Senior Network Engineer Resume
Albany, NY
SUMMARY
- 7+ years of experience in the design, implementation, analysis, optimization, troubleshooting and documentation of LAN/WAN networking systems in Branch and Data Center environments.
- Experienced configuring in all Layer 2 technologies like, Virtual Local Area Network (VLAN), VLAN Trunking Protocol (VTP), Dynamic Trunking Protocol (DTP), Spanning Tree Protocol (STP), RSTP, MST and Per VLAN Spanning Tree (PVST).
- Expert knowledge of redundancy protocol like HSRP and VRRP.
- Worked on capacity and bandwidth augment like ether channel/port channel/bundling (both L2 and L3) using LACP, GLBP, PAGP.
- Experience with Checkpoint Firewall policy provisioning
- Experience working with OTV & FCOE on the nexus between the datacenters
- Implemented traffic filters on CISCO routes using Standard Access List and Extended Access List.
- Network security including NAT/PAT, ACL, VPN Concentrator.
- Strong knowledge on Server, Desktop and Application virtualization.
- Implemented MPLS/VPN services for various customers. Experience in Layer 3 Routing Protocol configurations: RIP, OSPF, BGP, EIGRP and MPLS.
- Experience in Layer 2 routing Protocol Configurations: ARP, RARP, ATM/FRAME RELAY and VPN technologies: IPSec & SSL.
- Hands - on experience with installing and managing IT services such as Active directory, site replication, DNS, SSH, DHCP, DNS, NAT and VMware.
- Experience of of UNIX, SAN, Cisco IOS, Cisco ASA, PIX Firewalls, IDS/IPS, Cisco Unified Communications Manager Express (CUCM) and Unified Call Manager
- Handled load balancing using F5 Network Load Balancers.
- Proficiency in monitoring and analyzing the load balancing ofnetworktraffic using Wireshark and Solarwinds
- Experience in designing and implementing IP addressing including IPv4 and IPv6
- Hands-on experience of working on Layer 2 protocols ARP, RARP, ATM and Frame Relay.
- Configuration and troubleshooting on Juniper EX 4500 and EX8 200 switches.
- Responsible for Cisco ASA firewall administration across our global networks.
- Strong hands on experience on PIX Firewalls, ASA (5540/5550) Firewalls. Implemented Security Policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA(TACACS+ & RADIUS)
- Great Knowledge of TCP/IP networking, IP subnetting and networking technologies
- Experienced with staging, configuring and managing virtual machines (VMs) on ESX infrastructure
- Experienced in Wireless - 802.11x (Aruba, Merake, Aerohive, Linksys, HP )
- Experience working with Juniper JUNOS version 12 and Version 13 for routing and Switching protocols
- Implemented traffic filters on CISCO routes using Standard Access List and Extended Access List.
- Monitoring all Cisco equipment using Cisco Prime LMS.
- Migrated Juniper SSG firewalls (net screen) to ASA firewalls including policies and NATing for Vendor DMZ.
- Responsible for Cisco ASA firewall administration across our global networks.
- Major responsibility is to design and deploy various network security & high availability products like Cisco ASA other security products.
- Designed an End-to-End VPN solution that would allow End-Users to connect and authenticate to Microsoft Active Directory through Cisco AnyConnect Mobility VPN.
- Implementing and configuring site-to-site IPSEC VPN, Remote to site VPN and GRE Tunnels.
- Experience in designing and implementing IP addressing including IPv4 and IPv6 and familiar with working on Dual stack Mode.
- Extensive experience in handlingnetworkfailure issues.
- Fast learner with excellent problem solving capabilities.
