Post Job Free
Sign in

Engineer Network

Location:
Los Angeles, CA
Posted:
October 09, 2012

Contact this candidate

Resume:

Gaurang Patel Network Engineer

Phone: 323-***-****

: *********@*****.***

Resumes ID: 48973

Location: San Rafael, California

Posted: 04.13.2012

Resume Details:

Summary

Over 6 years of experience in design, implementation, trouble shooting, development and maintaining Enterprise data Network systems by dealing with Cisco routers, Cisco Catalyst Switches, Cisco Firewalls, Cisco ASA.

Experience in working with ISPs, Banking and IT industry projects.

Extensive knowledge and experience of routing protocols, LAN and WAN technologies.

Experienced in implementing site-to-site and remote access VPN technologies using GRE, IPsec.

Securing networks with PIX & ASA firewall with application of NAT, PAT, ACL and firewall policies.

Worked on implementation of IP addressing, IP subnetting, address resolution protocols, & TCP/IP Models.

Knowledge of Active Directory Domain services, Group Policy Object, LDAP, AD RMS, AD FS, RODC, AD CS.

Dealt with Network management tools for monitoring the network infrastructure.

Efficient in preparing technical documentation using Microsoft VISIO/Office and preparing some presentations.

Technical Expertise

Hardware

Cisco 7600/7200/3800/2900/2800/2600 series Routers, Cisco 6500/4500/3700/3500/2900 series Switches, PIX Firewall 505/501, ASA Firewall 5500 series

Routing Protocols

RIPv2, OSPF, EIGRP, BGP

LAN Technologies

Ethernet, Fast Ethernet, Gigabit Ethernet, VLAN, VTP, STP, RSTP, PVSTP, Token ring, FDDI, 802.1W

WAN Technologies

Frame-Relay, ISDN, ATM, PPP, HDLC, MPLS, Leased Lines, SONET, Cable Modem, DS1, DS3, OC3, OC12, OC48, T1/T3, E1/E3, DSL

Network Redundancy

HSRP, VRRP & GLBP

Network Security

NAT/PAT, ACLs, IPsec VPN, SSH, Ingress & Egress Firewall Design, IDS/IPS, ACS, Checkpoint, Websense

System Admin.

LDAP, AD DS, AD RMS, AD FS, AD CS, WSUS, GPO, RODC

Infrastructure

DHCP, DNS, SMTP, POP3, FTP, TFTP, IIS

IP Telephony

SIP, H.323, RTP, CCM, Voice Gateways

Network Management

SNMP, Cisco Works, HP OpenView NNM, MRTG

Documentation

Microsoft Office, Microsoft Visio, Open Office

Platforms

Microsoft Windows 2000/2003/2008, Windows XP/Vista/7, Cisco IOS

Professional Experience

Network and Service Transition Engineer May 2010 – Till date

HCL America Inc.Cisco 6500

Client:Autodesk Inc., San Rafael, California

Environment:

Autodesk Global network contains AMEA, EMEA, and APAC regions. All global offices are connected through AT&T MPLS Cloud. New data center has a collapsed core and distribution layer. Network consists of Juniper firewalls, Cisco core switches, F5 load balancers, bluecoat packet shapers, WAN accelerators, and Juniper firewalls.

Responsibilities:

Responsible to managed global network connectivity.

Configured and monitored internal and external firewall for security breaches and modified security zones depending upon requirement.

Defined classes and policies on Packet shaper to prioritize important applications and managed internet bandwidth utilization.

Configured and troubleshooting OSPF, BGP as well as HSRP, ether channel, VLAN on core switches.

Worked on ITIL processes including incident, problem, change, request fulfillment, service level management and others using Service-now.

Configured, monitored and troubleshoot VPN between Autodesk and vendors.

Used Cacti tool to monitor internet and WAN bandwidth.

Worked on Incidents including Network Slowness, internet and WAN link connectives issues.

Assisted to configure and monitor F5 load balancers

Revised Microsoft Visio diagrams based on new or modified network design.

Worked with SMEs in order to make a CMDB list and modified network diagrams.

Attended daily transition meeting to inform higher management regarding status of transition.

Prepared a Network run book based on data provided by Client SMEs and got sign off.

Participated Change board meeting to represent Network RFCs

Network Engineer Nov. 2010 – Apr. 2011HCL America Inc.

Client: Shopko Stores LLC. Green Bay, Wisconsin

Environment:

Shopko is a chain of retail stores. Its General office (Data center) consists of 7200 series routers, Cisco ASA 5520, Cisco 6513 and 3550 switches. Store network consists of cisco 2800 series router and 3550 switches. Store wireless network contains 1200 series light weight and Autonomous access-points, 2100 series WLC.

Responsibilities:

Configured routers, switches, WLCs, Autonomous access points and ACS for New store.

Configured the GRE tunnel between Shopko network and Vendors.

Monitored external and internal firewall (Cisco ASA 5520) for security breaches and modified the ACLs depending upon the requirement.

Working knowledge of Cisco Nexus series switches

Configured new VLAN, ether channel, HSRP and modified existing VLAN environment on Cisco catalyst 6500 series switches depending upon the requirements.

