Sr. Network Design Engineer Resume
Chicago, IL
SUMMARY
- Around 8 years of Experience and having multiple Certifications Cisco (CCNA&CCNP) Experience with in designing, architecting, deploying and troubleshooting Network & Security infrastructure on routers, switches (L2/L3) & firewalls of various vendor equipment.
- Experience in design, development, implementation, troubleshooting and maintenance of complex Network & Security devices, Network Security, Linux Kernel Programming.
- Expertise in network protocols, Firewalls and Communication Network design.
- Experience with Troubleshooting tools for example protocol analyzers, load generators & network traces
- Working knowledge of frame relay, MPLS services, OSPF, BGP and EIGRP routing protocols, Netting, sub - netting, also including DNS, WINS, LDAP, DHCP, http, HTML, HTTPS, TCP/IP, UDP, SNMP, OSPF, RIP, IPSEC, PPTP, VLAN, STP (Spanning tree Protocol), RTSP & Multicasting protocols
- Corporate trainer for certification like CCNA, CCNP, Hardware & Networking.
- Designing, Implementing and Troubleshooting Cisco 3750, 3550, 3560, 2924, 6509-V-E, 6513, 6504, 6503, 6506, 6500 series switches
- Extensive work experience with Cisco Routers, Cisco Switches, Load Balancers and Firewalls.
- Experience in layer-3 Routing and layer-2 Switching. Dealt with Nexus models like 7K, 5K, 2Kseries, Cisco router models like 7200, 3800, 3600, 2800, 2600, 2500, 1800 series and Cisco catalyst 6500, 4500, 3750, 3500, 2900 series switches
- Expertise in installing, configuring, and troubleshooting of Cisco Routers (3800, 3600, 2800, 2600, 1800, 1700, 800)
- Responsible for Checkpoint firewall management and operations across our global networks.
- Working with Checkpoint Support for resolving escalated issues.
- Design and configuring of OSPF, BGP on Juniper Routers (MX960, MX480) and SRX Firewalls (SRX240, SRX550)
- Expertise in configuration of routing protocols and deployment of OSPF, EIGRP, BGP and policy routing over Cisco routers.
- Experience with design and deployment of MPLS Layer 3 VPN, MPLS Traffic Engineering, MPLSQOS
- Experience in adding Rules and Monitoring Checkpoint Firewall traffic through Smart Dashboard and Smart View Tracker applications.
- Configured Client-to-Site VPN using SSL Client on Cisco ASA 5520 ver8.2
- Configured ASA 5520 Firewall to support Cisco VPN Client on Windows 7/XP/Vista.
- Installation, advanced configuration and troubleshooting of Cisco and F5's load balancing devices.
- Experience with designing, deploying and troubleshooting LAN, WAN, Frame-Relay, Ether-channel, IP Routing Protocols - (RIPV2, OSPF, EIGRP & BGP), ACL's, NAT, VLAN, STP, VTP Implemented redundancy with HSRP, VRRP, GLBP, Ether channel technology (LACP, PAgP) etc.
- Strong hands on experience on PIX Firewalls, ASA (5540/5550) Firewalls. Implemented Security Policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA(TACACS+ & RADIUS)
- Experience working with Cisco IOS-XR on the ASR9000 devices for MPLS deployments
- Knowledge in implementing and configuring F5 Big-IP LTM-6400 load balancers.
- Efficient designing of IP Addressing Scenario using VLSM and Sub netting.
- Configured Security policies including NAT, PAT, VPN's and Access Control Lists.
- Extensive experience using Microsoft suite like Word, Visio, Excel, PowerPoint
- Excellent technical and project management skills combined with strong communication skills
- Worked on Load Balancer F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability
- Network Security - Anomaly Detection in Attack Prevention System, Network and Host IPS/IDS, Cisco PIX firewall, Vulnerability scanning, Penetration testing, Buffer Overflows, Cross Site Scripting,
- Security consultant for Confidential, India and Confidential Pvt. Ltd and many more, involving web application testing, Penetration testing, Session Management
TECHNICAL SKILLS
Cisco Platforms: Nexus 7K, 5K, 2K & 1K, Cisco routers (7600,7200, 3900, 3600, 2800, 2600, 2500, 1800 series) & Cisco Catalyst switches (6500, 4900, 3750, 3500, 4500, 2900 series)
Juniper Platforms: SRX, MX, EX Series Routers and Switches
Networking Concepts: Access-lists, Routing, Switching, Subletting, Designing, CSU/DSU, IPSec, VLAN, VPN, WEP, WAP, MPLS, VoIP, Bluetooth, Wi-Fi
Firewall: PIX Firewall (506/515/525/535 ), ASA Firewall (5505/5510)
Network Tools: Solar Winds, SNMP, Cisco Works, Wireshark
Load Balancers: A10 Networks(AX2500),Cisco CSM, F5 Networks (Big-IP)
WAN technologies: Frame Relay, ISDN, ATM, MPLS, leased lines & exposure to PPP, DS1,DS3,OC3, T1 /T3 & SONET
LAN technologies: Ethernet, Fast Ethernet, Gigabit Ethernet, & 10 Gigabit Ethernet, Port- channel, VLANS, VTP, STP, RSTP, 802.1Q
Security Protocols: IKE, IPSEC, SSL-VPN
Networking Protocols: RIP, OSPF, EIGRP, BGP, STP, RSTP, VLANs, VTP, PAGP, LACP, MPLS, HSRP, VRRP, GLBP, TACACS+, Radius, AAA
Languages: Perl, C, C++, SQL, HTML/DHTML
Network Management: Wire shark, SNMP, Solar winds
AAA Architecture: TACACS+, RADIUS, Cisco ACS.
