Sr. Network Engineer Resume
New Brunswick, NJ
SUMMARY
- CERTIFIED Network professional with 5 years of experience in Cisco/Juniper s routing & switching, Cisco ASA/Juniper SRX firewall technologies, Riverbed WAN Optimization, Aruba wireless, F5 BIG - IP load balancing, Network automation and Cisco Voice over IP(CUCM, CUC & CME) with strong understanding of OSI model and TCP/IP.
- Expert in LAN/WAN setup, installation, configuration and troubleshooting in datacenter and desktop (Campus) environments.
- Expertise in Network architecture and Network operations of Cisco systems Catalyst/ Nexus, Juniper QFX switches and Cisco ISR, Cisco ASR, Juniper MX routers.
- Expert in Implementing, maintaining and troubleshooting routing protocols OSPF, EIGRP, RIP, BGP, IPV4 addressing - subnetting/supernetting, QOS and switching tasks such as VLANs, VTP, DTP, VLAN Trunking using ISL & 802.1Q, STP, RSTP, PVST+, Ether channel using LACP and PAGP, Port Security, Private VLAN s, first hop redundancy using HSRP, VRRP GLBP, Inter-Vlan routing and CEF.
- Experience Implemented Technologies like FTP, ACL, AAA, CDP, MPLS, VRF, DHCP, NAT/ PAT, TACACS, RADIUS, SNMP, IPSec and SSL / TLS VPNs.
- Experience with design and deployment of MPLS VPN, MPLS Traffic Engineering, MPLS, ITIL.
- IOS/JUNOS upgrade for Cisco & Juniper routers cum switches
- Worked extensively on Cisco ASA and Juniper SRX Firewalls.
- Strong experience in Network security using ASA Firewall, Juniper SRX firewall, Cisco IDS/IPS and IPSEC/SSL/TLS VPN and implementing security rules.
- Hands on Knowledge/experience on F5 load balancers, its methods, implementation and troubleshooting on LTMs and GTMs.
- Experience in design, implementation, and support of F5’s Big-IP Access Policy Manager (APM) software component in a complex enterprise environment
- Hands on experience in implementing Cisco Unified communications manager cluster on UCS C Series and managing the day to day VoIP operations.
- Experienced in Cisco Unified Communications Manager (CUCM) (8.x,10.x), Cisco Unified Presence (CUPs, IM & Presence), Cisco Unified Call Manager Express (CUCME), Cisco Unity Connection (CUC) ( 8.x, 10.x),
- Extensive knowledge in Voice networking protocols RTP, RTCP, SIP, H.323, MGCP, T1, T3, E1, Cisco power inline, IEEE 802.3 af and Codec standards( G711, G729, G728).
- InstallAvayaVoIP phones, Polycom and Cisco Codecs.
- Extensive experience with operating systems Cisco IOS, IOS-XR, NX- OS, JUNOS, TMOS, Windows client/server operating systems, Linux and Ubuntu.
- Expert in Implementing WAN Optimization between Remote sites and datacenters using river bed Steelheads.
- Hands on experience in installing and configuring Aruba Wireless Controllers, integrating access points, Airwave heat map generation, monitoring and 802.11(ac,n,g,a,b) standards.
- Unix/Linux Shell scripting skills, as well as Python automation.
- Hand-on experience in developing scripts using python scripting language.
- Configured syslog-ng forSplunkimplementation, Familiar with monitoring tools SolarWinds Orion,Splunk.
- VMware ESX/ESXi, VMware vCenter, VMware vCSA and Windows 2008 R2 Hyper-V.
- Efficient at use of Microsoft VISIO/Office as technical documentation and presentation tools.
- Demonstrated success record in Managing multiple tasks with proven ability to meet deadlines and proactively identifying the problem to solve complex technical issues.
- Highly enthusiastic, creative team player, project implementation, analytical/critical thinking and debugging skills with excellent verbal and written communication skills.
TECHNICAL SKILLS
Switch platforms: Cisco Catalyst Layer 2 -2950,2960. Layer3, 3850, 4500, 4900 Series Cisco Nexus 7K,5K,2K Juniper QFX 10008,10016
Router platforms: Cisco ASA 1000,9000 series Cisco ISR 3600, 3800, 3900 Series Juniper MX 460, 980
Firewalls: Cisco ASA 5510, 5550,5580
Load balancers: F5 Big IP LTM 8900 and 6400.
