Sr. Network Engineer Resume
Middletown, NJ
SUMMARY:
- 8 years of extensive hands - on experience Cisco/Juniper Networking, Security which includes designing, Deployment and providing network support, installation and analysis for a broad range of LAN / WAN protocols.
- Extensive work experience with Cisco Routers, Cisco Switches, Load Balancers and Firewalls.
- Expert in configuration of routing protocols and deployment of RIP, OSPF, EIGRP & BGP over Cisco Routers in Production environment.
- Maintenance of Forescout CounterACT NAC Solution across Wireless, SSL-VPN and Wired Networks.
- Hands on experience in deployment of Frame-Relay, MPLS, PPP, OSPF, BGP and EIGRP routing protocols, NATing, sub-netting, also including DNS, WINS, LDAP, DHCP , http, HTML, HTTPS, TCP/IP , UDP, SNMP, OSPF, RIP, IPSEC, PPTP, VLAN, STP (Spanning tree Protocol), RTSP & Multicasting protocols.
- Experience in designing, implementing and Managing LAN, WAN solutions for different client setups.
- Implemented traffic filters on CISCO routes using Standard Access List and Extended Access list.
- Experience in configuring Virtual Local Area Network (VLAN ), spanning tree protocol (STP), VLAN Trunking.
- Hands-on configuration experience in setting up Cisco routers to perform functions at the Access, Distribution, and Core layers.
- Handled Load Balancing on F5 Networks, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
- Worked on Cisco 7200, 3800, 3600, 2800, 2600 series Routers and Cisco 2900, 3500, 4500, 6509 series switch.
- Experienced in Cisco DFA, ACI, and SDN.
- Supported enterprise environment including: Aruba controllers, Airwave and APs/Cisco wireless controllers.
- Security platforms including Cisco ISE, Sourcefire IPS/IDS, and Cisco ASA (5512, 5515, 5585)
- Working knowledge of IDS and IPS , policy routing, private VLAN s, NAT and ACL s.
- IOS upgrades on routers and switches and Installation of SDM.
- Provide industry-leading service and support to ACI customers.
- Designed and developed a virtual desktop environment using Citrix XenDesktop 4.0 and 5.5/7.0, and all integrated components such as Provisioning Server (PVS), Citrix XenApp, and Active Directory.
- Responsible for Maintaining Citrix XenApp environment, including provisioning Servers.
- Maintaining and updating inventory of all network hardware, Management and Monitoring by use of SSH , Syslog, SNMP, NTP.
- Managed successful delivery of massive security response portfolio including Splunk, Cisco ISE.
- Protocol ( VTP ), Dynamic Trunking Protocol ( DTP ), Per VLAN spanning Tree ( PVST ) and 802.1x authentication in access layer switches.
- Expert Level Knowledge about TCP/IP and OSI models.
- Cisco ASA/Checkpoint Firewall troubleshooting and policy change requests for new IP segments that either come on line or that may have been altered during various planned network changes on the network.
- Work experience on Bluecoat Proxy SG for Content filtering and URL filtering.
- Having knowledge and hands-on experience on IP Addressing, Sub netting, VLSM and ARP , reverse & proxy ARP , Ping Concepts.
- Excellent knowledge and understanding of MPLS VPN for both IPV4 and IPV6 and configuration of both VPNV4 and VPNV6 VRF instances.
- Proficient in design, implementation, management and troubleshooting of Check Point firewalls, Check Point Provider-1 / VSX,, Data Center Migration, F5 Load Balancers, LTM, GTM, ASM, APM Bluecoat URL filtering.
- Involved in finalizing the design for Corporate Wireless Network Access for NAC Solution, comprising of ForeScout CounterAct NAC Appliances in all WAN Consolidation Points, and Data Centers.
- Worked on Palo Alto Firewalls, Cisco ISE (Identity Service Engine), Load Balancers using Cisco ACE, F5, Security Device Manager (SDM), Cisco Works, HP Open View, SolarWinds, Sniffer.
- Assist in managing SQL Databases and Web Servers. Deploy Server 2012 and setup/maintained Hyper-V environments.
- Experience with Installation on PIM modules on J-Series routers
- Experience working with Juniper Routers (MX960, MX480, M320) and Switches (EX2400, QFXVirtual Chassis Switches) with BGP, OSPF, VSTP, MST layer 2 and layer 3 Technologies
- Installation of MS SQL server management studio(SSMS), restoring databases, creating backup plan, taking backup and installation of local area network using switch to access databases on MS SQL server.
- Comprehensive working knowledge of Cisco ACI, Cloud virtualization, TCP/IP, HTTP, UDP, SSL, BGP, MPLS, LDP, PIM, IGMP protocols.
