Network Engineer Resume Profile
Minnesota, MN
Professional Summary
- Over 7 years of experience in Network Security Products and Firewalls Checkpoint, Palo Alto, Juniper
- Experience in Checkpoint IP Appliances and SPLAT Cisco ASA Firewalls
- Extensive experience in Checkpoint Firewalls split through multiple CMA's and administer using provider-1. R71 .
- Seasoned professional in Checkpoint firewall policy administration and support between various zones.
- Proficiency in managing infrastructure services, VPN, SSL, and packet switching using Checkpoint products.
Protocols | OSI, TCP/IP,DHCP, UDP, RIP v1, RIP v2, IGRP, EIGRP, TACACS , RADIUS, OSPF, BGP, SSH, TFTP, FTP, SMTP, NTP, LDAP, Active Directory, Kerberos, L2F, L2TP, PPP, Frame Relay, ATM, Sonnet, Fast/Gig Ethernet, HSRP, Token Ring, ISDN, AAA, DES, 3DES, AES, and MD5, VPN IPsec and SSL ,VRRP, HSRP, DNS BIND, DJBDNS, Infoblox , CARP, SNMP. |
Operating Systems | Windows NT/200/2003/2008/2008R2 |
Firewalls | Checkpoint NGX R65-R75 , Check Point NGX R52, R54, R61, R62, R65, R 75,Nokia IP690, Nokia IP530, Checkpoint provider 1, Checkpoint Firewall 1, SPLAT. |
Routers | Cisco 2811, Cisco 6509-E Multi-layer Switch , Cisco7200, Cisco3800, Cisco 3640, and Cisco 3745. |
Switches | Cisco Multi-layer Switch 6500, Catalyst 4500, Catalyst3750, Catalyst2900 and Catalyst 3500XL. |
LAN/WAN technologies | T1, DS3, OC3, SONNET, MPLS, DSU/CSU |
Microsoft Technologies | Terminal Services/Remote Desktop Services, Hyper-V, App-V, Active Directory and Group Policy Windows 95/98/NT/2000/XP/Vista/7 |
Networking | LAN, WAN, Frame Relay, ATM, SSL VPN Switches, Routers, Hubs, Bridges, Repeaters TCP/IP, IPX/SPX, Ethernet, Token Ring, SNMP, SNA, ICA, RDP Hardware and Software Load Balancing |
Firewall Administrator
Confidential
- Provided support for day to day global operational activities including Change Implementation, Handling Work order access Request, High Priority incident handling / troubleshooting for Security Devices Firewalls, Proxies, IPS, SSL VPN Devices
- Managing Checkpoint Firewalls: Checkpoint R65/70/75, Checkpoint CMA, Multi Domain Services Manager Provider-1 , Smart Center Management Server.
- Managing more than 300 Firewalls deployed across the site primarily Checkpoint Firewall On Nokia IPSO.
- Managing Security Policies of firewall through Checkpoint Provider-1, other tasks include license management.
- Managing web content filtering devices like Web-sense and Bluecoat.
- Handling calls related to Firewall Access and Site-to-Site, Remote Access VPN Issues. Troubleshooting various issues related to Nokia Clustering/VRRP.
- Implementing and configuring new firewalls as per the client's requirement and as per the Existing WAN Structure.
- Carrying out the Change Management tasks as per client requirement. Analysis of the existing rule base and implementing the new changes or modifying the existing firewall policies.
- Upgrading the existing Checkpoint R70 to Checkpoint R75
- Managing Crossbeam VSX Virtualized Firewalls for multiple Clients.
- Configuration and Management of Proxy Ironport S360/S650/S660/BlueCoat SG180/8100 Series/ Bluecoat Director /Websense Appliances for Web Security/Access Control and filtering policies implementation.
- Configuring/Managing Intrusion Prevention System: Checkpoint UTM.
- Configuring New Client connectivity via Site2Site/Remote/SSL VPN on Checkpoint.
- Handling On-Call responsibilities for Security Incidents/Bridges and Alarmpoint alert page.
- Troubleshooting security Threats/Attacked/Authentications issue.
- Furnishing Security threat/Attack Analysis on monthly/weekly basis.
Firewall Administrator
- Provide support for all Checkpoint and Cisco environments. Provider 1 management upgrades from R65-R75.
- Performed upgrades on all Checkpoint firewalls, and support for client services.
- Firewalls are R65 and R70 clusters. Administration of Juniper firewalls at corporate and remote locations.
