Core Team Member Resume
0/5 (Submit Your Rating)
San Antonio, TX
SUMMARY:
- Network Security Engineer with 3 plus years of impressive hands on experience in planning, designing, implementing, troubleshooting and optimization of network technologies pertaining to - Firewalls on Cisco ASA 5500’s, 5500-X series, Juniper SRX’s, Application Networking & Load Balancing on BIGIP LTM/GTM 1600, 3600, 3900, 8900, 6900/6900S, 8900/8950S, 2000S, 2200S, 5200S, 7000S, Cisco CSS, Brocade ServerIron ADX platforms, Routing & Switching on Cisco/Nexus & Juniper platforms in a 24*7 high pressure support/implementation assignments. Excellent written and verbal communication skills with the ability to perform well alone or within a group, punctual, organized, detail oriented individual with a desire to learn and succeed.
- Installing & configuring Firewalls - Cisco ASA 5500’s, 5500-X’s, Cisco PIX, Juniper SRX.
- Planning, designing & implementing VPN solutions - IPSec S2S, Hub-Spoke, Hair-Pin, SLA, IPSec Remote Access, SSL VPN, GRE Tunnels, VPN based on PKI infrastructure.
- Planning and designing of corporate Firewalls architecture and implementing in distributed environment.
- Maintaining Corporate Firewalls & Analysis of firewall logs.
- PCI compliant security implementations on the firewalls and perimeter devices
- Verifying & configuring the rule-sets on firewalls. (Firewall Change Request processing).
- Implementation of NAT, Policy NAT, Policy PAT, Twice NAT, Manual, after-auto NAT features.
- Configuration of Modular Policy Framework solutions on ASA firewalls.
- Configuring bandwidth allocations (QOS) in Checkpoint Firewalls.
- Implement security policies using ACL, PIX firewall (515, 520), ASA & Routers.
- Upgrading ASA to next-gen ASA-X series with minimal downtime.
- Performing vulnerability assessment for enterprise networks.
- (DRP) Disaster Recovery Planning.
- Installing & configuring standalone and HA pair Load-Balancers - BIGIP-LTM/GTM’s on 1600, 3600, 3900, 8900, 6900/6900S, 8900/8950S, 2000S, 2200S, 5200S, 7000S, Cisco CSS, Cisco ACE, Brocade ADX
- Configured custom solutions involving SMTP alerts, Universal Persistence profiles, Route Domains, SNI Client SSL profiles using SAN certs, L2/L3/L4 VIP’s serving the customer’s requirements.
- Configuring & management of complex iRules to meet customer’s application networking needs
- Custom SMTP alerts sent to customer via email for notifications, warnings, alerts and errors.
- Upgrade BIGIP code from v9tov10 & v10tov11 on 1600/3900’s to 2200/5200’s platforms.
- SSL offloading implementations on both clientside/serverside
- OneConnect, Cookie Persistence, HTTP class, HTTP, fastL4, SSL based profiles.
- BIGIP v11 HA trust, device groups, device management, clustered multi processing.
- Administering vCMP on BIG-IP VIPRION platform.
- Active/Active, Active/Standby implementations
- Designing, Planning and Implementation of Nexus 2K/5K/7K Enterprise level infrastructure comprising of Core/Distribution/Access in a collapsed Aggregation Layer model using VRF’s and VPC’s respectively.
- Planning, designing, Installing and Configuring of Cisco Routers (1700, 1800, 2500, 2600, 3200, 3600, 3700, 3800, and 7200) using RIP, EIGRP, OSPF and BGP in MPLS network.
- Redistribution of routing protocols, Route-maps (Policy Based Routing), ACL, NAT.
- HSRP, NSRP, VRRP implementation on routers.
- Troubleshooting of Enterprise application response problems & connectivity issues.
- Installing and configuring of Cisco L2 & L3 Switches (2900, 3560, 4500 & 6500).
- Installing and configuring of Juniper Switches EX Series (4200, 4500, 6200, 3300)
- Designing of LAN Network as per Cisco 3-tier Architecture (Core, Distribution, Access).
- Configuring STP, VLAN, VTP, SPAN port and Port binding.
- Installing & Configuring Network Access Control (NAC) using Cisco Clean Access (CCA).
- Implementing & maintaining tools like Snort (IDS), MRTG, JFFNMS, Netflow Analyzer, WhatsUP Gold, Smokeping, and NTOP.
- Implementing Cisco Secure Access Control Server (ACS 4.0) for Tacacs+/ Radius.
- Installing & Configuring of DHCP /WINS servers.
PROFESSIONAL EXPERIENCE:
Confidential, San Antonio, TX
Core Team Member
Responsibilities:
- Diagnose, direct and oversee complex network LAN/WAN issues and provide most optimal resolutions.
- Document network problems and provide resolutions for future .
- Monitors system performance, network usage and implement performance tuning.
- Undertaking routine preventative measures and implementing, maintaining and monitoring networks.
- Configuring site-to-site/client-to-site VPN tunnels on ASA, ASA-X, and Router platforms.
- Maintain network documentation and update disaster recovery procedures.
- Troubleshooting malfunctions of network hardware and software applications, telephones and security systems to resolve operational issues and restore services.
- Maximizes network performance by monitoring performance, troubleshooting network problems and outages, scheduling upgrades; collaborating with network architects on network optimization.
- Secures network system by establishing and enforcing policies, defining and monitoring access.