- Assumed, documented, trained, and transitioned all 7X24 WAN/EVPN supports to data center teams.
- Configuration 7609, 7606 with OSPF and Juniper (EX, QFX, and Q-Fabric) switches with various VLAN.
- Performed VSS on cisco catalyst 6500 series switches.
- Creation of firewall rules on Checkpoint Smart Dashboard and install policies.
- Management of corporate Checkpoint Firewall implementing security protocols and alleviating network attacks.
- Performed a hot cut and swapped cisco 6509 with Smartedge1200 routers during Maintenance window.
- Design for Guest Network and Mobile Access Network for NAC Solution, comprising of an Anchor Wireless LAN Controller solution in DMZs/Internet Gateways with ForeScout CounterAct NAC Appliances for NAC.
- Track recurring CMTS issues and escalate to management any identified trends - including unique identifiers.
- Work internally with client departments to meet the needs in planning, designing, building, and managing the VOIP network.
- Configure and Deploy VOIP servers, hardware, applications, and monitoring tools.
- Worked on MPLS-VPN designs for the migration of Frame relay to MPLS system.
- Experience in Cisco security: Telnet, SDM, NAT/ACLs, AAA, Layer 2 Security, Layer 3 Security, IPS/IDS , Cisco ( ASA, PIX ) 5510 , Cryptography, VPN, IPsec.
- Hands on experience working with Openstack API in creating the enterprise level private data center
- Hands-on expertise within the network management of circuits mistreatment TDM and Frame Relay Managing and providing support to numerous project groups with regards to the addition of recent instrumentation likerouters switches and firewalls to the DMZs.
- Experience in layer-3 Routing with, Cisco ASR 9k , ASR1002X, 7200, 3845, 3945, 2811, 1800 series
- Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, Ether channel, STP, RSTP and MST . Implementation of HSRP , VRRP for Default Gateway Redundancy.
- Knowledge of Fortinet Fortigate firewalls.
- Knowledge of Fortinet FortiAnalyzer.
- Assisted in deployment, integration and management of both next-gen and traditional stateful firewalls (primarily Palo Alto, Cisco ASA, Fortinet) for access control, visibility and security.
- Responsible for using OOPS with C++ to maintain knowledge base .
- Good knowledge of CISCO NEXUS data center infrastructure with 5000 and 7000 series switches includes ( 5548, 7010 ) including CISCO NEXUS Fabric Extender ( 223, 2248 )
- Great team player and able to work under pressure 24x7 duty rotation.
- Worked on MPLS while ensuring secure networking, improving the network performance by prioritizing.
- Working knowledge of object oriented programming.
- Multiple data center migrations and transformation projects, with great expertise on Wire shark, Upgrade and Maintenance of Service router such as Cisco router.
- Network traffic and allocating bandwidth according to usage and service requirements.
- Worked on Multicast to use the bandwidth more effectively while reducing the load on the sender.
- Knowledge of WAN Optimization Technology, Riverbed.
- Understanding of Linux OS and Python Script Programming.
- Knowledge of JavaScript programming.
- Excellent customer management/resolution, problem solving, debugging skills and capable of quickly learning, effectively analyzes results and implement and delivering solutions as an individual and as part of a team.
TECHNICAL SKILLS:
Cisco router platforms: 2600, 2811, 3640, 3700, 3825, 7200, 7204, 7206, ASR1002X, ASR9K.
Cisco Switch platforms: 2900XL, 2950, 2960, 3560, 3750X, 4500X, 4510, 6509E, Cisco PIX 500 series, Nexus (2k,5k, 7k), CSU's/DSU's, Catalyst 6500, 7600, 4500Juniper platforms: MX80, MX240, MX 480, MX960,M320 and T640 routers, EX 2200, EX 4200, EX 4500, MX-480, M Series, SRX210, QFX, Q-FABRIC Aruba platforms: S2500 switches, 7200, 3600 series wireless controllers, Aruba IAP 105.
Redundancy Protocols: HSRP, GLBP, VRRP.
VPN Technologies: GRE Tunnelling, Remote Access VPN, Site-to- Site VPN.
Servers: FTP, DHCP, AAA, SMTP, DNS, HTTP, Syslog, TFTP.
Firewalls: Cisco PIX 501, 510, 515E, Cisco ASA 5520, 5540, ISE appliance, Juniper SRX 240, Fortinet Fortigate 7000, 5000, 3000, 900, Checkpoint, checkpoint r60, checkpoint r65, Sourcefire IPS/IDS,SDM.
WAN Technologies: FRAME RELAY, T1/E1, PPP, MPLS, leased lines, DSL modems.
LAN Technologies: VTP, Inter-Vlan routing, STP, RSTP, PVST, 802.1x, TCP/IP, Trunks, Ethernet channel.