- Configuration of security policies in Checkpoint.
- Reviewing creating the FW rules and monitoring the logs as per the security standards in Checkpoint and Net screen Firewalls.
- Provide support for all firewall related activities and upgrades for the Checkpoint environment from R60 to R70, R71, and R75. Support for Nokia/Checkpoint firewalls in a P-1 environment with 300 firewalls.
- Support for all migrations, upgrades, PCI and SOX audit requirements, and vulnerability assessments.
- Support for all Juniper firewalls and related environments. PCI DSS and SOX requirement and mitigation support.
- Deployment of Data loss prevention across the network Data in motion, Data in Use data at Rest servers.
- Network Access Control Implementing a secure solution to identify network devices and profiling the Network devices to allow or disallow access based on the device type
- Signature Updates Deployment on the Management Components and all the Individual IPS/IDS devices.
- Intrusion Prevention System - IDS/IPS IBM ISS IPS Implementation and Upgrade for SiteProtector.
- Designing, Planning and Engineering support for the IPS
Network engineer
- Provide guidance to Enterprise and End users with Implementation Management of Checkpoint firewall.
- Implementing Network Security for our clients across the world by remotely managing Firewalls/Routers, Creating Security Policies/Rules and NAT Policies as per the customer's requirements.
- Handling Level 2 escalations and resolve them in timely manner.
- LAN/WAN traffic analysis using Packet Sniffer tools like WireShark to understand the Packet Flow and to identify problems and performance issue.
- Configuring VPN Clients for remote users, including L2TP and PPTP clients.
- Implementing SSL VPN technology for secure access through Virtual Office or Net Extender.
- Implementing VOIP and Video Conferencing over the VPN/non-VPN using H.323 and SIP protocols.
- Implementing Wireless networks using Wi-Fi Sec/WEP/WPA and configuring VAPs, and Radio Mode standards like 802.11a/b/g/n.
- Client Anti-Virus enforcement McAfee .
- Configuring AV policies on the firewall and applying the policies on the workstations protected behind the firewall.
- Configuring and Troubleshooting Content Filtering for allowed and blocked web sites. Installing and configuring the Network Traffic Monitoring software such as Viewpoint for Scheduling and generating Reports like bandwidth usage, Web usage, Web Filter, Top users etc.
- Configuring Site-To-Site VPN between multiple SonicWall firewalls and other firewalls like Cisco Pix/ASA, NetScreen, WatchGuard and Checkpoint.
- Configuring LDAP and RADIUS based user authentication and configuring user group based Internet access.
- Solving Interoperability issues with other products like Cisco, Juniper, and Fortinet etc.
- Replicating the issues, researching on issues and provide with fixes and work-around.
Network Engineer
- Instrumental in supporting and maintenance of hardware network infrastructure for the organization
- Involve in Planning, Designing, Implementing, Configuring, Administrating, Optimizing and troubleshooting of the IT infrastructure services
- Accountable for defining new processes deployment of tools to continuously improve the Quality efficiency of team
- Network Infrastructure analyzed and required modification to be recommended and implemented as per Security Practices.
- Configuration Management Cisco routers 1751, 1841, 2600, 3745, 3800 Series and Cisco 6500, 3750, 2950, 3550 switches
- Providing technical support for 1000 plus Nortel VPN users and administration of checkpoint firewall.
- Responsible for creation of rules and object on firewall
- Monitoring and maintaining performance on Firewalls and Proxy Server.
- Accountable for controlling access to users on firewall, according to requirement and configuration of lease line of all remote branches
- Direct all facets of local area network/server administration, software installation, and TCP/IP configuration
Network Administrator
- Responsible for the network / information installation, administration, security, accountability, user account management, email administration, backup and maintenance on Windows Active Directory network that included Microsoft Exchange, file/print, web, and domain controller servers, and 300 local workstations.
- Configuration and administration of LAN/WAN environment using Cisco Routers.
- Troubleshoot and corrected network problems with switches, firewall, VPN, TCP/IP networking, DHCP, WINS, and DNS servers.
- Configure and secure VPN remote access for redundant users working from home.
- Handle troubleshooting for all hardware problems related to workstations, servers, routers, switches, printers, cabling, and phones.
- Implemented and administrated Exchange 2003 in cluster environment with Front End Server for users.
- Configured the web configuration and security for local intranet using Apache and IIS web servers.
- Configure and maintain Help Desk solution for users reporting various issues with workstations.