Firewall Administrator Consultant Resume Profile
Philadelphia, PA
Objective: Looking for Firewall Engineer role where i can contribute my Checkpoint Network expertise in a challenging domain
AREAS OF TECHNICAL STRENGTH
- Experienced in Checkpoint firewall
- Strong knowledge in F5 load balancer and DNS
- Proficient in setting up IT infrastructure including wide area networks WAN / local area networks LAN , security management systems networking devices administration.
- Good Knowledge in Cisco routing and switching products
- Hands on experience using diagnosis tools like WhatsUPgold, SolarWind and TCPDUMP for analyzing the real time statistics during the packet flow.
- Experienced in testing Cisco routers and switches in laboratory scenarios and deploy on site in production.
- Proficient in configuration of routing protocols like RIP, IGRP, EIGRP, OSPF and BGP.
- Experienced in IPsec vpn
- Worked in checkpoint OS like SecurePlatform and GAIA.
- Extensive knowledge in UTM, Power-1 Checkpoint FIrewall hardware
- Hands on experience in NAT configurations and it's analysis on troubleshooting issues related access lists ACL .
- Involved in monitoring network traffic and its diagnosis using performance tools like Snort,, ping tools, and packet player.
- Excellent communication and interpersonal skills, interfaces effectively with upper management, subordinates, vendors, co-workers peers.
PROFESSIONAL SKILLS
Firewall Administrator Consultant
Confidential
Responsibilities:
- Added, removed and updated Checkpoint Firewall objects and rules
- Managed 20 Firewalls in North America
- Worked on the Checkpoint R75 firewalls
- Daily responsibilities included design, implementation, support and administration of multiple security products running CheckPointPower-1 and UTM hardware
- Responsible hardware and software inventory including licensing
- Creating technical implementation plans, project plans, and worked closely with internal and external users to supply solutions that fulfill their needs.
- Worked on Checkpoint Platform including Smart Dashboard, SmarView Tracker and Smartview Monitor
- Used CheckpointSmartview tracker to track day to day Firewall activity logs
- Monitored Firewalls by using SmartView Monitor
- Experienced in F5 LTM load balancer version 9 and 10
- Created VIP, Pool and SSL certificate analyzed F5 Load Balancer logs to troubleshoot traffic activity,also familiar with iRule
- Worked in Internal / External DNS to add A, CNMAE record in the forward/reverse lookup file
- Took responsibility to resolve checkpoint Firewall, F5 and DNS related issues
- Documented any production related issues by creating IR Incident Report
- Used TCPDump and WireShark to analyze traffic
- Used PPM to manage all the issues related tickets
- Participated weekly status report meeting
- Trained junior or new hire about the environment
F5 Administrator Richmond
Confidential
Responsibilities:
- Building, configuring, maintaining, troubleshooting the firewalls. Develop and implement the company's security policies, and rules implementation. Coordinate lab testing of new software to ensure stable implementation.
- Analyzed Checkpoint Firewall port open request ticket
- Follow Up with end users once Firewall, DNS and F5 load balancer ticket completed
- Good knowledge in Cisco 3500, 4500, 6500 series switches and Checkpoint R 75.40Firewall.
- VLAN and Port channel configurations on Cisco 4500 and 6500 series switches
- Coordinated with network operations center NOC for change notifications, alerts and escalation of security incidents.
- Familiar with Bluecoat Proxy and URL filtering
- Troubleshoot DNS internal and external DNS server
- Added, removed DNS reverse and Forward lookup zone file
- Worked on F5 LTM load balancer
- Added, removed or modified F5 load balancer VIP, Pools or SSL certificate
- Performed daily network operations, on-call, and other duties and tasks as required.
- Monitored the ticket queue for incoming tickets, update tickets in accordance to Service Level Agreement SLAs requirements and, escalate based on severity levels.
- Implemented enterprise wide network infrastructure and e-commerce support solutions including, network intrusion detection, encryption and monitoring.
- Performed business migration planning including location change, platform introduction and integration.
- Worked on creating network documentation using Microsoft Visio 2007.
NOC Engineer Consultant Richmond
Confidential
Responsibilities:
- Monitored EMON alerts and verified Took action escalating issue to the right engineer like Checkpoint FIrewall, DNS, F5 load balancer, router and switch
- Performed deep analysis by using SolarWind and WhatsUPgold tools
- Participated week and monthly maintenance, upgrade and migration project
- Active participation in cross-functional meetings for service enhancement opportunities, tools development, and reporting enhancements
- Ensured that detailed network documentation is maintained accurately and efficiently
- Provided input to Manager and Director
- Worked with Network Operations Center NOC team and Customer Service Hotline for information gathering and customer status updates during trouble resolution
- Worked closely with customer's technical resources and management to resolve issues
- Ensured trouble tickets from Hotline and Network Operations Center NOC are prioritized and addressed within severity guidelines by the department
Technical Skills:
PROTOCOLS: OSI,TCP/IP,DHCP, UDP, RIP v1, RIP v2, IGRP, EIGRP, TACACS , RADIUS, OSPF, BGP, SSH, TFTP, FTP, SMTP, NTP, LDAP, Active Directory, Kerberos, L2F, L2TP, PPP, Frame Relay, ATM, Sonnet, Fast/Gig Ethernet, HSRP, Token Ring, ISDN, AAA, DES, 3DES, AES, and MD5, VPN IPsec and SSL ,VRRP, HSRP, DNS BIND, DJBDNS, Infoblox , CARP, SNMP.
NETWORK MONITORING TOOLS: HP openview, Cisco Works, Netscout, Ethereal, tcpdump, netcat, Sniffer, Snort Snortsnarf, MRTG.
OPERATING SYSTEMS: WINDOWS NT/200/2003, UNIX, SPLAT SECURE PLATFORM , LINUX, REDHAT, DEBIAN,CISCO IOS, JUNOS
FIREWALLS: Checkpoint NGX R65-R75 , Cisco PIX 515E,Cisco PIX 535 Firewall, Cisco ASA 5510,Cisco ASA 5520, Cisco ASA 5540,Cisco ASA 5550, Cisco ASA 5580-20, Cisco FWSM, Check Point NGX R52, R54, R61, R62, R65, R 75, Nokia IP690, Nokia IP530, Checkpoint provider 1, Checkpoint Firewall 1, SPLAT.
ROUTERS: Cisco 2811, Cisco 6509-E Multi-layer Switch , Cisco7200, Cisco3800, Cisco 3640, and Cisco 3745.
SWITCHES: Cisco Multi-layer Switch 6500, Catalyst 4500, Catalyst3750, Catalyst2900 and Catalyst 3500XL.
VOIP: SIP H.323, MGCP, TDM, SS7, Avaya Voice gateways.
LAN/WAN TECHNOLOGIES: T1, DS3, OC3, SONNET, MPLS, DSU/CSU.
NETWORK EQUIPMENT: Cisco 2950,3500,4500,6500 series Switches, Cisco 800, 1600, 2500, 2600,3700,3800,7200 series Routers, Cisco wireless access points.
