We provide IT Staff Augmentation Services!

Network Support Engineer Resume

5.00/5 (Submit Your Rating)

Fremont, CA

SUMMARY

  • An enthusiastic Network Engineer with 8+ years of experience in Cisco/Juniper/GE Networking, Security which includes designing, deployment and providing network support, installation, troubleshooting and analysis for a broad range of Routing/Switching protocols.
  • Worked on Cisco 7200, 3800, 3600, 2800, 2600, 1800, ASR 1002, 1004 and 1006 series Routers,Cisco 6500, 5500,4500, 3500,2900 series switches and Nexus 7706, 7009, 5000 and 2K Fabric Extenders (FEX) Layer 2 switches.
  • Extensive hands - on experience with complex routed LAN and WAN networks,routers, switches, Firewalls, VOIP, servers and load balancers.
  • Design and provide support of Routers, Switches, Security Solutions, VPNs, L4-7 Load Balancers, SD WAN/SDI and Network Management Solutions across LAN/WAN.
  • Extensively worked on Juniper models EX-2200, EX-4200, EX-4500, MX-480, M Series, SRX210 and SRX240.
  • Configured Cisco ISE for Wireless and Wired 802.1x Authentication on Cisco Wireless LAN Controllers, Catalyst Switches, and Cisco ASA Firewalls.
  • Deployment and support of F5 LTM/GTM 1600, 3600, 6900 and Viprion Chassis running OS versions 9.x through 11.x.
  • Experience in the setup of Cisco Virtual Switching System (VSS), ACL’s, OSPF, EIGRP, and tunnel installations.
  • Experience in physical cabling, IP addressing and sub netting with FLSM & VLSM, configuring and supporting TCP/IP, DNS, installing and configuring proxies.
  • Good knowledge on Blue coat ProxySG S200/S400.
  • Experience with BIG-IP F5 load balancers, version 9.x, 10.x, 11.x, Citrix Net Scaler’s and Web Accelerators.
  • Worked on MX-80, MX-480, SRX-100, SRX-110, SRX-550 and EX-4200 Juniper devices.
  • Experience with setup, install, maintain and troubleshootCisco ASA, Palo Alto, Fortinet, IDS/IPS, Juniper Net screen and CheckpointFirewalls.
  • Experience with Bluecoat Proxy SG900 maintenance and rule management. Implementing and managing Bluecoat SG400, Bluecoat SG800. Bluecoat URL filtering with whitelisting and blacklisting URL, creating rules for content filtering.
  • Sound knowledge of virtual firewalls like checkpoint VSX, IDS, IPS as well as encryption techniques.
  • Experience with Net scaler / Access Gateway, Familiarity with SSL VPN, Net scaler, PVS.
  • Experience with Networking Software Systems IOS, IOS XR, IOS XE, NX-OS and core technologies Cisco ACI, VxLAN, FcoE, LISP, Ciso ONE.
  • Used Cisco ACI Fabric which is based on Cisco Nexus 9000 series switches and Cisco Application Virtual Switch (AVS).
  • Implemented Cisco Application Centric Infrastructure (Cisco ACI) as a solution for data centers using a Spine and Leaf architecture
  • Experience deploying BIG-IP F5 LTM, GTM Load Balancers for load balancing and traffic management of business application.
  • Knowledge on designing, implementing and troubleshooting complex layer 2 technologies such as VLAN, Trunks, VTP, Fabric path, ether channel, STP, RSTP, MST & port security along with trouble- shooting of inter-VLAN routing and VLAN trunking using 802.1Q.
  • Ixia’s IxLoad application is used to execute all the test plans. IxLoad application uses Ixia’s purpose built hardware to generate stateful traffic and provides real-time statistics including the triple play services as outlined in this test plan
  • Function as part of a Firewall and Security team in support of Checkpoint Firewalls, Z scaler Proxy, Juniper Portals, SecAuth, Open LDAP, and Active Directory.
  • Check Point and Silver Peak have jointly validated a solution which combines Check Point Next-Generation Threat Prevention Platform with the Silver Peak Unity Edge Connect SD-WAN solution. This joint solution enables customers to deploy SDWAN networks that integrate Check Point’s best-in-class network security throughout the SD-WAN
  • Hands-on experience in using network stimulator tools like OPNET, Solar winds Orion.
  • Experience in Network Management Tools and sniffers like SNMP, Solar Winds, Net Brain, NetMRI, Wire shark, Info blox and Cisco works to support 24 x 7 Network Operation Center.
  • Access control server configuration for RADIUS & TACACS+ and ISE.
  • Knowledge of advanced technologies like Multicasting, MPLS, MPLS-VPN and Riverbed Virtual Services Platform (VSP).