Operating System: Windows 7/XP, MAC OS X, Windows Server 2008/2003, Linux, Unix
PROFESSIONAL EXPERIENCE
Confidential, Chicago, IL
Sr. Network Design Engineer
Responsibilities:
- Responsible for designing and implementation of customer's network and Security infrastructure.
- Involved in complete LAN, WAN, Extranet redesign (including IP address planning, designing, installation, pre configuration of network equipment, testing, and maintenance) in both Campus and Branch networks
- Worked with convert Checkpoint VPN rules over to the Cisco ASA solution. Migration with both Checkpoint and Cisco ASA VPN experience. Experience working with ASR 9006 with IOS-XR
- Experience with converting Cisco 6500 IOS to Cisco Nexus NX-OS in the data center environment.
- Experience working with Nexus 7010, 5020, 2148, 2248 devices
- Deploying and decommission of VLANs on core ASR 9K, Nexus 7K, 5K and its downstream devices.
- Configured CIDR IP RIP, PPP, BGP, MPLS and OSPF routing.
- Deploying and decommissioning Cisco switches and their respective software upgrades.
- Performing troubleshooting on slow network connectivity issues, routing issues that involves OSPF, BGP and identifying the root cause of the issues
- Experience with network based F5 Load balancers with software module GTM & Checkpoint
- Experience configuring VPC, VDC and ISSU Software upgrades on Cisco Nexus 7010
- Experience in Configuring, upgrading and verifying the NX-OS operation system
- Responsible for Cisco ASA firewall administration across our networks
- Support customer with the configuration and maintenance of ASA firewall systems
- Design, and configuring of OSPF, BGP on Juniper Routers and SRX Firewalls.
- Configuring IPSEC VPN on SRX series firewalls
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
- Provided Load Balancing towards access layer from core layer using F5 Network Load Balancers.
- Experience working with BGP attributes such as Weight, Local-Preference, MED and AS-PATH to influence inbound and out bound traffic
- Involved in Switching Technology Administration including creating and managing VLANs, Port security, Trunking, STP, InterVlan routing and LAN security.
- Use and maintain routing protocols EIGRP, OSPF and BGP on the Routers in the network & also worked on BGP Route Reflectors, Confederations
- Experience with working on Juniper Devices like, M320 and MX80, MX960, MX480, I worked on configuring OSPF BGP and routing Policies.
- Supporting EIGRP and BGP based on the network by resolving level 2 & 3 problems of internal teams & external customers of all locations
- Troubleshoot the Network Issues onsite and remotely depending on the severity of the issues.
- Provided proactive threat defense with ASA that stops attacks before they spread through the network.
- Experience and having multiple Certifications Cisco (CCNA&CCNP), Juniper (JNCIA) and Experience with in designing, architecting, deploying and troubleshooting Network & Security infrastructure on routers, switches (L2/L3) & firewalls of various vendor equipment.
- Extensive work experience with Cisco Routers, Cisco Switches, Load Balancers and Firewalls.
- Expertise in installing, configuring, and troubleshooting of Cisco Routers (3800, 3600, 2800, 2600, 1800, 1700, 800)
- Design and configuring of OSPF, BGP on Juniper Routers (MX960, MX480) and SRX Firewalls(SRX240, SRX550)
- Expertise in configuration of routing protocols and deployment of OSPF, EIGRP, BGP and policy routing over Cisco routers.
- Experience with design and deployment of MPLS Layer 3 VPN, MPLS Traffic Engineering, MPLSQOS
- Experience in adding Rules and Monitoring Checkpoint Firewall traffic through Smart Dashboard and Smart View Tracker applications.