Network Protocols: Physical layer: Fiber optics, Copper twisted pair (UTP & STP), Copper CAT 5/5e/6 Cabling (RJ45, RJ11), 802.11(a/b/g/n/ac), T1, T3, E1,TDM, DWDM DLL: Ethernet, VLAN, ISL, 802.1Q trunking, DTP, VTP, Spanning-tree, PVSTP+, MSTP, Ether channel (LAgP,PACP), First hop redundancy( HSRP, VRRP,GLBP), Private Vlan, Port security, Frame Relay, ATM, CoS, CDP, CEF,TCAM, MPLS, Virtual Routing and Forwarding(VRF), VPLS, 802.1x, Multicast, Policy based routing VDC, VPC, VSS, cisco stack wise, Frame Relay, ATM. Network layer: IPV4, ICMP, ARP, IPV6, Static routing, Dynamic routing (RIP, OSPF, EIGRP, BGP), Routeredistribution, Route filtering, DHCP, NAT, QOS, prefix list, route map, route filtering, VLSMsubnetting/supernetting (VLSM/CIDR), MTU, Policy based routing (PBR). Transport layer: TCP, UDP, SSL/TLS, flowcontrol, MSS Application layer: SNMP, DNS, HTTP, HTTPS, FTP, TFTP
Voice protocols: NTP, RTP, RTCP, Signaling protocols - SIP, SCCP, MGCP, H323, 802.3af POE, CoDec Standards (g711,g729,g728& g726), T1/DS1, T3/DS3, E1.
Network Monitoring tools: Solar winds Orion, Splunk, Cisco RTMT
Security Protocols: AAA, TACACS+, Radius, NAT/PAT, ACLs, IPsec VPN, GRE, SSL / TLS VPN, SSH, IPS/IDS
Operating Systems: Windows server 2003, Windows 2008, Linux, Windows 7/10
Network Operating Systems: Cisco IOS, NX-OS, CATOS, Aruba, JUNOS, TMOS
Documentation Tools: Microsoft Office, Visio, Project, SharePoint
Softwares: GNS3, Wireshark, netflow, Opnet, Microsoft office (Visio, Word, excel, Power point & Outlook).
PROFESSIONAL EXPERIENCE
Confidential - New Brunswick, NJ
Sr. Network Engineer
Responsibilities:
- Involved in complete LAN, WAN development (including IP address planning, designing, installation, configuration, testing, maintenance, troubleshooting etc.)
- Configured network using routing protocols such as BGP, EIGRP, OSPF and troubleshooting L2/L3 issues. Configuring Switches with: VLANs, Trunking, VTP, TCP/IP, SNMP
- Worked on Juniper devices like M, MX, T routers on advanced technologies like, MPLS VPNs, TE and other service provider technologies.
- Managed AD Domain Controller, DNS and DHCP Servers and configurations
- Responsible for the IPAM (IP Address management) system for a very large WAN/LAN network(QIP).
- Regular upgrade and maintenance of Infrastructure, Installing, configuring, and maintaining Cisco Switches (2900, 3500, 7600, 3700 series, 6500 series) Cisco Routers (4800, 3800, 3600, 2800, 2600, 2900, 1800, 1700, 800), Juniper Routers and Firewalls, Nexus 7k,5k & 2k, f5 BIG IP, Palo Alto Firewalls, Bluecoat Proxy and Riverbed Steelhead appliances. Working on Cisco IOS, NX-OS check point firewalls
- SRX firewall design and installation (Application and URL filtering, Threat Prevention, Data Filtering). Configured and maintained IPSEC and SSL VPN's on Juniper SRX Firewalls.
- Configured network access servers and routers for AAA security (RADIUS/ TACACS+)
- Reviewing current network security practices and form new PAM guidelines.
- Expertise in configuring and troubleshooting of Palo Alto firewalls and their implementation Experience in site-to-site and remote access VPN solutions.
- Deployment of Palo Alto firewall into the network. Configured and wrote Access-list policies on protocol-based services.
- Involved in configuring IP, IPsec, mGRE/GRE tunnels, Multicast, NAT overload, VRF, Policy Based Routing (PBR), Dynamic Multipoint Virtual Private Network(DMVPN) and MPLS.
- Configuring VPN, GRE tunneling, Checkpoint, Frame Relay, ATM, MPLS, IDS/IPS, Splunk proxies for threat management. part of the security team and daily tasks included firewall rule analysis, rule modification and administration
- Installed and configured SSH (Secure Shell) encryption to access securely on Ubuntu and Red hat Linux.
- Automate task for system performance, networking monitoring, and configuration management using Perl, Python, and Shell Scripting.
- Designed and Deployed F5 LTM, GTM, APM, AFM, ASM Solutions.