TECHNICAL SKILLS
Cisco Platforms: Nexus 7K, 5K, 2K & 1K, Cisco routers (7600,7200, 3900, 3600, 2800, 2600, 2500, 1800 series), CSR/ASR& Cisco Catalyst switches (6500, 4900, 3750, 3500, 4500, 2900 series)
Juniper Platforms: SRX, MX, EX Series Routers and Switches
Networking Concepts: Access-lists, Routing, Switching, Subnetting, Designing, CSU/DSU, IPSec, VLAN, VPN, WEP, WAP, MPLS, VoIP, Bluetooth, Wi-Fi
Firewall: PIX Firewall (506/515/525/535 ), ASA Firewall (5505/5510)
Network Tools: IXIA, Spirent- Itest, Netscout, Landslide, JDSU, Breaking Point, HPNA, Solarwinds, NetCool, Cisco Works, HP Open View, Whatsup Gold, Wireshark, Ethereal, putty, SecureCRT, Poderosa
Load Balancers: A10 Networks(AX2500),Cisco CSM, F5 Networks (Big-IP)
WAN technologies: Frame Relay, ISDN, ATM, MPLS, leased lines & exposure to PPP, DS1,DS3,OC3, T1 /T3 & SONET
LAN technologies: Ethernet, Fast Ethernet, Gigabit Ethernet, & 10 Gigabit Ethernet, Port- channel, VLANS, VTP, STP, RSTP, 802.1Q
IP Telephony: VOIP, FXO/FXS/E&M/T1/ISDN/ PRI, Call manager Express.
Network Security: Knowledge of Firewalls, Checkpoint NG, ASA, IPsec, IPS/IDS, & VPN, Juniper SRX, ACE Module and F5 Load Balancers
Application Protocols: DHCP, DNS, FTP, TFTP, SNMP, HTTP, FTP, ICMP, SMTP, SSL, IP, IPV6.
Languages: Perl, Python, C, C++, SQL, HTML/DHTML
Operating System: Windows 7/XP, MAC OS X, Windows Server 2008/2003, Linux, Unix
PROFESSIONAL EXPERIENCE
Senior Network Engineer
Confidential, Albany NY
Responsibilities:
- Extensive Working & Troubleshooting Exposure to VOIP Phones, Dial Peers, Dial Plan, DID and other telephony services related to CME.
- Extensive Working & Troubleshooting Exposure to CUE Voice Mail System, CUE Scripts and voice mail boxes.
- Installed and maintained CUCM, CUC, CUE, UCCE and UCCX.
- Responsible for upgrading Ciscoworks Prime LMS from 3.2 to 4.2.
- Responsible for designing and implementation of customer's network and Security infrastructure.
- Designed, validated and implemented LAN, WAN & WLAN structure to suite client’s need.
- Manage and support the VoIP, digital and analog Avaya voice network infrastructure installations, upgrades, support and Tier III and IV troubleshooting as well as post-installation environment.
- Integrated VoIP with PSTN and set up voice Gateway ensuring QOS for Cisco based Voice over IP and CDR for voice call Accounting
- Dealt with Cisco IP phones and VOIP devices and configured Voice VLAN’s for Prioritizing voice on the network and did the documentation accordingly with changes.
- Migrated cisco3550 switches to 3750 PoE switches to provide support to Wireless Aps
- Configured and troubleshoot F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability and A10 load balancer based on different load balancing
- Load balanced the HTTP traffic by installing the F5 load balancer and the ACE load balancer
- Provided Load Balancing towards access layer from core layer using F5 Network Load Balancers
- Managed the F5 BigIP GTM/LTM appliances to include writing iRules, SSL offload and everyday task of creating WIP and VIPs
- Configured Load Balancer viz. F5 LTM
- Support Service Providers and enterprises world-wide in troubleshooting the high
- End Cisco IOS-XR platforms - ASR9000, CRS, XR12000 and 9000V.
- Involved in complete LAN, WAN, Extranet redesign (including IP address planning, designing, installation, pre configuration of network equipment, testing, and maintenance) in both Campus and Branch networks
- Involved in Riverbed WAN optimization.
- Monitor Arbor Peakflow, Radware, Tipping Point IPS-2400/5100N and Fortinet Security Servers.
- Experience with converting Cisco 6500 IOS to Cisco Nexus NX-OS in the data center environment.
- Installation and configuration of Blue Coat Packet Shaper in a multi-tenant data center environment across Layer 2 trunks.
- Provided Tier 2 and 3 Support for DNS, DHCP and IPAM (Both Microsoft and INFOBLOX Environments).
