Sr. Network Engineer Resume
Menlo Park, CA
PROFESSIONAL SUMMARY:
- CCNP & CCNA certified network engineer around 8 years of experience in IT industry which includes expertise in the areas of Virtualization, Routing, Switching, Firewalls management, VPN management, and Designing, Deployment, Administration and troubleshooting.
- Hands on experience in Cisco IOS/IOS - XR/NX-OS, Juniper JUNOS for configuration & troubleshooting of routing protocols: MP-BGP, OSPF, LDP, EIGRP, BGP v4, MPLS, NAT, VLAN, STP, VTP, HSRP & GLBP.
- Design, implement, test, tuning of LAN/WAN, including Windows NT/2000/XP/2003/2008.
- Install/Configure Cisco 2500, 2600, 2800, 3600, 7200, 7600 routers VMware vSphere senior cloud computing administrator or with experience as a Linux and Windows System Administrator.
- Excellent skills to implement VLANS, private VLANS, Telecom, Voice VLANS, Port security, STP and RSTP (802.1W), standard and extended access lists for managing access based security, creating root views for administrative privileges.
- Advanced knowledge of OSI model, TCP/IP, Internet technologies, system security, firewall infrastructure, network architecture and Cisco network routing / switching (Layer2and 3) experience, including SAN/LAN and WAN, design and implementation which includesLayer1 toLayer7 experience.
- Expertise in network protocols, Firewalls and Communication Network design
- Implementing & troubleshooting Cisco 2900, 3600, 3900, 7200, 7600 series routers and Nexus 2k, 5k, 7k & 9k series switches
- Extensive knowledge of deploying & troubleshooting TCP/IP, Implementing IPv6, Transition from IPv4 to IPv6, Multilayer Switching, UDP, Fast Ethernet, Gigabit Ethernet, PBX based systems to VOIP Voice/Data Integration techniques.
- Implementation of DHCP, DNS, FTP, TFTP, Frame Relay, MPLS, ATM, ISDN.
- Extensive knowledge of Data Encryption Computer Networking and Cloud Computing.
- ITIL and process Compression Techniques DES.
- Triple DES, AES, RSA, DFA.
- Program managed the ACE & PS Services Teams, the premier Aruba Customer WLAN Engineers. Account PM for select Customers
- Ability to manage all phases of network installation and administration.
- Work on EMC-Project code name Caspian, a private cloud platform based on Open Stack
- Excellent customer management/resolution, problem solving and debugging skills with good verbal/written communications and presentation skills.
- Well organized, Self-starter, Quick learner, Self-motivated, Team player with analytical, technical and communication skills.
- Performed various configurations using the CISCO SDM like configuring VPN, Security Audits, Firewalls, VLANS.
- Hands on experience in troubleshooting and deploying of various IP Routing Protocols EIGRP, RIP v1/2, OSPF, Python, IS-IS & BGP.
- Requires in-depth and specialized knowledge and experience in Network Securityand mobile banking vmproducts; possesses extensive knowledge in related technologies, specifically, Network Security concepts.
- Systems and trends as it applies to forward and reverse proxies, remote access and certificate authority.
- Worked with cloud computing and Oracle database environments
- Analyzing Network Management Tools (Cisco Prime, Aruba Airwave) and generate Reports.
- Installing, configuring, Deploying and troubleshooting Cisco/Aruba devices like wireless controller 5508, WISM2 AP-3600, 3700, 6000 Controller AP-125.
- Advanced knowledge of F5 components (LTM, GTM, Big IP, AFM, APM,WOM, IRules)
- Worked on F5 and CSM load balancers deploying many load balancing techniques with multiple components for efficient performance.
- Understanding of network management, security and monitoring Fluent in C, C++, C#, Python, JavaScript, HTML5, CSS3.
- Flexible to work on/off shift to meet company, customer and internal requirements Detailed documentation skill set
- Implemented security policies using ACL, Firewall, IP Sec, VPN, AAA Security TACACS+, and Radius on different series of routers.
