Sr. Network Engineer - Layer 2/layer 3 Resume
Mahwah, NJ
SUMMARY
- Certified network professional with 5+ years of experience in Configuring, Implementing and Troubleshooting Enterprise Networks.
- Hands on experience configuring, administrating and troubleshooting infrastructure with Cisco/Juniper platform Routing, Switching and Security.
- Expertise with LAN, WAN, MAN, VLAN, VTP, STP, PVST+, RPVST+, Inter VLAN routing, Multi - Layer Switch, Ether channels, OSPF, EIGRP, BGP, RIP v1/v2, PBR, Route Filtering, Redistribution, Summarization, Static Routing in Layer 2 and 3.
- Profound knowledge on various WAN technologies like E1/T1/E3/T3, HDLC, Frame-Relay and PPP.
- Expertise in installing, configuring, and maintaining Cisco Switches (2900, 3500, 3700 series, 6500 series).
- Expertise in installing, configuring, and troubleshooting of Cisco Routers (3800, 3600, 2800, 2600, 1800, 1700, 800).
- Experienced configuration and troubleshooting Juniper EX switches.
- Expertise with Juniper M 120 Multi service edge router and also MX 10 and MX 40 series routers inside datacenter.
- Hands on experience working with Cisco Nexus 7K, 5K & 2K Switches.
- Deployed and configured devices using Meraki dashboard.
- Managed inventory of all network hardware, Management and Monitoring by use of SSH, Syslog, SNMP, NTP. Also used Active directory.
- Proficiently implemented traffic filters using Standard and Extended access-lists, Distribute-Lists, Route Maps and route manipulation using Offset-list.
- Extensive Knowledge on the implementation, troubleshoot and policy changes of ASA, Checkpoint, Juniper SRX and Palo Alto firewalls.
- Hands on experience in deployment of GRE tunneling, SSL, Site-Site IPSEC VPN and DMVPN.
- Hands on Knowledge/experience on F5 load balancers. Implementation and troubleshooting on LTMs and GTMs.
- Experience working on 7200 series Aruba wireless controllers.
- Experience forming a network diagram with MS Visio and cacti.
- Have knowledge on various advanced technologies like VOIP, H.323, SIP, QOS, IPv6, Multicasting, and MPLS.
TECHNICAL SKILLS
Routers: Cisco 7600, 7200, 6503, 3800, 3600, 2900, 2800, 2600, 1800, 1700
Routing: OSPF, EIGRP, BGP, RIP v1/v2, Route Filtering, Redistribution, Summarization, and Static Routing.
Switches: Nexus 2K/5K/7K, Cisco Catalyst 2900, 3500, 3700, 6500, 4500, 3850, 3560, 3750, 2960, Meraki switch.
Switching: LAN, VTP, STP, PVST+, RPVST+, Inter VLAN routing & Multi-Layer Switch, Ether channels, Transparent Bridging.
Network Security: Cisco ASA 5540, Checkpoint, ACL, VPN, IPSEC, SSL-VPN, SSL/TLS, NAT/PAT
Load Balancer: F5 Networks (Big-IP) LTM 8900 and 6400.
LAN: Ethernet (IEEE 802.3), Fast Ethernet, Gigabit Ethernet
WAN: PPP, HDLC, Channelized links (T1/T3), Fiber Optic Circuits, Frame Relay, VOIP
Gateway Redundancy: HSRP and VRRP
Various Features & Services: NAT, SNMP, SYSLOG, NTP, DHCP, CDP, TFTP, FTP.
AAA Architecture: TACACS+, RADIUS, Cisco ACS.
Network Management: Wireshark, SNMP, SolarWinds, Infoblox, Meraki Dashboard.
Scripting: Python
PROFESSIONAL EXPERIENCE
Confidential, Mahwah, NJ
Sr. Network Engineer - Layer 2/Layer 3
Responsibilities:
- Involved in complete LAN, WAN development (including IP address planning, designing, installation, configuration, testing, maintenance etc.).
- ReviewedHLD, LLD, BoM and understand project requirement.
- Involved in preparing configuration scripts as per LLD design.
- Worked closely with the Project Manager and took end to end ownership of network project, interacted with third party vendors, business & internal teams.
- Built Cisco Identity Service Engine (ISE) servers on multiple continents.
- Configured access layer switches in the ISE lab for implementation testing.
- Setup monitoring ports and conducted packet capture with Wireshark for troubleshooting.
- Aided in troubleshooting potential network issues in rolling out ISE.
