We provide IT Staff Augmentation Services!

Network Security Engineer Resume

0/5 (Submit Your Rating)

MD

SUMMARY

  • CCNA and CCNP certified Network Engineer with over 8 years of experience with expertise in implementation, administration, analysis and support of LAN and WAN.
  • Experience in Cisco Routing and Switching with strong Cisco hardware/software experiences with Routers such as 2900, 3800, 3900, 4000, 7200, 7600, 3900; Cisco ASR - 1k/9k, Cisco Multilayer Switches 2960, 3850, 4500, 4900, 6500; Cisco Nexus 2k/5k/7k.
  • Configured and deployed F5 LTM, GTM series like 6400, 6800, 8800 for providing application redundancy and load balancing.
  • Worked on Cisco IOS for configuration & troubleshooting of routing protocols: BGP, OSPF, EIGRP, IGRP and RIP.
  • Expert Level Knowledge about TCP/IP and OSI models
  • Involved in troubleshooting of DNS, DHCP and other IP conflict problems, worked on Gigabit Ethernet and Fast Ethernet connection and applied QoS for the bandwidth delay.
  • Knowledge of encryption, MPLS/VPN and GRE tunnels implementations using Cisco IOS with DMVPN and IPSEC.
  • Implemented Access control Network and have a strong knowledge in TACACS+, RADIUS.
  • Hands on Experience in configuring Virtual Local Area Network (VLAN), spanning tree protocol (STP), VLAN Trunking Protocol (VTP), Dynamic Trunking Protocol (DTP), Per VLAN spanning Tree (PVST), Rapid Per VLAN spanning Tree (RPVST), and 802.1x authentication in access layer switches.
  • Used Cisco ACI (Application Centric Infrastructure) SDN architecture to reduce operating costs, automate IT tasks, for greater scalability and visibility in a data center environment.
  • Experience testing Cisco routers and switches in laboratory scenarios and deploy on site for production.
  • Worked on Nexus platform 7010, 5K series (5548,5020 and 5010) and FEX (2248, and 2232) and deployed VPC, VDC and OTV, Fabric Path and successfully implemented VSS on the Cisco catalyst switches
  • Hands on experience on NAT (Network address translation) configurations and its analysis on troubleshooting issues related access lists (ACL)
  • Extensive experience in buildingpythonmanagement controllers for deploying storage, networking and compute Node configuration
  • Basic scripting done in Bash,Python, Power shell for automated tasks.
  • Excellent leadership qualities with good written and oral communication.
  • Great team player and able to work under pressure 24x7 duty rotation.

TECHNICAL SKILLS

Hardware: Cisco Routers 1800, 2500, 2600, 2800, 3750, 3800, 7200, 7301, 7600, 12410, ASR 1000, ASR 900x, GSR, CRS series

Cisco Switches: 2900, 3500, 4000, 4500, 5000, 6500.

Nexus switches: 7k, 5k, 3k Catalyst 6509, 4507Routing BGP, OSPF, EIGRP, IGRP, RIPv2, MPLS, RSVP, QOS, Static Routing, Redistribution, Route Summarization, 802.11b/g/n/ac Wireless, CEF, MPLS, VRF - lite, PFR. Switching Ether-channel, STP, RSTP, VTP, VLANs, RSTP, VSTP, MSTP, LACP, GVRP, VLT, UDLD, RSPAN, SPAN Security ACLs, Cisco ASA, NAT, PAT, VLAN, Access-lists, VPN, TACACS+, RADIUS, Firewalls, SSL, Cryptanalyses, SSH, DES, 3DES, AES, IP Sec, HTTPS, AAA. Redundancy HSRP, VRRP.

Various Features & Services: TCP/IP, LAN, WAN, IP Subnetting, VLSM, VLAN, Inter-VLAN Routing, Frame-Relay, PPP, HDLC, DHCP, DNS, ICMP, UDP, SNMP, NTP, GLBP, WCCP.

Operating Systems: CISCO IOS, CAT OS, Linux. Network Tools Wireshark, solar winds. Network Simulators Packet tracer, GNS3 Documentation MS Word, Excel, Project, PowerPoint, Outlook, Visio.

Languages: Python, Shell Scripting, Unix, Linux, Mat lab.