TECHNICAL SKILLS:
Network Equipment: Cisco routers: 1700, 1800, 2500, 2600, 3200, 3600, 3700, 3800, 4000, 7200, 7600
Cisco UC Product Suite: Versions 7.x, 8.x, 9.x, 10.x (CUCM, IM&P, CUPC, CUC, UCCX, CME versions 7.x, 8.x, 9.x, 10 and CUE)
Cisco switches: 2900 series, 3560, 3750, 4500, 6500, Avaya switches
Network Management: Network Troubleshooting, Hardware Troubleshooting, Network planning And Design, Network Administration SSH, Telnet, SNMP, SDM, ICMP, Cisco Works
Networking Protocols: RIPv1 & RIPv2, IGRP, EIGRP, OSPF, BGP, TCP/IP, IP Sec, UDP, VRRP, HSRP, ATM,MPLS, HTTP, FTP, STP, RSTP and PIM
Virtualization: Packet tracer 5.0, OPNET, Boson Netsim, GNS3
LAN Technologies: VLAN, Private VLAN, Spanning Tree, VTP, 802.1Q Trunkin, Fast EthernetGigabyte Ethernet, IGMP & IGMP Snooping
WAN Technologies: PPP, Frame relay, ISDN, ATM, MPLS, T1/T3 & E1/E3
Network Technologies: MANET, SONET, TDMA, FDMA, CDMA. DSL, POP3
Network Security: Cisco ASA5550/ 5540,NetScreen, Sonic Wall, Juniper SRX, Palo Alto, Checkpoints, AAA, Firemon, Filesystems, Cloud computing, Red Hat Storage, FREE RADIUS, CADA, LDAP, IPsec VPN, SSL SAN,VPN, IDS, IPS, Source Fire, Fire Eye, Cisco NAC (4.9.3), Cisco ISE, Aruba, RSA, RSA 2 Factor, SIEM, Qradar, Tripwire ACL, IPsec, VPN, Port-security, AAA, Zone-Based Firewalls, IOS based Build a Lab for the team using various Aruba controllers, Switches, Microsoft, Python, Airwave, CPPM Router security DFA, firewalls, IDS/IPS
Operating Systems: Windows NT, XP, 2000, 2003, Vista and Windows 7, CISCO IOS (11.X, 12. X)
PROFESSIONAL EXPERIENCE:
Confidential, Menlo Park, CA
Sr. Network engineer
Responsibilities:
- Experience with configuring Virtual Server and Configuring Load balancing methods in F5 LTM
- Identify, design and implement flexible, responsive, and secure technology services.
- Implementation of Nexus platform 7k, 5k series and deploying various advance features.
- Experience working with Network management software NSM.
- Experience with Firewall Administration, Rule Analysis, Rule Modification
- Createtestingtools and scripts as needed to support system leveltestingactivities.
- Configured CISCO ROUTERS (2500, 3000, 4000, and 7200) with RIP, EIGRP, and OSPF.
- Extensive work on creating VLANs and maintaining VLAN database throughout the network using VTP.
- Configuring and troubleshooting inter VLAN routing with 802.1Q trunking and L3 switches.
- Maintained and updated documentation of the Cisco UC environment
- Helped NOC Voice Engineers with any technical escalation related to Cisco UC
- Worked on STP to block redundant links for a loop free network Cloud computing/orchestration.
- Implementation of DHCP, DNS, FTP, TFTP, Frame Relay, MPLS, ATM, ISDN.
- Extensive knowledge of Data Encryption and Compression Techniques DES, Triple DES, AES, RSA.
- Ability to manage all phases of network installation and administration.
- Excellent customer management/resolution, problem solving and debugging skills with good verbal/written communications and presentation skills.
- Well organized, Self-starter, Quick learner, Self-Motivated, Team player with analytical, technical and communication skills
- Configure, troubleshoot and deploy PaloAlto Firewalls
- Fosters and manages a sales-oriented the customer’s trusted advisor for basic banking needs by thoroughly selling and cross-selling traditional banking products (e.g., deposits, credit, debit cards, small business)
- Designing and Implementing firewall rules and modifying existing rules in Palo MSS, Cisco ASDM, Juniper SRX and checkpoint firewalls.
- Designed, Installed and supported Installation and configuration of office-wide LAN. Installation of windows servers to provide inter-office Email and Shared Internet Access
- General desktop support, assisted web development and Exchange server administration, Provided graphic work.
- F5 Network Engineer's goal will be to deliver a high-quality product by committed delivery dates, consistently.