- Single handedly managed complete racking & stacking of all network devices.
- Worked in implementation & troubleshooting LAN, WAN & wireless network.
- Worked on Catalyst 6500, 4500, 3800 & 2900 series of switches, ASR 1000, ISR Cisco 1900, 2900, and 3900 series routers, wireless LAN controllers Cisco 5508, 5520, 2504 & Cisco LWAP 3800, 3700 series.
- Provided daily operational support and administration for core network infrastructure.
- Performed administration including creating and managing VLANS, Port security, Trunking, STP, Inter Vlan routing, LAN security etc.
Environment: Cisco 6503/4506/4503/3850/3750 switches and Cisco 3640/3845/3600/2921 routers, Cisco ISE, Wireshark, OSPF, BGP, VLAN, HSRP, LAN, WAN, IPV4.
Confidential, Jersey City, NJ
Sr. Network Engineer - Layer 2/Layer 3
Responsibilities:
- Involved in complete LAN, WAN development (including IP address planning, designing, installation, configuration, testing, maintenance etc.).
- Worked on datacenter migration from Jersey City data center to Somerset, New Jersey location.
- Migration project involved working on brocade 6740, 6710 series; Cisco Nexus 7201, 7010 L3 devices at core layers.
- Experience working with Cisco Nexus 2148 Fabric Extender and Nexus 5000 series to provide a Flexible Access Solution for datacenter access architecture. Configuring VDC and VPC on Nexus.
- Analyzed the data center sites for different network equipment cabling requirements.
- Performed administration including creating and managing VLANS, Port security, Trunking, STP, Inter Vlan routing, LAN security etc.
- Implemented with Cisco Layer 3 switches 3750, 4500, 6500 in multi VLAN environment with the use of inter-VLAN routing, HSRP, ISL trunk, ether channel.
- Involved in migration from Frame-Relay/ATM network to MPLS-based VPN for customer’s WAN infrastructure.
- Heavily worked with Network Architect formulating Network diagrams and monitoring 300+ devices with Cacti.
- Heavily worked on network migration and maps with using cacti with Architect.
- Co-ordinate with Service providers, 1600 onsite users, network Architect and Manager while migration. Worked on network monitoring and support for 1600 onsite users.
- Installation and implementation of Cisco ISE servers.
- Configuring RIP, OSPF and Static routing on Juniper M 120 Multi service edge router and MX 10, MX 40 series Routers.
- Deployment of nationwide corporate upgrade: migrating from legacy equipment to CiscoMerakiindoor/outdoor wide area mesh networks (Cisco’s largestMerakirollout to date).
- Installed and configured Cisco Meraki Switch (MS-225/350), Meraki Router/Firewall (MX-64/84), Meraki Wireless (MR-42/52) in 1000s of nationwide stores.
- Worked with team Managing and configuring Aruba Wireless controller devices (7210, 7240) and Cisco Access Points.
- Experienced F5 BigIP LTM/ GTM. Designing F5 solutions/support for migration work of applications and websites from Cisco CSS Load Balancers to the F5 BigIP Load Balancers.
- Updating iRules, SSL offload and everyday task of creating WIP and VIPs.
- Responsible for Checkpoint firewall management and operations across our global networks.
- Experienced working with the Checkpoint Smart console r77.30and r75.40 suite for managing the firewall rules.
- Configuring ASA 5510 Firewall and policies for network traffic.
- Worked on AAA Cisco Secure ACS (RADIUS/TACACS+) authentications.
- Coordinated with service providers for WAN link outages.
- Experience using DHCP to automatically assign reusable IP addresses to DHCP clients.
- Working with Infoblox & QIP for IP address management and C-Record creation.
Environment: Cisco 3750/3550/3500/2960 switches and Cisco 3640/12000/7200/3845/3600/2800 routers, SolarWinds, Cisco ASA 5510, Checkpoint 75.40, 77.30, Cacti, Infoblox, Wireshark, OSPF, BGP, VLAN, HSRP, LAN, WAN, IPV4, ASA Firewall, Nexus 7010, Nexus 7210, Juniper EX switches, Juniper M and MX series routers.
Confidential, Holmdel, NJ
Network Engineer - Layer 2/Layer 3
Responsibilities:
- Involved in the configuration & troubleshooting of routing protocols: MP-BGP, OSPF, LDP, EIGRP, RIP, and BGPv4. Configured IP access filter policies.