- Designed, built, and deployed F5 Big IP load balancers (8900’s, Viprions, Blades), F5 Big IP TCL, F5 Big IP TMOS, F5 Big IP LTM Local Traffic Manager, F5 DNS Domain Name Services.
- Worked on load balancers like F5 10050s, 10250v, GTM 2000s, 2200s to troubleshoot and monitor DNS issues and traffic related to DNS and avoid DDoS.
- Problem Solving and maintain documentation throughout the project life cycle.
Confidential
Network Engineer / Senior Network engineer
Responsibilities:
- Routing: Configured and managed routing protocols- OSPF, EIGRP in high speed (10 Gbps) LAN and BGP routing policy to influence incoming traffic paths.
- Switching: Configured and managed switching architecture consisting of Core-spine, distribution (inter Vlan), access(intra Vlan) Switches and terminal servers.
- WAN Optimization: handled riverbed steelheads upgradation project to CX5070 model (Serial Configuration) and configured optimization rules through CMC.
- Quality of service: implemented modular DSCP to prioritize real time Voice & video traffic for all new site network implementations.
- Achieved certifications on CCNA (R&S) in January 2014 & CCNP (Routing) in January 2015. configured Point to point GRE over IPSEC Tunnels, port security, Access Control lists, SSH access and AAA for router and switch.
- ASA firewall design and installation (Application and URL filtering, Threat Prevention, Data Filtering). Configured and maintained IPSEC and SSL VPN's on ASA Firewalls.
- Got trained in fore scout counteract operation & Linux operating system
- Wireless(Aruba):
- Controller: Implemented the Aruba WLAN Infrastructure on 7240 & 6000 series controllers (Controller Configuration- AP groups, SSID profile,Authentication Profile, Controller Clustering) & integrated 1500access points (WAP 105,205) to controllers.
- Airwave/ Aruba Central: Worked on Aruba airwave for generating RF Network implementation plan, Create Bill of Materials(BOM), Monitoring Arubainfrastructure, report generation, rogue detection and for end user issues troubleshooting. generated and worked on over 25 Aruba TAC cases related to wireless design and operational issues.
- Achieved ACMA certification in September 2014
- Implemented Cisco Voice Subscribers on UCS C210 server and integrated to CUCM cluster. Performed the task ofinstalling & integrating phones, Cisco video end points, telepresence equipment, fax machines, E1 lines, configuring CSS, Establish SIP Trunks, partitions, Device pools, hunt groups, route patterns, Route group, route list, trunks, creating user profiles, voice mail profiles in bulk using templates, phone troubleshooting (Phone Models:7911,7937,7962,8811,8832,8861) in CUCM(v8.6).
- Handled the project of Transitioning internal numbers to E.164 numbers, Nortel to cisco Phones
- Integrated Cisco 3900 voice gateways in to the cluster and configured PSTN E1 lines and logical partitioning. Configured fax lines on VG224. Implemented SRST for remote sites
- Achieved CCNA(Voice) certification in May 2014.
- Automated network configuration tasks using Python and Shell Scripting.
- Performed automated network backups using HP Network Automation(HPNA) tool.
- Planned, Created and implemented Change requests(CRQ) for network maintenance, system upgrades and BAU Changes through BMC Remedy during weekends and after work hours in accordance with ITIL. handled operational incidents related to port activation / deactivation, VLAN Addition, initial network support, and network device replacement (RMA), VPC, VDC, VSS, F5 BIG-IP LTM(irules), Cisco phone troubleshooting, integrating cisco/polycom video and voice devices to CUCM, switch end user connectivity issues, Aruba wireless connectivity/authentication(ClearPass) issues and security vulnerabilities with in SLA.
- Documented and maintained network diagrams using Microsoft Visio. prepared and presented network performance metrics from SolarWinds Orion, call detailed record (CDR) logs analysis report and wireless utilization report as power point presentations and assisted in making technical decisions and improvements to maintain technology advancement.
- Worked with both internal (Windows, Web, Desktop, Unix, Development) and external facing clients, vendors, carriers on the circuit installation, connectivity setup. Coordinate necessary steps related to carrier maintenance notices.
- Performed quarterly disaster recovery exercises in data, voice and wireless networks.
- Worked with the Information Security team and ensured security and compliance requirements are met and helped with the investigation, analysis and correction of network vulnerabilities.
- Maintained Network inventory & vendor contact data. worked with vendors to isolate network cabling issues, telecom providers and other Technology teams to bring issues to resolution.
- Got trained in UNIX/Linux during training period. mentored junior team members.
- Initiating, replacing and returning Cisco RMA, supporting video surveillance over IP device installation.
- Promoted as Senior Network Engineer on December 2015.