Sr. Network Engineer Design Advisor Resume
SUMMARY
- Cisco and Juniper Certified Network Engineer with over 8+ years of experience in the IT industry, which includes expertise in the areas of Routing, Switching and Security.
TECHNICAL SKILLS
Protocols: EIGRP, OSPF, HSRP, VRRP, GLBP, LACP, PAGP, LDP/TDP, MPLS,BGP
LAN technologies: VLAN, Trunking, VTP, STP, RSTP, MST, PVST+, PVLAN, SPAN, RSPAN, Port Mirroring, Ether channel (PAGP & LACP, load balancing), Optimizing STP (Port fast, Uplink fast, Backbone fast, Root Guard, BPDU Guard)
Network Products: Cisco Router Platforms: 2901, 2921, 2951, 4331, 7204, 7500 Cisco Switch Platforms:3750, 4507, 4510, 6506, 6807. Cisco Nexus Platforms:Nexus 2k, Nexus 5k, Nexus 7k & Nexus 9k
Firewalls: Cisco ASA 5510, 5520,5525, 5585, IDS/IPS (4200).
Security &Authentication: AAA, ASA, L2 and L3 Security, RADIUS, TACACS+, Route map, Access list, Digital Certificate, IPSec VPN, SSL VPN, Remote VPN, MPLS VPN, GRE, NAT/PAT
Monitoring Tools: Wire shark, SNMP, Solarwind Netflow, 3Com Network Analyzer, Network Monitor.
Servers: Domain Servers, DNS Servers, Mail Servers, Proxy servers, Print Servers, Application Servers, FTP Servers
Remote Access: IP Sec VPN, VPN, Remote/Secure client, Site to site VPN, GRE tunneling
Other Tools: Putty, Solarwinds, Cisco NAC, Cisco ISE, Cisco Wireless Prime
PROFESSIONAL EXPERIENCE
Confidential
Sr. Network Engineer Design Advisor
Responsibilities:
- Responsible for designing and implementation of customer s Stanford Children s Hospital network and Security infrastructure.
- Involved in complete LAN, WAN, Extranet redesign (including IP address planning, designing, installation, pre configuration of network equipment, testing, and maintenance) in both Main Campus and Branch Clinics networks
- Configured DHCP scope in Windows Server 2012.
- Experience working with vPC, VDC including creating and managing Nexus 7010, 5020 devices in the data center environment.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5525X security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
- Involved in Switching Technology Administration including creating and managing VLANs, Port security, Trunking, STP, InterVlan routing and LAN security.
- Use and maintain routing protocols EIGRP and BGP on the Routers in the network & also worked on BGP Route Reflectors, Confederations
- Configured and designed LAN networks with Access layer switches such as Cisco 4510, 4507, 3850, 3750 switches.
- Implemented VRRP on the Cisco ISR 4331 Router for failover and EIGRP, OSPF on 2 Cisco 2921 routers, the Layer 3 switch, Cisco 3850XL Switches for load balancing and failover.
- Cisco 6807 VSS ISSU upgrade, hot swapping 40Gig line cards.
- Other responsibilities included Rackwise DCIM, visio diagram, documentation and supporting other teams.
Confidential
Network Manager
Responsibilities:
- Responsible for designing, implementation and supporting of customer’s network and Security infrastructure in their on - premise, hybrid and cloud environments.
- Prepare Technical Solution Documents(TSD), installation and deployment document.
- Involved in complete LAN, WAN, Extranet redesign (including IP address planning, designing, installation, pre configuration of network equipment, testing, and maintenance) in both Campus and Branch networks
- Experience with converting Migration (Cisco IOS to Juniper Junos) in the data center environment.
- Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
- Experience working with BGP attributes such as Weight, Local-Preference, MED and AS-PATH to influence inbound and out bound traffic
- Involved in Switching Technology Administration including creating and managing VLANs, Port security, Trunking, STP, InterVlan routing and LAN security.
- Use and maintain routing protocols OSPF and BGP on the Routers in the network & also worked on BGP Route Reflectors, Confederations
- Design and configuring of OSPF, BGP on Juniper Routers and SRX Firewalls.
- Configuring IPSEC VPN on SRX series firewalls
- Configuring Virtual Chassis for Juniper switches EX-4200,Firewalls SRX-210
- Closely work with Network Implementation/Migration Management team to deploy the network devices in production environment.
- Perform sanity testing across entire network once the device /application is deployed on production environment.
- Perform Field Operational Testing and connectivity testing post production
- Monitor devices/circuits in production environments and provide real time support for analyzing and troubleshooting issuesincluded documentation and supporting other teams.
