We provide IT Staff Augmentation Services!

Senior Network Engineer Resume

0/5 (Submit Your Rating)

San Francisco, CA

TECHNICAL SKILLS

Routers: Cisco 7600, 7500, 7200vxr 3900/3800 ISRs, 2900/2800 ISRs and ASR1000 - X

Switches: Nexus 9000, 7000, 5548/5596, 5010/5020 and FEX 2000 Cisco Catalyst 6500 (Sup32, Sup720, Sup-2), 4500 (Sup-III, Sup-IV, Sup-V, Sup-7E), 3750 (X, E & G), 3650, 3550 and 2900 series.

Firewalls: Cisco ASA 5500-(x) Checkpoint GAIA (R76)

Load: Balancers

Cisco ACE: F5 LTM, GTM

Wireless: Cisco 4400, 2500 and 5500 series Wireless Controllers Cisco LAP 1130, 1140, 3500 and 3600 series Access Points

PROFESSIONAL EXPERIENCE

Senior Network Engineer

Confidential, San Francisco, CA

Responsibilities:

  • Involved in standards revision process to replace EOL/EOS devices at over 120 remote sites. Installation of Cisco CSM for Firewall Management and Reporting.
  • Implemented traffic engineering over MPLS network utilizing various OSPF and Frame - Relay scenarios on the Cisco 7600 platform.
  • Configured multi-area OSPF in the Data Center for multiple distribution blocks and aggregation layers. Configured multiple area OSPF using Normal, Stub and NSSA area types.
  • Consolidation of numerous host routes to network summary addresses advertised by OSPF and redistribution into BGP.
  • Provided senior level Support for troubleshooting BGP to OSPF mutual redistribution.
  • Designed and deployed multiple DS3 circuits with EIGRP to peer with newly acquired remote sites and assisted with turn up of circuits and business side troubleshooting.
  • Implemented EIGRP with IPsec over GRE on Cisco IOS for dynamic remote site failover.
  • Troubleshooting network connectivity between branch office and regional office with multiple link paths and routers running HSRP, EIGRP in unequal cost load balancing.
  • Supported OSPF, EIGRP and BGP for problems of L2/L3 in internal teams.
  • Responsible for configuration and verification of multicast PIM in RIP and BGP domain as well as inter-domain multicast routing through MSDP peering.
  • Executed site cutovers from legacy RIP and EIGRP networks to OSPF with BGP and MPLS networks.
  • Configured routing on various Cisco routing platforms utilizing OSPF, IGRP, RIPv2, EIGRP, and static routes.
  • Stage VIPs/Pools/Nodes in scope for migration.
  • Designed and Implemented solution to use 40 pairs of cisco nexus 2232 and 2248 fex switches as a TOR Solution for server port density.
  • Configuration and implementation of Cisco 7200/3800/3700/2800/2600 for T1, MLPPP, DS3 and OC3 circuit termination.
  • Designed and implemented site size standards to reduce amount of time spent performing green field rollouts, Merger and Acquisitions, and overall site maintenance.
  • Evaluated and assessed Existing capabilities of DMZ Edge Environments in order to lead efforts to expand and increase average level of operating capacity.
  • Design and configuration of VPC environments for dual-homed hosts, FEX modules, and Nexus 5Ks up to parent Nexus 7010s/7018s
  • Implemented Nexus 7010 as core switches, 5548 as distribution and 2248 as TOR design with VPCs.
  • Design and implementation of ASR 1000 series routers as DMVPN Hub/Spoke for dynamic tunnel configuration across numerous remote branch/campus locations.
  • Setup Load balancing with Foundry ServerIron gear, including both DSR and bridge-path load balancing.
  • Migration and consolidation of over 200,000 Firewall rules from FWSM at Data Center core to Juniper NS5200s
  • Design, optimize, and troubleshoot LAN/WAN hardware, software, and telecommunications services. Lead network projects, budgets and timelines. Supervise outside vendors and mentor/lead network technicians. Maintain/perform work with optical transport, routers, switches, modems, and cabling. Created detailed Visio documentation for L1, L2 and L3 environments.
  • Analyze network status and link utilization using SolarWinds NMS.
  • Analyzed customer application and bandwidth requirements, ordered hardware and circuits, and built cost effective network solutions to accommodate customer requirements and project scope.
  • Assisted with QoS design for 2900 and 3900 series routers across the enterprise to ensure videoconferencing and VoiP roadmap for the next 4 years
  • Utilize SPAN sessions with WireShark to analyze WAN/LAN traffic to troubleshoot issues and perform application profiling.
  • Implementation of PBR on Core Routing devices to configure next hop variables based on customer ASA context.
  • Configured and implemented ASA 5585x Clusters at the edge for increased security and Functionality with Cisco Anyconnect for remote workers.
  • Performed Firewall Hardware refresh and Firewall Rule Consolidation on over 10,000 rules spread across 5 pairs of Cisco ASA 5585s.
  • Migrated Checkpoint firewall deployment to Cisco ASA platform to ensure PCI compliance.
  • Configured and deployed Nokia firewalls at 4 domestic datacenters with 500 rules per firewall pair.
  • Migrated from Cisco ASA 5550 to Checkpoint R71 firewall platform.
  • Provided support for client MPLS-VPN services and Metro-Ethernet circuits. Configured PE-CE routing and MP-BGP on Cisco 7200 and 7600 series routers.
  • Migrate existing B2B IPSEC infrastructure from Cisco 7206 with VAM2 and NPE400 to Cisco ASR 1006s.
  • Lead a team of technicians responsible for the day-to-day administration and maintenance of ASA firewalls, F5 load-balancers and Juniper SRX series firewalls.
  • Monitored network and bandwidth utilization by utilizing what’s up and MRTG.
  • Monitored network performance via Orion SolarWinds NPM
  • Resolved application and network related problems using Wireshark, OpNet and other network analysis tools. Assisted with installation and configuration of intrusion detection system.

