Network Engineer Resume
Atlanta, GA
SUMMARY
- Highly motivated network engineer with 6 Years of experience in installation, configuration, management, administration and troubleshooting of routing, switching and Firewall networks.
- Experience in installing, configuring and troubleshooting of Cisco 7200, 7600, 3800, 2800, 2900 series Routers, Cisco Catalyst 3750, 3850, 4500, 6800 series switches.
- Cisco Security: SSH, SDM, NAT/PAT, ACLs, AAA, Layer 2 Security, Layer 3 Security, IPS/IDS, Cisco (ASA, PIX) 5510, Cryptography, VPN, IPsec.
- Worked onLoadBalancersCSM andF5LTM like 3900, 6900 for corporate applications.
- Experience working with Cisco Nexus2148 Fabric Extender and Nexus5000 series to provide a Flexible Access Solution for a datacenter access architecture
- Experience with configuring Nexus2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus5000
- Experience working with OTV & FCOE on the nexus between the datacenters
- Design, and configuring of OSPF, BGP on Juniper Routers and SRX Firewalls.
- Worked on the migration to newCheckpointR75firewallsfrom Juniperfirewalls.
- Provided tier 3 support forCheckpointFirewall - 1 software to support customers
- Worked extensively on Cisco Firewalls, Cisco PIX (506E/515E/525/) & ASA 5500(5510/5540) series.
- Experience with convert PIX rules over to the Cisco ASA solution.
- Network security including NAT/PAT, ACL, VPN Concentrator.
- Well Experienced in configuring protocols HSRP, GLBP, VRRP, ICMP, IGMP, PPP, HDLC, PAP, CHAP, and SNMP.
- Moderate knowledge in configuring and troubleshooting Cisco Wireless Networks: LWAPP, WLC, WCS, Standalone APs, Roaming, Wireless Security Basics, IEEE 802.11 a/b/g, RF spectrum characteristics.
- Provides technical leadership forproblem escalation and resolution.
- Hands on experience on Up-gradation of Cisco IOS & Firmware of different Cisco devices & modules.
- Experience in Network analysis and capacity planning using tools like sniffer, Wireshark, Ethereal and tcpdump.
- Experience of communicating with customers, solving complex problems in a timely productive manner.
- Proven ability in problem-solving, decision analysis, Prioritizing work flow, multitasking and team collaboration and Demonstrated leaderships skills and have ability to lead team if necessary
TECHNICAL SKILLS
Switching: LAN, VTP, STP, PVST+, RPVST+, Inter VLAN routing & Multi-Layer Switch, Multicast operations, Layer 3 Switches, Ether channels, Transparent Bridging.
Network security: Cisco (ASA, PIX) 5510, Cisco - ACL, NAT, IPSEC VPN, AAA, IDS, TACACS, RADIUS, Syslog Server Logging, Junos - security policies
Load Balancer: Cisco ACE load balancer, F5 Networks (Big-IP)
LAN: Ethernet (IEEE 802.3), Fast Ethernet, Gigabit Ethernet
WAN: Leased lines 64k - 155Mb (PPP / HDLC), Channelized links (E1/T1/E3/T3), Fiber Optic Circuits, Frame Relay, ISDN, Load Balancing
Operating Systems: Windows (98, ME, 2000, XP, Server 2003/2008, Vista, Windows 7), Basic Linux
Routing: OSPF, EIGRP, BGP, RIP-2, PBR, IS-IS, Route Filtering, Redistribution, Summarization, Static Routing.
Various Features & Services: IOS and Features, HSRP, GLBP, IRDP, NAT, SNMP, SYSLOG, NTP, DHCP, CDP, TFTP and FTP Management.
Network Management: SNMP, Cisco works LMS, HP open view, Ethereal, Vital QIP, Riverbed, Bluecoat proxy, Solar winds NPM
PROFESSIONAL EXPERIENCE
Confidential, ATLANTA, GA
Network Engineer
Responsibilities:
- Strong experience in Networking, including hands-on experience in providing network support, installation and analysis for a broad range of LAN/WAN communication systems
- Configuration of Palo Alto firewalls for remote site implementation. Configured Object Grouping on Palo Alto Firewalls.