- Responsible for configuration of Cisco devices and troubleshooting. Worked on expansion and maintenance of network supporting hundreds of web hosting clients.
- Installation and configuration of DHCP and DNS servers.
- Configuring NAT, Dynamic NAT, inside Global Address Overloading, TCP, overload, distribution, Overlapping Address Translation.
- Worked on WAN connectivity between CISCO routers using T1, T3, Frame relay and troubleshooting connectivity issues. Working on Cisco ASA 5580, Cisco PIX 535, Juniper NS5400, Juniper SRX550.
- Worked extensively on network testing and troubleshooting.
- Extensively worked on creating security Policies and implementation plans for an improved Security solution.
- Installation and configuration of CISCO VPN concentrators 3000 for VPN tunnel and implementation of SDM for IPsec VPN.
- Design and create dedicated VLANs for voice and data with for prioritizing VOICE over data on catalyst switches and basic VOIP configuration.
- Testing and migrating locations from hub and spoke topology to MPLS.
Confidential, Montvale, NJ
Network Engineer
Responsibilities:
- Responsible and resolving escalated tickets in complex situation where business critical applications are running.
- Troubleshooting the different issues where complex routing and switching expertise are required.
- Build complete new datacenter environment having 4500-x VSS, NEXUS 5576 & 2248 VPC FEX. Access layer switch 4510 chassis and stacks of WS-C U.
- LAN and WAN design & implementation for existing and new environment. IP Subnetting and allocation ordering required BOM.
- Ordered bill of material (BOM) for a new datacenter and worked on cabling parts along with the SFP’s.
- MPLS, Internet and METRO turn up and hitless upgrade on a 4500-X VSS without any downtime.
- Worked on MPLS complex routing changes on BGP, OSPF & EIGRP where P2P circuits are implemented and preferred.
- LAN refreshment making a NON VSS 4500 replacing with 6510 VSS and replacing all end of life switches to 3850 switches and depend on the requirement and port density replacing 4500 chassis.
- LAN refreshment including design & implementation from collapse core to 3-tier architecture and WAN redundancy with a new service provider.
- Worked on cisco for bring outside vendors to communicate via VPN. Build GRE tunnels by connecting ASR9001 to the core for all different migration.
- Worked on server’s migration and understanding the VMware and virtualization which connected to End of life and End of support switches from 3560, 3750, 3850 etc. which are having no dual power source to the Nexus-5x as part of power redundancy.
- Created and designed network layout as well as documented network system design with detail information using Visio.
- Deployed Nexus 4500 switches in the distribution and core along with 9320 in the datacenter distribution block.
- Migrated Cisco Firewall to Juniper Net Screen and Juniper SRX Firewalls.
- Configured Site to Site to VPN on Palo Alto Firewalls.
- Troubleshooting and resolving escalated tickets
- Installed and maintained Wireless Access Points throughout the building.
- Configuring and managing layer-2 technologies like VLANs, STP, VTP & port-security.
- Provided technical assistance for LAN/WAN management & troubleshooting complex client issues.
- Used internal network monitoring tool (Solar Winds) to ensure network connectivity and Protocol analysis tools to assess the network issues causing service disruption.
- Pre-requisite network survey for the juniper environment, where juniper 4200-X, Nortel 5548, Aruba 6000 wireless control .wireless survey with floor maps to check the signal strength.
- Worked on DMZ environment along with security team where PALO ALTO’s are in place for our network. Involving in F5 load balancing too and represent same on VISIO.
- Implemented Switches and Routers based on customer requirements
- Worked on Multicast based on application requirements and UCS chassis connection
Confidential, Bellevue, WA
Network Engineer
Responsibilities:
- Worked with the data center planning groups, assisting with network capacity and high availability requirements.
- Designing and implementing test labs for the testing on CSM.
- Configured ASA 5525, 5540 and 5550 to ensure high-end security on the network with ACLs and Firewall.
- Created and design network layout and documented network system design with detail information using Visio software.
- Designing and configured Gigamon420for our network and deployed successfully in our data center as a replacement of fluke taps.
- Worked on Nexus platform7018, 5K series (5548, 5020 and 5010) and FEX (2248, and 2232) and deployed VPC, VDC and OTV and successfully implemented VSS on the Cisco switches.
- Deployed catalyst switches 6500, 4508, 4500 and 3750 in the distribution and access layer.
