We provide IT Staff Augmentation Services!

Network Security Engineer Resume

0/5 (Submit Your Rating)

Washington, DC

PROFESSIONAL SUMMARY:

  • As an experienced network architect, security engineer and project manager, I have been responsible for the design, installation, and operations of small, medium, and large LANs and WANs for over twenty years. I have extensive experience in systems integration projects supporting the integration of multi - vendor equipment from concept to cutover. During my career, I have accumulated over seven years of direct project management.

PROFESSIONAL EXPERIENCE:

Network Security Engineer

Confidential

Responsibilities:

  • Implemented new 12400 Check Point NGTP cluster at production facility in Phoenix, including meshed VPN network
  • Implemented Check Point 1120 and 640 appliances for out-of-band management and remote office connectivity
  • Implemented Digi16 and Digi32 devices for remote serial connections
  • Maintain and troubleshoot all network security devices
  • Upgraded old Brocade (Foundry) 4G-SSL load balancing appliances to Brocade Virtual Traffic Manager at two facilities
  • Responsible for all aspects of network engineering in addition to my security duties.

Brocade Engineer

Confidential

Responsibilities:

  • Performed core network assessment in preparation for remediation of ongoing network issues
  • Reconfigured vrrp-e instances on the ServerIron pair
  • Resolved VLAN inconsistencies
  • Gathered data with Wireshark to assess network connectivity
  • Reconfigured ACLs throughout the network
  • Assessed and reconfigured OSPF, and eBGP
  • Assisted with the implementation of a new network utilizing A10 network equipment with Avaya switches
  • Created both “as-is” and “to-be” network drawings

Network Engineer

Confidential

Responsibilities:

  • Worked on the assessment/rationalization phase of GSA’s data center consolidation project
  • Installed Riverbed and Gigamon equipment in the Fort Worth, Texas data center
  • Performed on-site assessment of GSA’s Kansas City data center
  • Utilized VMware Capacity Planner to assess virtualization capabilities
  • Assessed Gigamon data with Riverbed Cascade
  • Provided planning and documentation

Senior WAN Engineer

Confidential

Responsibilities:

  • Designed and implemented cutover from a Cisco Catalyst infrastructure to Brocade MLX-8 core routers using VRRP and 10 GbE cross-connects between the two core routers.
  • Resolved all configuration discrepancies between the old Cisco devices and the new MLX routers.
  • Re-architected the VLAN topology.
  • Migrated U.S. Army Medical Treatment Facilities and Clinics from Walter Reed Medical Center to Fort Detrick in support of the Army BRAC initiative.
  • Created documentation of our efforts, including lessons learned.
  • Implemented firewall changes on a pair of ASA 5550s.
  • Worked with business process and engineering teams to update existing Disaster Recovery and Continuity of Operations plans

Senior Systems Engineer

Confidential, Washington, DC

Responsibilities:

  • Member of Core Network Engineering team tasked with consolidating the entire data center of BLS.
  • Implemented a re-designed switching and routing infrastructure to support consolidation activities (data center rack reduction from )
  • Retired one of two Catalyst 6513s at the core and implemented a Cisco Nexus 7010 in its place as the new core switch.
  • Implemented two Cisco UCS C250 servers for virtualization of mission-critical applications.
  • Installed a new SAN network consisting of a Nexus 5010 and Nexus 2148 fabric extenders to migrate from the legacy Catalyst 6506 SAN network switch.
  • Developed test plans and documentation to support implementation activities and the operational life cycle
  • Virtualized over 40 servers using VMware ESX and VSphere
  • Resolved complex network issues in a data center environment
  • Implemented a fibre channel SAN for embargoed data using Brocade switches
  • Eradicated internal static routing in favor of OSPF. Successfully configured OSPF authentication between the Cisco Nexus equipment and numerous HP ProCurve 3500 and 6200yl switches.
  • Installed and configured F5 Big-IP load balancers for Web server farm (Layers 4 and 7)
  • Relocated and configured building-wide television equipment
  • Implemented controller-based Aruba wireless architecture
  • Worked with business process and engineering teams to update existing Disaster Recovery and Continuity of Operations plans
  • Installed Cisco UCS C220 server with VMware utilizing Nexus 1000v