IPSEC/VPN Configuration: PIX to Router, Router to Router, PIX to VPN wildcard client, Router to VPN wildcard client, PIX to PIX, fully meshed configurations.
Routing Protocols: RIP, RIP 2, IGRP, EIGRP, OSPF, BGP, HSRP
Switching Protocols: VTP, STP, RSTP, MSTP, VLANs, PAGP, and LACP.
AAA Architecture: TACACS+, RADIUS, Cisco ACS
Network Management: Opnet, Ciscoworks, HP Openview, Riverbed Cascade, Alarm point, Netcool, Infinistream, NetQos, Ethereal, Solarwind IPMonitor, Infinisteam, Sniffer, Solarwinds, Wire Shark, ForeScout CounterAct NAC, SNMP, Bluecoat, FortiManager, Citrix Netscaler.SDN, Genesys Suite 6.5, and Genesys Suite 7.x
VMware: VMware ESX & VCenter Server, VMware Workstation
Layer 3 Switching: CEF, Multi-Layer Switching, Ether Channel.
Carrier Technologies: MPLS, MPLS-VPN.
Load balancers: F5 LTM and GTM.
Redundancy protocols: HSRP, VRRP, GLBP.
Security Protocols: IKE, IPsec, SSL, AAA, Access-lists, prefix-lists.
Etherne t Switches: Palo alto firewall, Nexus 3548.
Language skills: C, C++, Python, Bash, SQL, oops, Linux OS, JavaScript .
WORK EXPERIENCE:
Confidential, Middletown, NJ
Sr. Network engineer
Responsibilities:
- Designed, Installed and configured LAN, WAN management, Internet and network security and configuration of Cisco Catalyst switches 6500, 4000 and 3750 series and routers according to the Network Design.
- Installing, Maintaining and Troubleshooting of Cisco ASR 1K, 7200, 3925E and 2951E Routers and Cisco 6500, 4510, 3560X, 3750X and 2950T Switches for deployment on production network.
- Configured routing protocol OSPF , EIGRP, BGP, RIP and manipulated routing updates using route-map, distribute list and administrative distance for on-demand Infrastructure.
- Working on cable modems and CMTS (cable modem Termination Systems) .
- Riverbed SNMP Polling, SNMP Traps, NFA implementation & troubleshooting.
- Test and Certify Cisco IOS (12.2(8)T and 12.2(13)T) for AT&T EVPN Network (MPLS).
- Configuration of port channel between core switches and server distribution switches was performed.
- Worked on Cisco Secure Access Control Server ( ACS) for Windows to authenticate users that connects to a VPN 3000 Concentrator. Router/ Microsoft VPN Server in order to access certain limited network resources from customer locations Configuring, Installing and troubleshooting on Check Point Devices.
- Involved in the redistribution into OSPF on the core ASA firewall.
- Convert Branch WAN links from TDM circuits to MPLS and to convert encryption from IPsec /GRE to Get VPN.
- Firewall policy provisioning on Fortinet FortiGate appliances using FortiManager.
- Provide operational support on the Fortinet Fortigate firewalls.
- Traffic monitoring using SPAN, RSPAN sessions. Network traffic analysis and assessment using, SNMP, Net Flow and Logs. Application trending and detailed reports with Packet Trace/Network Analyzer tools (Wireshark/Solar Winds).
- Redesign of ACD & IVR call flow as a requested by customers via Unity Call Handlers or UCCX scripts
- Designed on premise IVRs for integrating with the ACD and CRM systems to ensure maximum efficiency in call handling.
- Extensive knowledge of basic networking hardware (routers, switches, bridges) and protocols (UDP, TCP/IP) .
- Upgraded existing network to Juniper QFX5100 and QFX10k switches, as well as Juniper PTX routers also Provide support installing, configuring, and troubleshooting hardware and software.
- Configuration 7609, 7606 with OSPF and juniper (EX, QFX, and QFabric) switches with various VLAN.
- Perform switch programming within Avaya Communication Manager for Call Routing of incoming and outgoing calls on the PRI's using Vector, VDN and Automatic Call Distribution (ACD), adding/deleting new voice mail boxes, adding/deleting new Extension/Polycom Conference Phones.
- Design, Install, Configure, Maintain, and troubleshoot VOIP (SIP) servers, infrastructure, and applications.
- Worked with vCenter, BigFix Orchestrator, C++, Linux, Solaris, AWS, IAAS, PAAS, SAAS, SCCM, MDT, UNIX, Perl, Python, PowerShell, Openstack, Open Daylight and PowerCLI and have written several scripts to automate tasks.
- Design and Deployed Cisco 6509 VSS stack and Cisco 3650 HSRP Core switches in Branch office.
