Network Engineer Resume
Bellevue, WA
SUMMARY
- A dedicated Network Professional wif over Seven (7) years of experience in Designing, Implementation, Administration, Operations and Troubleshooting of enterprise data networks as a Network Engineer.
- Extensive work experiences on Cisco Routers, Cisco Switches, Load Balancers & Cisco Firewalls
- Experience working wif 9K/7K/5K/3K series Cisco Routers
- Proficient hands on experience in configuring Cisco Catalyst 2900,2960, 3560, 3750, 4500, 4900, 6500 series and Nexus 2248, 5548 and 7010 switches.
- In - depth understanding in implementing and configuring F5 Big-IP LTM-3600,4200, 6950 and 8950 load balancers
- Strong working experience on Cisco ASA, Juniper SRX and Palo Alto Firewalls.
- Working noledge of Firewall, LDAP, AAA, TACACS/RADIUS, and IPSEC.
- Comprehensive expertise in teh implementation of analysis, optimization, troubleshooting and documentation of LAN/WAN networking systems.
- Expertise in Configuration of Virtual Local Area Networks (VLANS) using Cisco routers and multi-layer Switches and supporting STP, RSTP, PVST, RPVST along wif trouble- shooting of inter-VLAN routing and VLAN trunking using 802.1Q.
- Expertise in design and implementation of OSPF, EIGRP, BGP and Policy routing on Cisco Routers.
- Implemented redundancy wif HSRP, VRRP, GLBP, Ether channel technology (LACP, PAgP).
- Implemented traffic filters using Standard and Extended access-lists, Distribute-Lists, Route Maps and route manipulation using Offset-list
- Proficient in implementing teh network monitoring tools (Solarwinds, HP NNMI, Splunk, Spectrum, Nagios etc. ).
- Designed and implemented teh F5 LTM’s (3600, 4500, 6900, 8950 etc.)
- Implemented F5 in both Active/Active & Active/Standby mode.
- Implemented VLAN Fail safe and other HA parameters and provided break fix when their is a production issue.
- Designed and implemented LTM’s wif Route domains (Multi-tenant functionality).
- Designed and implemented VIP’s wif http /client and server ssl/persistence/irules etc. as per teh application functionality.
- Managed SSL offloading on teh F5 LTM (Certificates being pushed from Venafi).
- Worked on hardware related issues (FIP’s, Switch fabric etc.).
- Performed TCPDUMP for teh packet analysis when their is a production issue.
- Performed migration projects (Ex- Migration of teh configuration from two pairs of legacy 3600/4500 LTMs to 8950 wif minimal downtime).
- Built teh Visio diagrams of teh network architecture.
TECHNICAL SKILLS
Routers: Cisco 2600, 2800, 2900, 3600, 3800, 3900, 7200, 7600 Juniper M7i, M10i, M320
Switches: Cisco Catalyst 2950, 3550, 3750, 4500, 4900, 6500 Nexus 2K, 3K, 5K, 7K. Juniper EX4200, QFX3500
Firewalls & Load Balancers: Cisco ASA 5540 series, IPSEC and SSL VPN, IPS/IDS, IOS Firewall features, DMZ set up, F-5 LTM (3900, and 6900), PaloAltoNetworksFirewalls, Checkpoint Firewalls.
Routing: OSPF, EIGRP, BGP, RIP, PBR, Route Filtering, Redistribution, Summarization, Static routing
Switching: VLANs, Dot1Q, VTP, STP, RSTP, VLAN Maps, HSRP, GLBP, CEF, DCEF, VPC, VDC.
LAN/WAN Technologies: Ethernet, Frame relay, MPLS, HDLC, PPP, T1, T3, OC Standard, DSL, ISDN
Protocols: IP, TCP, UDP, ICMP, NAT, DHCP, SNMP, IPSEC, SSL, HTTP, SSH
AAA Architecture: TACACS+, RADIUS, Cisco ACS
Network Monitoring and Management Tools: CA Spectrum, Solarwinds, HP NNMI, Nagios
PROFESSIONAL EXPERIENCE:
Confidential, Bellevue, WA
Network Engineer
Responsibilities:
- Assist in creating network design standards for hardware and software installations.
- Develop and maintain Network Documentation (Visio diagrams, Excel spreadsheets, Word documents, etc.)
- Troubleshoot and test application functionality through load balancers in both test and production environments.
- Configuring Virtual Server, Service Groups and Load balancing methods.
- Worked on fixing various custom health monitors and templates like LDAP.
- Configuring WIDE IP and WIDE IP pool on F5 GTM’s to support load balancing between data centers.
- Work on Checkpoint Firewall policy provisioning and used Provider 1 for troubleshooting and implementing rules on check point firewall.
- Worked on InfoBlox to create DNS Records (CName, A-Record and Host records) for corresponding Wide IP’s and Hosts as required.
- Follow process and procedures for Change and Configuration management.
- Migrate retail store network wif new routers, switches and cradle point.
- Configuring and administering routing protocols OSPF, BGP and Static.
- Worked on decommissioning several network devices from Nexus Data center.
- Design, implement, and develop network designs for applications used in TMO.
- Create Low Level and High Level design documents in accordance wif customer standards.
- Conduct research on network products, services, protocols, and standards to remain abreast of developments in teh networking industry.
- Develop detailed template-based plans including: implementation, testing and back out procedures for all network implementations, upgrades and modifications.
- Worked as part of a team to manage Enterprise Network Infrastructure as an IP.
- Administration of Checkpoint firewalls in teh DMZ and FWSM in teh Server Farm to provide security and controlled/restricted access.
