We provide IT Staff Augmentation Services!

Security Technical Assurance Engineer Resume

3.00/5 (Submit Your Rating)

Moorestown, NJ

PROFESSIONAL SUMMARY:

  • Networking Professional with 8+ years of Experience computer networking and Solid understanding of Design, Implementation, Administration, Operational and troubleshooting of enterprise data networks.
  • Proficient hands on experience in configuration Cisco Catalyst 2900, 2960, 3560, 3750, 4500, 4900, 6500 series switches, troubleshooting and monitoring Cisco PIX ASA Firewalls, Routers and Palo Alto Firewalls.
  • Administration of Data Center networking gear, including Cisco Nexus(9k,7k,5k,2k) and Arista (7050,7060,7260,7150,7280) switches. Provisioning of vPC/MLAG’s for high availability purposes. Provisioning of VSS on certain Data Center Cisco Catalyst 6500 switches.
  • Strong hands - on experience on Palo Alto (5060, 3060), Checkpoint Firewall R77, juniper and Cisco ASA 5585 firewall.
  • Configuration and troubleshooting of Cisco 2500, 2600, 3000, 6500, 7500, 7200, ASR 1002Series routers.
  • Configuring Multiprotocol Label Switch-Traffic Engineering (MPLS-TE) on a Cisco ASR 9K Series route.
  • Well versed with AAA configuration using TACACS+ & RADIUS server.
  • Worked on Load balancer F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
  • Strong understanding of current and future technologies including TCP/IP, IPv4/v6, RIP, EIGRP, OSPF, BGP, Frame Relay, ACL, VPN, Wireless LAN and configuration of VLANs.
  • Migration of firewall rules from Cisco ASA, Checkpoint to Palo Alto firewalls using migration tool from PAN.
  • Responsible for setting up the infrastructure environment with majority of Cisco & Palo Alto appliances apart from various other equipment.
  • Worked extensively on Data Center Palo Alto firewalls and F5 BIG-IP LTM.
  • Design and Implementation of LAN, WAN, VLANs, VTP, Spanning Tree (STP), Trunking and Ether channel.
  • Knowledge and Experience in Configuring, and troubleshooting, Cisco Meraki and Cisco ISE.
  • Experience in monitoring and analyzing the load balancing of network traffic using Wireshark and Solar Winds, NMAP, Ethereal, Turin Secure Track and Splunk.
  • Experience in physical infrastructure like structured cabling, IP address management, Racking, Stacking, UCS management Experience in F5, Cisco ACE 4710 Load balancers.
  • Extensive experience with HSRP, VPCs, VDCs, VSS, VLSM, NAT, VLANs, and Spanning-Tree Protocol.
  • Designing and implementing F5 BIG-IP load balancer and MPLS/VPN service for various customers.
  • Working Knowledge and Implementation of Cloud Management: Cisco Meraki (MR33)
  • VOIP Platform & Codecs UC500 series, Cisco IP Phones, FXO/FXS, CME, CUBE and CUE. G.711 and G.729 Codecs.
  • Extensively worked on different flow feeds like Cisco Netflow and Juniper Jflow.
  • Advanced proficiency with Cisco Wireless (APs, Controllers, ISE, and Prime).
  • Experience in deploying Wireless controllers, Wireless access points and Wireless Sniffers.
  • Experience in configuring and Troubleshooting BIG-IP F-5 load balancer LTM.
  • Strong knowledge on migration of DDoS attacks, IPsec & SSL implementation on Cisco and Palo Alto firewalls.
  • Expert level knowledge in IP Routing and WAN protocols (BGP, EIGRP, OSPF, ISIS).
  • Configuring and maintaining vCenter VMware (vSwitch, dvSwitch, host & cluster and datastore).
  • Hands-on expertise with routers 2600, 2900, 3600, 3900, 7200, 7600, ASR-901, ASR-903, ASR 5500, ASR-9010 and Juniper ACX, E, M, MX960 series.
  • Working knowledge in VLAN, VTP, Inter VLAN Routing, STP, OSI Model, TCP/IP, DHCP, HSRP, NAT, ACL
  • Extensive Knowledge in configuring and troubleshooting Layer 3 interior Gateway Routing protocols such as Link-State routing protocols (OSPF and IS-IS) and Distance Vector routing protocols (RIPv1, RIPv2 and EIGRP).
  • Experience with different Project documentation tools & implementing and maintaining network monitoring systems and experience with developing network design documentation and presentation using VISIO.
  • Experience in implementing site-to-site and remote access VPN Technologies using GRE, IPSEC, Remote Access VPN, DMVPN tunnels.