- Black listing and White listing of web URL on BlueCoat Proxy servers.
- Worked on design, configuring and managing of BlueCoat Proxy Servers.
- Deploying Cisco ASA and Bluecoat ProxySG (Web Security Appliance) S170 for URL Filtering Policies.
- Worked with the ForeScout team in deploying and installing a NAC device CounterACT to monitor and classify the devices that connected to the network.
- Design, Implement & troubleshooting of Juniper switches, routers, Wireless and Firewalls EX-2200, EX-4200, EX-4500, MX-480, M Series, SRX210, SRX240, SRX 3600/650, WLM1200, WLA632, WLA 532, WLC2800 and JunosV wireless Lan controller.
- Collaborated with the network engineers to identify areas of high risk that can be resolved using ISE
- Implemented Hot Standby Router Protocol ( HSRP ) by tuning parameters like preemption.
- Design, Installation and consolidation of local server farms in multiple branch locations with Cisco 4500-X at distribution and 4948’s replacing the 3750’s at access level.
- Experience on HSRP for load balancing.
- Designed and currently in the process of implementing a spine/leaf data center design, using MP-BGP EVPN control plane for VXLAN overlay
- Installation, Administration, and Configuration of Citrix XenApp, Citrix XenDesktop, Citrix Provisioning.
- Installed Citrix XenApp 6.5 and joined to respective farms based on the geographical region and to the respective farm.
- Created VM templates with Citrix image and Xen prep utility to join the servers directly to the farm.
- Configured and maintained SolarWinds, Broadcast Station Manager, and CACTI to monitor and maintain cellular networks.
- Implement and use SOLARWINDS network performance monitoring tool for network monitoring.
- Worked with Solarwinds NPM, AT&T digital Hands & Security on demand for network monitoring and troubleshooting environment.
- Based on Email or NOC trouble escalations, perform troubleshooting and issue correction for deployed CMTS in the client's Network.
- Upgrade current network infrastructure to support IPv6 Router, CMTS.
- Hands on experience in Aruba S2500 switches, Aruba 7200, 3600 series wireless controllers, Aruba IAP 105, Airwave Products and clear pass Servers.
- Configured ACI for remote Authentication in the respective organization, Manage project task to migrate from Cisco ASA firewalls to Checkpoint firewalls.
- Configured Site-Site VPN on Palo Alto Firewall on one side and Fortinet on the other side.
- Configuring, maintaining and troubleshooting with Fortinet firewall and security.
- Experience of Load Balancing using F5 Networks Big IP.
- Perform maintenance upgrades, troubleshooting steps, and documentation on all aspects of the current and future Cisco, Checkpoint, ForeScout and NetOptics based network environments.
- Involved in the removal of EIGRP from all devices and making OSPF the primary routing protocol.
- Good Knowledge on multiplex techniques such as DWDM .
- Managed the F5 BigIP GTM/LTM appliances to include writing iRules, SSL offload and everyday task of creating WIP and VIPs
- Responsible for deploying various network security & High Availability in Checkpoint Firewall.
- Network security involves web filtering on internet sites (User's restriction) checkpoint Firewalls.
- Implementation and verification of GLBP protocol for default Gateway Redundancy.
- Experience configuring Virtual Device Context in Nexus 7010 .
- Wide experience in implementing and managing F5 BIG-IP load balancing, including GTM, APM, ASM, and custom iRule development.
- Experience with configuring Virtual Server and Configuring Load balancing methods in F5 LTM.
- Realignment and modification of BGP from the MPLS routers.
- Expertise on FTP, HTTP, DNS, DHCP servers in windows server-client environment with resource allocation to desired Virtual LAN s of network.
- Installed Aruba Airwave for management and Clear Pass policy manager for policy management and authentication.
- Working experience on trouble shoots and network security related to Cisco ASA/PIX , Checkpoint, IDS/IPS and Juniper Netscreen firewalls.
- Tested and implemented various BGP attributes such as Local Preference, MED, AS-PATH, Community, Extended community.
- Worked with Cisco Nexus, Catalyst and Aruba wireless devices.
- Experience and involved with security team on Cisco ASA, Fortinet firewall configurations.
- Worked on and support with walk-thru on Cisco ASA to Fortinet firewall migration.
- Experience with backup, support and policy administration support between various Fortinet firewall zones .
- Worked on part of migrating the entire Regional Call Center's Cisco ACL to Fortinet UTM devices.
- Extract log files for system monitoring and support using Python, Shell.
- Experience with planned installation, migration of Cisco ASA to Fortinet devices.
- Designed L2VPN services and VPN-IPSEC authentication & encryption system.
- Tuned BGP internal and external peers with manipulation of attributes such as metric, origin and local Preference.
