Sr. Network Security Engineer Resume
San Jose, CA
SUMMARY:
- Expertise of 8 years with rich Computer Networking experience. Solid understanding of Designing, Implementation, Administration, Operational and troubleshooting of enterprise data networks.
- Implementing & troubleshooting Cisco 2900,3600,3900,7200,7600 series routers, CAT OS 2960,3560,3750,4500,6500 series switches and Nexus 2k,5k,7k series switches
- Implementation of Nexus platform 7k, 5k series and deploying various advance features like FEX, VPC, VDC & OTV.
- Team member of Configuration of Cisco 7206 router with VPN and Configuration of Catalyst switches.
- Configuration 7609, 7606 with OSPF and catalyst 6505, 4500, 3550 switches with various VLAN.
- Create and test Cisco router and switching operations using OSPF routing protocol, ASA Firewalls, and MPLS switching for stable VPNs. Cisco CLI, Cisco works, Network Security, Network Analysis Tools.
- Team member of Configuration of Cisco 7206 router with VPN and Configuration of Catalyst switches.
- Configuration 7609, 7606 with OSPF and catalyst 6505, 4500, 3550 switches with various VLAN.
- Create and test Cisco router and switching operations using OSPF routing protocol, ASA Firewalls, and MPLS switching for stable VPNs. Cisco CLI, Cisco works, Network Security, Network Analysis Tools.
- Expert level configuration of Layer 2 technology including VLANS, Trunking, STP, RSTP, PVST, MST, VTP in addition to port - security, Uplink fast, Backbone fast, Port fast, BPDU guard & filter and Ether channel including LACP & PAGP negotiations.
- In-depth knowledge of TCP/IP protocol suite and proficient in configuring and troubleshooting various routing protocols like BGP, OSPF, EIGRP, MPLS, RIP, Static routing and management of routes using manual summarization, default-routes and redistribution.
- Expert level knowledge of Cisco network security (IDS, ASA 5500 Firewall), network redundancy (HSRP, GLBP and VRRP)
- Configuring security policies and procedures using Access Control List (ACL), Route Maps, Offset lists, Prefix Lists.
- Experience in Implementing and troubleshooting OSPF, EIGRP, BGP routing protocols and Policy based routing.
- Managed inventory of all network hardware, Management and Monitoring by use of SSH, SYSLOG, SNMP, NTP, NAT, PAT and dealt with the DOS attacks and Flooding attacks.
- VPN implementation and troubleshooting for remote site and External clients.
- Well versed with AAA configuration using TACACS+ & RADIUS server.
- Strong troubleshooting skills on Cisco LAN switch environment including WAN infrastructure.
- Worked on F5 BIG-IP Load balancer LTM/GTM for application redundancy and high availability.
- Worked on T1/E1/T3 technologies and different LAN & WAN technologies.
- Implemented various VPN technologies like Ipsec and SSL ina site-to-site & remote VPN based on requirements.
- Proficient in using MS Office- Visio, Excel, Word for documentation.
- Excellent inter-personal skills with an ability to work in a team of large members and also with minimum supervision necessary.
TECHNICAL SKILLS:
Routers: Cisco 1900, 2600,2800, 2900, 3600,3800, 3900, 7200, 7600
Switches: Cisco Catalyst 2960, 3560, 3750, 4500, 6500 & Nexus 2K/5K/7K
Routing: OSPF, EIGRP, BGP, RIP v1/v2, Route Filtering, Redistribution, Summarization& Static Routing
Switching: VLAN, VTP, STP, PVST+, RPVST+, Inter VLAN routing & Multi-Layer Switch, Ether channels, Transparent Bridging
LAN: Ethernet (IEEE 802.3), Fast Ethernet, Gigabit Ethernet
WAN: PPP, HDLC, Channelized links (E1/T1/E3/T3), Fiber Optic Circuits, Frame Relay
Protocols: IP, TCP, UDP, ICMP, NAT, DHCP, SNMP, IPSEC, SSL, HTTP, SSH, DNS, PAT
Load Balancer: F5 Networks (Big-IP) LTM 6900 and 3900
Network Security: Cisco ASA 5540, ACL, IPSEC, Checkpoint, Palo Alto
Network Management: Wireshark, Network analyzer, GNS3, Tera term & Putty
Gateway Redundancy: HSRP, GLBP, VRRP
AAA Architecture: TACACS+, RADIUS
Operating System: Windows (95/98/NT/2000/XP/Vista/7/8.1/10), Window 2003/2008
PROFESSIONAL EXPERIENCE:
Confidential, San Jose, CA
Sr. Network Security Engineer
Roles and Responsibilities include:
- Implementation, configuration, maintenance and troubleshooting of four datacenters.
- Performed migration from legacy Catalyst 6513 switches to Nexus 7010 switches.
- Configured and maintained VPCs with 7010 and 5548 in the network. Also configured and maintained VDCs in 7010 swithces, maintained VRFs in those separate VDCs.
- Worked with Sup 2E for 7010 switches, F cards for L2 switching and few M cards for L3 proxy routing purposes for F cards.