- Configured and monitored Firewall logging, DMZ’s and related security policies.
- Convert Campus WAN links from point to point to MPLS and to convert encryption from IPsec/GRE to GetVPN.
- Key contributions include troubleshooting of complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF & BGP.
- Conversions to BGP WAN routing. Which will be to convert WAN routing from OSPF to BGP (OSPF is used for local routing only) which involves new WAN links.
- Implement and configured GLBP (on core switching and for VPN redundancy), HSRP on different location of office on the switched network and managing the entire multilayer switched network
- Engineering the configurations for the different branches, campus locations
- Configure LTM system/F5Loadbalancers
- Configuration changes toF5GTM devices.
- Experience with configuring Nexus2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus5000.
- Worked on the redistribution of connected routes on all OSPF devices so that all connected subnets are advertised via OSPF
- Configured IPSEC VPN tunnels betweenCisco ASA 5500 Seriesfirewall devices using IKE preshared keys, 3DES and MD5
- Troubleshooting and implementing Monitors and I rule onf5equipment
- Responsible for Cisco ASA firewall administration across our global networks
- Involved in the removal of EIGRP from all devices and making OSPF the primary routing protocol.
- Involved in the modification and removal of BGP from the MPLS routers.
- Worked on Orion for analysis and monitoring purposes
- Also, prepared documentation for various Vlans and Voice subnetworks and worked on Visio for the same.
- Replace branch hardware with new 2851 routers and 2960 switches.
- Responsible for layer 2 securities which was implemented using a dedicated VLAN ID for all trunk ports, setting the user ports to non-trunking, deployed port security when possible for user ports
- Enabled STP attack mitigation (BPDU Guard, Root Guard), using MD5 authentication for VTP, disabling all unused ports and putting them in unused VLAN and ensuring DHCP attack prevention where needed
- Performed basic security audit of perimeter routers, identifying missing ACL’s, writing and applying ACL’s
- Experience with convert PIX rules over to the Cisco ASA solution.
Confidential, COLUMBUS, OH
Network Engineer
Responsibilities:
- Negotiate VPN tunnels using IPSec encryption standards and also configured and implemented site-to-site VPN, Remote VPN.
- Configuring IPSEC VPN on SRX series firewalls
- Configuration and troubleshooting on HSRP, VRRP, GLBP, RSTP, MST related issues coming in network environment.
- Invovled in configuration of VoIP devices such as Avaya, Alcatel and other voice related core devices such as UCCM & UCM.
- Sound knowledge in SIP, Trunking and Jitter Clearance.
- Configuration and extension of VLAN from one network segment to their segment between Different vendor switches (Cisco, Juniper)
- Involved in coding with multiple languages like Unix, Linux.
- Configuring STP for switching loop prevention and VLANs for data and voice along with Configuring port security for users connecting to the switches.
- Working on Network design and support, implementation related internal projects for establishing connectivity between the various field offices and data centers.
- Design, and configuring of OSPF, BGP on Juniper Routers and SRX Firewalls
- Ensure Network, system and data availability and integrity through preventive maintenance and upgrade. Supporting EIGRP and BGP based PwC network by resolving level 2 &3 problems of internal teams & external customers of all locations.
- Worked on the migration to newCheckpointR75firewallsfrom Juniperfirewalls.
- FirewallPolicy implementation onCheckpointNGX R52 and R54.
- Providing daily network support for national wide area network consisting of MPLS, VPN and point to point site.
- Configuring objects such asLoadBalancerpools for local traffic management onF5Load Balancers.
- Worked on commissioning and decommissioning of the MPLS circuits for various field offices.
- Worked onF5BIG-IP LTM 6900, configured profiles, and provided and ensured high availability
- Completed service requests (i.e. - IP readdressing, bandwidth upgrades, IOS/platform upgrades, etc)
- Configuring HSRP between the 3845 router pairs for Gateway redundancy for the client desktops.
- Configuration and extension of VLAN from one network segment to their segment between different vendor switches (Cisco, Juniper)
- Migration of existing IPSEC VPN tunnels from Pre-Shared key to Certificate Authority for purpose of scaling.
