Security Specialist Resume
SUMMARY
- Around 6+ years of experience in Routing, Switching and Firewall Security, including hands - on experience in providing network support, installation, and analysis for a broad range of LAN / WAN/MAN communication systems.
- Strong knowledge in Cisco Routing, Switching, and Security with Cisco hardware/software (heavy Cisco shop) experience.
- Experience in configuring Cisco Nexus, Catalyst and Cisco Switches, Cisco Routers, Aruba Access Points.
- Expertise in configuring and troubleshooting Cisco ASA, Palo Alto, and checkpoint firewalls.
- Experience in Configuring and troubleshooting BIG-IP F5 load balancer LTM Creating virtual servers, nodes, pool, and Rules on BIG-IP F5 in LTM module.
- Expert knowledge on Cisco Meraki.
- Experience in implementing Site-to-site, remote access VPN, DMVPN technologies using GRE, IPSEC & MPLS.
- Experience in Network Design, Implementations, Troubleshooting, Operations, and Network Support seeking a challenging position.
- Expertise experience in implementing and troubleshooting VLANs, VTP, STP, RSTP, DTP, Root Guard, BPDU Guard, Port Fast, Uplink Fast, Backbone Fast, Ether Channel, PAGP, LACP, and 802.1Q.
- Working experience of protocols Frame relay, MPLS, ATM, and PPP.
- Worked on MPLS-VPN designs for the migration of Frame relay to MPLS system.
- Identifying issues on the networks supporting Exchange and Outlook.
- Expert Level Knowledge about TCP/IP, Spanning tree, and OSI models.
- Solid understanding of networking protocols, including bridging, routing, TCP/IP, DHCP, ARP, DNS, NAT, and STP.
- Configured network security policies IPSEC, SSL, NAT, PAT, VPN, Route-maps, distribute lists, Prefix lists, Access Control Lists (ACL), filters in Cisco ASA, Juniper SRX, Palo Alto environments.
- Experience with implementing, administering, and supporting network infrastructures using Cisco equipment, including ASA Firewalls, ASP Routers, Nexus switches, and Wireless Access Points.
- Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, Ether channel, STP, RSTP, and MST.
- Strong hands-on experience on Cisco ASA Firewalls Implementing and Troubleshooting NAT, ACLs, Failover Active-Active and Active-Standby), Security Contexts & Transparent firewall PBR, MPF, QoS, IPsec Site2Site VPN, SSL VPN, Remote Access VPN and OS Up-Gradation in failover pair as well as Stand-alone device.
- Proactively Monitor and Manage customer network on a 24/7 basis resolving the tickets within SLA.
- Documentation skills (Visio for architectural and network diagrams and preparing LLDs and HLDs).
- Experienced with various dynamic and static network protocols RIP, OSPF, EIGRP, HSRP, VRRP, BGP, VLAN, Spanning Tree, Frame-relay, MPLS, and IPsec VPN.
- Worked in OSI model, TCP/IP, UDP, IP addressing, and Subnetting.
TECHNICAL SKILLS
Cisco Routers: ASR1000, 3900, 6008,9912, 3800, 3700, 7206VXR, 7500, 1800, 2500, 2600, 3600.
Cisco Switches: 6500, 4510, 3750X, 3550, 3650, 3750G, 2960.
Firewalls: Palo Alto, checkpoint, Cisco ASA.
Routing Protocols: EIGRP, OSPF, BGP, RIPv2, ISIS, IGRP, TFTP, FTP, HTTP, SSH, HSRP, VRRP, ISL, CDP, SNMP, NAT, ICMP, TCP/IP, DNS, DHCP, ACL, VACL, VOIP (-H.323, H.248, SIP, MGCP, SCCP) SDN, CAS, Analog.
Switching Concepts: VLAN, STP, RSTP, VTP, Ether Channel, Port Fast, IP access Control lists, Uplink Fast and Backbone Fast, HSRP, VRRP.
Network Topologies: Frame Relay, ISDN, Gigabit Ethernet, OSI, and TCP/IP layered architecture.
LAN: 10/100/1000 & 10 GBPS Ethernet.
WAN: MPLS, Frame Relay, Dialup, VoIP (Protocols-H.323, H.248, SIP, MGCP, SCCP,media-RTP/RTCP), Cisco Routers and Switches, CSU/DSU, SDN, CAS, Analog.
WLAN: IEEE 802.11, PHY and MAC layer functionality, WLAN controller/Aruba/Meru.
Operating Systems: Windows Servers 2003/2008/2012 , Windows 7, Windows Vista, Windows XP troubleshooting.
