Lead Infrastructure Engineer Resume
TECHNICAL SKILLS
Network: Enterprise Data Center, Core/Distribution, Internet, WAN, and LAN routing and switching technologies. Cisco IOS and NX - OS, JUNOS, BGP, OSPF, EIGRP, IPSec/GRE; Layer 2 Protocols VRRP, HSRP, L2TPv3.
Application support: Load balancing and application acceleration, F5, Brocade/Foundry, and Radware
Security: Palo Alto, Check Point, Juniper NetScreen, Cisco ASA technologies.
Applications and Network Management: Cacti, Microsoft Visio; Remedy Action Request System; Peregrine/HP Service Center; EM7, Spectrum One-Click, misc. NMS tools.
PROFESSIONAL EXPERIENCELead Infrastructure Engineer
Confidential
- Responsible for design and implementation of Cisco Nexus core and data center architecture in a top to bottom modernization effort for TS/SCI classified networks. Utilized Nexus 7000, 5000, and 2000 platforms in a data center hosting multiple in-house and DoD applications.
- Focused on network optimization and high availability in re-design efforts of classified CONUS and OCONUS routed networks, including reconfiguration of routing protocols, adding redundancy, and introduction of a scalable solution in an integrated Cisco NX-OS and IOS environment.
- Created and implemented network standards and conventions using proven industry best-practices, including documentation/diagram templates, standard configurations.
- Escalation point for network routing and hardware issues.
Lead Network Engineer
Confidential
- Implemented DMZ and perimeter top-to-bottom redesign at all three EOP ISP demarks, including new hardware which introduces BGP and VRF routing to the EOP network, as well as new firewall and load balancer design and configuration. Large scale, short timeline projects in conjunction with the EOP Information Assurance teams, which took the agency from a statically routed design to a new, completely scalable model.
- Designed and implemented tertiary/hot site data center network infrastructure, including perimeter, DMZ, and data center core/distribution.
- Responsible for implementation of trusted and untrusted remote site connectivity utilizing new routing arthictecture with both traditional IPSec and VRF aware IPSec.
- Designed and implemented network modernization efforts, including data center and building distribution upgrades and redesigns, and led White House fiber relocation to support GSA sustainment projects from the network perspective with highly compressed project timeline.
- Lead network engineer for EOP application load balancing redesign, as well as maintenance of current systems, including design of new Brocade load balancer architecture in support of Exchange 2010.
- Created and implemented network standards and conventions using proven industry best-practices, including documentation/diagram templates, standard configurations and device naming conventions,
- Escalation point for all network routing and hardware issues, as well as application load balancing and acceleration.
Senior Network Engineer
Confidential
- Responsible for the configuration and maintenance of FDA application load balancing and SSL acceleration devices for high-availability, mission critical, internal and extranet applications
- Lead network engineer for build out of new test and development application extranet, routers, switches, and load balancers/accelerators. Worked with server engineering and application development teams to build out a new, fully redundant, high speed environment to support FDA mission-critical applications. Also participated as lead network engineer in related projects to expand databases available to FDA Extranet applications, including design and implementation of the supporting network infrastructure.
- Part of the team responsible for designing and building out new FDA data center, including installation and configuration of all routers, switches, load balancers, and the new core and internet configuration.
- Responsible for configuration, maintenance, and troubleshooting of large-scale WAN environment. Work with vendors and ISPs for installation and upgrades of sites, and participated in configuring and installing over 200 upgraded routers during a 2-month long project.
- Participated in the design and deployment of the FDA’s first international office networks. Configured and prepared routers for installation in multiple countries, and worked with both domestic and international ISPs and vendors, as well as other organizational teams during the process.
- Configuration, design, and maintenance of internal network routers and switches, including high-availability extranets, DMZs, distribution layer, core, and internet routers.
- Responsible for designing and maintaining network documentation, including network diagrams, detailed inventory of network devices and their current configuration, and implementation/configuration guides. Also maintain IP addressing management for the environment.
- Conducted multiple training sessions and presentations for the operations center to ensure an understanding of the environment, both physically and logically.
- Escalation point for all WAN and internal network routing and hardware issues, as well as application load balancing and acceleration.
Network Engineer
Confidential
- Lead engineer for IMAC (install, move, add, change) network projects - responsible for design, project management, documentation, procurement, configuration and installation of all IMACs involving network hardware.
- Technical Project manager and implementer for a large-scale effort to remove all unmanaged devices from the network environment, spread out over fifteen different sites nationwide. Responsible for planning, documentation, coordination, and configuration of all devices.
- Responsible for designing and maintaining network documentation, including network diagrams, detailed inventory of network devices and their current configuration, and implementation/configuration guides.
- Maintained IP addressing and assignment for the entire nationwide environment.
- Conducted multiple training sessions and presentations for the operations center to ensure an understanding of the environment, both physically and logically.
- Tier 4 escalation point for network troubleshooting and outages
Network Engineer
Confidential
- Significantly improved network performance and reduced network downtime by consolidating 8 disparate departments’ networks consisting of approximately 10,000 nodes into a single management and standardized configuration model in less than 3 months. Planned, coordinated, and implemented enterprise-wide access switch upgrades of over 250 devices across multiple buildings and hardware platforms running both CatOS and IOS.
- Aided in multiple new Check Point firewall implementations, rule-tunings, and validating objects to conform to security best practices. Created a CMDB from data collected using Peregrine Service Center. Monitored performance of multiple firewalls for status and trends using Check Point SmartView tools.
- Integrated with security operations to install IDS devices, and prepared SPAN connectivity for monitoring. Assisted security with enforcement of policy throughout enterprise via tracking of nodes not in compliance.
- Discovered, diagramed, and documented all network devices using Visio prior to the team taking responsibility for a new network. Conducted cross training to provide scalable execution.
- Worked with customers and third-parties to troubleshoot security and connectivity problems.
- Created implementation plan and wrote procedures for network engineering team detailing large scale access switch upgrade project.
Associate Network Engineer
Confidential
- Worked with eBusiness customers to integrate new routers into existing routing environment. Installed a variety of Cisco hardware in large data centers, turned up new customer frame-relay circuits, and decommissioned end-of-contract customer and corporate hardware from the network. Worked with telephone companies for new circuit installations, moves, and disconnects.
- Performed Cisco IOS upgrades on customer and corporate routers, and configured and upgraded memory for hardware to be shipped to customers and remote sites.
- Planned for future bandwidth needs by tracking utilization on frame relay customer and Internet circuits.
- Coordinated change control process between engineering group and eBusiness operations
- Prepared detailed network diagrams in Visio for multiple enterprise environments and new data centers. Wrote project plans for large-scale remote-site upgrade project and MAN migration.