 XG for server room switches.
- Responsible for cabling the switches, assigning IPs, port turn up and troubleshooting the connection.
- Creating and maintain virtual servers through VMware vSphere client. Maintain almost more than 50 virtual machines for the production and backup environment.
- Installing physical servers like Buffalo Tera station in the server room.
- Maintaining Dell servers like Power Edge VRTX M630, Power edge R530, R820 servers.
- Provide front end on-call network support 24x7x365 for all network infrastructures in the co-operation
Environment: Cisco IOS, Cisco routers (3800, 2800) and Cisco switches (2950, 2960), cisco SG200/Sg350/Sg350XG switches,Cisco LMS, Routing Protocols (EIGRP, OSPF, BGP), Microsoft office 365/Exchange, active directory,Cisco ACS, Trunking, VLAN, STP, BPDU, VOIP, barracuda Firewall, Cisco DCNM, VMware, Vshpere, Virtual machines, Buffalo Tera Station server, DELL Power Edge Servers M630/R820/R530, F5 load balancing.
Confidential, New Jersey
NETWORK ENGINEER
Responsibilities:
- Implementation of Checkpoint Firewall 4.1 to protect and authenticate local-net and DMZ. Defined policies,
- Configured VPN tunnels to multiple vendors with end devices terminating at vendor end being a Cisco/Juniper firewall
- Experience in ASA, SourceFire,FirepowerManagement Center for VMware & Sensors BIG-IP F5 LTM, ASM, and APM.
- Manage and Support an international TCP/IP Cisco LAN/WAN environment for Corporate Infrastructure.
- Configure IPSEC, MPLS (Multiprotocol Label Switching), VPN Tunnels, OSPF/BGP Routing Protocols on WAN routers.
- Experience on LAN and WAN Infrastructure protocols and its troubleshooting includes STP, VTP, Vlan Trunking, EIGRP, OSPF and BGP.
- Working knowledge in VOIP environments and installing security, SAN and VM Ware as well as IVR and CVP.
- Installed enterprise-class Cisco, Juniper, and PaloAlto routers, switches, and firewalls.
- Configured network access servers and routers for AAA Security (RADIUS/ TACACS+)
- Configuring Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 7000. Configuring VDC & VPC in NX-OS like Nexus 9k, 7k, 5k and 2k
- Awareness on Cloud Computing, Software Defined Networking (SDN), Cisco ACI, VMware NSX. Experience with Cisco ACI (Application Centric Integration) technology implementation.
- Installed enterprise-class Cisco, Juniper, and PaloAlto routers, switches, and firewalls
- Performed maintenance and troubleshooting of connectivity problems using PING, and Trace route.
- Used DHCP for automatic assign reusable IP (Internet Protocol) addresses to DHCP clients
- Configured Routing protocols such as OSPF, EIGRP, static routing and Policy based routing on various branch and datacenter devices.
- Hands-on Experience in configuration of Network architecture on AWS with VPC, Subnets, Internet gateway, NAT, Route table.
- Management and Administration of AWS Services CLI, EC2, VPC, S3, ELB Glacier, Route 53, Cloudtrail, IAM, and Trusted Advisor services
- Configured VLANs with 802.1q tagging. Configured Trunk groups, ether channels, and Spanning tree for creating Access/distribution and core layer switching architecture.
- Configured BPDU Guard, port-fast, uplink fast and other spanning tree features.
- Work with service provider during circuit upgrades and WAN router replacements
- Provide on call 24x7 support to provide services in case of network outage, provide maintenance, monitor circuits till the network stabilizes
- Upgrade IOS images on Switches, Wireless LAN Controllers
- Perform system software conversion from Cat OS to Cisco IOS on catalyst 6500 switches
- Replace existing Cisco/HP EOS/EOL switches with Cisco 3750x Stack solution
- Configure HSRP redundancy on the Core Switches
- Creating new networks for the different servers based on VLAN’s.
- Responsible for layer 2 securities which was implemented using a dedicated VLAN ID for all trunk ports, setting the user ports to non-trucking, deployed port security when possible for user ports
- Configure and manage Data and Voice VLANs and access interfaces on Cisco layer 2 and layer 3 switches
- Configure NAT, TACACS+(AAA) and SNMP for network security implementation
- Work with other Engineers in carving subnets, DHCP snooping.
- Responsible for DHCP, DNS entries/changes in Vital QIP
- Use Cisco NCM and Solar winds Orion tools for Network Compliance and Monitoring
- Create/Update network interconnect drawings on Visio
- Responsible for implementing, engineering, & level 2 support of existing network technologies / services & integration of new network technologies/services
- Troubleshoot connectivity problems, perform beak-fix operations and document every issue
- Monitor and maintain all network infrastructure equipment ensuring minimized downtime.
Environment: TCP/IP Cisco LAN/WAN, IPSEC VPN Tunnels, NX-OS, Nexus 9k, 7k, 5k and 2k, OSPF/BGP, Cat OS to Cisco IOS on catalyst 6500 switches, Cisco LMS, Trunking, VLAN, STP, BPDU, Cisco IOS, PaloAlto firewalls, Cisco 3750x, NAT, TACACS+(AAA), SNMP, DHCP, DNS entries/changes in Vital QIP, HSRP, Visio, DHCP.
Confidential
NETWORK ENGINEER
Responsibilities:
- Gained knowledge on configuring cisco switches and routers in the enterprise network.
- Monitoring and maintaining distribution layer switches, Core Switches, creating VLANs and configuring VTP.
- Optimized performance of the WAN virtualization network consisting of Cisco 2950/2960/3550 switches by configuring VLANs.
- Install and configure cisco routers, switches and firewalls of various models. Upgrade codes, IOS, and patches for different networkdevices.
- Installed 802.11 a/b/g/n Ethernet standards for wireless Technology.
- Worked with other team members in testing of the network architecture.
- Converting CatOS to Cisco IOS Config Conversion on distribution layer switches
- Worked on troubleshooting the connectivity to servers on Fabric path.
- Upgrading IOS on 2960 and using 2960 switch as a PAGP between VSS
- Performed TCP/IP networking-based administration including VLANs, inter-VLAN routing, Trunking, STP, RSTP, port aggregation & link negotiation and port security
- Configured various Routing protocols such as RIP, OSPF, EIGRP, static routing.
- Provided configuration of STP and Port Security on Catalyst 4500/6500 switches.
- Configure the Cisco CRS-1 Routing System, back out of configuration changes, and restore older versions of a configuration.
- Management tools, SNMP, Syslog, Sniffer, and Wireshark.
- Troubleshooting of Cisco 2900, 3900, 4500, 6500 Series routers.
- Configured static NAT, dynamic NAT, dynamic NAT overloading.
- Responsible for service request tickets generated by the helpdesk in all phases such as troubleshooting, maintenance, upgrades, patches, fixes, and all-around technical support.
Environment: cisco routers, switches and firewalls, VLANs, inter-VLAN routing, Trunking, STP, RSTP, port aggregation & link negotiation and port security, ACL, IOS on 2960, IOS, Cisco IOS, RIP, OSPF, EIGRP, ISDN, Cisco 2900/3900/4500/6500 series switches, NAT, dynamic NAT.
