We provide IT Staff Augmentation Services!

Network Design/security Engineer Resume

2.00/5 (Submit Your Rating)

SUMMARY:

  • I am a senior level network engineer with over 22 years of experience.
  • Known as a high energy individual who loves solving difficult problems, brings fresh and creative ideas and who leads by example.
TECHNICAL SKILLS:

Monitoring/Utilities: Cisco Works 2000 for Windows, MRTG, What’ s UP Gold, HP OpenView NNM B0.7.50 and below, Ethereal/WireShark, Sniffer Pro, TCPView, Cisco Secure ACS, AD/LDAP utilities, SolarWinds, Microsoft NPS

Operating Systems: Windows 8 and below, Windows 2008 R2 Server and below (FSMO role management & troubleshooting, Group Policy management, NTFS security configurations), Cisco IOS 15.x and below, Cisco VSS 1440 (NSF with SSO), and RSA SecurID, Cisco ASA version 9.5.1 and below, Cisco FWSM version 4.0(13)

Protocols: TCP/IP v4 suite including DNS, WINS, DHCP, SMTP, ping, trace route, telnet, IPSec VPNs (L2L, remote access - 3DES through AES256), Cisco SSL VPNs (ASA5500), Ethernet, Fast Ethernet, Gigabit Ethernet, 10Gb Ethernet (fiber), EIGRP, OSPF, BGP, HSRP

Software: MS SQL Server 2000 and below, MS RAS/RRAS/IAS, ISDN & VPN (IPSec & PPTP), Microsoft Virtual Server 2005, IIS 7.x and below, Exchange Server 2003 and below, Office/Outlook 2010 and below, Altiris, SMS 2.0, WANsync HAHardware: Category 5/5e/6/6e UTP, Cisco 627 thru 7200 series routers, Cisco Catalyst 1900, 2948G, 2950/2950G/2960, 35xx/3560/3750 series, 4000/4500/4900 series switches, Cisco 65xx series switches, Cisco Nexus 5K series, Cisco ASR 1000 series, Cisco PIX 500 series, Cisco ASA 5500 series appliances, Cisco FWSM, Cisco 4210 IDS sensors, Cisco Aironet 350/1100/1200 series, Distributed sniffers Fluke Workgroup Analyzers, Network General and homemadePROFESSIONAL

EXPERIENCE:

Confidential

Network Design/Security Engineer

Responsibilities:

  • Large Oil & Gas enterprise network comprised of Cisco, Juniper, F5 and Palo Alto equipment
  • Added users to security groups for access through secure firewalls via an out of band network. Improved management and review efficiency for employees and auditing staff
  • Completed firewall and DMZ network inventories for extranet migrations to ensure that all systems were moved successfully to the new environment

Confidential

Lead Network Engineer

Responsibilities:
  • Led small team in the replacement of all switching hardware in local hospitals
  • Responsible for configuration and deployment of Nexus 5000 Catalyst 3650 series switches
  • Led all change outages and coordinated all testing with local IT staff
  • Created custom outage schedules with onsite managers and directors.
  • Reported daily status to management and stakeholders

Confidential

Senior Network Engineer

  • 100 user network, hybrid Cisco/Sonicwall infrastructure, Cisco IPSec L2L vpn, distributed well network
  • Installed 2 Cisco routers in the field using wireless/cellular connectivity with IPSec tunnels to AWS in order to support their acquisition of 200 wells in West Texas
  • Wrote all network documentation for ongoing support staff

Confidential

Senior Network Engineer

  • 1000 user network, all Cisco infrastructure, Checkpoint remote access vpn, Nexus core all redundant connectivity
  • Backfill/staff augmentation for the onsite engineer who was off for a vacation

Confidential

Senior Network Engineer

Responsibilities:
  • 110 user network, used Cisco infrastructure, Cisco remote access ssl based and IPSec L2L vpn, local Avaya IP based phone system, mixed Windows Linux architecture.
  • Wrote all network documentation to keep information current and ease support by teams in the department.
  • Hardened all network devices ensuring the confidentiality, integrity and availability of all corporate data.
  • Researched and coordinated an internal and external penetration tests to improve the the overall security posture of the environment.
  • Deployed lan to lan vpn tunnels to AWS using Cisco ASA firewalls to provide secure connectivity to the company hosted data environment.
  • Cleaned up firewall configurations from years of neglect to maintain health and keep security controls current.
  • Managed their datacenter move project to complete a disaster recovery solution maintain data availability.
  • Implemented and supported Microsoft NPS RADIUS to centralize security account management for all network and security devices easing overall team support.

