Sr. Network Engineer Resume
Atlanta, GA
SUMMARY:
- 8+ years of experience in routing, switching, Network design, implementation and troubleshooting of complex network systems.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
- Worked on Extensively on Cisco Firewalls, Cisco PIX (506E/515E/525/) & ASA 5500(5510/5540) Series. Well Experienced in configuring protocols HSRP, GLBP, VRRP, ICMP, IGMP, PPP, HDLC, PAP, CHAP, and SNMP.
- In depth understanding of IPV4, implementation of Subletting, VLSM and ARP, reverse & proxy ARP, Ping Concepts.
- Strong hands on experience in installing, configuring, and troubleshooting of Cisco 7600, 7200, 3800, 3600, 2800, 2600, 2500 and 1800 series Routers, Cisco Catalyst 6500, 4500, 3750, 2950 and 3500XL series switches.
- Strong hands on and exposure to Checkpoint & Palo Alto on a regular basis.
- Experience in Layer 3 Routing protocol configurations: RIP, EIGRP, OSPF, BGP, & MPLS.
- Experience in Layer 2 Routing protocol configurations: ATM/FRAME RELAY, IP services such as QoS and VPN technologies: IPsec & SSL.
- Experience testing Cisco routers and switches in laboratory scenarios and then design and deploy them on site for production.
- Involved in troubleshooting of DNS, DHCP and other IP conflict problems.
- knowledge and hands - on experience in Tier II ISP Routing Policies, Network Architecture, IP Subnetting, VLSM, TCP/IP, NAT, DHCP, DNS, FT1 / T1 / FT3 / T3 SONET POS OCX / GigE circuits, Firewalls.
- Network security including NAT/PAT, ACL, VPN Concentrator.
- Well Experienced in configuring protocols HSRP, GLBP, VRRP, ICMP, IGMP, PPP, HDLC, PAP, CHAP, and SNMP.
- Implemented traffic filters using Standard and Extended access-lists, Distribute-Lists, and Route Maps.
- Knowledge in preparing Technical Documentation and presentations using Microsoft VISIO/Office.
TECHNICAL SKILLS:
Cisco Routers: Cisco GSR 12416, 12418, Cisco 7200vxr, Cisco 3640, Cisco 3600
Redundancy and management: HSRP, RPR, NSF/NSR
Network Configuration: Advanced switch/router configuration (Cisco IOS access list, Route redistribution/propagation).
Routing Protocols: IGRP, EIGRP,RIP, OSPF, BGPv4, MP-BGP
WAN Protocols: HDLC, PPP, MLPPP
Circuit switched WAN: T1/E1 - T3/E3/OCX (Channelized, Fractional & full).
Packet Switched WAN: ATM, FRAME RELAY, MPLS VPNs
Security Technologies: Cisco FWSM/PIX/ASDM, Nokia Checkpoint NG, Juniper SRX
Physical interfaces: Fast Ethernet, Gigabit Ethernet, Serial, HSSI, Sonet (POS)
Layer 2 technology: VLAN, VTP, VMPS, ISL, dot1q, DTP, Spanning-tree, PVST
Layer 3 Switching: CEF, MLS, Ether Channel
QOS: CBWFQ, LLQ, WRED, Policing/Shaping.
Switches: Catalyst 6500, MSFC, MSFC2, 7600, 3700, 3500
Operating Systems: Microsoft XP/Vista/7, UNIX, Linux (Redhat, OpenSuse, Fedora)
AAA Architecture: TACACS+, RADIUS, Cisco ACS.
Security / Firewalls: Cisco ASA Firewalls 5580-20, IPSEC & SSL VPNs, IPS/IDS, DMZ Setup, Cisco NAC, ACL, IOS Firewall features, IOS Setup & Security Features
Juniper: EX-2200, EX-4200, EX-4500, MX-480, M Series, SRX210, SRX240
Hardware: Cisco Cat Switches, Routers, Avaya VoIP phones, Cisco IP 796X/794
PROFESSIONAL EXPERIENCE
Confidential, Atlanta, GA
Sr. Network Engineer
Responsibilities:
- Experience with moving data center from one location to another location, from 6500 based data center to Nexus based data center.
