Jeevan
Email: ******@*************.***
Phone: 732-***-****
SUMMARY:
Over all 8+ years of experience in routing, switching, system design, implementation and troubleshooting of complex network systems as well as understanding on firewall technologies.
Expert level knowledge of troubleshooting, implementing, optimizing and testing of static and dynamic routing protocols such as EIGRP, OSPF, BGP and ability to interpret and resolve complex route table problems.
Implementation of traffic filters on Cisco routes using Standard and extended Access list.
Has very strong experience on Cisco routers (800, 1700, 1800, 2600/2600XM, 2800, 3600/3600XM, 3700, 3800, 7200), switches (2950, 2960, 3550, 3570, 4510R, 6500, MDS 9000 [SAN], 5000 NX-OS), VPN concentrators 3000 series, ACS 4.1, Cisco PIX (501, 506E, 515/515E, 525, 535) firewalls, ASA (5505, 5510, 5520), IDS and IPS (4235, 4250).
Worked on network topologies and configurations, TCP/IP, UDP, Frame Relay, Token ring, ATM, bridges, routers, hubs and Switches.
Implemented routing protocols (RIPv1/2, IGRP, EIGRP, OSPF, BGP), switching (VLANS, VTP Domains, STP, and trunking), security on devices hardening (authentication, authorization, and accounting).
Configuration and troubleshooting of Cisco 2500, 2600, 3000, 6500, 7500, 7200 Series routers and Cisco ASR 9K /1K. Good knowledge with the technologies VPN, WLAN and Multicast.
Experience in configuring Site-to-site and remote access VPN solutions.
Implemented Palo Alto Network (PAN) Next Generation Firewalls in the data center.
Experience testing Cisco routers and switches in lab and deploy on site for production.
In depth understanding of IPV4 and implementation of Sub netting.
Experience working with Nexus 7010, 5020, 2148, 2248 devices.
Switching tasks include VTP, ISL/ 802.1q, IPsec VPN Tunneling, VLANs, Ether Channel, Trunking, Port Security, STP and RSTP.
Well Experienced in configuring protocols HSRP, GLBP, ICMP, IGMP, PPP, PAP, CHAP, and SNMP.
Worked on F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
Extensive Experience in WAN Technologies, Switching Technologies along with Failover Mechanisms & Inter VLAN Routing types.
Configured Security policies including NAT, PAT, VPN, Route-maps, prefix lists and Access Control Lists.
Responsible for Check Point and Cisco ASA firewall administration across global networks.
Experience in working with Cisco Nexus Switches and Virtual Port Channel configuration.
Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, Ether-channel, STP, RSTP and MST.
Involved in design and deploying various network security & High availability products like Cisco ASA and other security products.
Highly motivated with the ability to work independently or as an integral part of a team and Committed to highest levels of professional.
Excellent communication skills, Enthusiastic, motivated and a team player
Played various customer interaction roles in various capacities, across projects in different areas.
Experience with Change management process and Project documentation tools like Excel and VISIO
A highly-organized individual who adopts a systematic approach to problem solving, effectively analyzes results and implements solutions
Knowledge on Cisco Firewalls, Cisco PIX (506E/515E/525/) & ASA 5500(5510/5540) Series.
Expertise in installing, configuring and troubleshooting using Cisco Asset Management Suite.
Troubleshooting & implementation of Vlan, STP, MSTP, RSTP, PVST, 802.1Q, DTP, HSRP, VRRP, GLBP, LACP, PAGP, AAA, TACACS, RADIUS, MD5, VTP & SVI.
Experience working with Cisco IOS-XR on the ASR9000 devices for MPLS deployments
IOS/JUNOS upgrade for Cisco & Juniper routers cum switches.
Experience in testing Cisco & Juniper routers cum switches in laboratory scenarios and deploy on site for production.