- Worked on Juniper Net screen Firewalls like, NS50, SSG 550M, SSG520M, ISG 1000, and ISG 200.
- Security policy review and configuration in Palo Alto and Junipers Firewall in US offices and Datacenter.
- Designed and configured of OSPF, BGP on Juniper Routers and SRX Firewalls.
- Used Fabrix Extenders like 2248TP GE series for the top of the rack solution and used 5548P for the end of the row solution.
- Involved in configuration and implementation of composite network models consists of Cisco routers 2900, 3800, 3900 series, ASR1001, 1002, 1004, Cisco catalyst switches 2900, 3700, 3700, 3800, 6500,ME 3600 Nexus 2k/5k/7k.
- Implementing & troubleshooting Cisco 2900,3600,3900,7200,7600 series routers, CAT OS 2960,3560,3750,4500,6500 series switches and Nexus 2k,5k,7k series switches.
- Implementation of Nexus platform 7k, 5k series and deploying various advance features like FEX, VPC, VDC & OTV.
- Team member of Configuration of Cisco 7206 router with VPN and Configuration of Catalyst switches.
- Configuration 7609, 7606 with OSPF and catalyst 6505, 4500, 3550 switches with various VLAN.
- Create and test Cisco router and switching operations using OSPF routing protocol, ASA Firewalls, and MPLS switching for stable VPNs. Cisco CLI, Cisco works, Network Security, Network Analysis Tools.
- Team member of Configuration of Cisco 7206 router with VPN and Configuration of Catalyst switches.
- Configuration 7609, 7606 with OSPF and catalyst 6505, 4500, 3550 switches with various VLAN.
- Create and test Cisco router and switching operations using OSPF routing protocol, ASA Firewalls, and MPLS switching for stable VPNs. Cisco CLI, Cisco works, Network Security, Network Analysis Tools.
- Configured HSRP and VLAN trucking 802.1Q, VLAN Routing on Catalyst 6500 switches.
- Involved in JIRA vulnerability management project. Creating, managing, resolving tickets in JIRA Enterprise.
- Configuration and administration of RIP, OSPF, EIGRP, BGP, static routing on Cisco routers.
- Configured and installed various network devices and services. Performed network maintenance and system upgrades during maintenance hour including service packs, patches, hot fixes and security configuration.
- Worked on Raritan, Tripplelite and Avocent console servers for Out Of Band Management access of network equipment at remote branch offices.
- Worked on Aruba Wireless. Depolyed Access Points 225 and wireless controllers across all offices.
- Configured and reviewed TLS/SSL configuration on F-5 LTM and Cisco ACE load balancers. Configured and administration of pools, pool members, nodes, health check monitors and policies.
- Cisco ASA/Palo alto firewall troubleshooting and configuring policy based on change request, allowing/denying communication between different segment of the network based on requested ports.
- Configuration of ACLs in ASA 5500 firewalls for internet access for server/hosts in LAN and DMZ as requested by management
- Involved in troubleshooting network connectivity issues, routing issues and identifying root cause of the issue.
- Upgraded from SNMPv2 to SNMPv3 on Cisco ASA, Catalyst switches.
- Knowledge and configuration of redundant router protocols like HSRP, VRRP and GLBP.
- Involved in L2/L3 switching technology administration including creating and managing VLANs, port security, trunking, STP, inter-vlan routing, Lan security.
- Involved in upgrading Cisco routers, switches, ASA firewalls using tftp server.
- Monitored performance and analyzed network irregularities using tool such as Solarwinds, PRTG.
- Scanning networking devices for possible vulnerabilities using scanner tools like Rapid7.
- Managing JIRA tool ticket process, assign tickets to appropriate person, track process of the ticket also involved in resolving network related tickets.
- Upgrading Diagrams using Vision and Involved in documentation.
Network Analyst
Roles and Responsibilities include:
- Managing Core Data Centre by performing implementation, operations and maintenance at Sun Products Corporation.
- Deploying Nexus 2248 Fabric Extenders, 5548 series Fabric Interconnect and 7010, 7018 series switches in Server Farm environment with VPC&VDC features.
- Deployment of Palo Alto firewall into the network. Configured and wrote Access-list policies on protocol based services.
- Troubleshooting of protocol based policies on Palo Alto firewalls and changing the policies as per the requirement and as per traffic flow.
- Researched, designed, and replaced aging Checkpoint firewall architecture with new next generation Palo Alto appliances serving as firewalls and URL and application inspection.
- Configured and maintained IPSEC and SSL VPN's on Palo Alto Firewalls.
- Performed Legacy Catalyst 6509 with SUP-720, Catalyst 4507 with SUP-6 switches migration to Nexus 7k with SUP-2E as part of the data center refresh.
- Performing OTV to extend L2 VLANs between data centers over IP on Nexus7018 switches.
- Configuring/troubleshooting various routing protocols like OSPF, EIGRP, BGP on Cisco router series including2900, 3600, 3900, 7200, 7600.
- Hands-on experience with BGP multi-homing and configuration of Peer-Groups, Route maps.