Sr. Network Engineer
Responsibilities:
- Involved in the modification and removal (wherever necessary) of BGP from the MPLS routers.
- Involved in designing L2VPN services and VPN-IPSEC authentication & encryption system.
- Tuned BGP internal and external peers with manipulation of attributes such as metric, origin and local Preference.
- Cisco Secure Access Control Server (ACS) for Windows to authenticate users that connects to a VPN 3000 Concentrator.
- Responsible for turning up BGP peering and customer sessions, as well as debugging BGP routing problems.
- Router/ Microsoft VPN Server in order to access certain limited network resources from customer locations
- Involved in the redistribution into OSPF on the core ASA firewall.
- Experience on HSRP for load balancing.
- Involved in the removal of EIGRP from all devices and making OSPF the primary routing protocol.
- Designing and Implementation of (LAN) VLANs, VTP, Spanning Tree (STP), Trunking (dot1q and ISL) and Ether channel.
- Installed and configured four PIX 525 and two ASA 5505 in customer locations. In addition to that, two PIX firewall configured for the Guest access
- Key contributions include troubleshooting of complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF & BGP
- Configured policy based routing for BGP for complex network systems.
Confidential, Quincy, MA
Network Support Engineer
Responsibilities:
- Configure, maintain and deployed Cisco ASR 1K, 4300, 2900, 2800 routers as end WAN routers and implemented BGP with VRF and EIGRP instances running parallel.
- Worked on WAN custom QoS/class maps & policy maps for a unified network with data, voice and video.
- Extensively worked on Cisco catalyst 6509 VSS along with VDC and VPC on Nexus 5505, 7010 switches.
- Experience with Cisco Application Centric Infrastructure (ACI) fabric: APIC cluster, Leaf and Spine switches. Knowledge of basic configurations of Tenants, BDs, EPGs, VMM Networking and OOB Management configurations ofLeaf and SpineSwitches.
- Adherence to ServiceNow Change Management processes, create and deliver presentations to peers and leaders for define network business requirements and implements effective global network strategies as well as worked with senior network engineers on complex design solutions.
- Performed monitoring, analyzing, diagnose network events/alerts using Solarwinds Orion, Entutity and Voyence. Troubleshoot network issues using tools like Cisco Prime Infrastructure (Wireless), Cisco NAC (Network Access Control) and Cisco ISE (Identity Service Engine).
- Designed secure network solutions that maximize the sharing of applications, information, and resources across the company. Conduct feasibility studies on strategic and tactical plans, design and evaluation of network services/technology for current and future network development.
Confidential
NETWORK SUPPORT ENGINEER
Responsibilities:
- Extensive experience on deploying and configuring Cisco routers such as 3900, 3800, 3600, 2600, series and switches 6500, 5500, 4500, 3800, 3500, 2900 series.
- Removed Cisco 3600, 2600 series routers; replaced with Cisco 3745 for configuring BGP, OSPF, RIPv2, EIGRP, Static and default route also worked on HSRP and GLBP for first hop redundancy and load balancing.
- Migrated from Cisco 2900 series switches from the current infrastructure and replaced them with the Cisco 6509 and 3560 L2/L3 switches. Configured RSTP, MST and used VTP with 802.1q trunk encapsulation, Ether channels using PAgP and LACP on Cisco 6509 and 3560.
- Configured, Monitored and Troubleshoot Cisco’s PIX firewall, ASA 5500 security appliance Firewall, integrated firewalls with Gateway Anti-Virus and web filtering applications.
- Designed ACLs, VLANs, troubleshooting IP addressing issues on switches and routers.
Confidential
NETWORK/SYSTEM ENGINEER
Responsibilities:
- Installed and configured Active Directory for in Confidential 1950 PowerEdge server.
- Installed and configured the Operating systems of Win 7, 8, Windows Server 2008.
- Assisted Lead Network Engineer in the configuration, implementation and operation of Cisco 2811, 2611XM, 2514 routers as well as Cisco 5000, 3550, 2950 switches.
- Configured VLANs, VTP, and RSTP in Cisco Catalyst 3800.
- Assisted in configuration of Cisco Routers for OSPF, RIPv2 and EIGRP.
- Configured the DNS, DHCP on Windows server 2008 R2.
- Provided extensive Desktop/Laptop support on software and hardware.
- Build and setup servers; desktops and laptop for new user.
- Upgrade laptops and Desktops Operating System.
- Prepared, updated, and maintained technical and logistical network documentation.
- Monitored core network services including data sharing, anti-virus and back up.
- Configured Laser printers to be shared across the network.
- Provided testing for network connectivity before and after install or upgrades.