TECHNICAL SKILLS:

Cisco Routers: 2600, 2900, 3600, 3800, 7200, 7600, 3925, 3810, 2800 Series and ASR 3K, 7K.

Catalyst 6500, 4510, 4500: x, 3800, 3750x, 3550, 2960s, Arista & Nexus 2k, 5k, 7k s.

LAN Technologist: Ethernet, Fast Ethernet, Gigabit Ethernet, VTP, SMTP, VLAN, Inter-VLAN Routing, STP, RSTP, Dot1q, HSRP, DHCP, GLBP, VRRP Light weight access point, WLC.

WAN Technologies: Frame Relay, PPP, HDLC, MPLS, T1, T3, OC Standard.

Firewalls: Cisco ASA 5500 Series, Checkpoint, Palo Alto, Juniper SRX, Juniper Secure Access VPN Appliance, Cisco PIX, Fortigate 40c.

NEXUS Features: VDC, VPC, FEX, OTV, F&M series line cards

MP: BGP, EIBGP, EBGP, OSPF, EIGRP, RIP v1 & v2, Route redistribution, Route filtering, Summarization, Static route.

MPLS: LDP/TDP, MPLS VPN, RSVP, VRF, MPLS- QoS.

Wireless/Voice Technologies: Cisco WLC, IEEE 802.1x and 802.11, WLAN, WAP, AP, SSID, LWAPP, VoIP/SIP, CUCM, UCCM, UCCX, MGCP, RTP, PoE, CCK, DSSS.

F5 BIGIP: 6400, 6800, 8800 with LTM, GTM, ASM, APM, Access Gateway, Secure Gateway.

VoIP: Call Manager, Call Manager Express, SIP Trunking.

Network Monitoring Tools: Cisco Works, Solarwinds, Cisco WAN Manager, Wireshark, Infoblox.

Applications: Cisco packet tracer, GNS 3, Active Directory, Cisco IOS, Junos, Cisco prime Infrastructure, Cisco UCS, Microsoft Office, PowerPoint, and Excel .

Services: Done Configuration for VLANs, STP, SNMP, ELRP, DMZ and Redundancy protocol (HSRP and VRRP).

Other Technologies: VMware, Mat Lab, VISIO, Oracle DBMS, Microsoft word, Excel.

PROFESSIONAL EXPERIENCE:

Confidential, Moorestown, NJ

Security Technical Assurance Engineer

Responsibilities:

  • Main responsibility was to be active and be a valuable component in the process of connecting Confidential networks in the most secured and effective manner.
  • Working in cooperation with all Confidential Enterprise, Business Units, and Divisions.
  • Manage the FW/ACL change request process.
  • Manage the SSL Certificate program.
  • Manage Escalation requests for FW/ACL change tickets.
  • Act as Security resource for projects/meetings.
  • Reviewing and approving spreadsheet for FW/ACL change request.
  • Verifying the rules in FWs (i.e. F5|Big IQ, FortiManager 1000D, FortiAnalyzer 3500F and Check Point R77.30).
  • Verifying Rules in ACLs.
  • Reporting to manager regarding the requests.
  • Clarifying with requester if the request requires some clarification via Skype, Slack, Screen Share, Phone or Email.

Environment: Service catalog, Jira, F5|Big IQ, Fortimanagar 1000D, FortiAnalyzer 3500F, Check Point R77.30, Tufin, Putty, Slack, Microsoft Office.

Confidential, Atlanta, GA

Network Engineer

Responsibilities:

