Sr. Network Engineer Resume
Columbus, OH
SUMMARY
- CCNA CCNP and CCIE CERTIFIED professional with over around 8 years of experience in routing, switching, firewall technologies, systems design, administration and troubleshooting.
- Exposure to LAN/WAN setup, installation, configuration and troubleshooting.
- Experience of routing protocols like EIGRP, OSPF, RIP, BGP and IP addressing.
- Expert level knowledge of troubleshooting, implementing, optimizing and testing of static and dynamic routing protocols such as EIGRP, OSPF, BGP ability to interpret and resolve complex route table problems.
- Implementation traffic filters on Cisco routes using Standard, extended Access list (ACL).
- Expert Level knowledge about TCP/IP and OSI models.
- Experience of routing protocols like EIGRP, OSPF, RIP, BGP, and MPLS.
- Maintenance and troubleshooting of complex infrastructure, routers, switches, LAN & WAN.
- Designed VLAN and set up L2/L3 to have it communicate across the Enterprise network.
- Involved in Switching Technology Administration, including creating and managing VLAN, Port Security Trucking, STP, Inter VLAN routing, LAN security.
- Designed & deployed IP Subnetting, VLSM, TCP/IP, NAT, DHCP, DNS.
- Configuring and troubleshooting of Layer 3 Routing protocols such as EIGRP, OSPF, ISIS and BGP (IBGP, EBGP) and layer 2 protocols such as VTP, STP and RSTP.
- Experience in installation, configuration, design and ongoing maintenance of Cisco router and switches.
- Knowledge of advanced technologies like Multicasting, MPLS, MPLS - VPN and Riverbed Virtual Services Platform (VSP).
- Involved in L2/L3 Switching Technology Administration including creating and managing VLANs, Port security, STP, Inter-Vlan routing, LAN security.
- Strong hands on experience in installing, troubleshooting, configuring of Cisco 7200, 3800, 3600, 3400, 2800, 2600, 2500 and 1800 series Routers, Cisco Catalyst 6500, 4500, 3750, 2950 and 3500XL series switches.
- Experienced in Troubleshooting for connectivity and hardware problems on Cisco Networks and hands on experience in cisco call manager and VoIP.
- Removed Cisco 3600 and 2600 series routers, Cisco 2900 series switches from the current infrastructure and replaced them with the Cisco 6509 or 3560 switches.
- Hands on experience of troubleshooting, implementing, optimizing, and testing of static, dynamic routing protocols which includes EIGRP, OSPF, BGP ability to interpret and resolve complex route table problems.
- Hands-on experience in configuring & troubleshooting routing protocols: OSPF, EIGRP, EBGP & IBGP.
- InstallAvayaVoIP phones, Polycom and Cisco Codecs.
- VMware ESX/ESXi, VMware vCenter, VMware vCSA and Windows 2008 R2 Hyper-V.
- Implementing, maintaining and troubleshooting switching tasks such as VLANs, VTP, VLAN Trunking using ISL & 802.1Q, STP, RSTP, PVST+, Ether channel using LACP and PAGP, Inter-Vlan routing, CEF and DCEF.
- Experience in L2/L3 protocols like VLAN, STP, VTP, ISL, MPLS, 802.1q and Trunking protocols.
- Good knowledge in WAN Technologies like ACL, NAT/ PAT, Ether Channel, IPSec and VPNs.
- Expertise in implementation and troubleshooting of protocols such HSRP, VRRP, GLBP, ACL and tunnel installations.
- Cisco Voice Administrator / Wireless Technician CVA / CWT.
- In-depth knowledge and hands-on experience on IP Addressing, Sub netting, ARP, Ping Concepts.
- Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP Ether channel, STP, RSTP and MST.
- Experience in configuring HSRP and redistribution between routing protocols troubleshooting them.
- Worked on Microsoft Visio to create project network topologies and documented the analysis data.
- Experience on Virtual Private Network (VPN) for operating Network.
- Experience in configuring, Installing and troubleshooting on Check Point Devices.
- Experience with Internet/Intranet Networking Protocols and Services.
- Experience with active Directory Installation and Configuration using VMware.
- Excellent qualities such as Teamwork, Negotiation, Analysis and Communication.