Confidential

Senior Technical Consultant

Responsibilities:
  • 500 user network, managed mpls infrastructure, managed remote access ssl based vpn, managed IP based phone service, all Windows architecture.
  • Wrote all documentation for department easing support and improving department processes.
  • Played supportive role to network engineer employee relieving strain of existing resources.
  • Assisted in management of Windows/HP systems infrastructure to ensure cross training and relief for sys admin team.
  • Configured BGP for connectivity to their WAN service provider to assist in the deployment of a new datacenter which increase data availability to the company.
  • Performed network change outages to improve the environment by correcting known/discovered issues.
  • Supported existing ASA firewalls and Nexus 5000 series switches ensuring security and data availability to the company.
  • Performed cleanup of ASA 5500 firewalls improving the health of the environment and keeping the network security model current.
  • Rebuilt and managed SolarWinds installation to cleanup up system issues to ensure overall availability of network resources.

Confidential

Senior Network Engineer

Responsibilities:
  • 1,100+ user network spanning 3 states, 2 refineries, 8 manned offices, 2 datacenters and 30 SCADA/LACT stations. All IP, WAN is MPLS and runs bgp and eigrp. Scada sites running cellular/satellite with bgp. Hosts are 98% Windows with remaining being RedHat Enterprise.
  • Resolved SCADA site network stability issues ensuring the delivery of pipeline monitoring data
  • Designed, implemented and supported projects including datacenter LAN upgrades, lan to lan vpn configurations, wireless access point and controller upgrades and new office build outs bolstering the overall technology offering to the company ensuring growth, performance increases and improvements in employee efficiency.
  • Configured and supported BGP within their carrier cloud easing the role of the managed providers technical teams.
  • Created documentation and diagrams of the environment easing team support and improving department processes.
  • Migrated offices to new larger IP subnets providing growth and expansion for existing offices.
  • Managed ASA firewalls and cleaned up configurations to ensure protection of the environment and maintain health of the security systems.

Confidential

Incident Manager

Responsibilities:
  • 250,000 user global network containing more than 25,000 servers and 30,000 network devices. All known operating systems, database types, and application components used.
  • Lead priority 1 incident management calls which included diagnosis, scope of impact assessment, and managing vendors and staff (technical and non- technical) through problem resolution. Ongoing reporting of case progress to executive staff. Documented details in case management system.
  • Periodically performed as the workload coordinator responsible for assigning cases to incident managers, tracking their progress and reporting on end of shift meeting calls.
  • Assisted in maintaining department procedural and training documentation easing support and improving the on boarding process.
  • Assisted in integration of environment monitoring tools into team procedures

Confidential

Network/Security Engineer

Responsibilities:
  • 500 user network. All sites connected over metro Ethernet to primary and standby datacenters. All Cisco EIGRP based. A mix of Windows and Solaris.
  • Solely responsible for documenting an entire datacenter wiring layout ensuring the successful move of all servers from an old server room significantly reducing total downtime.
  • Deployed dual firewall services modules in a Cisco Catalyst 6509E VSS pair securing all subnets that store or transmit sensitive credit card data. Ruleset applied was thousands of lines of code and deployment was 100% successful with no dropped production packets.
  • Resolved functionality issues with a newly deployed 6509E VSS pair ensuring the health of the core routing and switching infrastructure.
  • Created documentation and diagrams of the environment improving and easing overall support processes.
  • Acted as liaison between network team and Protiviti for their ongoing PCI compliance certification process smoothing the transition significantly.
  • Supported a pair of F5 LTM load balancers for new application deployments relieving the UNIX team so that they could focus on systems work.
  • Moved 7 total VPN tunnels from their old site to their new collocation facility ensuring complete transition.
  • Worked with the lead UNIX administrator to define a new UNIX server connection standard for all identical Sun X4200 carrier class server chassis.
  • Provided consultative services to all teams, including network, Windows server, UNIX server, database and applications, ensuring clear consistent communications across the department.