- Design and Implementation of LAN, VLANs, VTP , Spanning Tree ( STP ), Trunking and Ether channel.
- Installed and configured four PIX 525 and two ASA 5505 in the remote access location away from the central campus.
- Configured 3 PIX firewall for the Guest access, worked on Cisco Firewalls ASA 5500(5510/5540).
- Responsible for turning up BGP peering and customer sessions, as well as debugging BGP routing problems.
- Execute WAN activation TCM’s and Troubleshoot WAN, T1, T3/DS3 and gigabit WAN lines in upgrading WAN connectivity for all branch locations.
- Key contributions include troubleshooting of complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF & BGP.
- Experience with Synchronous Optical Networking ( SONET ) over optical fiber.
- Expertise in document creation with technical configurations, billing, security standards design and network documentation using MS Visio.
- Configured Multiprotocol Label Switching ( MPLS ) VPN with Routing Information Protocol (RIP) on customer's site.
- Packet capturing, troubleshooting on network problems with Wireshark, identifying and fixing problems Challenging maintenance of day to day management of Cisco Devices, Traffic management and monitoring.
- Implemented Dot1x secure wireless networks using WLC 5520, ISE 2.1, and Cisco Prime Infrastructure 3.1
- Provide full coverage and support in the migration of branches to ensure branch connectivity with the Data centers with successful migration of all hosts.
- Maintained and managed the remote site network, consisting of QoS design, IP addressing, Visio Drawings.
Environment: CISCO catalyst Switch 6509/ 3750/ 3550/ 3500, CISCO Router 7200/3845/3600, Nexus 7010 , T1 Controllers, Aruba IAP's,DS3 Lines (T3 Lines), Fortinet firewalls, Fiber and Ethernet cabling, Juniper firewalls SRX series, BlueCoat Proxy Servers, Cisco ISE 1.1 - 2.1 SSG series, ISG series, IDS/IPS,UDP, Solarwinds NPM, ForeScout CounterAct NAC, Cisco ASA/PIX, F5 Loadbalencer BigIP GTM/LTM, SNMP, Citrix XenApp 6.5, Juniper Networks- switches EX 4600, EX 6200, EX 8200, QFX5100 and QFX10k switches, DOCSIS 3.0, EX 9200, ACI, DNS, EIGRP, RIP, OSPF, BGP, VPN, MPLS, CSM, SUP720.
Confidential, Mooresville, NC
Datacenter Network Engineer
Responsibilities:
- Worked as a part of data center deployment where we converted from Cisco 6500 to Nexus.
- Experience configuring VPC (Virtual Port Channel), VDC (Virtual Device Context) in Nexus 7010/7018
- Experience with configuring FCOE using Cisco nexus 5548
- Configured Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 5000 to connect servers and storage devices.
- Worked primarily as a part of the security team and daily tasks included firewall rule analysis, rule modification and administration.
- Bluecoat proxy servers setup, configuration, upgrade and Troubleshooting.
- Configured IPSec, SSL, and site to site VPN's on cisco ASA and Fortinet firewalls.
- Implementing Cisco Application Centric Infrastructure (ACI) as a solution for data centers
- Implementation of L3 MPLS-VPN and Migration of branches to the new MPLS cloud.
- Resolve remedy incidents related to Cisco Nexus 7K, 5K, 2K devices alerted in Solarwinds.
- Configuration of overlay VXLAN VTEPs with EVPN control-plane on Nexus switches.
- Installed and implemented ForeScout Network Access Control (NAC) appliance.
- Managing and providing support to various project teams with regards to the addition of new equipment such as routers switches and firewalls to the DMZs.
- Installed Aruba Airwave for management and Clear Pass policy manager for policy management and authentication.
- Responsible for design and implementation of Data center core based on Juniper Q-fabric, SRX 3600.
- Configuring, maintaining and troubleshooting with Fortinet firewall and security.
- Configure and maintain security policies on Fortinet firewall and manage Forti-Manager/ Forti-Analyzer.
- Experienced with Juniper: EX-2200, EX-4200, EX-4500, MX-480, and M Series, SRX210, SRX240.
- Configured Juniper MX480s, EX8200s, EX4500s, EX4200s, and SRX5800s from scratch to match design.
- Troubleshot MS Lync voice related issues like: SIP call drop, fax relay, Lync calls routing, translation rules, dial plans, call restrictions, voice mail…
- Supports a Global Enterprise Network consisting of more than global 80 sites, use supporting systems and tools which include Cisco and HP networking, H.323 and SIP voice gateways and management tools such as SPLUNK, Solar Winds Orion and TACACS+. development for QFX switching platforms from QFX3500 to QFX5100, which are Broadcom Trident/Trident2.