- Part of team implemented data center disaster recovery and responsible for configuration and testing purpose before production.
- Installand upgrade Cisco network switch and router IOS software
- Involved in managing the Routing Protocols OSPF and BGP on 7200 and 7600 and on ASR.
- Tested various BGP attributes like local preference, MED, Weight and replicated customer issues in the testing environment lab
- IP Allocation for all applications and servers with high availability throughout the company.
- Involved in providing access to user machines and partners outside our network by SSL and IPsec VPN tunneling.
- Configured port aggregation with Ether channel between distribution and access layer switches.
- Experienced best practices while configuring layer 2 and layer 3 switching features.
- Configured and tested Ether Channel links failover between Cisco Catalyst 6500 and Catalyst 4500.
- Configured and deployed Juniper SRX security platforms like SRX100, SRX210, SRX 1400 and SRX 3400.
- Worked on configuring and troubleshooting MX5, MX10, MX40, MX80, MX240, MX480 Juniper Routers and EX2200, EX3200 Juniper switches.
Confidential, Morrisville, NC
Network Engineer
Responsibilities:
- Troubleshooting latency and throughput issues on MPLS and Dedicated Internet Access circuits.
- Involved in installation of 3845 series Routers at branch office edge and 7604 series router at the Zonal office Edge. These were the CE equipment for MPLS, configured BGP on CE for route advertisement To PE.
- Experience configuring Virtual Device Context in Nexus 7010
- Performed network troubleshooting, second level technical support, and tape backup operations.
- Working on Cisco ASA 5580, Cisco PIX 535, CCIE Security, SonicWall, Juniper NS5400, Juniper SRX550.
- Created effective network security by migrating from Check Point FW-1 NG to ASA 5510 Firewalls
- Served as a main escalation point of contact for level II personnel.
- Coordinated with higher-level support and external vendors for resolution.
- Worked on F5 BIG-IP LTM 8900, configured profiles, provided and ensured high availability.
- Monitored Network Management System and responded to events, alarms and trouble tickets.
- Coordinated and managed events and trouble tickets related to network failures and thus followed by technical support which included problem determination, customer notification and updates with regard to escalation(s).
- Ability to configure layer 2switches for remote and admin purposes
- Involved in new desktop, laptop and printer deployment as well as service, repair, and inventory management of peripherals, and equipment.
- Included network services such as DNS, email, web, Servers,SAN, VPN and Firewall.
- Configured Nortel LAN 5530 and Nortel Chassis 8606/8610 Switches.
- Migrated from Frame-Relay/ATM network to MPLS-based VPN for customer’s WAN infrastructure.
- Run scheduled Virus Checks & Updates on all Servers & Desktops.
- Troubleshoot TCP/IP problems; troubleshoot connectivity issues in multi-protocol Ethernet, Environment.
Confidential
Network Engineer
Responsibilities:
- Dealt with the escalation problems from Level1 to Level3 (L2) technologies like HDLC, FR, ATM, PPP, LAG, and LACP for routing, switching and WAN connectivity issues using ticketing system Remedy.
- Configured Protocol Handling, Object Grouping and NAT on ASA Firewalls (5505).
- Implemented and delivered services to our customers and partners on a variety of platforms and vendors, including Cisco and F5
- Involved in Configuration of Access lists (ACL) on cisco routers for the proper network routing for the B2B network connectivity.
- Provisioning and troubleshooting Ethernet services, Gigabit networks and Connectivity issues with WAN types (T1, E1, DS3, and Frame relay) data circuit debugging.
- Involved in configuration and management of different Layer 2 switching tasks which includes address learning, layer 3 TCPIP protocol Suite, VLSM, IP address allocation and RIPv2, EIGRP, OSPF and BGP routing protocols, Multicast protocols like PIM, SSM & IGRP efficient switching etc.
- Involved in HSRP standby troubleshooting and load balancing protocol GLBP, Port channel management of the network
- Designed VLAN’s, access lists (ACL), troubleshooting IP addressing issues and Updating IOS images and other hardware installations
- Experience in troubleshooting VLAN, STP (Spanning tree protocol), & Switch Trunk and IP subnet issues
- Dealt with NAT configuration and its troubleshooting issues related access lists and DNS/DHCP issues within the SAN/LAN network.