Network Engineer Resume
Chevy Chase, MD
PROFESSIONAL SUMMARY
- Cisco certified Network Engineer, with hands on experience in teh internetworking industry and with high - level hands-on Design, Implementation and Support of LAN/WAN Cisco Router, Switches, Firewalls, F5 BIG-IQ, Cisco Data Center Nexus Switches and Wireless Controllers.
- Routers and Switches - Cisco routers and switches configuration and administration.
- Cisco IOS for configuration & troubleshooting of routing protocols: OSPF, EIGRP, RIP, BGP, MPLS.
- Implementing IP addressing schemes, LAN/WAN protocols, IP Services, to fulfill network requisites in different environments.
- Troubleshooting of DNS, DHCP and implementing complex layer 2 technologies such as VLAN Trunks, VTP, Ether channel, STP, RSTP.
- Tier me ISP Routing Policies, Network Architecture, IP Sub netting, VLSM, TCP/IP, NAT, PAT, DHCP, DNS. Redundancy with HSRP, VRRP, GLBP.
- Switching VTP, ISL/ 802.1q, IPsec and GRE Tunneling, VLANs, Ether Channel, Trucking, Port Security, STP and RSTP.
- Designed and replacing Cisco ASA firewall architecture with new next generation Palo Alto devices serving as firewalls and URL and application inspection devices.
- Documented standard operation policies for Cisco IOS, IOS-XR, IOS-XE, NX-OS and ASA firewalls.
- Configuring and troubleshooting remote access and site to site-in Check Point & ASA Firewall.
- Experience with F5 Load Balancing BIG-IP environment: GTM, LTM, APM or ASM. Dealt with creating VIP pools, nodes and created custom iRules for teh virtual servers like cookie persistency and redirection of URL on F5 ASM cookies issues and configures ASM policies.
- Understanding of latest security trends, vulnerability assessment techniques and attacks like DOS and MITM.
- Worked on BIG-IP Access Policy Manager (APM) contextually secures, simplifies, and protects user access to apps and data, while delivering teh most scalable access gateway.
- Experience in Tier- 2 support, BMC Remedy tool, NMS ticketing system, network troubleshooting, handling escalation, Root cause analysis (RCA) and SLA’s
- Automated administration using PowerShell, Perl & Python scripting.
- Extensive Knowledge on monitoring tools like SolarWinds, Net flow, Net brain, and Infoblox.
- Efficient at use of Microsoft VISIO/Office as technical documentation and presentation tools
- Provided 24x7x365 availability and on-call support as required by teh projects.
- Experience of communicating with customers, solving complex problems in a timely productive manner.
TECHNICAL SKILLS
Networking: Conversant in LAN, WAN, Wi-Fi, DNS, TCP/IP, ISCSI, Fiber, Firewalls/IPS/IDS
Hardware: Dell, HP, CISCO, IBM, Checkpoint
Operating Systems: Windows, NT, MS-DOS, Linux, Microsoft Windows 2008 R 2/ 2008/2003/2000 /2012 NOS family, Microsoft Active directory 2008/2003/2000, Cisco ISO
CISCO Switches: Cisco 3550, 3750, 45XX, 65XX series
JUNIPER Routers: Juniper MX480, 240, 80 series
JUNIPER Switches: Juniper EX4500, 4200, QFX 5100, QFX 5200
Firewalls: Check Point, ISA 2004/2006/ ASA 5585/5520, FWSM, Palo Alto /Checkpoint 4200/Nokia IP-560, Cisco PIX 535/525
Routing/Routers: OSPF, EIGRP, BGP, RIP-2, PBR, Route Filtering, Redistribution, Summarization, Static Routing, Cisco Routers ASR 1002 / 7606 / 7304 / 7206 / 3945 / 2951 / 2600
Infrastructure Hardware: IBM, HP, Compaq, Dell desktops\laptops\servers, Cabling, Network printers, IP KVM Switches, Cisco Routers & Switches, 802.11x Wireless gateways, Access Points, Network UPS, Storage Area Network, NAS, iSCSI SAN
Switching: VLAN, VTP, STP, Inter VLAN routing & Multi-Layer Switching, Multicast operations, Layer 3 Switches, Ether channels, Transparent Bridging
Protocols: TCP/IP, L2TP, PPTP, IPSEC, IKE, SSL, SSH, UDP, Confidential, DYNDNS, DNS, QIP
Security Tools: Wireshark, MS Visio, Incapsula.