Senior Network Engineer

Confidential, Washington, DC

Responsibilities:

  • Tasked with the retirement of a TDM PBX and its replacement with a Cisco VoIP.
  • Configured QoS and voice VLANs on the two core Cisco 6500 series switch routers and all Cisco 4500 series distribution/access layer switches in preparation for the Cisco phone rollout.
  • Configured a new Cisco 3845 ISR to replace the existing edge router with redundant circuits for failover.
  • Documented the entire network.
  • Worked on the design of “protected zones” for externally accessible servers.
  • Reviewed existing firewall configurations on the internal and external ASA pairs managed by the Verizon TICAP and submitted recommended changes.
  • Configured numerous port channels to provide increased bandwidth and redundancy between the core switch routers, NetApp filers, and all distribution switches.
  • Installed and configured F5 Big-IP load balancers (Layer 4).
  • Implemented a Cisco NAC solution including a Policy Server (ACS) using RADIUS and a Cisco NAC Appliance including Cisco NAC Manager and Cisco NAC Server.
  • Implemented controller-based Cisco wireless architecture

Consulting Engineer

Confidential

Responsibilities:

  • Architected a multi-homed network for a large Washington, DC hospital chain.
  • Performed complete network assessment.
  • Designed and implemented an internet substitution IPSEC VPN network covering six sites for a local auto dealer and its associated enterprises using CISCO 5500 series Adaptive Security Appliances.
  • Completed a series of network architecture and project management tasks for the National Oceanic and Atmospheric Administration’s Common Information Technology Services division;
  • Assessed the VLAN architecture on their nine Cisco Catalyst 6509 core switches
  • Developed and wrote various internal procedure documents including printer maintenance and repair, master inventory processes, McAfee EPO configuration, and Visitor VLAN security.
  • Installed two Cisco 3825 Integrated Services Routers and configured them as MPLS transit routers (Label Switch Routers) for a Washington D.C. investment bank.
  • Installed and configured digital signage in 32 Class A commercial real estate properties in Washington, DC.
  • Implemented controller-based SonicWall wireless architecture

Senior Project Manager / Network Architect

Confidential

Responsibilities:

  • Responsible for the direction and outcome of information technology projects including voice/video/data convergence and the replacement of frame relay circuits with VPRNs and leased lines at over 50 locations.
  • Designed and implemented VLANs for VoIP systems as a component of a UC system.
  • Implemented F5 load balancer solution.
  • Managed and executed projects to deploy directory services architecture, HP OpenView, IDS/IPS System, controller-based wireless network architecture, 802.1x implementation, PSTN gateway installation and Cisco Call Manager.

Global Project Manager

Confidential

Responsibilities:

  • Responsible for developing cost-benefit profiles for a variety of products including SMS, ZENworks 6, LANDesk, Altiris, and Tivoli.
  • Provided an alternative analysis for global LDAP, directory service, and desktop/server management infrastructure.
  • Completed a project plan for the implementation of the optimum alternative (ZENworks 6 in a pure Windows 2000 environment).
  • Assembled the project team and detailed project costs.
  • Designed and tested a beta system using an international version of Sybase to generate meaningful inventory data from 60 different countries.

Consulting Engineer

Confidential

Responsibilities:

  • Responsible for automated software distribution to over 3000 workstations using Novell ZENworks for Desktops 3.2. Projects under my direction included Microsoft Office XP.
  • Engineered, designed, documented and performed advanced troubleshooting for enterprise.

Telecommunications Specialist, Acting Branch Chief

Confidential

Responsibilities:

  • Served as Data Communications Specialist, responsible for the Wide Area Network linking 128 locations in the continental United States and abroad.
  • Completed the upgrade or installation of frame relay and private line circuits at over 65 locations in six months and implemented a centralized redundant WAN architecture using Cisco 7507 routers and Cisco Catalyst 650x switches at hub locations.
  • Implemented both the LAN and RWAN components of CiscoWorks 2000 as well as Concord eHealth Suite. (Because many ARS research facilities were located in rural areas where the installation of cable plant is cost prohibitive, technologies were utilized such as 802.11b wireless WAN and Long Range Ethernet (LRE) to connect these sites to the USDA Internet Access Network.)

We'd love your feedback!