- Configured Client-to-Site VPN using SSL Client on Cisco ASA 5520 ver8.2
- Configured ASA 5520 Firewall to support Cisco VPN Client on Windows 7/XP/Vista.
- Installation, advanced configuration and troubleshooting of Cisco and F5's load balancing devices.
- Configuring Virtual Chassis for Juniper switches EX-4200, Firewalls SRX-210
- Configuring ASA Firewall and accept/reject rules for network traffic.
Environment: Cisco ASR 1001/ISR 7206/3845/3945/2951 routers, NEXUS 7010,5020, 2248/6500/4500/3750/3850 switches, TACACS, BGP, OSPF, Mobile Iron, Cisco ASA 5580/5505/5520 , VMware NSX Edges, Cisco ACE, Secureauth, Infoblox, Cisco Cloud Web Security, Cisco MDS.
Confidential, Austin, TX
Sr. Network Engineer
Responsibilities:
- Experience with Supporting bothNetworkand Security infrastructure in data center environment and Campus environment, which involved with devices such as routers, switches, firewalls and wireless access points.
- Experience with moving data center from one location to another location, from Cisco 6500 based data center to both Cisco 6500 & Nexus based data center.
- Strong hands on experience on ASA (5505/5510) Firewalls. Implemented security policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA(TACACS+ & RADIUS)
- Involved in setting up IP sec VPN between ASA firewalls.
- Experience with implementing Cisco 6500 VSS on the User distribution switches.
- Upgraded IOS on the ASA 5520 firewalls
- Working with MPLS Designs from the PE to CE and also configuring VRF on PE routers
- Experience with designing and deployment of MPLS Traffic Engineering
- Configuring RIP, OSPF, EIGRP BGP, MPLS, QOS, ATM and Frame Relay.
- Involved in design and implementation of Data Center Migration, worked on implementation
- Strategies for the expansion of the MPLS VPNnetworks
- Working Knowledge of Cisco IOS, Cisco IOS-XR, Cisco Cat OS, Cisco NX-OS, JUNOS
- Experience with configuring BGP in the data center and also using BGP as a WAN protocol and manipulating BGP attributes
- Design and deployment of MPLS QOS, MPLS Multicasting per company standards.
- Implemented site to site VPN in Juniper SRX as per customer.
- Implemented various EX, SRX & J series Juniper devices.
- Experience with deploying Fabric Path using Nexus 7000 Devices
- Experience with configuring VPC, VDC and OTV between the data centers as a layer 2 extension. Responsible for Checkpoint firewall management and operations across our global networks.
- Working with Checkpoint Support for resolving escalated issues.
- Experience with configuring FCOE using Cisco Nexus 5548.
- Installed controller and light weight access point coordination with TAC.
- Maintenance and trouble-shooting of LAN, WAN, IP Routing, Multilayer Switching.
- Performing onsite data center support including monitoring electrical power, switch alarms,network alerts and access logs.
- Configuring RIP, OSPF and Static routing on Juniper M and MX series Routers
- Configuring VLAN, Spanning tree, VSTP, SNMP on EX series switches
- Dealt with monitoring tools like (Solar Winds, Cisco Works),networkpacket capture tools like Wire shark
- Maintaining Checkpoint security policies including NAT, VPN and Secure Remote access\Maintained aNetworkwith more than 600Networkdevices, some 25,000 end hosts, and the other Networkdevices like DHCP, DNS servers, Firewall servers.
- Co-ordination with Hardware vendors, software vendors and service Providers.
- Assisted in backup, restoring and upgrading the Router and switch IOS.
- Attended Team meetings and provided comments on existingnetworkand the recommendations to improve the currentnetworkPerformance.
- Maintaining the health of 250+ wireless Access points in two locations.
Environment: Cisco 7206/3845/3945/2951 routers, NEXUS 7010,5672UP, 2248/6500/4500/3750/3850 switches TACACS, EIGRP, OSPF, and Vulnerability Assessment tools like Nessus, Red Hat, Solaris, VPN’s, and SSL.
Confidential, Farmington Hills, MI
Network Engineer
Responsibilities:
- Configuration and Administration of Cisco and Juniper Routers and Switches.
- Administration and diagnostics of LAN and WAN with in-depth knowledge of TCP/IP, NAT, PPP, ISDN and associatesnetworkprotocols and services.
- Involved in design and implementation of Data Center Migration, worked on implementation strategies for the expansion of the MPLS VPNnetworks
- Router/ Microsoft VPN Server in order to access certain limitednetworkresources from customer locations
- Installed and configured four PIX 525 and two ASA 5505 in customer locations. In addition to that, configured two PIX firewall for the Guest access
- Experience in migration of Frame-relay based branches to MPLS based technology using multilayer stackable switch like 6500 series and 2800 series router
- Configuring VLANs and implementing inter VLAN routing.