Network Monitoring Tools: Net scout, Solar winds, Cascade, Wire shark, Packet tracer.
Documentation: Microsoft Office, Excel & Visio.
PROFESSIONAL EXPERIENCE
Confidential
Security Specialist
Responsibilities:
- Experience in Rule analysis and Rule Modification on ASA Firewall and FMC.
- Experience in Symantec Endpoint Protection, CISCO Umbrella proxy.
- Experience on Cisco AnyConnect VPN client.
- Used Network monitoring tools to ensure network connectivity and protocol analysis tools to assess the networking issues causing service disruption.
- Analyzed information provided from existing legacy AAA system to migrate to ACS.
- Worked on Authentication, access management, and Security rules upgrade for the authentication on Cisco ISE.
- Planning and executing changes and upgrades to the operating system of servers directly supporting firewall components and functionality.
- Experience in APMand ASMto enable policy enforcement and control who accesses your apps.
- Articulate the business drivers and translate those requirements into a detailed network design.
- Experience in Cisco MAB management in tracking user logging details and traffic.
- Responsible for implementing, managing, and maintaining Cisco ISE, ISE server, and Cisco Prime for NAC solutions.
- Maintaining and Updating inventory using Network Management Application layer software like SNMP, Wireshark, NTP, and Syslog.
Confidential
Responsibilities:
- Experience in installing, configuration, and maintenance of Cisco routers, catalyst switches, and firewalls.
- Palo Alto design and installation (Application and URL filtering, Threat Prevention, Data Filtering). Configured and maintained IPsec and Palo Alto firewalls.
- Experience on Panorama centralized management.
- Managing Switches(Nexus & Catalyst) and Aruba Access Points for Data Center and office networks.
- Deploying ISE Wired and Wireless Authentication, Authorization, and Accounting.
- Authentication of network traffic by BIG-IP system using data stored on a remote server.
- Hands on experience in Cisco Meraki.
- Responsible for Palo Alto and ASA firewall management and operations.
- Worked on Authentication, access management, and Security rules upgrade for the authentication.
- Hands-on Experience in Cisco ACS and ISE and PKI management and administration.
- Experience on Symantec Endpoint Protection, ZScalar Cloud Proxy.
- Hands-on experience on RSA Net Witness SIEM Tool, Citrix Net Scaler, and CyberArk.
- Worked on Access control, Rules Upgrade RADIUS, and TACACS+ management in ACS.
Confidential
Jr Network Security Engineer
Responsibilities:
- Upgrade Cisco 7200, 3600 Router IOS Software, backup Routers, and Catalyst 3560, 4500 switch configurations.
- Support 24x7 operations and answer calls from the customers on network emergencies and resolve issues.
- Install and manage Cisco Catalyst 3500XL, &2960 series Switches and Cisco 1800, 3900 series routers.
- Plans, coordinates, implements, and supports the LAN / WAN hardware, software, and Internet /Intranet integration network connectivity, diagnose network failures, and resolve any problems.
- Responsible for implementation and day-to-day operations of all associated hubs, routers, bridges, gateways, and related equipment.
- Monitoring the network, troubleshooting network problems, implementing changes, communicating, and working closely with vendors, customers, system administrators.
- Troubleshoot Frame Relay; T1, T3, IP, and OSPF-related router and circuit issues.
- Responsible for LAN and internet connection files and print servers.
- Maintained and installed new internet connections for customers.
- Handled installation of Windows NT Server and Windows NT Workstations.
- Handled Tech Support as it relates to LAN & WAN systems.
- Hands-on Experience in Inter- VLAN routing, redistribution, access lists, and dynamic Nat configurations.
- Log messages using the Syslog server and analyze the issues related to high CPU utilization and parameters that can degrade the performance of the network.
- Involved in all technical aspects of LAN and WAN projects including, short- and long-term planning, implementation, project management, and operations support as required.
- Conduct thorough analysis, problem-solving, and infrastructure planning.
- Aided Network Manager and serve as Secondary Network support.
- Troubleshoot and fix any backup and monitoring systems-related issues in conjunction with the Systems team and external vendors.
- Active participation in operational support for routing/switching protocols in complex environments including BGP, OSPF, EIGRP, Spanning Tree, 802.1q, etc.
- Managed various teams involved in site surveys, cabling specifications, Network equipment installation, and configuration.
- Design OSPF areas for reliable Access Distribution and Core IP Routing.
- Used various scanning and sniffing tools like Wire-shark.
- Network Migration from RIP to OSPF and EIGRP.