- Troubleshooting Cisco hardware including 7600, 7200, 3800, 3600, 2800 & 2600 series Routers
- Provided technical support for intra domain and inter domain multicast and routing issues, IOS bugs, and fault tolerance issues.
- Worked on Juniper JUNOS operating system and working on M and MX series routers
- Experience working with Nexus 7010, 5020, 2148, 2248 devices
- Experience with configuring Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 5000
- Designed and Implemented Cisco Nexus Platform, Cisco UCS & HP Virtual Connect Flex10
- Upgrading VOIP Call Manager and by implementing Cisco WAAS
- Configure MPLS Layer 3-Virtual Private Networks (VPNs) on the Cisco CRS-1 Routing System
- Worked with Cisco FirePOWER 7115 and 7125
- Configuring white listed websites in Proxy Server - BLUE COAT
- Checkpoint IP Appliances and SPLAT & Cisco ASA Firewalls
- Drafted and installed Checkpoint Firewall rules and policies.
- Implemented changes to the firewall rule base, network routing tables and ACL to permit only authorized users access to the servers.
- Experience in Configuring, upgrading and verifying the NX-OS operation system
- Responsible for Cisco ASA firewall administration across our networks
- Support customer with the configuration and maintenance of ASA firewall systems
- Design and configuring of OSPF, BGP on Juniper Routers and SRX Firewalls.
- Configuring IPSEC VPN on SRX series firewalls
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
- Configured and deployed QOS.
- Assisted senior network engineers by providing level 1 support and diagnosis of Cisco networking and switching issues: VPN (ACS, ASA), Cisco Prime, Cisco LMS platform.
- Analyze troubleshooting information from OSI model, Firewall, routers and switch regarding encryption, and VPN connections on the Cisco Adaptive Security Appliance (ASA) setup and maintain Cisco AnyConnect VPN connections and Site-2-Site VPN.
- Other responsibilities included documentation and supporting other teams
- Experience working with BGP attributes such as Weight, Local-Preference, MED and AS-PATH to influence inbound and out bound traffic
- Maintained a Network with more than 600 Network devices, some 20,000-end hosts, and the other Network devices like DHCP, DNS Servers, and Firewall Servers.
- Use and maintain routing protocols EIGRP, OSPF and BGP on the Routers in the network & also worked on BGP Route Reflectors, Confederations
- Deployed a large-scale HSRP solution to improve the uptime of collocation customers, in the event a core router became unreachable.
- Configured and designed LAN networks with Access layer switches such as Cisco 4510, 4948, 4507 switches.
- Implemented HSRP on the Cisco 2948G Layer 3 switches and EIGRP, OSPF on 2 Cisco 2610routers, the Layer 3 switch, 3 Cisco 350XL Switches, Cisco 3524XL switches for load balancing and fail over.
Network Engineer
Confidential, Beaverton,OR
Responsibilities:
- Designed and implemented Cisco VoIP infrastructure for a large enterprise and multi-unit office environment. Met aggressive schedule to ensure a Multi-office reconfiguration project which was successfully delivered
- Designed and Implemented Cisco UCS pods in Nexus 7000 and Cisco 6500 Platform
- Worked with Cisco Call Manager Express, CUCM and Cisco Unity Express. Also with CUE Voicemail system and configured VOIP phones in network.
- Experience in designing, managing, and implementing complex IPCC and Cisco ICM/UC systems
- Implementing VoIP solutions using SIP & H.323, also have sound knowledge of Avaya VoIP products
- Implementing VoIP solutions using SIP & H.323, also have sound knowledge of Avaya VoIP products
- Configuration and Administration of Cisco and Juniper Routers and Switches.
- Converting access-lists to Firewall rule sets on FWSM module with 6509-E Catalyst switches
- Configuring, implementing and troubleshooting A10 load balancer in the enterprise network
- Configured Firewall logging, DMZs & related security policies & monitoring
- Working with F5 Load Balancers for LTM and GTM type load balancing between multiple data centers.
- Worked on F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability
- Installing and configuring F5 Load balancers and firewalls with LAN/WAN configuration
- Configure and maintain VPN connection (site-to-site, Anyconnect, clientless tunnels).