  • Designing, Implementing LAN/WAN configurations on Cisco Nexus 9k, 7k, 5k, Catalyst 6500 switch.
  • Worked on Cisco IOS for configuration & troubleshooting of routing protocols: BGP, OSPF, EIGRP, IGRP and RIP.
  • Implementing, configuring and troubleshooting routing protocols such as OSPF (v3, v2), RIPv2, BGPv4, EIGRP, HSRP, GLBP and MPLS.
  • Worked on Load balancer F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
  • Deploying of VLANs, port and IP allocations and planning on ASR Mk, Nexus '9k, 7k, 5k, Mk and its downstream devices.
  • Configure VoIP phones to be provisioned through company servers.
  • Has done the Configuration on BIG IP (F5) Load balancers and monitored the Packet Flow in the load balancers.
  • The work performed involves SME input and support as an F5 and Cisco ACE load balancer engineer encompassing complete support, day in and day out work on the F5 Application Delivery
  • Installed and monitored extreme networks S-series, 7100 stackable switches and E4G-400, 1800 router to support VMware machines.
  • Designed and coordinated implementation of Citrix Access Gateway (CAG) on a pair of Citrix Netscaler MPX devices for CSC's cloud Worked on F5 LTM series 6400, 8800, 8900 and GTM 8900 series for the corporate applications.
  • SolarWinds Network Performance Monitor, Network Configuration Manager, Network Traffic Analyzer (NetFlow) and IP Address Manager.
  • Experience Palo Alto, Network Security, Juniper Firewalls, SSL VPN, Checkpoint, RSA, Cisco Nexus, Cisco ACE, Cisco Wireless.
  • Installation, configuring and managing the Cisco Routers and switches of series 2800, 3700, 3800, and 7200, also catalyst switches 2900, 3500, 4500, and 6500 and good knowledge on Cisco IOS and NX-OS.
  • Worked with Customer Communications and Marketing (CCM) and CCM Application Support Team.
  • Implementing and configuring F5 LTM's for VIP's and Virtual sewers as per application and business requirements. F5 configuration, installation, and monitoring with F5 APM.
  • Experience with supporting multilayer IP networks, Cisco switches, routers, TCP/IP, network security; firewalls, LAN/WAN with VoIP, backup systems, 802.1q, basic server, desktop support, infrastructure network management, Cisco NAC, NAP, DNS, virtualization with VMware, SNMP
  • Worked with Palo Alto firewalls PA3060, PA5060 using Panorama servers, performing changes to monitor/block/allow the traffic on the firewall.
  • Configured load balancing on F5 and Cisco ACE load balancers to allow traffic going to the Bluecoat proxies to be optimized and load balanced
  • Managed all network and devices to include Cisco routers, switches, VPNs, SSL, Check Point, Cisco PIX, Cisco ASA, Cisco FWSM as well as content delivery networks (CSS, Citrix Netscaler and F5 BigIP LTM and GTM 1600 and 3400 load balancers) enterprise environment.
  • Implementing and troubleshooting firewall rules in Cisco ASA 5525, 5580, Checkpoint R77.20 Gaia and VSX as per the business requirements.
  • Worked on Cisco IOS for configuration & troubleshooting of routing protocols: BGP, OSPF, EIGRP, IGRP and RIP.
  • Configured and performed software upgrades on Cisco Wireless LAN Controllers 5508 for Wireless Network Access Control integration with Cisco ISE
  • Implemented SNMP on Cisco routes to allow for network management. Completed the installation and Configuration of CSU/DSU, T1, T3 & OC3 circuits.
  • Created and manage VPNs for managed service clients including medical community on Cisco, Net screen and Fortinet Cisco PIX VPN devices.
  • Experience with Cisco LAN controllers (8500, 5760, 5500) Cisco Aironet Access Points (3700, 2700, 1600, 700W), Cisco Mobility Platform.
  • Configured and maintained VPCs with 7010 and 5548 in the network. Also configured and maintained VDCs in 7010 switches, maintained VRFs in those separate VDCs.

Environment: Cisco routers and switches: 7500/catalyst 6500/R V320/2960/catalyst 3550/12410, 12816, 1204 series, Nexus 7k and 5k, WLC, and ASA 5540. Palo Alto firewalls 3060, 5060, 7050. Cisco Nexus 5000 and Nexus 7000 and Nexus 9000 series Switch.