TECHNICAL SKILLS

Routers & Switches: Cisco Routers (3800, 2800, 2500, 2400 Series), Cisco Switches (6500, 4500, 2960, 2950, 2924, 3700, 3500), Juniper EX43XX, QFX1XXX series, Cisco NX 9k, ISR, CRS, GRS and ASR

Protocols: TCP/IP, IS-IS, OSPF, BGP, HSRP, IPSec, VPN, DMVPN, QoS, Multicast, dot1q, STP, VLANS, VTP,WLAN, DNS, DHCP, ARP, SNMP, NetFlow, TACACS+, VRF, Cisco vPC

Operating Systems: Windows 2000/2003/2008/2008 R2/12 Servers, 5.5 server/IIS5,IIS6,IIS7

AAA Architecture: TACACS+, RADIUS, LDAP, Cisco ACS

Firewalls & VPN: Checkpoint Firewall UTM Series, Cisco 5500 Series ASAs, FirePower, PALO ALTO firewall

Wireless Equipment: Cisco Wireless LAN Controllers (WLC) 4400 Series (4402 & 4404) 5500 Series (5508), Cisco Aironet Wireless Access Points ( Series).

Applications: MS Office 2003/2007- Word, Excel, Power Point, MS Outlook, Outlook Express, Opnet, Bluecoat, Riverbed, Net Brain.

OS & Database: Windows, IOS

Capacity & performance: IXIA, Spirent, Cisco works

Tools: Splunk, Dynatrace, Cisco prime, Solar Winds

PROFESSIONAL EXPERIENCE

Confidential, Fremont CA

Network Support Engineer

Responsibilities:

  • Design, deployment and maintenance of security/network devices and datacenters of enterprise.
  • Configuration, Troubleshooting and Maintenance of Palo Alto Firewalls (36+ firewalls) - PA200, PA2000 series, PA3000 series, PA4000 series and PA5000 series.
  • Successfully installed Palo Alto PA-5000, PA-3000 firewalls to protect Data Center and provided L3 support for routers/switches/firewalls and also configured and maintained IPSEC and SSL VPN's on Palo Alto firewalls.
  • Palo Alto design and installation (Application and URL filtering, Threat Prevention, Data Filtering).
  • Lead network engineer on a project to build out a software defined data center based on Cisco ACI, VMware NSX and F5 load balancers.
  • Performed all maintenance tasks on the Nexus Switches, ASR Routers, Checkpoint Firewalls, F5 Load balancers InfoBlox DNS and Cisco ACI.
  • Implemented Zone Based Firewalling and Security Rules on the Palo Alto Firewall.
  • Deployed Site to Site and Client to Site VPNs utilizing Checkpoint Firewall-1/VPN-1.
  • Built and support VRRP/Cluster based HA of Checkpoint firewalls.
  • Creating object, groups, updating access-lists on Check Point Firewall, apply static, hide NAT using smart dashboard.
  • Implemented site to site VPN in Juniper SRX as per customer. Worked on Route-Reflectors to troubleshoot BGP issues related to customer route prefixes also route filtering using Route-maps.
  • Performed OSPF, BGP, DHCP Profile, HSRP, IPV6, Bundle Ethernet implementation on ASR 9K redundant pair.
  • Carrier Ethernet (CE-L2VPN) profile test suite testing various knobs and feature configurations of L2VPN forIOS-XRecosystem including ASR9K, NCS6K, NCS55K and SunStone platforms on scope as well as scale
  • Responsible for Juniper SRX firewall management and operations across our corporate networks.
  • Adding agents (IDS/IPS) at Host and Network level to Sentinel.
  • Working on Enterprise AV Solutions, IDS\IPS, Firewalls and SIEM (IBM QRadar\HP Arcsight) tools.
  • Performing URL filtering and content filtering by adding URL’s in Bluecoat Proxy SG’s
  • Black listing and White listing of web URL on Blue Coat Proxy servers.
  • Worked on Blue Coat Proxy SG to safeguard web applications (Black listing and White listing of web URL) in extremely untrusted environments such as guest Wi-Fi zones.
  • Create service profiles on theCiscoUnified System (CiscoUCS) platform and manage Service Profiles.
  • Configure VMware switching, Install and configure aCiscoNexus 1000V Switch & Networking.
  • CiscoUCSconfiguration and troubleshooting.
  • Experience with connectivity of Cisco Networking Equipment with F5 Load Balancer.
  • Basic and advance F5 load balancer configurations, including migrating configurations from Cisco ACE to F5 and general troubleshooting of the F5 load balancers.
  • Helped installed F5 VIPRION load balancers for one of our new datacenter.
  • Configured Cisco ISE for Wireless and Wired 802.1x Authentication on Cisco Wireless LAN Controllers, Catalyst Switches.
  • Monitor and troubleshoot BGP, EIGRP, TI circuits, and cellular backup circuits via ICMP and SNMP ticketing systems. Cisco IOS upgrades.
  • Working on Cisco 6509 and 4507 series switches for LAN requirements that include managing VLANs, Port Security and troubleshooting LAN issues.
  • Implementation of various protocols like RIP, OSPF, BGP and STP.
  • Expertise in networking technologies like LAN, MAN, WAN and peripheral devices.
  • Working with VPN tunnels, DS1, DS3 & T1 links.
  • Used to handle efficiently a workload of nearly 60 Layer 3 MPLS VPN provision orders which included, MPLS network resource reservation & VPNV4, EBGP configuration checking, Troubleshooting of EBGP sessions with customer carriers in the MPLS cloud which is made up of routers Cisco housed in different datacenters (Cisco 7609).
  • Experience configuring Catalyst (2900, 3500, 3700 and 6500 Series), Nexus (7000, 5000 and 2000 Series) Switches, and Routers (2800, 3600, 4400 Series) and Wireless AP's (1260, 3600) using CLI and GUI.
  • Used Cisco ACI (Application Centric Infrastructure) for fabric implementation, operations, and integration with external bridged networks and Cisco Unified Communication Systems.
  • Hands on experience in building Cisco ACI fabric (policy groups, switch profiles, etc.), tenants - VRFs, Endpoint Groups, Contracts
  • Lead network engineer on a project to build out a software defined data center based on Cisco ACI, VMware NSX and F5 load balancers.
  • This global role helped expand my expertise into other areas such as Cisco UCS, Checkpoint Firewalls, Cisco ASA, and VMware NSX.
  • Deployed Cisco ISE 1.2 with 8 nodes in deployment, initially in learning mode increasing methodically to 802.1x on wireless and wired.
  • Integrating Configuring Cisco Wireless LAN Controllers WLC with ISE to perform Dot1x authentication for Wireless users.
  • Design and Implementation of 802.1x Wired/Wireless User Authentication using Cisco ISE Radius Server.
  • Performed all maintenance tasks on the Nexus Switches, ASR Routers, Checkpoint Firewalls, F5 Load balancers InfoBlox DNS and Cisco ACI.
  • Supported Infoblox appliances grid environment for DNS, DHCP and IP Address Management tools (IPv4)