PROFESSIONAL EXPERIENCE
Network Engineer
Confidential, Chevy Chase, MD
Responsibilities:
- Engineering traffic management solutions, including teh design, low level engineering, and application load balancing solutions for client applications across teh pre-provisioned ADC infrastructure.
- Collaborating with Application owners, Network Team, DNS Team, and Firewall Team, to migrate applications from Legacy Radware Alteon Load Balancer to New F5 BIG-IP Local Traffic Manager
- Engineering and configuring Virtual Server, Pools, iRules, Profiles, Persistence, and monitor on F5 LTM to match teh configuration teh Application had on Radware Alteon
- Successfully migrated from BIG-IP 3600 to vCMP 5200v.
- Used Confidential to dynamically assign reusable IP addresses to Confidential clients using Inflobox IPAM and resolved IP address conflicts.
- Monitoring and capturing teh traffic using network management tools like InfloBox.
- F5 migration of applications to new BIG-IP vCMP infrastructure. F5 build-out of teh base F5 BIG-IP infrastructure, including teh BIG-IP 10200v platforms and vCMP guest instances. Updated teh vCMP guest and exporting teh vCMP.
- Configured and troubleshooting teh F5 LTM and APM and providing level 2 support for teh customers.
- Configuration and troubleshooting F5 LTM and providing level 2 and level 3 support for teh customers.
- Allocation and designing appropriate virtual IP for F5 ADC through IPAM InfloBox.
- Extensively worked on code upgrades from v11.5.3 to v11.5.3 and downgrades from 12.0.0 to 11.5.4.
- Extensively worked on virtual F5 LTM module on VMware for application testing.
- Configured VCMP Host and created VCMP guests for Exchange and ACE migrations.
- Extensive knowledge in configuration via CLI (TMSH and advance shell).
- Good knowledge on basic iRules scripting and debugging.
- Creating custom profiles, health monitors, and also configuring SNAT pools, syslog and SNMP
- Extensive knowledge and experience regarding F5 BIG-IP LTM VIP configuration with health check.
- Extensive knowledge and experience with hosting SSL certificates on F5 platforms.
- Experience in managing teh load balancers in a high-availability infrastructure.
- Strong verbal and written communication skills, problem solving skills, customer service and interpersonal skill
Network Engineer
Confidential
Roles & Responsibilities:
- Involved in complete LAN, WAN development (including IP address planning, designing, installation, configuration, testing, maintenance etc.).
- Experience in deployment of Nexus 7010, 5548, 2148T, 2248 devices
- Experience working with Cisco Nexus 2148 Fabric Extender and Nexus 5000 series to provide a Flexible Access Solution for datacenter access architecture.
- Installation and maintenance of Cisco Layer 3 switches 3750, 4500X, 6500 in multi VLAN environment.
- Maintenance and configuration of Cisco ASR1000 series and 7200VXR routers at data center and deployment of 3900, 3800, 2951 and 2821 for branch connectivity.
- Working on Cisco 6509 and 4507 series switches for LAN requirements
- Involved in migration from Site-to-site GRE tunnels network to MPLS-based VPN for customer’s WAN infrastructure.
- Involved in Switching Technology Administration including creating and managing VLANS’s, Port security, Trunking, STP, Inter VLAN routing, LAN security etc.
- Configured BGP, EIGRP and OSPF and Policy based Routing. Configuring OSPF and Static routing on Juniper M and MX series Routers
- Provide Tier II Load Balancer expertise on F5 BigIP Local Traffic Managers (LTM). Designing F5 solutions/support for migration work of applications and websites from Cisco CSS Load Balancers to teh F5 BigIP Load Balancers.
- Managed teh F5 BigIP GTM/LTM appliances to include writing iRules, SSL offload and everyday task of creating WIP and VIPs.
- Coordinating with service providers for WAN link outages.
- Upgraded and updated Cisco IOS from 12.3T to 12.4.
- Used to DHCP to automatically assign reusable IP addresses to DHCP clients.
- Configured Cisco 7200 routers which were also connected to Cisco ASA 5508 security appliances providing perimeter-based firewall security.
- Configuring ASA 5510 Firewall and accept/reject rules for network traffic.
- Used Network monitoring tools to ensure network connectivity and Protocol analysis tools to assess and pinpoint networking issues causing service disruption.
- Optimized performance of teh WAN network consisting of Cisco 3550/4500/6500 switches by configuring VLANs.