Configured EIGRP on Cisco series (2800 and 3700) routers

Involved in Different Projects, but not limited to :

Exchange Active Sync

Role: Provide the network path for users who want to access the exchange outlook using ipads and iphones from outside network by modifying the ACLs on Firewalls.

POS (Point of Sale) replacement

Role: Modified store Network to accommodate new Fujitsu POS used in place of IBM POS.

Websense Upgradation:

Role: Helped the Vendor to setup the New Websense box and logging server. Made a PAC file based on Company’s Network.

Attend Managerial and Technical meetings to track and design the projects.

Worked on ticketing to resolve the Network issues (routing, switching, and security, wireless).

Configured the Box-to-Box CSS redundancy.

Worked on Onsite and Offshore model.

Monitored the network using NNM and Cisco Works.

Maintained Network Documentation.

Senior Network Engineer Sep 2009 – Oct 2010

Vergent Communication, Dallas, TX

Environment:

Vergent Communication is a Dallas based Business internet service provider. Its network infrastructure consists of high performance Cisco hardware including 7600, 7200, 3900 series routers, 6500 series switches, Cisco ASA 5520, VOIP phones and telephony.

Responsibilities:

Configured and monitored BGP and created various BGP based policies by using route-maps, prefix lists and other BGP attributed such as MED, Local Preferences, Weight, AS_PATH.

Improved the convergence of BGP by implementing route refresh, and Next hop tracking capabilities.

Configured route reflector to eliminate the full mesh requirement and allow for building iBGP networks that scale easily and cleanly.

Implementing, monitoring, troubleshooting and convergence of MPLS inside the core to improve the price and performance of network layer, improve the scalability of network layer, and provide greater flexibility in the delivery of routing services.

Configured MPLS VPN with separate VPN routing and forwarding instance (VRF) in each PE router to guarantee the price isolation and enable usage of uncoordinated private IP addresses.

Configured MP BGP between two PE routers and Configured Small-Scale Routing Protocols between PE and CE Routers like OSPF, EIGRP.

Created multi area OSPF networks. Tested stub, totally stub and NSSA configurations.

Configured Multi-VLAN HSRP on 6500 Switches.

Migrated Cisco ASA 5505 to Cisco ASA 5520 to handle more IPsec connections, increase VPN throughput and accommodate more VLANs.

Reconfigured IPsec-VPN tunnels with ASA firewall between specific branch and main offices for customer’s networks.

Install and maintain security infrastructure, including IPS (using Cisco integrated services routers and catalyst 6500 series switches), IDS, log management, and security assessment systems.

Implementation of Quality of Service (QoS) on WAN links – policy based routing, Queuing, Compression techniques for proper effective utilization of the link.

Assisted in installing F-5 Load Balancers (LTM) in data center.

Providing Network Support in the designing and implementation of P2P over T1s Frame Relay.

Configuring Cisco voice over IP (VOIP) phones, and Telephony.

Defined and maintained security policies on all Internet-facing edge routers.

Working knowledge of Cisco ACE load balancer.

Real-time monitoring and network management using Cisco Works.

Attending the managerial and Technical meetings to discuss the current progress of the project.

Built and maintained Vision documentation database of Network topology.

Network and System Engineer Oct 2008 – Sep 2009

United Central Bank, Los Angeles, CA

Environment:

United Central bank is a financial service provider expanded throughout the nation. Its infrastructure consists of various series of Cisco integrated services routers including 3900, 2900 series, switches including 6500, 4500, 3560 series, network security appliances such as Cisco ASA 5505 and windows server 2008 Active Directory Environment.

Responsibilities:

Designed, implemented and maintaining single multi-homed internet using eBGP (between CE and PE) and iBGP (full mesh) peering with different path attributes such as AS path, weight, local preference and MED.

Configured IP routing protocols, OSPF/EIGRP on various Cisco routers, and troubleshot OSPF/EIGRP networks.

Improving OSPF stability using OSPF convergence timings by controlling LSA generation, LSA flooding, SPF calculation, LSA throttling.

Implemented VLAN, VTP, STP and 802.1q trunking on L2 switches.

Configured Multi-VLAN VRRP for redundancy on 6505 series switches.

Implemented redundant link convergence methods such as Port Fast, Uplink Fast on access layer switches and Backbone Fast on core switches.

Implemented Layer 2 security by enabling STP BPDU guard, Root guard, Port security and locking down VLAN trunking on Access layer switches.

Configuring Ether-channel using LACP and PAgP.

Configured Gateway-to-gateway and Host-to-gateway IPsec VPN architecture models using IKE preshared keys, 3DES & MD5 algorithm in ESP tunnel mode, Configured transform set and interesting traffic on Cisco 3900 series routers.

Analyzed and audited company networks for security breaches. Implemented security upgrades for networks by installing and configuring the Cisco ASA 5505.

Assisted in the development of access-controls, separation of duties, and roles.

Monitoring T3, T1, ISDN and Leased lines for different branch offices by HP Open View Network monitoring tool.

Assisted to implement and configured the Cisco ACE to improved application performance and secured data center and applications.

