Network Security Engineer/architect Resume
Denver, ColoradO
Objective
- Seeking a Confidential position in the network/security field, in which our knowledge in computer/networking can be utilized to the maximum and to provide managed services for companies.
TECHNICAL SKILLS
Software experience: Windows versions, LINUX, PKI, TCP/IP, VISIO, Microsoft Office suite, Microsoft Project, Checkpoint application, Secure Computing Smart filter/reporter, Nessus, Web Intelligence, McAfee EPO, Radius, TACACS, RSA Two Factor Authentication and Adobe
Hardware experience: Cisco Routers, Switches, Wireless, Checkpoint firewalls, Cisco ASA, Avaya, Netscreen, Neoteris SSL VPN, Crossbeam, Checkpoint IPS,Logrhythm Tipping Point IPS, Checkpoint Mobile Access Blade, Nokia, Bluecoat, McAfee Stonesoft IPS/Firewall, Palo Alto Firewall and Aruba
PROFESSIONAL EXPERIENCE
Confidential
Network Security Engineer/Architect
Responsibilities:
- Determines security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates.
- Verifies security systems by developing and implementing test scripts.
- Maintains security by monitoring and ensuring compliance to standards, policies, and procedures; conducting incident response analyses; developing and conducting training programs.
- Upgrades security systems by monitoring security environment; identifying security gaps; evaluating and implementing enhancements.
- Prepares system security reports by collecting, analyzing, and summarizing data and trends.
- Enhances department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to job accomplishments
- Install, Configure, Deploy and administer Checkpoint firewall using R77 and GAIA version.
- Administer Palo Alto Firewalls and troubleshoot application and network related problems.
- Perform vulnerability scanning using Nessus application.
- Install, configure, deploy and administer Cisco ASA firewalls.
Confidential, Denver Colorado
Network Security Engineer/ Architect
Responsibilities:
- Implementing operation security, network security, application security, system security and disaster recovery plan.
- Preparation of FRCR for project implementation.
- Review ISR and implement project based on ISR requirement
- Installation and configuration of Crossbeam C6, C10, C30, X40, X45 and X80 series platform.
- Installation and Configuration of Checkpoint SPLAT
- Deploying CISCO ANYCONNECT and SSL Clientless VPN
- Configure and deploy CISCO ASA 5505, 5510, 5525,5545 and 5585 platforms
- Configuring chassis redundancy on Crossbeam C series and X series model with installation of Checkpoint.
- Design firewall infrastructure implementation
- Provides technical advice and assistance in the administration, installation, relocation and operation of LAN/WANs.
- Interacts with the managers, client and technical support personnel locally and remotely.
- Travels extensively to support and sustain field operation.
- Makes recommendation on purchasing of new products and works with vendor.
- Design networks and provides technical expertise and oversight during the implementation phase.
- Develops technical standards, identifies and resolves security risks.
- Participate in the preparation of technical proposals and presents studies and briefings to customers.
- Resolve network problems and provides guidance to other network analyst.
- Plans and evaluate complex networks and conducts site survey.
- Configure and Install Bluecoat Proxy for Content/URL filtering
Confidential
LAN AND WAN DESIGN/ARCHITECT
Responsibilities:
- Design various network using VISIO software for documentation and implementing the proposal after approval.
- Configured Border Gateway Protocol, OSPF and EIGRP
- Redesigned a network by using private addressing for internal network to shield, negotiate with vendor and purchased the equipment used to implement the design
- Set up Peer - to-Peer tunnel between the branch office and the head office to connect in a secure way.
- Documents architecture design, data network drawing and asset management for a financial institution.
- Upgrading CISCO IOS, CatOS and PIX Software on switches, routers and firewalls.
- Ensure that the software running on data equipment is reviewed quarterly for bugs and standardization for high uptime.
- Organize quarterly vendor briefing on products updates and releases.
- Design a disaster recovery plan for a telecommunication and financial companies for business continuity.
- Perform regular failover testing and ensure high network performance for a call center with 2000 agents.
- Implement Intrusion detection and Prevention technology for a Banking institution to complement network security.
- Design and implement the following network monitoring tool: NETFLOW, NMIS, HPOV, Netscout and Site Management for Wireless Network, Eventia and CISCO DFM.
- Perform network capacity planning and recommend hardware procurement.
- Implement and support VOIP infrastructure for over 10,000 users globally.
- Design and build Network Data Center with geographical redundancy
- Design and implement wireless network using CISCO 4400 WLAN Controller and 1200 series Access Points.
- Installation and configuration of Windows NT Servers for PDC, BDC, E mail, File and Applications.
- Installed and configured CISCO routers series for WAN connectivity using Frame Relay, ISDN, VPN, DS3, OC3, ATM, MPLS and T1.
- Configure and troubleshoot VLANs issues on the switch, setting up of trunk ports and uplinks using GBIC and fiber cable.
- Design and implement site build using CISCO 6509, routers and Access switches
- Implement Single Router Module (SRM) technology on the switching/MSFC environment
- Implement DHCP on the MSFC
- Implementing switch clusters with catalyst 3548 models and upgrading of software.
- Set up STP, Portfast and install switch modular cards into catalyst 6509 with necessary configuration.
- Turn up ports on the switch and setting up redundancy using HSRP on layer 3 for Failover.
- Troubleshoot different LAN related problems arising from the users and network equipment.
- Installation and configuration of router series with setting up of LAN and WAN connectivity.
- Installation and configuration of router series with setting up of LAN and WAN connectivity.
- Configure and troubleshoot different routing protocols (RIP, IGRP, EIGRP, OSPF, BGP, MPLS etc) and upgrading of IOS on the router.
- Implement HSRP on the router for redundancy and continuity, set up access list to permit or deny connections.
- Configure and troubleshoot Frame Relay, ATM, DS3, MPLS T1, ISDN, OC3 and interfaces on the routers and among others.
- Installing and configuring local directors for load balancing between farm of servers and speed up performance
Confidential
WIRELESS/VOIP
Responsibilities:
- Design wireless call center using Airespace with WPA2/TKIP and AES encryption.
- Deploying Cisco Wireless network using WPA2 enterprise/802.1x authentication and integrating it into Radius for 1500 users.
- Deploy Cisco Wireless using Wireless LAN Controller (WLC) and implement remote wireless solutions to be centrally managed with WLC.
- Install and configure CISCO Aironet wireless.
- Design and implement VOIP architecture using Avaya product over VOIP
- Design and implement IP trunking for Voice over date network.
- Implement CISCO WLAN 4400 series controller with redundancy.
- Implement radius authentication with wireless network.
- Implement Avaya IP agent software for a banking institution call center for VOIP.
- Responsible for configuration, administration and upgrade of PBX (Avaya G3R) and WAN Switch (Nortel Passport 7480).
- Configured new E1s/T1s for voice connectivity between Avaya G3R and Nortel Passport 7480.
- Resolving problem related to hardware (routers, bridges, switches, firewalls and hub) and software.
- Provide the first hand technical support and troubleshoot the complex technologies and software programs used by the company.
- Resolve network problems and monitor LAN/WAN using Spectrum software.
- Design network diagrams using software and make presentation to both client and team.
- Installation of APC UPS 5000T for back up power supply.
- Provide software installation and troubleshoot Windows 95, 98, NT and 2000.
- Installation and configuration of Windows NT Servers for PDC,BDC, E mail, File and Applications
- Maintain good customer relationship and provides prompt services.
- Monitoring of the network using HP Openview, Netscout, NMIS and Attention Paging system.
- Providing security and network review for clients.