PROFESSIONAL EXPERIENCE

Confidential, MD

Network Security Engineer

Responsibilities:

  • Performing administrative tasks with Palo Alto Networks (Panorama) including Security, NAT policy definitions; application filtering; Regional based rules; URL filtering, Data filtering, file blocking, User based policies.
  • Configuring various advanced features (Profiles, monitors, iRules, Redundancy, SSL Termination, Persistence, SNATs, HA on F5 BIGIP appliances SSL termination and initiation, Persistence, Digital s, Executed various migration/upgrade projects across F5 and hands on with F5 BIGIP LTMs/EM.
  • Implemented and troubleshooting the Virtual firewalls (Contexts) solutions in ASA
  • Migrating the policy from Cisco ASA firewall into Palo Alto.
  • Regular upgrade and maintenance of Infrastructure, Installing, configuring, and maintaining Cisco Switches (2900, 3500, 7600, 3700 series, 6500 series) Cisco Routers (4800, 3800, 3600, 2800, 2600, 2900, 1800, 1700, 800) Cisco Router and Switches, Juniper Routers and Firewalls, Nexus 7k,5k & 2k, f5 BIG IP, Palo Alto Firewalls.
  • Actively use, smart view tracker, and Checkpoint CLI (to security gateways) for troubleshooting.
  • Implementing and configuring Checkpoint VSX for security gateways.
  • Perform advanced troubleshooting using Packet tracer and tcp dump on firewalls.
  • Built and support VRRP / Cluster based HA of Checkpoint firewalls.
  • Involved in designing new 10-Gig infrastructure with Security team on Gigamon HC2.
  • Assisting Networking with installation and implementation of Gigamon GigaVUE HC2 into production.
  • Implementing and Maintaining Network Management tools (OPAS, Solar Winds, Cisco Works).
  • Migrated, created, and managed pools and clusters in F5 BigIP GTM 3DNS load balancers across multiple Datacenters.
  • Upgrading code on Palo Alto firewalls PA5050/3020 to meet company security policy.
  • Involved in Configuration of Access lists (ACL) on Juniper and Palo Alto firewall for the proper network routing for the B2Bnetwork connectivity.
  • Switching technologies like VLAN, Inter-VLAN Routing, Ether-channel, VTP, MLS, HSRP, VRRP,
  • Worked extensively in Configuring, Monitoring and Troubleshooting Juniper security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
  • Troubleshooting and management of NetScreen and SRX Firewalls
  • Wrote a variety scripts in Powershell andPythonto monitor performance, automate tasks, and generate reports.
  • Extensive experience in buildingpythonmanagement controllers for deploying storage, networking and compute Node configuration.

Confidential, Malvern, PA

Network Engineer

Responsibilities:

  • Configuring Static, IGRP, EIGRP, BGP and OSPF routing protocols on Cisco 1600,2600, 2800, 3600, 7300 series routers.
  • Installed and Powered F5, Palo-Alto Firewall.
  • Migrated with a team from a predominantly Checkpoint environment to a Palo Alto global solution.
  • Configuration, Troubleshooting and Maintenance of Palo Alto Firewalls - PA200, PA2000 series, PA3000 series, PA4000 series and PA5000 series.
  • Experience in installing, configuring and troubleshooting of Checkpoint Firewall
  • Experience in adding Rules and Monitoring Checkpoint Firewall traffic through Smart Dashboard and Smart View Tracker applications
  • Firewall policy administration and support on Checkpoint as well as Cisco ASA Firewalls
  • Day-to-day work involves changes on the Checkpoint Firewall using the Smart Dashboard NGX R70 software and connecting via Smart Center management. Authentication is done using an RSA Secure ID. Implementation of Checkpoint VSX, including virtual systems, routers and switches
  • Responsible for troubleshooting and supporting technologies such as MPLS, Nexus 2248, 5K, 7K Switches, Cisco ASA 5585 Firewalls and Cisco ASR 1002, 9006 Routers and Oracle Sun Infinity 10GE Switches.
  • Design and configuring of OSPF, BGP on Juniper Routers (MX960, MX480) and SRX Firewalls (SRX240, SRX550).
  • Expertise in installing, configuring and troubleshooting Juniper EX Switches (EX2200, EX2500, EX3200, EX4200, EX4500, EX8200 series).
  • Experience with devices Palo Alto Network firewalls such as security NAT, Threat prevention & URL filtering. PANDB migration and code upgrades for Palo Alto Firewall
  • Set up and troubleshoot secured wireless access points (WAP) and wireless LAN controller (WLC) across the Corporate Network.
  • Maintained, upgraded, configured, and installed Cisco ASA 5510, 5520, & 5505 Firewalls from the CLI and ASDM.
  • Analyzed and tested network protocols (Ethernet, TCP/IP) using Wireshark tool.
  • Configured various LAN switches such as CISCO CAT 2900,3550,4500,6509 switches and Access layer switches such as CISCO 4510, 4948, 4507 switches for VLAN, Fast Ether Channel configuration.
  • Configuring VLANs/routing/Nating with the firewalls as per the network design.
  • Configured EBGP load balancing and ensured stability of BGP peering interfaces.
  • Experience with converting 6500 to Cisco Nexus in the data Center environment.
  • Configuring RIP, OSPF and Static routing on Juniper M and MX series Routers.
  • Experience configuring Virtual Device Context in Nexus 7010.
  • Performing troubleshooting on slow network connectivity issues, routing issues that involves OSPF, BGP and identifying the root cause of the issues.
  • Extensive experience inpythondevelopment on system level & middleware.
  • Expertise in scripting for automation, and monitoring using Shell,Python.
  • Experience with converting Cisco 6500 to Cisco Nexus in the data center environment.

