Sr. Network Design Engineer Resume Profile
West Hartford, CT
PROFESSIONAL EXPERIENCE:
Sr. Network Design Engineer
- Lead Network Design Engineer with responsibilities of : Design, change, and maintain solutions for scalability, reliability, and redundancy of the Layer 2 3 network infrastructures which includes: Maintaining/updating network documentation for related changes. Investigate and troubleshoot network interruptions providing root cause analysis and mitigation recommendations. Manage firewall software/hardware/Rules configurations. CiscoASA 5510, 5520, ASA5545-X IPsec and Site-to-Site VPN deployments.
- Utilize Cisco Catalyst 6506, 6506-E, 6509, 3560's , 3750's , 3850's Cisco 3845's and 3945's routers.
- Routing Protocol: BGP, OSPF
- Network tools: Whatups Gold, Cattools, Conceptdraw Pro, and Cacti.
- Capacity management of clients hosted infrastructure at both Thing5 Data Centers accounting for growth in service delivery and corporate projected growth in client intake and increasing in networktraffic. Review of existing network equipments for end-of-life status and to determine need for present and future needs.
Sr. Network Architect Consultant
Member of the Network Architecture and Engineering Team as the resource for the SAW Migration Project and the design and implementation of the new corp Management Network infrastructure. The SAW Migration Project entails the verification of 15 Security Group DMZ Sites topology and diagrams for transition to the Network Services and Support Group for operation management. The new Management Network I have designed will emcompose layer 3 routing at the distribution layer with access to the internet from the ESPN L2/L3 Nexus 7010 Edge. The layer 3 routing entails a new Management Network VRF with 15 new VLANs segmented for the 15 Campus buildings. Network Components Utilize: Cisco 6509-E's, 3750's, 3560-24's, Cisco 3560-48, Cisco Nexus 3064, Nexus 5500, Nexus 7010, Force10 c150, force10 c300, force10 4810, force10 c25n, force10 s25p, Palo Alto 4060, Palo Alto 2050, Palo alto 5060, Lantronic Console Servers, and Cisco ASR 9001.
Network Architect Consultant
Confidential
- Documenting network topology and inventory to allow for efficient management of the Simsbury, CT site.
- Decommission Cisco Catalyst 3550 network switches.
- Configure VTP mode client on catalyst 2960's to enable VLANs traffic from core Catalyst 6506s.
- Configure Cisco Catalyst 6500's DTP to allow traffic between the new Cisco 2960's and the core 6500's backbone.
- Install 34 Cisco 2960 Catalyst switches to replace Cisco 3550 switches that are end of life.
- Consult as the lead network engineer to manage and deploy projects scheduled for immediate implementation by corporate IT. Projects completed and network services conducted are: A. West Hartford test bed for introducing WAN Aggregation switches to remove Riverbed multi-pass traffic flow and replace 6509's core routing with 3750E switch stacks and design new VLANs to user community which will eliminate broadcast storms and isolate the server farm from the users. B. West Hartford DMVPN Cisco 3825 router upgrade to a Cisco 3945 to resolve a high CPU utilization. C. Campo Largo, Brazil Riverbed deployment to provide for WAN optimization at remote site. D. Legrand NA Circuit Upgrades bandwidth upgrade to critical US sites. E. Administration of all North South LAN and WAN infrastructures including Cisco Nexus 5548 switches. America Network components utilize : Cisco 3945, 3825, 3825, 2811, 2621, 1841, 6509-E and Catalyst 6509E, 3750E, 3560, Riverbed Steelhead 1050, 1020, 5050L, Nexus 5548's, Solarwind Orion, BMC Remedy Request System, and IBM Lotus Notes 8.5. Projects implemented:
- Switches with 1000Mbps SC to LC fiber conectivity in 7 data closets. The scope of the project entails:
- Technical network lead consultant with responsibility of troubleshooting, and implementing existing and new equipment to optimize network and security systems. Provide Cisco infrastructure expertise, direction, troubleshooting and assistance to Back Office Systems Administrators as it relates to networking. Work closely with Aspen Senior Security Analyst on security patches and monitoring of security devices. Oversee outsourced Network monitoring vendor. Manage vendors' onsite resource on open projects and Work with vendor on open tickets, troubleshooting device failures and schedule onsite engineering resources. Update network diagrams and keep updated list of contracts, circuit numbers, and technical contact numbers. Perform daily network administration, integration, and troubleshooting tasks to corporate backbone, local, and global remote infrastructure components: Cisco Routers 2621, 2811, 2821, 3825, 3845, 3745, Catalyst Switches 6509-E, 3750, 2950, 3550, 3750G, ASA5505, ASA5510, ASA5540, PIX525, Wireless LAN Controller AIR-WLC4402, Wireless Access Point WAP 1231G.
