Network Data And Security Engineer Resume
Providence, RI
SUMMARY
- 8 years of Experience with multiple Certifications Cisco (CCNA&CCNP), Juniper (JNCIA) and Experience with designing, architecting, deploying and troubleshooting Network & Security infrastructure on routers, switches (L2/L3) & firewalls of various vendor equipment.
- Extensive work experience with Cisco Routers, Cisco Switches, Load Balancers and Firewalls.
- Experience in layer - 3 Routing and layer-2 Switching. Dealt with Nexus models like 7K, 5K, 2K series, Cisco router models like 7200, 3800, 3600, 2800, 2600, 2500, 1800, 810 series and Cisco catalyst 6500, 4500, 3750, 3500, 2900 series switches
- Expertise in installing, configuring, and troubleshooting of Cisco Routers (3800, 3600, 2800, 2600, 1800, 1700, 800)
- Hands on experience in troubleshooting and deploying of various IP Routing Protocols EIGRP, RIP v1/2, OSPF, IS-IS & BGP.
- Implemented security policies using ACL, IPSec, VPN, AAA Security TACACS+, and Radius on different series of routers and firewalls.
- Installation and Configuration of Cisco 6500, 4500, 2900, 3500 series switches, Cisco 2500, 2600, 2800, 3600, 3800, 7200 series Routers.
- Experience with Cisco Datacenter Switches Nexus 7000, 5000 and 2000.
- Hands on experience with F5 load balancers - LTM, GTM series like 6400, 6800, 5000, 2000 for the corporate applications
- Design and configuring of OSPF, BGP on Juniper Routers (MX960, MX480) and SRX Firewalls (SRX240, SRX550)
- Expertise in configuration of routing protocols and deployment of OSPF, EIGRP, BGP and policy routing over Cisco routers.
- Experience with design and deployment of MPLS Layer 3 VPN, MPLS Traffic Engineering, MPLS QOS
- Experience in adding Rules and Monitoring Checkpoint Firewall traffic through Smart Dashboard and Smart View Tracker applications.
- Configured Client-to-Site VPN using SSL Client on Cisco ASA 5520 ver8.2
- Configured ASA 5520 Firewall to support Cisco VPN Client on Windows 7/XP/Vista.
- Installation, configuration and troubleshooting of F5 load balancers.
- Experience with designing, deploying and troubleshooting LAN, WAN, Frame-Relay, Ether-channel, IP Routing Protocols - (RIPV2, OSPF, EIGRP & BGP), ACL's, NAT, VLAN, STP, VTP
- Implemented redundancy with HSRP, VRRP, GLBP, Ether channel technology (LACP, PAgP) etc.
- Strong hands on experience on PIX Firewalls, ASA (5540/5550) Firewalls. Implemented Security Policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA (TACACS+ & RADIUS)
- Experience working with Cisco IOS-XR on the ASR9000 devices for MPLS deployments
- Efficient designing of IP Addressing Scenario using VLSM and Sub netting.
- Configured Security policies including NAT, PAT, VPN's and Access Control Lists.
- Extensive experience using Microsoft suite like Word, Visio, Excel, PowerPoint
- Excellent technical and project management skills combined with strong communication skills
TECHNICAL SKILLS
Cisco Platforms: Nexus 7K, 5K, 2K, Cisco routers (7600,7200, 3900, 3600, 2800, 2600, 2500, 1800, 810 series) Cisco Catalyst switches (6500, 4900, 3750, 3500, 4500, 2900 series) CISCO 5500 WLC, CISCO ISE
Juniper Platforms: SRX, MX, EX Series Routers and Switches
Networking Concepts: Access-lists, Routing, Switching, Subnetting, Designing, CSU/DSU, IPSec, VLAN, VPN, WEP, WAP, MPLS, VoIP, Bluetooth, Wi-Fi
Firewall: ASA Firewall (5520/5540/5585 ), PIX and FWSM
Network Tools: Solar Winds, SNMP, Cisco Works, Wireshark, QRadar, RSA Envision, Zenoss, NCM, Algosec, Voyence, Netscout, InfoBlox, Wireshark, ASDM, XenApp
Load Balancers: F5 BIG IP LTM 5000, GTM C-112, VIPRION VPR 2400
WAN technologies: Frame Relay, ISDN, ATM, MPLS, leased lines & exposure to PPP, DS1, DS3, OC3, T1 /T3 & SONET
LAN technologies: Ethernet, Fast Ethernet, Gigabit Ethernet, & 10 Gigabit Ethernet, Port- channel, VLANS, VTP, STP, RSTP, 802.1Q
Security Protocols: IKE, IPSEC, SSL-VPN
Networking Protocols: RIP, OSPF, EIGRP, BGP, STP, RSTP, VLANs, VTP, PAGP, LACP, MPLS, HSRP, VRRP, GLBP, TACACS+, Radius, AAA
Languages: Perl, C, C++, SQL, HTML/DHTML
Operating System: Windows 7/XP, MAC OS X, Windows Server 2008/2003, Linux, Unix
PROFESSIONAL EXPERIENCE
Confidential, Providence, RI
Network Data and Security Engineer
Responsibilities:
- Responsible for designing and implementation of customer's network and Security infrastructure.