- Testing E911, voicemail, Media gateways.
- Upgrading and troubleshooting Cisco IOS to the Cisco Switches and routers.
- Configuring Site to Site to VPN connectivity.
- Implementation of HSRP, IPsec, Static Route, IPSEC over GRE, Dynamic routing, DHCP, DNS, FTP.TFTP, RAS
- Worked with convert Checkpoint VPN rules over to the Cisco ASA solution. Migration with both Checkpoint and Cisco ASA VPN experience. Involved in configuring Cisco Net flow fornetworkperformance and monitoring.
- Involved in designing and implementation of wireless IPT devices.
- Involved in Disaster recovery, like diverting the from one data center to different data center when disaster occurs.
- Involved in configuration of Cisco 6500 ACE switches
- Configuring IPSLA monitor to track the different IP route when disaster occurs.
- Involved in Implementing, planning and preparing disaster recovery.
- Having meetings with the application group and gathering requirements for disaster recovery.
- Involved in configuring Juniper SSG-140.
- Involved in smart view tracker to check the firewall traffic.
- Troubleshooting hardware andnetworkrelated problems.
Environment: Cisco 3750/3550/3500/2960 switches and Cisco 3640/ 00/3845/3600/2800 routers, Cisco ASA5510, Checkpoint, Palo Alto, Cisco Nexus7K/5K, 2248/3560/5020/6509 , ASA, Checkpoint, LAN, OSPF, BGP, RIP, EIGRP
Confidential
Network Engineer
Responsibilities:
- Work on different connection medium like Fiber and Copper Connectivity.
- In-depth expertise in the implementation of analysis, optimization, troubleshooting and documentation of LAN/WAN networking systems.
- Configured and troubleshoot OSPF and EIGRP.
- WAN Infrastructure running OSPF & BGP as core routing protocol.
- Support various Routers like 2600/3600/7200 series routers.
- Tested authentication in OSPF and BGP.
- Responsible for implementation of customernetworkinfrastructure
- Configured and troubleshoot OSPF and EIGRP.
- Planning and configuring the routing protocols such as OSPF, RIP, and Static Routing on the routers.
- Involved in Configuration of Access lists (ACL) on checkpoint firewall for the proper network routing for the B2B network connectivity.
- Experience in installing and configuring Checkpoint NGX R60.
- WAN Infrastructure running OSPF & BGP as core routing protocol.
- Support various routers like 2600/3600/7200 series routers.
- Tested authentication in OSPF and BGP.
- Responsible for Configuring SITE TO SITE VPN on VPN Concentrators series between Head office and Branch office
- Installation & configuration of Cisco VPN concentrator 3060 for VPN tunnel with Cisco VPN hardware & software client and PIX firewall
- Configured Firewall logging, DMZs& related security policies& monitoring
- Worked on Cisco Layer 2 switches (spanning tree, VLAN).
- Hands on experience working with security issue like applying ACL's, configuring NAT and VPN
- Configured and troubleshoot OSPF and EIGRP.
- Planning and configuring the routing protocols such as OSPF, RIP, and Static Routing on the routers.
- WAN Infrastructure running OSPF & BGP as core routing protocol.
- Support various routers like 2600/3600/7200 series routers.
- Tested authentication in OSPF and BGP.
- Responsible for Configuring SITE TO SITE VPN on VPN Concentrators series between Head office and Branch office
- Installation & configuration of Cisco VPN concentrator 3060 for VPN tunnel with Cisco VPN hardware & software client and PIX firewall
- Configured Firewall logging, DMZs& related security policies& monitoring
- Worked on Cisco Layer 2 switches (spanning tree, VLAN).
Environment: Cisco 7200/3845/3600/2800 routers, TACACS, EIGRP, RIP, OSPF, BGP, VPN, Ether Channels, Fluke and Sniffer.
Confidential
LAN Administrator
Responsibilities:
- Responsible for support of two computer labs, containing IBM client/server machines.
- Heavy hardware troubleshooting for PCs: installed, repaired, and replaced CPUs, mother boards, memory, video cards, network cards, SCSI cards, printers, monitors, floppy, CD ROM and hard drives.
- Daily duties include preventive maintenance, installation of various Software, assist students with applications on computer network, troubleshoot problems with installations, and network all machines throughout the campus Achievements
- Reduced the cost of installing new equipment’s by identifying the effective solutions from right vendors by 10%.
Environment: s: Network Design, VLSM, Subnetting, Troubleshooting of LAN & WAN Administrator, Configuration of router using Static & Dynamic routing.