- Creating, adding and deleting new rules and objects on checkpoint firewalls R77.30
- Push firewall rules to live production environments during maintenance window.
- Worked wif teh Enterprise Change Management process such as authoring MOPs, creating work orders and tickets.
- Providing daily Network support for nationwide networks wif MPLS, VPN and point-to-point site.
Confidential . Richmond, Virginia
Network/F5 Engineer
Responsibilities:
- Managing Confidential ’s e-Commerce IT infrastructure.
- Worked on implementation and operations wifin teh e-Commerce environment.
- Managed both pre-production and production infrastructure.
- Followed standard ITIL framework to manage our IT operations.
- Responsible to manage all teh Certificates installed on teh F5 LTM’s.
- Supported and trouble shot wif various networking tools such as TCP-DUMP, ssldump, ping, telnet etc. Providing data backups.
- Responsible for writing teh change procedure documents.
- Responsible for writing teh As-build documents for all teh new design and implementation projects. Responsible for handling teh ongoing incidents in teh e-Commerce infrastructure and provide teh break-fix.
- Installed and Managed Wide IP’s for teh current and new projects.
- Ensured that all teh WIP’s are in teh available state and health checks towards teh LTM’s are successful. Performed code upgrades.
- Troubleshoot and resolve teh health check failures for teh pool members.
- Implemented and managed teh Load balance methods at both pool and Wide IP level.
- Designed and implemented teh F5 LTM’s ( 3600, 4500, 6900, 8950 etc)
- Implemented F5 in both Active/Active & Active/Standby mode.
- Implemented VLAN Fail safe and other HA parameters and provided break fix when their is a production issue.
- Designed and implemented LTM’s wif Route domains (Multi-tenant functionality).
- Designed and implemented VIP’s wif http /client and server ssl/persistence/iRules, etc. as per teh application functionality.
- Involved in importing teh ASA rules toPaloAltoNetworksFirewall rules
- Managed SSL offloading on teh F5 LTM (Certificates being pushed from Venafi).
- Worked on hardware related issues (FIP’s, Switch fabric etc.).
- Performed TCPDUMP for teh packet analysis when their is a production issue.
- Performed migration projects (Ex- Migration of teh configuration from two pairs of legacy 3600/4500 LTMs to 8950 wif minimal downtime).
- Built teh Visio diagrams of teh network architecture.
Network Support Engineer/L2
Responsibilities:
- Played responsible role for implementing, engineering, & level 2 support of existing network technologies / services & integration of new network technologies / services
- Worked on 2600, 3500, 7613 Cisco Routers and 4500 and 6500 series Cisco Switches
- Configured and managed Cisco access layer routers and switches
- Tested various BGP attributes like local preference, MED, Weight and replicated customer issues in teh testing environment lab
- Designed WAN structure to prevent single point of failure in case of link failure
- Configured PVSTP+ for loop prevention and VTP for Inter-VLAN Routing
- Implemented port aggregation & link negotiation using LACP and PAGP
- Involved in design, implementation and configuration of HSRP for load balancing on L3 switches on different location of office on teh switched network
- Configured and deployed BIG-IP LTM 6900 for providing application redundancy and load balancing
- Configured Client VPN technologies including Cisco’s VPN client via IPSEC
- Configuring switch for 802.1x port based autantication
- Troubleshot issues and outages on Trunks and Router interfaces and firewalls extensively
- Involved in operations and administration of WAN consisting Ethernet Handoffs, T1, DS3, and Optic Fiber Handoffs
- Provided technical assistance for LAN/WAN management and complex customer issues
- Provided support for troubleshooting and resolving customer reported issues
- Assisted Network Engineer in teh installation and configuration of firewalls
- Carried out route redistribution & manipulated route updates using distribute lists, route-maps & administrative distance, and offset-lists
Confidential
Network Engineer
Responsibilities:
- Configured RIP and EIGRP on 2600, 2900 and 3600 series Cisco routers
- Implemented VTP and trunking protocols (802.1q and ISL) on 3560, 3750 and 4500 series Cisco Catalyst switches
- Performed on-call support for installation and troubleshooting of teh configuration issues
- Worked on installation, maintenance, and troubleshooting of LAN/WAN (ISDN, Frame relay, NAT, DHCP, TCP/IP)
- Configured Access List (Standard, Extended, and Named) to allow users all over teh company to access different applications and blocking others
- Configured STP for loop prevention and VTP for Inter-VLAN Routing
- Performed maintenance and troubleshooting of connectivity problems using PING, and Trace route
- Provided Network and Security Architecture and Operations support services for Windows 2008 based web, application and database servers
- Provided Technical support for improvement, upgradation, and expansion of teh existing network architecture
- Done troubleshooting of TCP/IP problems and connectivity issues in multi-protocol Ethernet environment.
Confidential
Network Engineer
Responsibilities:
- Upgraded teh IOS on 1900, 2900, 3500 series Cisco Catalyst switches and 2500, 2600, 3600 series Cisco routers using TFTP
- Performed network troubleshooting, technical support, and recording of backup operations.
- Served as a main escalation point of contact for level I team
- Coordinated wif higher-level support and external vendors for resolution
- Maintained all servers & network equipment wif current stable firmware, IOS images & access control lists
- Worked on network-based IT systems such as racking, stacking, and cabling
- Implemented strategies for operating systems, virus protection, mail systems and Internet services
- Performed scheduled Virus Checks & Updates on all Servers & Desktops.
- Updated teh anti-virus, spam blockers, and other security software
- Resolved all computer related problems, monitored and maintained system functionality and reliability by identifying ways to prevent system failures