Senior Network Engineer

Confidential, San Francisco, CA

Responsibilities:

  • Configured and managed OSPF redistribution and authentication with type 3 LSA filtering and to prevent LSA flooding and also configured OSPF over frame relay networks for NBMA and point to multipoint strategies.
  • Implemented traffic engineering over MPLS network utilizing various OSPF and Frame-Relay scenarios on the Cisco 7600 platform.
  • Performed various site cutovers from legacy RIP and EIGRP networks to OSPF with BGP Peering to Carrier MPLS networks.
  • Employed the use of various techniques including route summarization, metric manipulation and other path selection variables in order to provide optimal design and network latency requirements.
  • Designed and deployed various EIGRP and OSPF configurations with redistribution and summarization.
  • Performed Layer I, II and III troubleshooting, while maintaining trouble ticket tracking, following internal/external escalation procedures and customer notifications.
  • Staging and verification of FCoE environment for integration with NetApp FAS storage systems, UCS Fabric Interconnects, and Nexus 1000v with VSG.
  • Performed switching related tasks included implementing VLANS and configuring ISL trunks on Fast-Ethernet and Gigabit Ethernet channel between switches.
  • Consulted with vendors to vet proposed solutions, perform bug scrubs and resolve technical issues.
  • Migrated from existing 6500 series switches utilizing the Sup2 in hybrid mode to Sup 720’s and Sup 2T’s running in native mode.
  • Responsible for day-to-day maintenance and troubleshooting of IP network.
  • Implementation engineer on Multiple 6500 to Nexus core tech refresh projects extending to the LAN and WAN edges.
  • Lead team in migration of 6509 core to Nexus 7k/5k/2k solution utilizing industry best practices.
  • Staging and verification of FCoE environment for integration with NetApp FAS storage systems, UCS Fabric Interconnects, and Nexus 1000v with VSG.
  • Staging and validation of IOS to NX-OS/IOS-XE configurations for Data Center Core/Aggregation upgrades.
  • Configuration/Administration of customer VLAN/Subnets/SVIs on infrastructure.
  • Configuring and troubleshooting various protocols such as RSTP, HSRP, VRRP and LACP.
  • Involved in Switching Technology Administration including creating and managing VLANS.
  • Working configuration of new VLANs and extension of existing VLANs on/to the necessary equipment to have connectivity between two different data centers.
  • Configured Rules, NAT, PAT and exemptions on Checkpoint Firewalls.
  • Performed rule consolidation on more than 10 pairs of Checkpoint Firewalls in efforts to minimize the number of rules to be migrated to ASA.
  • Migrated from Cisco ASA 5550 to Checkpoint R71 firewall platform.
  • Migrated Checkpoint to ASA - Performed Expansive Migration of Checkpoint appliances to ASA.
  • Solutions Architect - Firewall Upgrade and RAVPN solution.
  • Performed Firewall Migrations from 6 pairs of Cisco ASA to 6 pairs of Palo Alto Firewalls.
  • Worked heavily with Wireshark and ethereal in order to do packet captures and analyze network traffic.
  • Monitored network and bandwidth utilization by utilizing what’s up and MRTG.
  • Assisted with installation and configuration of intrusion detection system.
  • Real time monitoring and network management using Cisco Works LMS