- Manage all network and firewall devices to include Cisco routers, switches, VPNs, SSL, Check Point, Cisco PIX, Cisco ASA, Cisco FWSM as well as content delivery networks (Cisco CSS, F5 BigIP LTM and GTM 1600 and 3400 load balancers) in enterprise environment.
- Configuring Virtual Chassis for Juniper switches EX-4200, Firewalls SRX-210
- Configure the Cisco ICM(Intelligent call Manager) in translating routes and also use Automatic Call Distribution Switch(ACD) like Aspect switches for call routing purpose.
- Ability to recommend and implement software updates to Cisco UCCE, CUCM, CTIOS, unity and unity connection
- Involved in design and implementation of Data Center Migration, worked on implementation strategies for the expansion of the MPLS VPN networks
- Provide solutions for Cisco Unified Wireless networking including LWAPP, Controllers, WCS management, WLSE, ACS, Location Services, WIDS, Secure Services Client, Network Admission Control (NAC).
- Document all communication with customers in the CRM.
- Configured and optimization settings of Riverbed.
- Implemented Zone Based Firewalling and Security Rules on the Palo Alto Firewall.
- Exposure to wild fire feature of Palo Alto.
- Configuring rules and Maintaining Palo Alto Firewalls & Analysis of firewall logs using various tools.
- Experience working with Nexus 7010, 5020, 2148, 2248 devices
- Troubleshooting of Cisco 2800, 2900, 3900, 7200, 7600, ASR9000, CRS and GSR 12k Series routers.
- Configuring and managing Blue Coat Proxy Servers
- Configure MPLS Layer 3-Virtual Private Networks (VPNs) on the Cisco CRS-1 Routing System
- Worked on NXOS, IOS, IOS-XR BXB to N7K-NXOS (MPLS) system test.
- Replaced old 6500 and WAN routers from DR testing site and Installed Nexus 7K and ASR 1006 routers.
- Working on router and switches of enterprises or service provider networks (ASR 9000 series, Cisco XR12000 series)
- WAN Infrastructure running OSPF & BGP as core routing protocol.
- Bluecoat WAN acceleration appliance hardware/software troubleshooting and configuration
- Created VLAN and Inter-Vlan routing with Multilayer Switching.
- Troubleshoot and Worked with Security issues related to Cisco ASA/PIX, Checkpoint, IDS/IPS and Juniper Netscreen firewalls. addition to that, configured two PIX firewall for the Guest access
- Creating dedicated VLANs for Voice & Data with QoS for prioritizing VOICE over DATA.
- Experience in migration of Frame-relay based branches to MPLS based technology using multilayer stackable switch like 6500 series and 2800 series router
- Configuring VLANs and implementing inter VLAN routing.
- Monitor and maintain Junos SSL VPN for remote access
- Concentrators TCP/IP, NAT and Checkpoint ESX/GSX firewall
- Experience with convert Checkpoint VPN rules over to the Cisco ASA solution. Migration with Cisco ASA VPN experience.
- Deployed current Attendant Console service for CSR agents
- Assisted with support of the following systems: Cisco (ISRs, IOS, ACS), Juniper (EX switches, SRX firewalls, Space), BlueCoat ProxySG Web Filters, and AeroHive Wireless Hive Manager
- Upgrading and troubleshooting Cisco IOS to the Cisco Switches and routers.
- Configure and troubleshoot Juniper EX series switches and routers.
- Configuring Site to Site to VPN connectivity.
- Provide technical support in the implementation, testing and configuration of various network protocols to include: MPLS/VPLS, BGP, OSPF, EIGRP, Spanning-Tree, VRRP/HSRP, VPN, VRF, IPSEC and GRE Tunnels.
- Implementation of HSRP, IPsec, Static Route, IPSEC over GRE, Dynamic routing, DHCP, DNS, FTP.TFTP, RAS
- Configured Netscaler Command Center tool to send out email alerts when any website went down. Configured its thresholds to determine when to send out alerts.