- Polycom Video conferencing system installation, SIP integration and call routing include DMA management access.
- Configuring and implementing F5 BIG-IP LTMload balancers to balance local traffic.
- Configuring, Monitoring and Troubleshooting Cisco’s ASA 5500 security appliance, Failover DMZ zoning and configuring VLANs/routing/NATing with the firewalls as per the design.
- Worked on implementation of Palo alto firewalls.
- Implementing and designing Citrix Secure Gateway, configuring Access Gateway, securing XenApp, STA and XML servers
- Maintaining Citrix legacy farms that include Metaframe and old Presentation server farms.
- Configuring Citrix Load balancing for XenApp 6.5 farm as per the environment demand.
- Remote & telephonic support to the users. Managing & troubleshooting the issues with Citrix servers.
- Worked with F5 LTM, GTM and Viprion Big IP load balancers to add nodes, pools and VIP's
- Experience configuring VIP, WIP, Pools and nodes on the GTM/LTM devices
- Worked on ForeScout policies for auto-remediation of non-compliant devices, classification of devices, etc.,
- DC Installation of routers, switches, Checkpoint Firewall including racking and stacking with ELI.
- Worked on Circuit turn ups, VLAN deployments, Blade insertions, IOS upgrades.
- Perform constant maintenance on Cisco routers and switches with IOS upgrades following design standards.
- Configured and performed software upgrades on Cisco Wireless LAN Controllers 5508 for wireless Network Access control integration with Cisco ISE.
- Worked Extensively on Access Control Policies consisting of VLAN switching through SNMP, Applying downloadable ACLs through Cisco ISE, and Configuring Standard and Extended ACLs.
- Having experience in Net screen Bluecoat proxy servers firmware upgrade.
- Configuration of Extranets and Modifying Route maps for onboarding new clients on to the company’s network.
- Configuring and Troubleshooting VLANS and Inter VLAN routing for improving LAN performance.
- Subnetting Networks and Troubleshooting DHCP and DNS issues.
- Operational tasks included solving VPN, Bluecoat proxy, switching, System testing and routing issues.
- Allocate DHCP IP addresses as per the requirements of the users or buildings.
- Develop the upgrade strategy plans for the DNS, DHCP and the operating system to the latest versions.
- Ensure branch readiness prior to cutover and troubleshooting network issues that arise during the migration.
- Network Management using CheckNet, HP NASH and MS Verify scripts and provide DHCP scoping and creating DSDB entries in QIP.
- Deploying and installing AVAYA IP phones.
- Implemented Checkpoint FW Interface, NAT and VLAN using R77 GAIA Smart Dashboard.
- Advanced knowledge, design, installation, configuration, maintenance, migration and administration of Checkpoint R55 up to R77.
- Maintaining and Supporting a specially configured Voice over IP (VoIP) system VoSKY, GenesysCIM 8.x which drives the telephone system in the company. Developing Proof of Concept solutions related to Wireless and Network Security.
- Provided configuration change recommendations for routers, switches, and Check Point firewalls.
- Managed and worked with VPNs within the organization and to third-party entities.
- Performed an analysis of source host and destination path by tracing it through the network router and switches as well as the firewalls it passes.
- Created a detailed design drawing of the sites, which are under up-gradation and getting it validated from the technical design team.
Environment: Nexus 7k, 5k, 2K, Cisco routers ASR1K, 7200, 3925E and 2951E, Cisco catalyst series switches 6500, 4510, 3560X, 3750X and 2950T, Juniper EX-2200, EX-4200, EX-4500, MX-480, Juniper MX480s, EX8200s, EX4500s, EX4200s,SRX5800s, QFX3500, QFX5100,Aruba wireless and switching devices, Cisco ASA firewalls, Fortinet firewall (fortigate 7060, 5k), Forti-Manager/ Forti-Analyzer, ACI, DNS , OSPF, BGP, RIP, MPLS and WCCP, VLANs, SNMP, Cisco ISE, STP, DOCSIS, GenesysCIM 8.x, Checkpoint firewalls(SPLAT), Bluecoat proxy, 802.1q trunking, NAT, Citrix servers, Load Balancing using GLBP, F5 BigIP GTM/LTM, ForeScout CounterAct NAC, Subnetting networks, QIP, DSDB.
Confidential, Redmond, WA
Network Engineer
Responsibilities:
- Implementing and maintenance of network design, structure, up gradation and configuration of routers and switches at the client server for 400+ users.
- Worked using routing protocols EIGRP and BGP based company network for resolving level 2 and 3 issues.
- Implementing and configuring Static, RIP and OSPF protocols on Juniper M and Cisco Routers.
- Performed troubleshooting and management of OSPF and BGP protocols on routers.