- Finely tuned analytical/critical thinking and debugging skills with excellent verbal and written communication skills.
- Highly enthusiastic, creative team player, project implementation, analytical, interpersonal and communication skills.
TECHNICAL SKILLS
Network Protocols: MPLS, VRF, VRRP, Policy Based Routing, Route RedistributionStatic Routing, WCCP, VDC, MPLS, LDP, MAN, ISDN, PPP, VoIP, SIP, VTP, STP, RSTP, VLANs, 802.1q/ISL, CDP, LACP, OSPF, BGPv4, EIGRP, HSRP, RIP, VPC
Cisco Router platforms: 1841, 2611, 2621, 2800, 3600, 3845, 3900, 7206VXR
Cisco Switch Platforms: 2900XL, 2950, 2960, 3500, 3550, 3560, 3760, 4500, 6500Nexus 9k 7k, 5k, 4k, 2k, 1k
Firewalls: Juniper (Netscreen 5200,5400), (ASA (5510,5520,5540,5550,5580)FWSM, Checkpoint NGX R-55, R-60, R-65
LAN Technologies: Ethernet, Fast Ethernet, Gigabit Ethernet, Port Channel, TCP/IPVLSM, Cisco/Catalyst L2/L3 Switches, Wireless (802.11 a/b/g/n), Checkpoint, Juniper/Net screen/Cisco Firewalls
WAN Equipment: Cisco/Juniper Routers, Silver Peak NX-7xxx WAN AcceleratorsOC-192, OC-48, FRAME RELAY, PPP, T1/E1, HDLC, MPLS, DS3, Leased Lines, DSL Modems, ISDN(PRI/BRI)
Network Management Tools: Cisco Works, Silver peak GMS, RSA Security and operations Console, VMware vSphere Client, TFTP, FTP, SSH, IXIA, Spirent
Security Access Control/Policy: Cisco Secure ACS for Windows, RSA, AAA, TACACS+, RadiusIPsec, GRE, NAT/PAT, ACLs, Juniper SA SSLVPN w/DUO, SSLVPN
Operating Systems: Windows 2003, Windows 2008, Linux
PROFESSIONAL EXPERIENCE
Confidential, Columbus, OH
Sr. Network Engineer
Responsibilities:
- Installed Cisco 1700 and 2500 routers at all facilities, then more recently upgraded to Cisco 1800 routers, except at Collocation areas, which were upgraded to Cisco 7200 routers.
- Installed all Linksys 54G wireless access points at all facilities, then more recently upgraded to Wireless-N Cisco Aruba 105.
- Implementation of VOIP IP Phones at branches and upgrading old branch Avaya analog phones with Cisco IP Phones, configuration ports to support VOIP, IP Helpers, Voice VLAN, & QOS.
- Experience in managing and troubleshootingnetworkservices, EIGRP, BGP routing protocol for MPLS VPN and DMVPN with redundancy design, Cisco switches, wireless, Riverbed WAN optimizers.
- Involved in managing and troubleshootingnetworkservices, EIGRP, BGP routing protocol for MPLS VPN and DMVPN with redundancy design, Riverbed WAN optimizers.
- Good understanding of Quality of Service (Qos) monitoring and management.
- Designed and installed the router, servers, switches, routers, AD Tran, KVM, monitor, web filter, UPS in an arrangement that makes troubleshooting easier.
- Firewall Deployment. Installed Panda Firewall devices at all facilities. More recently upgraded to one larger Panda Firewall, which filters all the web content for all facilities.
- Worked as a part of network team where my daily tasks included configuring, monitoring and troubleshooting of TCP/ IP networks.
- Experience network environment include but not limited to routers, switches, security firewalls, voice, wireless and related technologies along with various server/application administration, system reimaging, and remote setup.
- Responsible for Check Point and Cisco ASA firewall administration across global networks.
- Networking protocols worked with included TCP/IP, DNS, DHCP, VPN, Terminal Services.
- LAN/WAN Network Support for TCP/IP based devices and Layer 3- Routing, Layer 2 -Switching.
- Experience and Knowledge of Redundancy Protocol Configuration like HSRP, VRRP, GLBP, and Ether channel.