Network Engineer

Confidential, San Francisco, CA

Responsibilities:

  • Network optimization and Quality of service configuration on the LAN/WAN environments located throughout the enterprise
  • Worked on next generation WAN QoS architecture for a unified network with data, voice and video.
  • Proposed detailed QoS configurations on the 3750x and Gen2 ISRs for successful classification and marking solution.
  • Converted legacy 6509’s running Sup2’s in hybrid mode to native mode utilizing Sup720VSS.
  • Configured CBWFQ QoS with a 3-Tier design to support enterprise VoIP and Video initiatives
  • Implemented Cisco AnyConnect VPN solution for over 2500 remote workers.
  • Upgraded existing MPLS circuits to DS3 and OC3 circuits to provide better throughput, reliability and redundancy.
  • Performed AnyConnect VPN client upgrade for over 3800 users.
  • Configured Cisco routers for a variety of WAN solutions including ATM, Frame Relay and point-to-point circuits.
  • Configured ACS server in order to fully integrate NAC as well as set up and maintain TACACS accounts for end users.
  • Deployed ISE 1.2 using a Distributed High-availability model using PAN, PSN, MNT, and IPN services nodes.
  • Performed migration of subnets, equipment and firewall rules/policies from being decommissioned to other, still active locations as part of customer site consolidation project.
  • Design and implementation of multiple Cisco 5500 series ASA pairs running in Multi Context Active/Active deployment as DMZ Edge Firewalls for public facing server farms.
  • Staging and verification of Juniper NetScreen to Cisco ASA migrations
  • Responsible for CheckPoint and Cisco ASA firewall administration across global networks.
  • Performed loopback testing with service providers for remote site connectivity
  • Involved in migration from point-to-point and Frame Relay circuit to an end-to-end MPLS solution for remote site connectivity

Network Engineer

Confidential, Seattle, WA

Responsibilities:

  • Met on-site with customer for approval, white-boarding, UAT, and knowledge transfer.
  • Worked on Network Managing and Monitoring Tools: HP Open view, MRTG, Whatsapp Gold.
  • Troubleshooting of all network related issues.
  • Provisioning and configuration of switch ports for server access to conform to network standards.
  • Migration from EIGRP to OSPF as IGP and redistribution of summary routes.
  • Worked with Lead Architects to design a strong hierarchical OSPF network designs.
  • Employed Hierarchical OSPF designs to accommodate Projected Growth in numbers of business locations.
  • Configured Named EIGRP with multiple ASes in the Data Center for multiple distribution blocks and aggregation layers.
  • Implemented high availability features on the 6500 series switch including Dual-Sup SSO, HSRP, and graceful restart.
  • Experience in the setup of HSRP, Access-Lists, and RIP, EIGRP, and tunnel installations.
  • Implemented BFD on Nexus 7000 and ASR1002s to provide sub-second convergence and fault-detection.
  • Standardized deployment methodology by standardizing configurations for 4500-x and 3750-x switches that utilize BFD and L3 links for HA with sub second failover times.
  • Redesigned Existing DMZ infrastructure to accommodate new Application Delivery Features and global business.
  • Designed, staged and implemented 5500 Nexus switches with vPC connected 2000 series FEX for access layer connectivity.
  • Migrated 68 pairs of cisco 6509s to Nexus 7010s and 7018s in undertaking to refresh All Global Data Centers.
  • Implemented 6500 SUP720, 6748, ACE, and 6548 Modules.
  • Configuration and implementation of firewall rules Juniper NS100s running ScreenOS 5.4 for access via external vendors.
  • Administer Cisco, and Juniper routing platforms for the Wide Area Network connectivity.
  • Design and implementation of VPC and eVPC connectivity providing resilient connectivity at Layer 2.
  • Provided detailed QoS configuration on the Cisco 3750x and Gen2 ISRs for a successful implementation of VoIP solution.
  • Experience on implementing and troubleshooting various multicast protocols such as IGMP, PIM and MSDP.
  • Provide full Configured BGP for MPLS connectivity and created hierarchical network with summarized routes by utilizing BGP Route-Maps and Aggregate address statements.
  • Implemented high availability features on the 6500 series switch including Dual-Sup SSO, HSRP, and graceful restart.
  • Implemented 30 pairs of 5548s and 5596 as datacenter aggregation points in order to accommodate for future expansion and growth.

We'd love your feedback!