- Managed fast Layer 3 switched/routed LAN/WAN infrastructure as a part of Network team. The LAN consisted of Cisco campus model of Cisco 3550 at access layer, Cisco 6513 at distribution/core layer.
- ConfigureVRRP & GLBP andVLANTrunking802.1Q & ISL, STP, Port Security on Catalyst 6500 switches.
- Configuration and management of NEXUS network in the existing network infrastructure.
- Created LAB setup with 7k and 5K NEXUS switches for application testing.
- Identify, design and implement flexible, responsive, and secure technology services.
- Experience with Firewall Administration, Rule Analysis, Rule Modification.
- Provided proactive threat defense with ASA that stops attacks before they spread through the network.
- Cisco ASA/Checkpoint Firewall troubleshooting and policy change requests for new IP segments that either come on line or that may have been altered during various planned network changes on the network.
- Implementation, Configuration and Support of Checkpoint(NGX R65, R70 and R71).
- Deploy and support Checkpoint Provider 1.Experience with convert Checkpoint VPN rules. Migration Checkpoint VPN experience using SPLAT and GAIA .
- Modified internal infrastructure by adding switches to support server farms and added servers to existing DMZ environments to support new and existing application platforms.
- Responsible for Checkpoint and Cisco ASA firewall administration across global networks.
- Implemented Positive Enforcement Model with the help of Palo Alto Networks.
- Innovated with support of Palo Alto for remote and mobile users and for analyzing files for malware in a separate (cloud-based) process that does not impact stream processing.
- Creating and provisioning Juniper SRX firewall policies and configuration on juniper M120, 320, MX480, routers and SRX 5400, 5800 services gateway.
- Created standard access lists to allow SNMP, NTP and logging servers.
- Troubleshoot traffic passing managed firewalls via logs and packet captures.
- Negotiate VPN tunnels using IPSec encryption standards and also configured and implemented site-to-site VPN, Remote VPN.
- Generating RCA (Root Cause Analysis) for critical issues of layer1/layer2/layer3 problems.
- Co-ordinate with the Data Network and Security team and came up with possible solutions.
Environment: Cisco 3750/3550/3500/2960 switches and Cisco 3640/3845/3600/2800 routers, Cisco ASA 5510, Checkpoint NGX R65, R70 and R71, Palo Alto PAN-OS and Panorama, Nexus 7K/ 5K, 2248/3560/5020/6509 , LAN, OSPF, BGP.
Confidential
Network Engineer - Layer 1/Layer 2
Responsibilities:
- Provided technical support on hardware and software related issues to remote production sites.
- Configured OSPF, BGP, EIGRP for lab environment.
- In-depth understanding of core Routing and Switching TCP IPv4 & IPv6 protocols, DNS, DHCP, SNMP, VLAN, VPN, MPLS, etc.
- Maintained redundancy on Cisco 2600, 2800 and 3600 router with HSRP.
- Real time monitoring and network management using Cisco Works LMS.
- Implemented ISL and 802.1Q for communicating through VTP.
- Designing solutions for frozen requirements using Cisco Routers and Switches.
- Deploying the network infrastructure to meet the requirements.
- Created VLAN and Inter-Vlan routing with Multilayer Switching.
- Configuring of IP Allocation and subnetting for all applications and servers and other needs throughout company using FLSM, VLSM addressing.
- Installed wireless access points (WAP) at various locations in the company.
- Responsible for LAN and internet connection file and print server.
Environment: Cisco 3600/2600/ 2800 routers, EIGRP, RIP, OSPF, BGP, VPN, LAN, VTP, TCP/IP.
Confidential
Desktop Support Engineer/ Network Tester
Responsibilities:
- Provided overall daily router and server administration including monitoring, analysis, troubleshooting and performance tuning.
- Conferred with vendors to develop, test, evaluate, and install enhancements.
- Established network policies and procedures.
- Troubleshot and resolved desktop, network, and systems issues.
- Managed and maintained Active Directory objects and accounts.
- Supervised Windows 7 / Office 2010 deploy project.
- Spend time with Tec's Cisco lab familiarizing myself with terminology, cabling, configuration, troubleshooting and device management.
- Ran fiber optic and CAT 6 cables throughout client locations.
- Responded to email, telephone, and walk in requests for technical support.
- Service calls included setting up network servers and workstations for both wired and wireless networks
- Managed a PC Refresh project for IMA Group and migrated 50 users to Windows XP. Supervised 5 employees.
- Maintained and installed new internet connections for customers.