- Involved in the troubleshooting aspects of complex network infrastructure using the routing protocols like EIGRP, OSPF and BGP.
- Experience in working with Linux.
- Experience and Knowledge of DHCP, DNS, Active Directory Installation and Configuration using VMware.
- Experience in installing and configuring DNS, DHCP server.
- Experience on VPC and VDC.
- Experience with converting Cisco 6500 IOS to Cisco Nexus NX-OS.
- Worked on installation, configuration of LAN/WAN Networks, Hardware, Software, and Telecommunication services.
- Extensive working experience with Cisco Call Manager Express, CUCM and Cisco Unity Express.
- Practicing ITIL standard procedures in change management and implementation of changes in accordance to the procedures.
- Palo Alto design and installation (Application and URL filtering, Threat Prevention, Data Filtering). Configured and maintained IPSEC and SSL VPN's on Palo Alto Firewalls.
- Successfully installed Palo Alto PA-3060 firewalls to protect Data Center and provided L3 support for routers/switches/firewalls.
- Experience working with Juniper devices like EX-2200, EX-4200, EX-4500, MX-480, M Series, SRX650, SRX240.
- Supported Operations team when complex changes are done by developing MOPs for network devices (routers, switches and A10 Load balancers) code upgrades, VLAN/IP migrations from old to new network topology without any service disruption.
- Regular upgrade and maintenance of Infrastructure, Installing, configuring, and maintaining Cisco Switches (2900, 3500, 7600, 3700 series, 6500 series, 9k series) Cisco Routers (4800, 3800, 3600, 2800, 2600, 2900, 1800, 1700, 800) Cisco Router and Switches, Juniper Routers and Firewalls, Nexus 9k, 7k, 5k & 2k, f5 BIG IP, Palo Alto Firewalls, Bluecoat Proxy and Riverbed Steelhead appliances. Worked on Cisco IOS, NX-OS check point firewalls.
- Experience
- Experience in Configuring and Troubleshooting VLAN, 802.1q Trunking, VTP, STP, RSTP, PVST, Inter-VLAN Routing and Port Security, experience in mitigation of attacks over switches such as CAM Table Overflow, VLAN Hopping and Rogue DHCP Server.
- Assisted in the architecture and deployment of multiple core upgrade initiatives utilizing a Cisco Nexus 7000/6000/3000 solution.
- Key contributions include troubleshooting of complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF & BGP.
- Setting up alarm which includes High Target Index, SYNs received, High file sharing index, worm activity, high concern index, suspect data loss, data exfiltration, recon, data hoarding.
- Created PKI enterprise infrastructure and conduct trends analysis.
- Assisted in packet capture analysis and monitored authentication aspects.
- Provide technical oversight of the creation and maintenance of all networking configurations and data files.
- Provide day-to-day communication/network security operation and maintenance of multiple secure network infrastructures.
- Expertise in Configuration and Troubleshooting of OSPF, EIGRP and BGP Routing Protocols.
- Implemented Ether Channel technology (LACP, PAgP) and First Hop Redundancy Protocols HSRP, VRRP and GLBP.
- Have extensive knowledge in Configuring and Troubleshooting F5 BIG-IP LTM 1600, 3600 and 6900 series.
- Strong documentation and diagramming skills using Microsoft Visio. Experience in remote site migrations of Switches and Routers. Practicing ITIL standard procedures in change management and implementation of changes in accordance to the procedures.
- Assist in creating network design standards for hardware and software. Developing and maintain Network Documentation (Visio diagrams, Excel spreadsheets, Word documents, etc.) Configure and troubleshoot network elements in a test/dev environment. Provided support on Nexus deployments.
- Key contributions include troubleshooting of complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF & BGP.
Environment: Cisco Routers (4800, 3800, 3600, 2800, 2600, 2900, 1800, 1700, 800), switches (6500/3750/ /2950 ), F5 Load balancing (LTM, GTM, APM, AFM, ASM), EIGRP, RIP, OSPF, BGP, VPN, MPLS, Ether Channels, Cisco Catalyst Switches, Firewalls (Cisco ASA, Palo Alto), Shell Scripting.