- Involved in complete LAN, WAN, Extranet redesign (including IP address planning, designing, installation, pre configuration of network equipment, testing, and maintenance) in both Campus and Branch networks
- Configured and deployed CISCO 819 routers for about 1000 branches as part of the Branch Network Resiliency Project.
- Responsible for Cisco ASA firewall administration across our networks and support customer with the configuration and maintenance of the firewall systems.
- Experience with firewall port open request based on business requirement.
- Experience with end to end migration of DMZ server including Vendor connectivity.
- Upgraded ASA firewall from version 8.2 to 8.4/9.1.
- Experience working with ASR 9006 with IOS-XR
- Experience with designing, implementing and troubleshooting Cisco routers and switches using different routing protocols like OSPF, EIGRP, BGP, ISIS and MPLS L3 VPN, VRF
- Experience with converting Cisco 6500 IOS to Cisco Nexus NX-OS in the data center environment.
- Experience working with Nexus 7010, 5020, 2148, 2248 devices
- Experience with configuring Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 5000
- Experience configuring VPC, VDC and ISSU Software upgrades on Cisco Nexus 7010
- Experience in Configuring, upgrading and verifying the NX-OS operating system.
- Actively involved in Switching Technology Administration including creating and managing VLANS, Port security- 802.1x, Trunking 802.1Q, RPVST+, Inter-VLAN routing, and LAN security on Cisco Catalyst 4507R+E, 6509-E and Nexus 2232, 5596, 7009 switches.
- Configuring IPSEC VPN on SRX series firewalls
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500 security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
- Provided Load Balancing towards access layer from core layer using F5 Network Load Balancers.
- Managed the F5 Big IP GTM/LTM appliances which includes writing iRules, SSL offload and everyday task of creating WIP and VIPs
- Experience working with BGP attributes such as Weight, Local-Preference, MED and AS-PATH to influence inbound and out bound traffic.
- Involved in Disaster Recovery activity, like diverting all the traffic from production data center to Disaster Recovery data center.
- Deployed a large-scale HSRP solution to improve the uptime of collocation customers, in the event of core router becoming unreachable.
- Configured and designed LAN networks with Access layer switches such as Cisco 4510, 4948, 4507 switches.
- Configuring Virtual Chassis for Juniper switches EX-4200, Firewalls SRX-210
- Implemented HSRP on the Cisco 2948G Layer 3 switches and EIGRP, OSPF on 2 Cisco 2610 routers, the Layer 3 switch, 3 Cisco 350XL Switches, Cisco 3524XL switches for load balancing and fail over.
- Configuring ASA Firewall and allow/deny rules for network traffic.
- Extensive knowledge and troubleshooting in data communication protocols and standards including TCP/IP, UDP, IEEE 802.3, Token Ring, Cable Modem, PPPOE, ADSL, Multilayer Switching, DoD standards.
- Monitoring network traffic using tools like ZENOSS, CISCO NCM, NETSCOUT and QRADAR.
- Working on various incident tickets using HPSM and Citrix XenApp (CLARIFY ticketing system).
- Monitoring and troubleshooting of wireless issues in the network.
- Worked on Infoblox to assign and fix IP addresses for branches and back offices.
- Responsible for creating and maintaining network documents and VISIO drawings for efficient network operations and Audit requirement.
- Providing 24x7 on call support to troubleshoot and resolve various operational issues in the network.
- Maintaining effective communications with vendors, peers and clients in resolution of trouble tickets, equipment RMAs and support request.
Confidential, Pleasanton, CA
Network Engineer
Responsibilities:
- Experience with Supporting bothNetworkand Security infrastructure in data center environment and Campus environment, which involved with devices such as routers, switches, firewalls and wireless access points.
- Experience with moving data center from one location to another location, from Cisco 6500 based data center to both Cisco 6500 & Nexus based data center.
- Strong hands on experience on ASA (5525/5545/5585 ) Firewalls. Implemented security policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA (TACACS+ & RADIUS)
- Experience in adding firewall rules,Networkaddress Translation and also in creating multiple security contexts (virtual firewalls).
- Experience with implementing Cisco 6500 VSS on the User distribution switches.
- Upgraded IOS on the different ASA flavors like 5510, 5520 and 5585 firewalls
- Working with MPLS Designs from the PE to CE and also configuring VRF on PE routers
- Experience with designing and deployment of MPLS Traffic Engineering
- Configuring RIP, OSPF, EIGRP BGP, MPLS, QOS, ATM and Frame Relay.