Confidential, Jacksonville, FL

Network Engineer

Responsibilities:

  • Implementing and maintenance of network design, structure, up gradation and configuration of routers and switch the client server for 400+ users.
  • Configuring, maintaining the Routers and Switches and implementation of BGP, OSPF EIGRP, RIP routing protocols and troubleshooting remote infrastructure management offices in different locations.
  • Worked using routing protocols EIGRP and BGP based company network for resolving level 2 and 3 issues.
  • Design MPLS VPN and QoS for the architecture using Cisco multi-layer switches.
  • Design and implemented campus switch network with Layer 3 switches (3750, 4500 and 6500) in multi VLANs environment and inter-VLAN routing, HSRP, ISL trunk, Ether channel.
  • Configured and troubleshoot Enterprise Routers, CISCO ASR 9K, CISCO 2900 and 2800 series Routers. Hands on experience with Cisco call Manager Express, Cisco Voice over IP.
  • Maintained complex LAN/WAN networks with several VLANS and provided support for routing protocols and also providing secure sessions over internet using IPSec and SSL encryption
  • Configuration scenarios include routing (RIP, EIGRP, OSPF, BGP), bridging (STP, VLAN, HSRP), MPLS VPN, Network Security (VPN, Firewall, IDS), IP telephony (call manager, CME, voice Gateways).
  • Installed Solar winds Network Performance Monitor with traffic analysis, application & virtualization management, configuration management and other modules additionally installed.
  • Have configured ACI for remote Authentication in the respective organization, manage project task to migrate from Cisco ASA firewalls to Checkpoint firewalls.
  • Configured Multiprotocol Label Switching (MPLS) VPN with Routing Information Protocol (RIP) on the customer's Site.
  • Experienced in Cisco Unified Communications Manager (CUCM) (6.x, 7.x, 8.x, 9.x, 10.x), Cisco Call Manager (CCM), Cisco Unified Presence (CUPs, IM & Presence), Cisco Unified Call Manager Express (CUCME), Cisco Unity Connection (CUC) (7.x, 8.x, 9.x, 10.x), Unified Contact Center Express (UCCX).
  • Switches Nexus 2K/5K/7K, 9K. Cisco Catalyst 2900, 3500, 3700, 6500, 4500, 3850, 3560, 3750, 2960, Meraki MS-350
  • Implement changes on switches, routers, load balancer (F5 and CSS), firewalls, wireless devices per engineer’s instructions and troubleshooting any related issues.
  • Switching tasks include VTP, ISL/ 802.1q, IPSec and GRE Tunneling, VLANs, Ether Channel, Trunking, Port Security, STP and RSTP.
  • Manage, configure and troubleshoot Cisco ASA VPN Firewalls (including IPSec, Site to Site VPN Tunneling, SSL Remote Access)
  • Implemented and maintained LAN, WALN, DNS, DHCP, configured Port Forwarding, NAT, firewall and remote access for Switches/Routers.
  • Work on Checkpoint Platform including Provider Smart Domain Manager. Worked on configuring, managing supporting Checkpoint Gateways.
  • Deployed Nexus switches 2248, 5548, 7018 and implemented features like FEX Links, VPC, VRF, VDC, and OTV, Fabric Path
  • Deployed and maintained routing protocols such as OSPF, EIGRP, BGP, GRE, MPLS/VPN, HSRP and static routes on Cisco routers and switches and Juniper routers
  • Worked with customers to define, plan and execute technology solutions that are specific to their needs. Deployment and configuration of F5 BIG IP load balancer (LTM, GTM, ASM, and APM Modules).
  • Good experience and knowledge of Cisco Routers, Switches and load balancers- Cisco CRS12K, ASR9K/1K, ISR3925e, 2951, 6880 Series, Nexus9k/7k/5k/2k, VPC/vDC, Cisco 7600 Series, Cisco 6500 Series, cisco 4500 series, 3650, 3750 series, 2960 series and F5, and Juniper MX960.
  • Installing, Configuring and troubleshooting Cisco Routers (ASR1002X, 3945, 3845, 2800, 3600) and switches to perform functions Confidential Access, Distribution and Core layers.
  • Deploy and install VoIP phones (79XX, 88XX series) and configured mail boxes with User setting in Unity Voice Mail.
  • Working on different modules of Checkpoint Next Generation firewall R77.30 such as IPS.
  • Configuration and management of Fortinet Certification, Netscreen, Sonicwall, Cisco configuration and management

Environment: Cisco 2600, 2800 and 3600router. F-5Load balancers. PaloA1to fireballs 3060, 5060, 7050. Cisco ASA 5520 Firewall, Juniper Firewalls.