Confidential, Allen TX

Network Engineer

Responsibilities:

  • Provided operational support, configuration, evaluation, incident resolution, problem management, and project management in a 24x7x365 support environment.
  • Experience with zoning, configuration and management of Brocade SAN switches, i.e.,3900/4800
  • Day-to-day support of enterprise-scale, complex network environments.
  • Utilization of data communications test equipment and network management systems (e.g., sniffers, Wire shark, Net Scout, and software-based management systems such as Open View, Sev One, Smarts, Net Brain, Net Cool, etc.)
  • Conduct Net Scaler maintenance including gateway and load balancing administration
  • In depth understanding & working knowledge on various Cisco IOS,IOS-XR, Migration experience such as IOS / IOS XE to NX OS / IOS XR
  • Experience on Network Monitoring & Testing tools such as Wire shark/Ethereal, Cisco Works, and IXIA
  • Responsible for comprehensive testing of all carrier-technologies used in the company using Wire shark IXIA and Spirent.
  • Monitored WLC, APs, Clients in Cisco Prime using heat maps to detect coverage holes, RF interferences, signal strength, conducted site-surveys
  • Experience deploying BIG-IP F5LTM, Cisco ACE and A10 Load Balancers for load balancing and Implementation traffic filters on Cisco routers using Standard, extended Access list
  • Lead network engineer on a project to build out a software defined data center based on Cisco ACI, VMware NSX and F5 load balancers.
  • Worked on implementation of load balancer configuration and VPN using the Citrix Net Scaler
  • Performed all maintenance tasks on the Nexus Switches, ASR Routers, Checkpoint Firewalls, F5 Load balancers InfoBlox DNS and Cisco ACI
  • Managed DHCP, DNS and IP address thru Info blox, and Admin for Internet sites access thru Zscaler
  • Experience with SDN/NFV technologies including Open Stack Neutron, VM ware NSX, Open flow, Open daylight, Open v Switch, Open Contrail, or Cisco ACI
  • Designed and configured Fortinet FortiGate 90D for RMV branches.
  • Experience working with Fortinet/Fortigate firewalls of different ranges from entry level Fortigate 60 series Midrange Fortigate100, 500, 900 and high level Fortigate 9000 series and mostly dealed with End-to-end security across the full attack
  • Quickly resolve complex network infrastructure during major incidents and provide technical leadership appropriately.
  • Design and provide support of Routers, Brocade Switches, Security Solutions, VPNs, L4-7 Load Balancers, SD WAN/SDI and Network Management Solutions across LAN/WAN. Field experienced with 2 major networking vendors: Cisco & Juniper. Experienced with cloud deliveredWANsolutions, specifically with Velocloud NSXSD WAN.
  • Perform technical problem resolution including analysis, trouble isolation, and repair onSDWANdevices.
  • Customer Advocate in a 24x7x365 Operation Center, supportingSDWANcustomers and all related services.
  • In corporate Cisco Nexus 9000 NX-OS to ACI fabric to work in concert with existing Nexus 7000s and ASRs for MPLS
  • Worked on configuring, swapping and upgrading Cisco catalyst switches, Nexus 7k, 5k, 2k modules. Configuring VPC, VDC, Fabricpath.
  • F5 Load Balancer, creating new VIP, upgrades the F5-BIG-IP-LTM/APM to 12.1.3.3.
  • Updated the SSL certificates on F5-BIG-IP-LTM/APM and checking the Network health and map periodically.
  • Experience working with WAN optimization devices (Silver Peak, Cisco WAAS, Riverbed)
  • Responsible in troubleshooting on Cisco ISE added new devices on network based on policies on ISE.
  • Network AMDB was used for maintain the records of the devices, so timely updating the AMDB with decommissioning or adding of the new device to the environment. Adding the SevOne tag to the devices periodically.
  • Adding configuration changes to the Juniper devices, like adding or removal of VLANs or decommissioning the ports.
  • Experienced on Cisco ISE and advanced technologies like QOS, Multicasting, MPLS and MPLS-VPN and Bluecoat proxy server SG
  • Performing URL filtering and content filtering by adding URL’s in Bluecoat Proxy S