Confidential, Dover, NH

Network Engineer

Responsibilities:

  • Supported various Routers like 2600/3600/7200/7200 VXR and 12416, 12816 series routers.
  • Provided technical assistance and support to Cisco customerson 2950, 7600, 7200 and GSR routers.
  • Supported nationwide LAN infrastructure consisting of Cisco 4510 and catalyst 6513
  • Worked on Cisco Layer 2 switches (spanning tree, VLAN ).
  • Proficient in OSPF, EIGRP,RIP and BGP.
  • Tested authentication in OSPF, LDP and BGP
  • Self-stuffy of PNNI routing and Multicast VPN(MVPN) protocols
  • WAN Infrastructure running OSPF & BGP as core routing protocol.
  • Configured and troubleshoot OSPF, BGP, and EIGRP.
  • Tested BGP features such as as-override, Local prêt, EIBGP load balancing
  • Troubleshoot IOS related bugs based on past history and appropriate release note.
  • Planned and configured the routing protocols such as OSPF, RIP, and Static Routing on the routers.
  • Used BGP to impact traffic forwarding and traffic load balancing on multiple circuits.
  • WAN Infrastructure running OSPF as a core routing protocol.
  • Created Lab demonstrations for new technology deployments with loaner equipment from various vendors and presented the findings to upper management.

Confidential

Network Engineer

Responsibilities:

  • Experience in Cisco 7200, 7600 routers, Cisco series switches: Physical cabling, IP addressing, Wide Area Network configurations (Frame-relay and ATM).
  • Performed troubleshooting, while maintaining trouble ticket tracking, following internal/external escalation procedures and customer notifications. Configured Cisco Routers for OSPF, RIP, IGRP RIPv2, EIGRP, Static and default route.
  • Configured the Cisco router as IP Firewall and for NATting.
  • Worked with the Help Desk for circuit troubleshooting to give Support to the Tech persons at the site.
  • Configuring routers and sending it to Technical Consultants for new site activations and giving online support at the time of activation.
  • Supporting Development team for the access to corporate network and outside world. Providing access to specific IP, Port filter and port access.
  • Switching (Ethernet) related tasks included implementing VLANS and configuring ISL trunk on Fast-Ethernet channel between switches.
  • Installed and configured PIX 520, 525, 535 series firewalls, configured standard and extended access-lists and policy- based filters.
  • Configured ASA 5510 appliance and VPN
  • Responsible for implementing Qos prioritizing voice traffic over a data.
  • Implemented SNMP on Cisco routes to allow for network management. Completed the installation and configuration of T1, T3 & OC3 circuits.
  • Troubleshoot TCP/IP problems, troubleshoot connectivity issues.

Confidential

Network Assistant

Responsibilities:

  • Support for new store rollout, circuit and wan installations.
  • Configured and supported multiple remote site installations.
  • IP Address management using IPAM.
  • Maintain and troubleshoot Hub and spoke frame relay with EIGRP.
  • Installation & configuration of ISDN BRI/PRI circuits.
  • Implemented port security on Cisco switches.
  • Responsible for monitoring & operations of all data network related products and services.

We'd love your feedback!