- Responsible for Configuring SITE TO SITE VPN on Cisco ASA 5500 series firewall between Head office and Branch office.
- Installation and Configuration of Cisco Catalyst switches 6500, 3750 & 3550 series and configured routing protocol OSPF, EIGRP, BGP with Access Control lists implemented as per Network Design Document and followed the change process as per IT policy It also includes the configuration of port channel between core switches and server distribution switches.
- Experience working with Nexus 7010, 5020, 2148, 2248 devices.
- Experience with configuring Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 5000.
- Experience working with Cisco Nexus 2148 Fabric Extender and Nexus 7010 5000 series to provide a Flexible Access Solution for a datacenter access architecture.
- Managing cabled LAN and wireless access, with switching technologies and wireless technologies.
- Troubleshooting and monitored routing protocols such RIP, OSPF, EIGRP & BGP.
- Configuring RIP, OSPF and Static routing on JuniperM and MX series Routers.
- Configuring VLAN, Spanning tree, VSTP, SNMP on EX series switches.
- Designing and Implementation of (LAN) VLANs, VTP, Spanning Tree (STP), Trunking (dot1q and ISL) and Ether channel.
- Configuration and Troubleshooting of Outlook Express and MS Outlook.
- Provided technical support to cloud computing customers.
- Provided Load Balancing towards access layer from core layer using F5 Network Load Balancers.
- Implement ATM/Frame Relay between data centers utilizing Cisco routers & switches.
- Experience with converting 6500 to Cisco Nexus in the data center environment.
- Experience with convert PIX rules over to the Cisco ASA solution.
- Responsible for Cisco ASA firewall administration across our global networks.
- Created Visio Dean / Visio Documentation to give complete picture of network design for each building.
- Responsible for layer 2 securities which was implemented using a dedicated VLAN ID for all trunk ports, setting the user ports to non-trunking, deployed port security when possible for user ports.
- Enabled STP attack mitigation (BPDU Guard, Root Guard), using MD5 authentication for VTP, disabling all unused ports and putting them in unused VLAN and ensuring DHCP attack prevention where needed.
- Performed basic security audit of perimeter routers, identifying missing ACL’s, writing and applying ACL’s.
Confidential, NY
Network Engineer
Responsibilities:
- Worked on Cisco works, knowledge of Cache engines, Content Switch System platforms - (11150 - 11503), disaster recovery experience, NAS solutions knowledge, SAN understanding.
- Provide design, analysis, implementation, Operation and testing services for medium to large projects, programs and campaigns.
- Coordinating the implementation of switched networking infrastructure for server and client building blocks.
- Installed and configured Cisco ASA 5500 series firewall and configured remote access IPSEC VPN on Cisco ASA 5500 series.
- Installation, configuration and maintenance of Palo Alto, Cisco ASA 5500, Juniper SRX and ISG Firewalls.
- Maintained and managed networks running EIGRP and BGP routing protocols.
- Configured and maintained IPSEC and SSL VPN's on Palo Alto Firewalls.
- Configuring, Operating and supporting the Cisco routers 7200, 3800, 3600, 2600 series, 2500, Cisco ASA5200 series, Cisco catalyst 1900, 2900 series, 3500 series, 3700 series and 6509E series, PIX firewall, AD modem, Cisco Access control server(ACS), VPN Concentrators, Cisco IOS and Cat OS, Cisco ACL.
- Managed user accounts for role based access controls, event based alerts and event based alerts and server appliances.
- Configured user specific content restrictions for desktop video users.
- Evaluated security infrastructure components for anomalous and unknown behaviors using various IDS platforms (Snort, Cisco IDS, and Check point smart Defense).
- Implementation of IPSEC & SSL tunnels in VPN using Cisco IOS and checkpoint firewall /VPN.
- Implemented VPN connections using Palo Alto firewall.
- Worked on TCP/IP, RIP2, OSPF, EIGRP, BGP, VRRP, HSRP, GLBP, IPX\SPX, DHCP, DNS, PPP, VTP, STP, ISDN, IPX, LWAPP, TACAS+, RADIUS.