- Maintaining redundancy on Cisco 2600, 2800 and 3600 routers with HSRP.
- Support Engineer in Installation of first ISE appliance.
- Config IPv6 in CMTS (UBR7200, 10Ks), Arris C4 and E6000), 7609s, Nexus, ASR.
- Worked in JUNOS platform and with IOS upgrade of Juniper devices.
- Implemented antivirus and web filtering on Juniper SRX 240 at the web server
- Packet capturing, troubleshooting on network problems with Wireshark, identifying and fixing problems.
- New Fortinet firewall implementation, Traffic Migration and Upgrade Software of existing Firewalls per LLD.
- Testing, upgrade BIOS OS of Fortinet Firewall system.
- Fortient firewall policy optimization, review rule conflicts, unused configs, clean-up activities.
- Configured Cisco ISE tunnels with Fortinet to enable secure transport and cloud based/site-site VPN to AWS.
- Serve as part of a team of network engineers responsible for base wide network upgrade from Cisco Layer 3 Catalyst switches to Juniper Layer 3 EX4200 & EX3200 switches.
- Provided on-call support by responding to rapid page outs, ensuring management awareness, monitoring the ACD translation hotline, and enlisting Tier II support per escalation guidelines.
- Monitored network for optimum traffic distribution and load balancing using Solarwinds.
- Creating, implementing and testing Citrix NetScaler ADC (Application Delivery Controller) responder
- Worked on IP addressing based on subnetting and Variable Length Subnet Mask.
- Supporting customers with the configuration and maintenance of PIX and ASA firewall systems.
- Monitoring the routing traffic using Cisco 2000 and Wireshark.
- Program update, maintenance, and ship Juniper, Cisco ASA, Fortinet Firewalls and walk-thru firewall install
- Experience with Fortinet UTM firewall administration using FortiManager
- Implemented WLAN Aruba Wireless Access Points and its Controllers at various corporate sites fort 11n Infrastructure and its legacy technologies.
- Provide second/third level technical support for ACI (Application Centric Infrastructure) technologies.
- Support third party technologies within the ACI ecosystem such as VMware ESX, OpenStack.
- Checkpoint Firewall upgrade from Checkpoint R65 to Checkpoint GAIA R77.
- Monitoring Traffic and Connections in Checkpoint and ASA Firewall.
- Provided technical assistance for LAN/WAN management & troubleshooting and complex customer issues using Network monitoring tools such as Solarwinds.
- Supported clients with the configuration and maintenance of PIX and ASA firewall systems.
- Configuring Spanning tree, VSTP, VLAN, SNMP on EX series switches.
- Working knowledge with monitoring tools like SolarWinds & network packet capture tools like Wire-shark.
- Providing technical support in LAN and WAN connectivity and hardware issues in the complex network system.
- Bluecoat Administration - Blocking/Unblocking URL's.
- Performing network monitoring, providing analysis using various tools like Wireshark, Solarwinds etc.
- Creation of documentation and reporting tools using SQL codes, MS- Word, Excel, Access, SQL.
- Server Integration Services (SSIS) and SQL Server Reporting Services (SSRS).
- Configure Multi-Protocol Label Switching (MPLS) on Cisco IOS XR Software.
- Implemented and maintained Bluecoat proxy for rendering proxy services for end users.
- Implemented IP, RTP, TCP, UDP, IPV4 Packets capture and analysis using WIRESHARK (ethereal).
- Created granular configurations in bluecoat proxy for assigning specific internet resources to each user.
- Connecting various routing and switching devices with CAT 5/ 5E cabling.
- Provided Tier2 LAN and WAN operational support to network call center, supporting the remote, domestic and international offices.
Environment: CISCO 3750/3550/3500/2960 switches and CISCO 12000/ 7200/3845/3600 routers, CISCO ASA5510, Checkpoint, Juniper firewalls 5GT, 208, SSG 5, 140, 550, 550M, Juniper Layer 3 EX4200 & EX3200 switches, fortinet NGFW( fortigate 2k,900,600,300), NSM, IDS/IPS,RTP, Bluecoat,Vulnerability Assessment tools like Nessus, Red Hat, CMTS (UBR7200, 10Ks)Solaris, Juniper VPN's, SSL.
Confidential
Network Administrator
Responsibilities:
- Set up and configuring of Linux (Redhat& SUSE) and Solaris servers/workstations for clients.
- Configured STP for loop prevention on Cisco Catalyst Switches.
- Involved in configuring and implementing of Composite Network models consists of Cisco 3750, 2620 and, 1900 series routers and Cisco 2950, 3500 Series switches.
- Implemented various Switch Port Security features as per the company's policy.
- Configured RIP and EIGRP on 2901 and 3925 Cisco routers.