Confidential
Performed the duties of the lead integration and implementation engineer for the WV Broadband initiatives Program. This Federal funded Broadband Technology Opportunities Program BTOP provides a West Virginia statewide middle miles network that extends broadband services across the state by leveraging existing infrastructure to build a middle mile network using Switch Ethernet Services SES over Microwave and Fiber technology. The proposed network will provide a backbone to community anchors, including: schools, libraries, hospitals, public safety agencies and jails. Initial staging completed includes: Design and configuration of Cisco 3945's which is the standard platform providing fiber connectivity to the 1064 locations identified as unserved and underserved rural sites. Deployment of the CiscoWorks 3.2 LMS which will enable monitoring, configuration, and IOS upgrade of the 3945's. Implemented and tested an automation process using CiscoWorks Netconfig for upgrading the image of the 3945's Network Analysis Module Card NAM if it is corrupted.
Confidential
Confidential 515E firewall perimeter devices with a Cisco Adaptive Security Appliance ASA 5540 series. The planning and implementation includes additional tasks as outlined below: Optimize on a best effort basis the Cisco ASA device replacement for rules that reflect client's current external and Internet connection needs. Examine moving PIX 515E external connection Virtual Private Network VPN capabilities, currently handled by a Cisco VPN 3000 series concentrator to the new Cisco ASA 5540 device. Plan for decommission of the Cisco VPN 3000 series concentrator, where feasible. Plan and implement the planned replacement of the Cisco PIX 515E perimeter firewalls into the internal AS400 Mainframe environment to replace the current Small Office / Home Office SOHO firewall in front of the mainframe environment.
Confidential
- Administrator of Firewall Rules for the Great West Life Annuity Migration Project.
- Cigna IT Operations Firewall Lead with responsibility of designing, processing and follow-up on stateful firewall rules requests from IT Project Managers. Provide guidelines as to specific platform responsibilities so that firewall requests are routed to the right PM. Firewall infrastructure consist of Cisco PIX 500 series and Cisco ASA 5500's Series. Daily Operations Processes are: Managing of daily Firewall Status meeting, Creation of firewall rules per request, Management of the Cigna Great West-Cigna Firewall rules Spreadsheets, Managing of the Monday Cigna-Great West new request review meeting, Managing escalation request for expediting implementation of new firewall requests,
- Remediation of firewall rules and Cigna Information Technology Operations Standards, Adhering to the Cigna Information Protection and Great West Life Annuity Firewall rules. Liasion with vendors to determine actual date of firewall implementation. Coordinate all gathering relating to firewall implementation issues.
Confidential
Consulting as a point of contact for the Core Services Division of Court Square Data Group, Inc., with responsibilities of client integration, remote sites migration, implementation and support, network and security infrastructure management and monitoring. Cisco Equipments manage entails: Cisco 6509, Cisco 3750 Metro, Cisco 2610XM, Cisco 2811 VG, Cisco 2950's, Cisco 2960's Cisco 4507R's, Cisco 7920. IP Phones Cisco 7941, 7920, 7960, Cisco Access Point 1200, Cisco PIX 506E, 515E, Cisco ASA 5505, 5510, Cisco IP Conference System 7936, Cisco 2621XM, Cisco 3350-12T, Cisco 3825. Network and Security Tools utilize: eEye Retina Network Security Scanner, Cisco MARS, Cisco CSA, CiscoSecure ACS, Cisco Intellishield Alert Manager, Cisco IPS 4200 Series Sensors, Solarwinds Orion, Solarwinds Engineers Edition, Kiwi CatTools Manager, Service-now Management Suite, Orion Network Performance Monitor. Cisco Security and Network Operations Tasks include: Key Tasks: Cisco IDS/IPS Signature Updates, Cisco MARS Signature Updates, Network Compliance Remediation Services, MARS Hourly Report Review IDS/IPS/Network Logging , Cisco MARS Daily Report Review issued at approximately 12:00 am for previous day's activity , IntelliShield Daily Virus Report Distribution, Network Compliance Reports for 1st Day of the Month Sec Ops VM, System Compliance Reports 1st Day of the Month, Standard MS Monthly Reports 1st Day of the Month Microsoft Vulnerability Assessments Wednesday after Microsoft's Big Patch Tuesday , Microsoft Vulnerability Assessments/Remediation Wednesday following original Microsoft, Monthly CSDG-COLO Intrusion Detection Reports.
Confidential
Member of a team of six EDS Network Engineers responsible for the Architecture Management, Design, Administration and Support of the Boston Scientific Local and Wide Area infrastructure. Network Architecture include Cisco 7206VXR, 7204, 3810, 2811, 2621, VPN 3030, Cisco 3725, Cisco PowerPC405 , CSS11800, CSS11503, 6509-E, 6506, 6509, 6513, 3750, 3548, and 3550. Support of 5 hub sites comprising of MPLS international sites. Resolving network related issues managed through the Magic Ticketing System. IOS Standardization of networks node utilizing the CiscoWorks Management System Platform. Integration of new corporate acquisition to BSC network environment. Support of Application System Administrator with deployment of Server farm addition. Manage of 4 Data Centers cabling, and L2/L3 routing and switching configurations. Configuration of VLANs and IP Address management. Testing of WAN circuit for reliability of redundacies