- Experience in HSRP standby troubleshooting & Experience in configuring & upgrading of Cisco IOS.
- Designed and implemented networking for disaster recovery sites.
Confidential, Chelmsford, MA
Network Engineer
Responsibilities:
- Experience working with ASR 9000 series switches with IOS-XR.
- Experience working with design and deployment of MPLS Layer 3 VPN cloud, involving VRF, Route Distinguisher(RD), Route Target(RT), Label Distribution Protocol (LDP) & MP-BGP.
- Experience with design and configure Fibre Channel over Ethernet(FCoE) on Cisco Nexus 5548 devices.
- Experience working with migration from 6500 series devices to 4500 Series switches in Campus deployments at Core, Distribution and Access Layers.
- Experience with LAN protocols like STP, RSTP, MST, VTP, VLAN and Port Channel Protocols like LACP, PAGP.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500 with ACL, NAT, Object Groups, Failover, Multi-Contexts.
- Experience with migrating from Cisco ASA 8.2 version to Cisco ASA 8.4 Version.
- Responsible for Cisco ASA firewall administration across our global networks.
- Migration of existing IPSEC VPN tunnels from one Data Center to another Data Center, due to decom of existing Data Center, which involved working with Partner Companies.
- Experience with converting WAN routing from EIGRP/OSPF to BGP (OSPF is used for local routing only) which also involved converting from Point to point circuits to MPLS circuits.
- Responsible for layer 2 securities which was implemented using a dedicated VLAN ID for all trunk ports, setting the user ports to non-trucking, deployed port security when possible for user ports.
- Enabled STP attack mitigation (BPDU Guard, Root Guard), using MD5 authentication for VTP, disabling all unused ports and putting them in unused VLAN .
- Implement and configured VRRP/GLBP (on distro/core switching), HSRP on different location of office on the switched network and managing the entire multilayer switched network.
- Experience in Configuring, upgrading and verifying NX-OS operation system with OSPF, BGP.
- Key contributions include troubleshooting of complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF & BGP.
- Implemented Site-to-Site VPNs over the internet utilizing 3DES, AES/AES-256 with ASA Firewalls.
- Responsible for managing activities, Upgrading IOS - Upgrading hardware and installing new devices, Tuning (Configuration), make standardization for the topology.
- Configured, installed, & managed DHCP, DNS, & WINS servers.
Confidential, Princeton, NJ
Network Engineer
Responsibilities:
- Implemented Splunk to drive reporting and search for data collected from Cisco firewall devices - FWSM, Pix and ASA.
- Moved Core switches and several non-Cisco devices under strict deadlines to maintain network functionality.
- Satisfactorily Resolved Problems in timely manner with focus on providing a high level of support for all customers.
- Prepared Engineering documents and Network diagrams in Microsoft Vision.
- Delivered Departmental Efficiency through advanced engineering, technical support, and documentation procedures.
- Scheduled preventive maintenance for fire-protection systems, including new protocols. Utilize MS Windows, Word, and Excel for reporting/documenting process.
- Provide high level technical support, including identifying and resolving problems on Cisco supported products for e-Commerce infrastructure. This included external routing and internal/intranet routing for DMZ servers.
- Implemented new ultra secure networks in multiple data centers that included Cisco 6500 s, Juniper security devices, and F5 Big IP’s.
- Implement QOS for Voice, Video against DATA by Ip Presidence and DSCP.
- Designed VLAN’s and set up both L2 and L3 logicals to have it communicate to the Enterprise network.
- Juniper: EX-2200, EX-4200, EX-4500, MX-480, M Series, SRX210, SRX240.
- Implemented cable multi-service operator (MSO) to capture traditional Telco subscribers with IP telephony and provide relevant QOS.
- Configured EIGRP, BGP, and MPLS.
- Implemented Load Balancing between Cisco L3 Switch by HSRP and GLBP.
- Configure Firewall, IPS and QOS by SDM and provide security by Prefix list, Access- List and By Distributions.