Confidential, Fortworth, TX
Sr. Network Engineer
Responsibilities:
- Worked as part of delivery team where my daily tasks included code upgrades, prefix-list addition, and access-list addition using python script and on Linux platform based on tickets generated by customers.
- Configuring Network Address Translation (NAT) to connect devices like time clocks, security cameras, RDP connections and servers to the outside world.
- Creating and modifying Access Control Lists (ACL) for various tasks but the ACL on the Cisco 7200 router prevents all the nursing homes from having the same Public IP Address.
- Managing Switch Operation, including Spanning Tree Recalculations and verifying VLAN configurations.
- Coordinated with the Application Teams to develop effective Application validations involving F5 LTM and GTM components
- Used load balancers ACE and load balancing technique with multiple components for efficient performance and to increase reliability through redundancy.
- Troubleshoot network problems and outage and schedules upgrades.
- Report network operational status by gathering, prioritizing information; managing projects.
- Provide network diagnostics support for remote employees.
- Working on configuration of new VLANs and extension of existing VLANs on/to the necessary equipment to have connectivity between different data centers.
- Implementing IPv6 addressing scheme for routing protocols, vlans, subnetting and mostly during up gradation of cisco ISR routers 2800/2900/3800/3900 and switches.
- Configuration and deployment of cisco ASA 5540 firewall for internet Access requests for servers, Protocol Handling, Object Grouping. Maintaining Core Switches, creating VLANs and configuring VTP
- Optimized performance of the WANnetworkconsisting of Cisco 3550/4500/6500 switches by configuring VLANs.
- Experienced working with Apache servers in troubleshooting network issues for our internal server teams.
- Performed redistribution with OSPF, EIGRP, RIP version 1 and 2 to enable communication with backbone.
- In-depth expertise in the implementation, optimization, troubleshooting and documentation of LAN/WAN networking systems.
- Route configuration and point code checks for System Technician and Network Technician.
- Knowledge and experience of 802.11 a/b/g/n Ethernet standard for wireless Technology.
- Assisting off-shore teams located in India in upgrades, VLANs configurations, in troubleshooting layer 3 issues and routing protocol issues mostly BGP.
- Documentation of various changes made on devices and submit them for approvals and work along with alerts team and intimate them the changes to be made.
Environment: Routers (Nexus 1K, 5K,7K, Juniper MX-960), switches (6500/3750/ /2950 ), F5 Load balancing (LTM, GTM, APM, AFM, ASM), EIGRP, RIP, OSPF, BGP, VPN, Unified Contact Center Enterprise (UCCE), MPLS, Cisco Catalyst Switches, Firewalls (Cisco ASA, Palo Alto), Citrix, Python, Shell and Perl Scripting.
Confidential, Denver, CO
Network Security Engineer
Responsibilities:
- Experience with Firewall administration, Rule analysis, Rule modification.
- Experience on F5 load balancer to maintain balance in the network system with application specific usage.
- Troubleshoot traffic passing managed firewalls via logs and packet captures.
- Installing and configuring juniper M series router along with juniper switches QFX series.
- Configured and resolved various OSPF issues in an OSPF multi area environment mostly on IPv4 and to some extent on IPv6.
- Managed fast L3 switched/routed LAN/WAN infrastructure as a part of Network team.
- Hands-on experience with WAN (ATM/Frame Relay), routers, switches, TCP/IP, routing Protocols (BGP/OSPF), and IP addressing.
- Configured CIDR IP RIP, PPP, BGP and OSPF routing.
- Involved in the configuration & troubleshooting of routing protocols: MP-BGP, OSPF, OTV, LDP, EIGRP, RIP, BGP v4. Configured IP access filter policies.
- Writing rules for NAC servers as per the authentication and authorization of systems within the company.
- Implementing and troubleshooting (on-call) IPsec VPNs for various business lines and making sure everything is in place.
- IPv6 is implemented at a larger scale using cisco ASR 7200 and 9000 series routers delivering flexible service.
- Installing and configuring new cisco equipment including Cisco 1900, 2900, 3900 series routers, Cisco catalyst switches 6807, Nexus 7010, Nexus 5500 and Nexus 2k as per the requirement of the company.
- Worked on regular troubleshooting of BGP, EIGRP routing protocols.
- Adding and modifying the servers and infrastructure to the existing DMZ environments based on the requirements of various application platforms.