Confidential, Cincinnati, OH

Network Engineer

Responsibilities:

  • Prompt technical support to customers on web servers, routers, VLAN switches and coordinated with software engineering teams on operational system expansion
  • Responsibly for monitoring network performance in order to maintain excellent network stability and smooth running of the network
  • Provided Layer-2/Layer-3 operational support to customers on routine, follow-ups and ongoing tickets.
  • Maximize network performance by remote monitoring, troubleshooting private network problems and collaborate with network architects on network optimization.
  • Involved in infrastructure system testing, interface testing, test analysis, integration testing, performance verification and final system validation
  • Designed, performed and implemented of LTE protocols, 802.11x wireless services, set up user authentication and certificate management.
  • Assisted the Network Administrator with ongoing preventative maintenance of workstations on the network Conducted daily backups of network files and test on a regular basis.
  • Securing device security, device firmware, digitally signed hardware/software, magnetometer tamper detection.
  • Assisted in MPLS migrations, implemented a backup for the existing WAN connection using site-to-site IPsec VPN tunnels.
  • Involved in Configuration of Access lists (ACL) on ASA firewall for the proper network routing for the B2B network connectivity.
  • Experienced in securing configurations of SSL/VPN connections, troubleshooting Cisco ASA firewalls and related network security measures.
  • Configuring static NAT, dynamic NAT, inside Global Address Overloading, TCP overload distribution, Overlapping Address Translation.

Confidential, TX.

Network Engineer

Responsibilities:

  • Implement and manage IP network devices including Routers, Switches and Hubs.
  • Set up and manage Local Area Networks and VLANs to provide seamless network access.
  • Helped organizing and implement the help desk as directed by the Director of Internal Information Systems.
  • Delivered, set-up, and provided outstanding technical support of departmental audio and video visual equipment.
  • Routing and remote access (Telnet, SSH), Network design, wiring/cabling and setting configuration of LAN with a server.
  • Performing activities related to network technology (network architectures LAN and WAN, TCP/IP, switches, hubs, routers, network protocols).
  • Set up Conference Rooms with audio visual needs, such as Front & Rear projectors, various type of microphones, Audio mixers, Video Cameras, Polycom's, DVD/VCR players, Televisions, and Gartner Data Conference Call System and outlined mobile networks and troubleshot wireless hardware and software.
  • Maintained and troubleshot connectivity issues using Ping and Trace route.

Confidential, San Jose, CA

Jr Network Engineer

Responsibilities:

  • Monitored the performance of the network devices. Performed Troubleshooting and observed directing conventions such as OSPF, EIGRP & BGP. Involved in composing investigating rules for MPLS VPN
  • Installation and configuration of the Network of Cisco Router and Switches for EIGRP and VLANs etc.
  • Worked on the Cisco switches 2950, 2960 and the Cisco routers 2500, 2600, 2800
  • Initially involved in installations, technical support, troubleshooting and maintenance of network equipment.
  • Good knowledge in Configuring Access Control List(ACL).
  • Configured VLANS on different impetus switches performed investigating on TCP/IP system issues, Administered Frame-Relay and systems.
  • Configured IPv4 VPNs using IPSec VPNs.
  • Worked on WAN and LAN infrastructure.
  • Managed system backup and restoration protocols.
  • Escalating issue to higher network teams.

We'd love your feedback!