- Extensive knowledge and troubleshooting in data communication protocols and standards including TCP/IP, UDP, IEEE 802.3, Token Ring, Cable Modem, PPPOE, ADSL, Multilayer Switching, DoD standards.
- Other responsibilities included documentation and supporting other teams.
Network Security Administrator
Confidential
Roles & Responsibilities:
- Provided Firewall Administration (Creating and removing firewall rules as needed), Network Security Administration, and Network Engineering duties within an OSPF / BGP environment
- Configured a Cisco ASR 1001 router to replace and upgrade
- Function as part of a Firewall and Security team in support of Checkpoint Firewalls, Zscaler Proxy, Juniper Portals, SecAuth, Open LDAP, and Active Directory.
- Configured Cisco 2821, 2921 and 3845 CE routers to change them from EIGRP to a complex MPLS environment dat includes VRF; IPSEC VPNs, Broadband Tunnels, HSRP and VLANs.
- Configured 2960, 3560, 3750 and 4507 switches to add VLANs for wireless project, and QoS protocols for MPLS.
- Accessed Cisco Prime NCS/WCS and 5508 series Wireless Controller to manage wireless networks.
- Configured Cisco Wireless Access Points 1100, 3600 through Cisco NCS Prime. Imported diagrams to create campuses, buildings and to map wireless AP's location.
- Responsible for verifying Change Records, router, switch and DHCP configurations before applying.
- Prep multiple routers simultaneously for circuit turn-up, pushing MPLS configuration, and MPLS migration using Cisco NCM and pre-scripted TCL configurations.
- SSH to routers to manually configure routers for: Controller Card Prep, applying MPLS Configurations, MPLS Circuit Turn-up, MPLS Circuit Migration, Broadband Migration, Post Migration Clean-up, PPP, PPP Multilink, QoS, VPNs, Broadband Tunnels
- Update Visio network diagrams, documentation (Excel, SharePoint), and before and after ICMPs.
Network Engineer
Confidential
Roles & Responsibilities:
- Installed and Configured teh Cisco 3845, 2951, 1800, 2600 routers and Cisco 4500, 2960 series switches with HSRP and various IGP routing protocols such as RIP, EIGRP, and OSPF.
- Experience with spanning tree and Network architecture design which includes dynamic routing, static routing, VLAN setup, traffic splitting.
- Identified and resolved VLAN, STP, and IP subnet issues. Implemented route redistribution between OSPF and EIGRP.
- Configuring and troubleshooting various routing protocols like BGP, OSPF, and RIP and switching protocols like STP.
- Configure, test and troubleshoot various networking devices before deployment, including Linux-base Servers, Routers, switches, firewall, CMTS: (Cisco, Dell, HP, Motorola).
- Perform system maintenance to proactively tune various network issues prior to occurrence.
- Dispatch field technicians on various sites, and provide guidance for network devices connections, configuration and troubleshooting.
- Create, open, resolve and close escalated trouble tickets using clarify and freedom vision ticketing system.
- Investigate, analyze and document technical issues, then provide recommendation to upper management.
- Provide 24/7 support and troubleshooting of a variety of network related issues including Guests connectivity and devices operability.
- Configure, monitor, and insure connectivity of LAN, and WAN sites.
- Daily phone and email troubleshooting of server-based connection issues.
Network Support Analyst
Confidential
Roles & Responsibilities:
- Deployed network as per company requirement and as designed by teh Senior Network Admin.
- Provide daily Maintenance and troubleshooting of various Network infrastructure issues.
- Carried out networks IP address assignment, and routing protocols implementation with emphasis on IP conservation and Network scalability.
- Deployed and monitored network security through IOS Network Security configuration.
- Support and maintain network devices including Routers, Switches, Hubs, PIX Firewalls, IP Phones.
- Provide software and hardware support to local and remote users over teh phone and e-mail.
- Investigate networking issues and communicate recommendations to upper management.
- Lead group of students in implementing various LAN, WAN, and Wireless technologies in teh DRDO communication Lab.
- Direct LAB Project in configuring various L2 Protocols (frame/relay, PPP, HDLC, STP, VTP ARP, CDP), an L3 protocols (rip1, rip2, EIGRP, OSPF, BGP)
- Coordinate lab project in configuring various securities systems including (IOS firewalls, IPS/IDS, PIX/ASA,IPSec-VPN, VLAN/ACL, SSH, SYSLOG), using CISCOs CLI and SDM.
- Racking and cabling of various networking equipment to ensure operational status.
- Erase and reload Routers and Switches basic configurations before and after each Lab session.