- Involved in design and implementation of Data Center Migration, worked on implementation
- Strategies for the expansion of the MPLS VPNnetworks
- Working Knowledge of Cisco IOS, Cisco IOS-XR, Cisco Cat OS, Cisco NX-OS, JUNOS
- Experience with configuring BGP in the data center and also using BGP as a WAN protocol and manipulating BGP attributes
- Design and deployment of MPLS QOS, MPLS Multicasting per company standards.
- Implemented site to site VPN in Juniper SRX as per customer.
- Implemented various EX, SRX & J series Juniper devices.
- Experience with deploying Fabric Path using Nexus 7000 Devices
- Experience with configuring VPC, VDC and OTV between the data centers as a layer 2 extension.
- Experience with configuring FCOE using Cisco Nexus 5548.
- Maintenance and trouble-shooting of LAN, WAN, IP Routing, Multilayer Switching.
- Performing onsite data center support including monitoring electrical power, switch alarms,network alerts and access logs.
- Configuring RIP, OSPF and Static routing on Juniper M and MX series Routers
- Configuring VLAN, Spanning tree, VSTP, SNMP on EX series switches
- Dealt with monitoring tools like (Solar Winds, Cisco Works),networkpacket capture tools like Wire shark
- Maintained aNetworkwith more than 6000Networkdevices, some 25,000 end hosts, and the other Networkdevices like DHCP, DNS servers, Firewall servers.
- Co-ordination with Hardware vendors, software vendors and service Providers.
- Assisted in backup, restoring and upgrading the Router and switch IOS.
- Attended Team meetings and provided comments on existingnetworkand the recommendations to improve the currentnetworkPerformance.
- Maintaining the health of 250+ wireless Access points in multiple locations.
Confidential
Network Engineer
Responsibilities:
- Configuration and Administration of Cisco and Juniper Routers and Switches.
- Administration and diagnostics of LAN and WAN with in-depth knowledge of TCP/IP, NAT, PPP, ISDN and associatesnetworkprotocols and services.
- Involved in design and implementation of Data Center Migration, worked on implementation strategies for the expansion of the MPLS VPNnetworks
- Router/ Microsoft VPN Server in order to access certain limitednetworkresources from customer locations
- Installed and configured four PIX 525 and two ASA 5505 in customer locations. In addition to that, configured two PIX firewall for the Guest access
- Experience in migration of Frame-relay based branches to MPLS based technology using multilayer stackable switch like 6500 series and 2800 series router
- Configuring VLANs and implementing inter VLAN routing.
- Testing E911, voicemail, Media gateways.
- Upgrading and troubleshooting Cisco IOS to the Cisco Switches and routers.
- Configure and troubleshoot Juniper EX series switches and routers.
- Configuring Site to Site to VPN connectivity.
- Implementation of HSRP, IPsec, Static Route, IPSEC over GRE and Dynamic routing protocol
- Involved in configuring Cisco Net flow fornetworkperformance and monitoring.
- Involved in designing and implementation of wireless IPT devices.
- Involved in configuration of Cisco 6500 ACE switches
- Configuring IPSLA monitor to track the different IP route when disaster occurs.
- Involved in Implementing, planning and preparing disaster recovery.
- Having meetings with the application group and gathering requirements for disaster recovery.
- Involved in configuring Juniper SSG-140.
- Involved in smart view tracker to check the firewall traffic.
- Troubleshooting hardware andnetworkrelated problems.
Confidential
Network Engineer
Responsibilities:
- Responsible for the installation, configuration, maintenance and troubleshooting of the company network. Duties included monitoring network performance using various network tools to ensure the availability, integrity and confidentiality of application and equipment
- Configured and troubleshoot OSPF and EIGRP.
- Involved in troubleshooting of DNS, DHCP and other IP conflict problems
- Planning and configuring the routing protocols such as OSPF, RIP, and Static Routing on the routers.
- WAN Infrastructure running OSPF & BGP as core routing protocol.
- Support various routers like 2600/3600/7200 series routers.
- Tested authentication in OSPF and BGP.
- Switching related tasks included implementing VLANS, VTP, STP and configuring on Fast Ethernet channel between switches
- Responsible for configuring site to site VPN on VPN Concentrators series between Head office and Branch office
- Installation & configuration of Cisco VPN concentrator 3060 for VPN tunnel with Cisco VPN hardware & software client and PIX firewall
- Configured Firewall logging, DMZs & related security policies& monitoring
- Worked on Cisco Layer 2 switches (spanning tree, VLAN).
- Hands on experience working with security issue like applying ACL's, configuring NAT and VPN
- Responsible for Internal and external accounts and, managing LAN/WAN and checking for security
- Involved in NetworkMigrations
- Configuring Cisco and Juniper devices (Router & Switches)
- Dynamic routing protocol configuration like RIP and OSPF.
- Troubleshooting level 1networkproblems.
- NAT and IPsec configuration on Cisco Routers.
- Creating Private VLANs & preventing VLAN hopping attacks & mitigating spoofing with snooping & IP source guard