- Managing and providing support to various project teams with regards to the addition of new equipment such as routers, switches and firewalls to the DMZs.
Environment: Routers (Cisco 1900, 2900, 3900, ASR 7200, 9000), Switches (Cisco catalyst switches 6807, Nexus 7010, Nexus 5500 and Nexus 2k), Firewalls (Juniper EX, MX, SRX, Cisco =, Palo Alto, AAA), F5 Load balancer, protocols BGP, EIGRP, OSPF and DNS server and C programming.
Confidential, Napa, CA
Network Engineer
Responsibilities:
- Worked primarily as a part of the security team and daily tasks included firewall rule analysis, rule modification and administration.
- Worked on configuring and troubleshooting of routing protocols such as OSPF and BGP for effective communication.
- Maintain LAN communication between Servers/Workstations.
- Remediation of firewall rules from checkpoint firewalls to Cisco ASA firewalls, installing and configuring new juniper EX, MX, SRX series firewalls to meet day to day work.
- Adding and removing checkpoint firewall policies based on the requirements of various project requirements.
- Performed troubleshooting, fixed and deployed many Python bug fixes of the two main applications that were a main source of data for both customers and internal customer service team.
- Worked on load balancers like F5 10050s, 10250v, GTM 2000s, 2200s to troubleshoot and monitor DNS issues and traffic related to DNS and avoid DDoS.
- Worked on DNS server involving configuration and resolving DNS related issues.
- Modified internal infrastructure by adding switches to support server farms and added servers to existing DMZ environments to support new and existing application platforms.
- Deployed 7613 as PE and CE router and configured and troubleshoot the edge routers.
- Excellent troubleshooting knowledge on T1, T3, OC-3 and OC-12.
- Configured egress and ingress queues for ISP facing routers using CBWFQ.
- Generating RCA (Root Cause Analysis) for critical issues of layer1/layer2/layer3 problems.
- Experience with implementing and maintaining network monitoring systems (Cisco works and HP open view) and experience with developing complex network design documentation and presentations using VISIO.
- Worked on SONET and deployment of DWDM.
- Estimated project costs and created documentation for project funding approvals.
Environment: Switches (Juniper M and QFX series), Routers (Cisco 1900, 2900), F5 load balancer, Protocols BGP, OSPF, ATM, FRAME RELAY, CIDR, RIP, EIGRP, OTV, LDP
Confidential
Network Engineer
Responsibilities:
- Worked on Cisco routers 7200, 3700 and Cisco switches 4900, 2900.
- Key contributions include troubleshooting of complex LAN/WAN infrastructure.
- Configured firewall logging, DMZs, related security policies and monitoring.
- Creating private VLANs & preventing VLAN hopping attacks and mitigating spoofing with snooping & IP source guard.
- Installed and configured Cisco PIX 535 series firewall and configured remote access IPSEC VPN on Cisco PIX Firewall.
- Enabled STP enhancements to speed up the network convergence that include Port-fast, Uplink-fast and backbone-fast.
- Other responsibilities included documentation and change control.
- Responsible for Configuring SITE-TO-SITE VPN on Cisco routers between headquarters and branch locations.
- Implemented the security architecture for highly complex transport and application architectures addressing well known vulnerabilities and using access control lists that would serve as their primary security on their core & failover firewalls.
- Quickly recovering a down router. Usually by means of changing the configuration register, working out of ROMMON, or reloading the IOS and/or Startup Configuration with TFTP.
- While upgrading to a new circuit or new router, make sure the interfaces are UP/UP (no shut if necessary), make sure the information on the ISP's cut sheet has been entered properly, and enable IP routing. Let the ISP know when the problem is on their side.
- Configuring Network Address Translation (NAT) to connect devices like time clocks, security cameras, RDP connections and servers to the outside world.
- Creating and modifying Access Control Lists (ACL) for various tasks but the ACL on the Cisco 7200 router prevents all the nursing homes from having the same Public IP Address.
- Managing Switch Operation, including Spanning Tree Recalculations and verifying VLAN configurations.
- Prepare company copiers to scan paper documents and convert to electronic documents, then electronic documents arrive in a folder or inbox on client machine.