- ConfigureVRRP & GLBP andVLANTrunking802.1Q & ISL, STP, Port Security on Catalyst 6500 switches.
- Updated the HP open view map to reflect and changes made to any existing node/object.
- Handled SRST and implemented and configured the Gateways, Voice Gateways.
- Worked on a broad range of topics such as routing and switching, dedicated voice access, planning and implementation, large-scale high-visibility outages, change management coordination, proactive monitoring and maintenance, disaster recovery exercises, and core network repairs.
- Responsible for service request tickets generated by the helpdesk in all phases such as troubleshooting, maintenance, upgrades, patches and fixes with all around technical support
- Designed and implemented Cisco VoIP infrastructure for a large enterprise and multi-unit office environment. Met aggressive schedule to ensure a Multi-office reconfiguration project which was successfully delivered
- Involved in L2/L3 Switching Technology Administration including creating and managing VLANs, Port security, Trunking, STP, Inter-Vlan routing, LAN security.
- Worked on the security levels with RADIUS, TACACS+.
- Network Cabling, dressing, labeling and troubleshooting various network drops onsite.
Confidential
Network Administrator
Responsibilities:
- Configured the BGP as a WAN protocol and OSPF/EIGRP as interior routing protocol.
- Provide technical support for clients with dial-up internet issues.
- Monitoring the NMS system for different Network Alerts
- Ensure problems are satisfactorily resolved in a timely manner with focus on providing a high level of support for all customers.
- Once trouble ticket has been created keep customer informed of status of ticket and estimated time to repair.
- Worked onF5and CSMloadbalancersdeploying manyloadbalancing techniques with multiple components for efficient performance
- Installed and configured DNS and DHCP server.
- Handled SRST, Voice routing protocols, QoS and Voice Gateways and even maintained network engineering framework.
- Involved in troubleshooting of DHCP and other IP conflict problems.
- Performed switching technology administration including VLANs, inter-VLAN routing, Trunking, STP, RSTP, port aggregation & link negotiation.
- Designed and installed new Branch network systems. Resolved network issues, ran test scripts and prepared network documentation.
- Checking and configuring Cisco 7613 routers at data center for remote site’s issues.
- Working on Cisco 6509 and 4507 series switches for LAN requirements, that includes managing VLANs, Port Security and troubleshooting LAN issues
- Configuration of Access List ACL (STD, Ext, Named) to allow users all over the company to access different applications and blocking others.
- Used Cisco ACE load balancer between the servers inside the network and in the DMZ.
- Responsibilities also include technical documentation of all upgrades done
- Attending meetings and technical discussions related to current project.
- Monitor and maintain all network infrastructure equipment ensuring minimized downtime
Confidential
Jr. Network Administrator
Responsibilities:
- Monitor the operability and reliability of the network. Configured STP for loop prevention and VTP for Inter-VLAN Routing.
- Configuration and troubleshooting of Static, EIGRP, OSPF, RIP V2.
- Configuration of Standard and Extended ACLs for Security.
- Technical assistance for LAN/WAN management and complex customer issues.
- Troubleshooting the issues related to routing protocols.
- Managing, troubleshooting and monitoring the network using Network Monitoring tool.
- Network Security implementation with Cisco IOS Feature Set, NAT, and Simple Network Management Protocol.
- Provided support for troubleshooting and resolving Customer reported issues.
- Performed IOS upgrades on Catalyst 3550, 2950, 1900 switches, and 3600, 2600 and 2500 routers.
- Backing up and upgrading Cisco IOS using TFTP server.
- Installed wireless access points (WAPs) at various locations in the company.
- Maintained redundancy on Cisco 2600, 2800 and 3600 router with HSRP and VRRP.
- Monitor the operability and reliability of the network.
- Responsible for SNMP Monitoring and Performance Tuning software.
- Designed WAN structure to prevent single point of failure in case of link failure.
- Maintenance and Troubleshooting of connectivity problems using PING and traceroute.
- Planning and Implementation of Subnetting, VLSM to conserve IP addresses.