Migrated entire network from Windows server 2003 into a Windows server 2008 Active Directory domain model.

Maintained active directory, created and administered Group Policies Object (GPO), domain users, administrating users and groups and given appropriate permissions and privileges to access domain environment.

Design, create or modify Sites and OU as required and maintains network users, login scripts, user environment & directories.

Planning and implementation of RODC in Brach offices.

Validation & monitoring of Applications & Event Logs of windows servers.

Support and Administration of Windows Systems.

Create templates and documentation using MS Visio and MS office suite.

Network Engineer Jan 2007 – Aug 2008

Bharat Sanchar Nigam Limited, Gujarat, India

Environment:

BSNL is a state-owned telecommunication enterprise in India.Itsinfrastructure include leased lines, frame relay consist by Cisco routers including 7200, 3900, 2900 series, Cisco switches including, 6500, 4500, 2900 series and firewalls.

Responsibilities:

Installation of 256 Kbps leased lines using optical fiber local loop circuit.

Identifying the requirements to establish the WAN (frame relay, VPN) connectivity and designing the network with redundancy.

Installation and configured OSPF on Frame-relay with multi-area design in core routers such as Cisco 7200 series.

Scalability of OSPF by filtering of Intra, Inter and External OSPF routes.

Implemented EIGRP routing protocol on client’s internal network with its features such as unequal load balancing and route summarization per interface.

Configured route distribution across routing protocol boundaries (between EIGRP and OSPF).

Designed LAN networks with various distribution layer switches such as Cisco 6503, 6509, 6513 and Access layer switches such as Cisco 2960, 3750, 4503E, and 4506E.

Configured VLANs based on client’s requirement and made loop free switch environment using Spanning Tree Protocol (STP), Rapid Spanning Tree Protocol (RSTP).

Configured router redundancy protocols such as HSRP and VRRP between distribution switches for high availability.

Configured packet filtering, NAT (Network Address Translation) and firewall configuring for securing internal network.

Configured and installed DHCP, DNS and WINS server.

Design and implementation of security policies for network devices in WAN, which includes installation and implementation of TACACS+/RADIUS.

Used SNMP protocol for NMS configuration to detect network link failure.

Administration of Cisco Secure Access Control Server.

Monitor traffic and access logs in order to troubleshoot network access issues.

Network Support Engineer Jun 2005 – Dec 2006Hi-rel Electronics Pvt. Ltd, Gujarat, India

Environment:

Hi-rel Electronics Pvt. Ltd is a leading solution provider in the fields of Industrial automation solutions, power controllers, and uninterruptible power supply products. Its network included various series of Cisco routers such as 3600, 2800, Cisco switches such as 3750, 3560 and 2900, and Cisco PIX firewalls including 505, and 501.

Responsibilities:

Designed, validated and implemented LAN & WAN solution to suite client’s needs.

Installed, configured (through CLI and SDM) and managed Cisco routers and Switches.

Configuring routers for EIGRP and OSPF routing protocols, implement stub and NSSA areas if required.

Configured static routes on internal routers and default route on edge router to reach Internet.

Designed TCP/IP addressing scheme for networks using VLSM and configured the network devices for successful switching and routing.

Created loop free switch environment using STP and RSTP with attack mitigation techniques. (BPDU guard, Root guard, loop guard)

Configuration of SSH on all network routers and switches for secure management purposes.

Configuration of authentication and encryption using 802.1x/WPA standards.

Configured CBAC to prevent IP Spoof attacks.

Configuring NAT and PAT on edge routers in network infrastructure.

Migrated checkpoint firewall-1/VPN-1 to PIX firewall (501, 505).

Installed and Configured Cisco PIX firewalls(501, 505).

Maintained management applications and tools to monitor the network and diagnose and troubleshoot arising issues.

Network Administrator Mar 2004 – Apr 2005 Apollo Hospitals, Gujarat, India

Environment:

Apollo Hospitals is the largest health provider in India that operates 50 hospitals in south Asia. Its Headquarter consists of Cisco 2600, 2500, 1700 series routers and Cisco 3500 and 2900 series switches.

Responsibilities:

Configured and managed Cisco 1700, 2500 and 2600 routers and Cisco catalyst 2900 and 3500 series switches.

Performed troubleshooting and monitored routing protocols like RIPv2 and EIGRP.

Configured OSPF routing protocol on frame-relay WAN network.

Configuration and maintenance of Cisco 2900 series switches including VLANs and 802.1q trunking protocols.

Configured VTP, STP, and static and dynamic port security.

Securing the network with standard and extended access lists applied on interfaces.

Designing, Allocating, Maintaining Public/Private IP addresses.

SNMP network management via MRTG.

Configuration and maintenance of Syslog server to log network events.

Support and Administration of Windows Systems

Certifications

CCNA - Cisco Certified Network Associate

CCNP – Cisco Certified Network Professional

CCNA Security

MCTS - Microsoft Certified Technology Specialist – Windows Server 2008

Cisco ID: CSCO11664915

Microsoft ID: 7528654

Education

Bachelor of Electronics and Communications

North Gujarat University, Gujarat, India



Contact this candidate