Confidential

Network Engineer

Responsibilities:

  • Worked as part of team to manage Enterprise Network Infrastructure as a Tier 3 Support Engineer.
  • Troubleshoot problems on a day to day basis and providing solutions that would fix the problems within their network.
  • Configured EIGRP, RIP, OSPF and Static routing on Juniper M and MX series Routers for Lab Environment.
  • Configured RSTP, LACP and VTP on Cisco devises and VLAN, Spanning tree, VSTP, SNMP on EX series switches
  • Created VLAN and Inter-VLAN routing with Multilayer Switching.
  • Extensive experience in configuring Layers routing and layer2/3 switching of Cisco based nexus 7K,5K,2K& 800lSR series Switches & routers.
  • Designing Solutions for frozen requirements using Cisco Routers and Switches.
  • Experience in deploying EIGRP/BGP redistribution and the changing the metrics for the primary and back up.
  • Installing, Configuring Cisco Catalyst switches 6500, 3750, 4500 and 3550 series and configured routing. protocol OSPF, EIGRP, BGP with Access Control Lists implemented as per Network Design.
  • Implemented ISL and 802.1Q for communicating through VTP.
  • Fourth tier troubleshooting, support and implementation for DNS/DHCP.
  • Involved in Troubleshooting IP addressing Issues and Updating IOS Images using TFTP.
  • Designing and Implementation of (LAN) VLANs, VTP, Spanning Tree (STP), Trunking (dot1q and ISL) and Ether channel.
  • Troubleshoot issues related to VLAN, VLAN Trunking, HSRP failovers, related issues.
  • Experienced in Implementing and troubleshooting RIP, RIP v2, OSPF, EIGRP, BGP, EBGP routing protocols and Policy based routing.
  • Managed enterprise BGP setup by configuring and troubleshooting BGP related issues. My responsibility was also to add new BGP peers for remote branch offices and business partners. Scaling of IGP and BGP in the core.
  • Has done the Configuration on BIG IP (F5) Load balancers and monitored the Packet Flow in the load balancers.
  • Involved in Configuring and implementing of Composite Network models consists of Cisco7600, 7200, 3800 series and ASR Mk, GSR 12K routers and Cisco 2950, 3500, 5000, 6500 Series switches.
  • Configured networks using routing protocols such as RIP, OSPF, BGP and manipulated routing updates using route-map, distribute list and administrative distance for on-demand Infrastructure.

Environment: Cisco 2600, 2800 and 3600router. F-5Load balancers. PaloA1to fireballs 3060, 5060, 7050. Cisco ASA 5520 Firewall.

Confidential

Network Engineer

Responsibilities:

  • Configuration and maintenance of Cisco 2900 series including VLANS and TRUNKING protocols.
  • Configured EIGRP, BGP and MPLS
  • Implemented load balancing between Cisco L3 switch by HSRP and GLBP.
  • Delivered Departmental Efficiency through advanced engineering, technical support and documentation procedures.
  • Configured networks using routing protocols such as RIP, OSPF, and BGP and troubleshooting L2/L3 issues.
  • Performed the general activities of LAN administration on switches, routers, hubs and WI-FI and network printers.
  • Provided high level technical support, including identifying and resolving problems on Cisco supported products for e-commerce infrastructure. This included external routing and internal routing for DMZ servers.
  • Handled Plans, coordinates, implements and supports the LAN/WAN integration network connectivity, diagnose network failures and resolve any problems.
  • Installing computer hardware, software, printers, wired, wireless network management, maintenance and troubleshooting devises and network problems.
  • Worked on Configuring/Troubleshoot issues with the following types of routers Cisco (7230, 65 sitting with customer 00 2600 and 3500 series), to include: bridging, switching, routing, Ethernet, NAT, and DHCP, as well as assisting with customer LAN /MAN.
  • Actively participated in upgrading fast Ethernet, Layer 3 switched/routed LAN infrastructure from Cisco 3640 to Cisco 2811 ISM routers and switches Confidential access level to 2950, 3550.
  • Worked on Configuring, managing, and troubleshooting networks using routing protocols like RIP, EIGRP and OSPF (Single Area and Multi Area).
  • Handled Troubleshoot Frame Relay, Tl, TO, IP and OSPF related router and circuit issues.
  • Assisted with troubleshooting all network issues with routers and switches when necessary and consulted with on call tech as needed for client.

Environment: Cisco 3640 to Cisco 2811 ISM routers. switches Confidential access level to 2950, 3550. Cisco router-7200, 6500, 4500, 1700, 2600 and 3500 series

We'd love your feedback!