- Configured Network setup to display maintenance page during maintenance windows on Netscaler.
Network Support Engineer
Confidential
Responsibilities:
- Involved in configuring and implementing of composite Network models consists of Cisco7600, 7200, CSR-1 series routers and Cisco 2950, 3500, 5000, 6500 Series switches
- Experience in Designing and implementing Cisco UCS.
- Configure the Cisco ICM(Intelligent call Manager) in translating routes and also use Automatic Call Distribution Switch(ACD) like Aspect switches for call routing purpose.
- Configuration 7609, 7606 with OSPF and catalyst 6505, 4500, 3550 switches with various VLAN
- Checking and configuring Cisco 7600 routers at data center for remote sites’ issues.
- To secure configurations of load balancing in F5, SSL/VPN connections, Troubleshooting CISCO ASA firewalls, and related network security measures.
- Setting up VoIP Phones for the entire office environment.
- Creating Virtual IP address, Pools and Persistence profiles on F5 LTMs
- Worked on Cisco Layer 2 switches (spanning tree, VLAN).
- WAN Infrastructure running OSPF & BGP as core routing protocol.
- Support various Routers like 2600/3600/7200 series routers.
- Supported multiple B2B VPNs using traditional IPSEC and GRE tunnels.
- Tested authentication in OSPF and BGP.
- Configured and troubleshoot OSPF and EIGRP.
- Developed global standards for deployment of blue coat proxy servers to replace the older net cache deployments.
- Played a supporting role in the expanding the dual band wireless N and 802.1X to all remote sites.
- Enable multicast routing on the Cisco CRS-1 routing system
- Troubleshoot and hands on experience on security related issues on Cisco ASA/PIX, Checkpoint, IDS/IPS, Palo Alto and Juniper Net screen firewalls.
- Worked on Cisco Layer 2 switches (Spanning Tree, VLAN, QOS)
- Optimized performance of the WAN network consisting of Cisco 3550/4500/6500 switches by configuring VLANs.
- Work on different connection medium like Fibre and Copper Connectivity.
- Installing, Managing &Troubleshooting DHCP issues.
- Configuring and troubleshooting static and dynamic DNS servers.
Technical Support Engineer
Confidential
Responsibilities:
- Configuration of various Cisco Routers & L2/L3 Switches and implementing OSPF and BGP on the routers
- Worked on Cisco ISR’s & CSR, Cisco Switches (Cisco3560, 3850, 3750-X, 4500, 6500 ), Cisco ASA’s, Meraki AP’s
- Provided Load balancing solutions to clients for using F5 Load balancers.
- Implemented redundancy in BigIP F5 loads balancers to provide uninterrupted services to clients.
- Configured and edited policies on F5 network access control.
- Configure all Palo Alto Networks Firewall models (PA-2k, PA-3k, PA-5k etc.) as well as a centralized management system (Panorama) to manage large scale firewall deployments.
- Installed, configured and administered Palo Alto firewalls
- Experience with Juniper Netscreen 520M Firewall and Palo Alto network firewall
- Implemented various OSPF scenarios on networks consisting of 7600 routers
- Monitored network for optimum distribution and load
- Supported core network consisting of Cisco 7200 series routers running multi area OSPF
- Installed and configured protocols like TCP/IP and Internet protocols on WAN network
- Configuration of EIGRP and OSPF as interior gateway protocol with route filtering and route redistribution, installed and maintained Cisco 3600, 2600 and 7200 backbone routes with HSRP
- Distributing loads across multiple carriers (AVPN, MPLS).
- Implemented TCP/IP and related services - DHCP/DNS.
- Configured the Cisco router as IP Firewall and for NATing Configured RSTP, MST and used VTP with 802.1q trunk encapsulation
- Integrated VoIP with PSTN and set up voice Gateway ensuring QOS for Cisco based Voice over IP and CDR for voice call Accounting
- Implemented stub/Totally stub areas. Implemented various OSPF features like route-summarization and SPF throttling
- Used DHCP to automatically assign reusable IP addresses to DHCP clients
- Configured and installed multi-protocol (IP, IPX) multi-interface Cisco router