Confidential

Principal/Technical Consultant

Responsibilities:
  • Supported various clients on networks ranging from 5 to 2,500 users on a multitude of different equipment and environments.
  • Desktop, firewall, router, server, switch and access point design, installation and support
  • Network and server security assessments
  • Hardware purchasing
  • Telecommunications design, install and support services
  • Worked with various teams and technologies to combat cyber security ensuring the protection of the company’s intellectual property.

Confidential

Senior Network Engineer

Responsibilities:
  • 2,500+ user global network using Internet only gre/ipsec tunnels for connectivity on an all Cisco infrastructure. All hosts are Windows based.
  • Designed new router, switch, firewall and vpn configurations continually improving details to keep up with industry trends.
  • Performed continual security event review and resolution protecting all corporate technology resources.
  • Network connectivity and telecommunications design, installation and support ensuring the health of the company network infrastructure.
  • Created new configuration templates and assisted in maintaining department documentation easing the support team and improving their process.
  • Supported centralized security and monitoring platforms to protect corporate assets.
  • Coordinated new site deployments supporting the growth and expansion of the company.
  • Coordinated old site decommissions reclaiming hardware and protecting investments.
  • Supported all monitoring systems ensuring the ongoing health of the infrastructure.
  • Provided ongoing technical support improving incident response time and resolution. 

Confidential

Network Architect

Responsibilities:
  • 3,500+ user network of offices, ship yards and offshore rigs/ships. All Cisco infrastructure using mpls with bgp/ospf and satellite/internet/ipsec connectivity. Mixed operating systems.
  • Designed, implemented and supported CiscoWorks and HP OpenView enabling real time monitoring of company assets improving the incident response time.
  • Created documentation and diagrams for the network team easing technical support through cross team education.
  • Installed new sites supporting new corporate ventures helping the company grow and expand.
  • Decommissioned old offices to reclaim and reuse equipment protecting company investments.
  • Provided ongoing technical support and trouble resolution to maintain the health of the network.
  • Assisted in deploying IP voice based phones supporting the refresh of the company phone system
  • Maintained corporate infrastructure including Cisco and Checkpoint firewalls ensuring the health of the environment.

Confidential

Data Environment Engineer

Responsibilities:
  • 150 user network of 2 offices and a DR site using all Cisco infrastructure and metro Ethernet connectivity. All hosts are Windows based.
  • Member of 2 man team, managing the local Houston based infrastructure of the brokerage firm, Confidential . Responsibilities included;
  • Performed all network, server, desktop and security design, installation and support to provide the company with the best infrastructure possible.
  • Managed and upgraded ASA 5500 firewall to protect private brokerage services from suspicious external motives.
  • Installed and managed all VPN tunnels to provide data confidentiality, integrity and availability of remote data connectivity.
  • Assisted deployment of disaster recovery services to guard against primary company infrastructure from degradation or failure.
  • Performed all data side and assisted with some voice side technical troubleshooting to resolve breaks ensuring overall environment health.
  • Performed all data backups and restores ensure protection of valuable company data.
  • Implemented all Websense Internet filtration policies protecting the company from inappropriate usage of resources.
  • Led all new data projects needed within the environment

Confidential 

Senior Network/Security Engineer

Responsibilities:
  •  1,500 user environment using all Cisco infrastructure over frame relay. A mix of operating systems.
  • Redesigned corporate wan and upgraded all circuit speeds and associated hardware to improve performance and increase employee productivity.
  • Performed all levels of network and security support to ensure confidentiality, integrity and availability of all resources.
  • Created and maintained diagrams and documentation to ease and improve technical support.
  • Installed, configured and managed a Windows based Cisco Secure ACS server to centralize account management providing improved security.
  • Installed and supported PIX firewalls guarding internal corporate infrastructure from malicious public activity.
  • Monitored Internet security threats to mitigate breaches against the corporate assets.

Industry Certifications: CCDA (expired), CCNP (expired) and MCSE (expired). CCIE written currently in progress, Palo Alto ACE currently in progress

We'd love your feedback!