- Testing various BGP attributes like AS Path, local preference, MED, Weight and replicated customer issues in the testing environment lab.
- Implementing redundancy with HSRP, Ether channel technology (LACP, PAGP) etc.
- Configuring Cisco Catalyst 2900, 2960, 3560, 3750, 4500, 4900, 6500 series and Nexus 2248, 5548 and 7010 switches.
- Performing network deployment & troubleshooting tasks such as creation and management of VLANs, port security, trunking, STP, RPVST+, Inter-VLAN routing and LAN security.
- Working with Cisco catalysts switches that include 3750, 4500 and 6500 in multi VLAN environment for implementation of inter-VLAN routing, 802.1Q trunking and Ether channel.
- Implementing Firewall policies on Cisco ASA5500.
- Overseeing the VPN configuration providing secure access to the users.
- Working withF5 BIG-IP LTM 3900, configured profiles and ensured high availability.
- AAA implementation for network device management with TACACS+ and Radius server.
- Implementing on Policy Base Routing (PBR)
- Managing and configuring of Access lists, configuring of Wide Area Networking Protocols, HDLC, PPP, Frame Relay, NAT, HSRP and VPN.
- Preparing engineering documents and network diagrams in Confidential Visio.
Network Engineer
Roles & Responsibilities include:
- Responsible for implementing, engineering & level 2 support of existing network technologies / services & integration of new network technologies / services.
- Building large scale Network environment using routing protocols like OSPF, EIGRP, and BGP.
- Configuring route redistribution between EIGRP and OSPF.
- Involved in Network Designing, Routing, DNS, IP Subnetting, TCP/IP protocol.
- Performing Route Filtering and Route Manipulation by applying distribute-lists, route-maps & offset lists.
- Providing Layer-3 redundancy by implementing HSRP in the network.
- Hands-on experience in implementation and troubleshooting of BGP version 4, OSPF, IPV4 and Ethernet Protocols.
- Managing various VLANs, IP addressing for various subnets, VLAN Trunking between various access-switches.
- Used Load Balancers F5 Big-IP6900 and 3900between the servers inside the Network and in the Server Farm.
- Performance fine tuning and maintaining customer network devices to provide high availability for the applications, proper bandwidth utilization and to avoid network congestion.
- Configuring Standard and Extended Access Control Lists (ACLs) and Firewalls.
- Designing and Implementing VPN and remote access support.
- Pro-active Monitoring and Alerting of client’s network for any alarms.
- Testing and validating new solutions in lab before deploying them to customers.
- Interfaced with customers and senior management for problem resolution and project planning.
- Ensure network connectivity of all servers, workstations, telephony equipment, fax machines, and other network appliances.
- Create and maintain documentation and Visio diagrams as it relates to network configuration, network mapping, processes, and service records.
- Oversee new and existing equipment, hardware, and software upgrades.
Network Engineer
Roles & Responsibilities include:
- Maintenance responsibilities included software, hardware installation configuration.
- Maintaining and creating login credentials, privacy settings and user privileges for the employees in the company.
- Replacement of the older routes and switches with new routers and switches with the configuration set up.
- Assigned a task to set up their LAN. Worked on the entire project from cabling to IP addressing assignment.
- Configured and maintained Cisco 2500, 4000, 7000 and 7500 Series Routers as well as Catalyst 5000 and 5500 Series switches.
- VLAN Configuration to different applications with RSTP, STP, VTP.
- Switching related tasks included implementing VLANS and configuring ISL trunk on Fast Ethernet channel between switches.
- Performed troubleshooting tasks on Routing and switching and isolated the problem and finding the cause.
- LAN/WAN hardware including, Ethernet Hubs, Cisco Switches, switch panel installation, configuration and troubleshooting.
- Routing related tasks included providing Cisco router configuration and change.
- Management, providing technical support for Cisco Router configurations and installation for Customer.
- Configuring IP RIP, EIGRP, OSPF and IGRP.
- Troubleshoot TCP/IP problems; troubleshoot connectivity issues in multi-protocol Ethernet, Environment.
- Configuring static NAT, dynamic NAT, inside Global Address Overloading, TCP overload distribution, Overlapping Address Translation.
- Physical cabling, IP addressing, Wide Area Network configurations .
Network Administrator
Roles & Responsibilities include:
- Upgrading the IOS on 1900, 2900, 3500 series Cisco Catalyst switches and 2500, 2600, 3600 series Cisco routers using TFTP.
- Performing network troubleshooting provided technical support, and recording of backup operations.
- Restricting access to network using ACL.
- Monitoring performance and availability of the network on an ongoing basis.
- Network Security Implementation & Support.
- Interacting with the clients by creating tickets for the issue and dispatching to the correct queues for resolution.
- Interacting with second level support and providing them necessary details in order to resolve the issue through e-mail.
- Working on network-based IT systems such as racking, stacking and cabling.
- Network cabling, dressing, labeling and troubleshooting network drops onsite.
- Involved in the creation and closing of IMAC (Add, Move, Change Requests) tickets.
- Planning, designing & configuring LAN/WAN ensuring max uptime.
- Calling back the client to check if the issue has been resolved.