- Configured VLANS to isolate different departments.
- Project to migrate/re-design 700+ customer connections (MPLS & Frame) out of retired Data center to new Juniper M120.
- Monitoring Circuit bandwidth utilization using Solarwind Orion.
- Implementing Security with CISSP approach and Administering SIP, H.323 protocols.
- Worked in setting up inter-Vlan routing, redistribution, access-lists and dynamic routing.
- Troubleshoot issues related to VLAN, VLAN Trunking, HSRP failovers, related issues.
- Configured VTP to manage VLAN database throughout the network for Inter-VLAN Routing.
- Configured IPSEC VPN on SRX series firewalls.
- Configure rip, OSPF and Static routing on Juniper M and MX series Routers.
- Design, installation and troubleshooting networks with hand-on experience with OSPF, ISIS, BGP, VPLS, Multicast, VPN, MPLS, & Traffic engineering.
- Provided technical support for expansion of the existing network architecture to in corporate new users.
- Implementing Routing and Switching using the following protocols; IS-ISOSPG, BGP on Juniper M series routers.
- Worked on Juniper MX240 and MX480 Network Securities with Juniper SRX firewalls.
- Network layer tasks included configuration of IP Addressing using FLSM, VLSM for all applications and servers throughout the company.
- Installed Operating System and configured kernel parameters for Linux /Unix servers.
- Performed scheduled Virus Checks & Updates on all Servers & Desktops.
- Involved in Local Area Network (LAN) design, troubleshooting, and maintenance as per company's requirements.
- Performed a large scale inspection for indoor and outdoor wireless and VOIP, URS, GVP, NiCE call recording software, SIP trunking, Genesys CIM 8.x, contact center solutions(CCS)
- Involved in implementation of Trunking using Dot1Q, and ISL on Cisco Catalyst Switches
- Worked with snipping tools like Ethereal (Wireshark) to analyze the network problems.
- Maintenance and troubleshooting of network connectivity problems using PING, Trace Route.
- Performed replacements of failed hardware and upgraded software.
Environment: STP, Cisco routers 3750, 2620, 1900, Cisco switches 2950, 3500, Juniper M120, RIP, EIGRP, VLANS, VTP, IPSEC VPN, SRX, OSPF, ISIS, BGP, VPLS, Multicast, MPLS, IS-ISOSPG, BGP, FSLM, VSLM, LAN, Dot1Q, ISL, PING, TRACE ROUTE.
Confidential
Jr. Network Engineer
Responsibilities:
- Implemented Load Balancing between Cisco L3 Switch by HSRP and GLBP.
- Implemented cable multi-service operator (MSO) to capture traditional Telco subscribers with IP telephony and provide relevant QOS.
- Provided support regarding call routing, translation patterns, media resources etc.
- Maintaining and Troubleshooting VoIP server End-points and Route plans using Real Time Session Manager.
- Day to day troubleshooting and maintenance of CUCM clusters, Unity Servers, and IP phones in the network.
- Designed and deployed data infrastructure with Cisco 10K CMTS
- Configured redundant pair setup and synchronization between pairs on F5 load balancer.
- Involved in migrating applications from Netscaler to F5 Big -IP environment.
- Implemented new ultra-secure networks in multiple data centers that included Cisco 6500s and/Juniper security devices.
- Created virtual network overlays, tenants and VM's using IPAM's setting up security policy using Juniper Contrail in conjunction with Openstack.
- Network Securities with Juniper SRX firewalls.
- Configured Firewall, IPS, and QoS by SDM and provide security by Prefix list, Access- List and by Distribution List.
- Moved core switches and several non-Cisco devices under strict deadlines to maintain network functionality.
- Satisfactorily resolved problems in timely manner with focus on providing a high level of support for all customers.
- Worked towards solving the customer's performance related queries.
- Monitor, improve, and support all aspects of network connectivity using SolarWinds.
- Installation & maintenance of Trend Micro for automated antivirus updating and virus protection.
- Documented all the requirements and procedures followed.
- Provide high level technical support, including identifying and resolving problems on Cisco supported products for e-Commerce infrastructure. This included external routing and internal/intranet routing for DMZ servers.
- Designed VLAN's and set up both L2 and L3 logical to have it communicate to the Enterprise network.
- Scheduled preventive maintenance for fire-protection systems, including new protocols. Utilize MS Windows, Word, and Excel for reporting/documenting process.
- Prepared Engineering documents and Network diagrams in Microsoft Visio.
- Delivered Departmental Efficiency through advanced engineering, technical support, and documentation procedures.
Environment: Cisco L3, Juniper SRX firewalls, HSRP, GLBP, QOS, VoIP, CUCM, IPS, QoS, SDM, DMZ, VLAN's