TECHNICAL SKILLS:
Cisco Routers 2600, 2900, 3600, 3800, 7200 and 7600
Cisco L2 & L3 Switches 2900, 3560, 3750, 4500, 4900, 6500, Nexus 5K/7K
Cisco Catalyst 6500, 4500, 3560, 3750, 2960, Nexus 7000, Nexus 6000, Nexus 5000, Juniper EX, QFX and Alcatel 7705 SAR series
LAN Technologies Ethernet, Fast Ethernet, and Gigabit Ethernet, SMTP, VLAN, Inter-VLAN Routing, VTP, STP, RSTP, Light weight access point, WLC
WAN Technologies Frame Relay, PPP, HDLC, T1/T3, DS3, OC192
Firewalls Cisco ASA
OS products/Services DNS, DHCP, Windows (2000/2003, XP), UNIX, LINUX.Protocols/Services
Gateway Load Balancing Routing Protocols (RIP v1 & v2, OSPF, EIGRP, BGP),
HSRP, GLBP,
Network Management Tools Wireshark, Netflow Analyzer, NetScout, IBM Netcool, Cisco Works, Ethereal. OPNET Modeler, SNMP, Ethereal, Solar Winds, Log Logic, EM7, PRTG, Blue Coat, Websense, Cisco NAC, ISE, Active Directory
Security Server Protocols TACACS+, RADIUS
Facilities DS0, DS1, DS3, OCX, T1/T3
Load Balancers Cisco CSM, F5 Networks (Big-IP)
Routing RIPV1, RIPV2, IGRP, EGIRP, OSPF, BGP, Route Filtering, Redistribution, Summarization, and Static Routing
Switching VLANs, VTP, STP, PVST+, RPVST+, Inter VLAN routing & Multi-Layer Switch, Ether channels, Transparent Bridging, CEF, DECF, Port Security, VSS Cisco 2960, 3560, 4500, 6500, 4900, 2900, 3750, Nexus 5000, Nexus 7000, WS-C4948, Juniper EX, QFX and Alcatel 7705 SAR
Network Security Cisco ASA5550/ 5540, NetScreen, Juniper SRX, Palo Alto, Checkpoints, AAA, Firemon, FREE RADIUS, CADA, LDAP, IPsec VPN, SSL VPN, IDS, IPS, Source Fire, Fire Eye, Cisco NAC (4.9.3), Cisco ISE, Aruba, RSA, RSA 2 Factor, SIEM, Qradar, Tripwire
Operating Systems Windows (98, ME, 2000, XP, Sv2003, Sv2008, Sv2012, Vista, 7, 8),
Ubuntu, Linux, Kali Linux, CentOS, FreeBSD, Red Hat
EDUCATION:
Bachelor of Technology in Electrical & Electronics Engineering
CERTIFICATIONS:
Cisco Certified Network Professional(CCNP)
Cisco Certified Network Associate (CCNA)
PROFESSIONAL EXPERIENCE:
Transurban, Alexandria, VA May 2016 – Till date
Sr. Network Engineer
Responsibilities:
Working on Cisco Catalyst 2960 Switches, ASA (5505/5510) Firewalls.
Implementing security policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA (TACACS+ & RADIUS).
Dealing with monitoring tools like Orion Solar Winds and network packet capture tools like Wire-shark, etc.
Installation, Configuration and Administration of Windows Servers 2000/2003, Active Directory, FTP, DNS, DHCP, TFTP, Linux OS under various LAN and WAN environments.
Working in high availability Nexus Environment and provide Level 3 Network Support.
Monitored and documented the stability and performance of Nike's WAN/MAN
Working with CISCO Nexus 7000, Nexus 5000, and Nexus 2000 platforms.
Configuring and installation of Cisco 2960 Switches and ASA 5505 Firewalls.
Updating the SNMP string for various Routers and Switches in Solar Winds for monitoring purpose.
Implemented VPC, VDC on Nexus Switches and configured FEX.
Performing security audits of perimeter routers, identifying missing ACL’s.
Troubleshooting of complex LAN/WAN infrastructure including routing protocols EIGRP, OSPF & BGP.
Worked on F5 BIG-IP LTM 8900, configured profiles, provided and ensured high availability.
Settings of the networking devices (Cisco Router, switches) co-coordinating with the system/Network administrator during implementation.
Replace branch hardware with new 3900 routers and 2960 switches.
Performed on Palo Alto Firewall on network security software and hardware, security monitoring systems, encryption software, threat and vulnerability management services and software, identity management solutions and network objects on global group, clean up unused rules, decommission etc.
Expertise in configuring and troubleshooting of Palo Alto, Juniper NetScreen & SRX Firewalls and their implementation.
Configuring Palo Alto policies and setting different device configurations.
Experience in configuring troubleshooting and implementation of A10 networks.
Successfully installed Palo Alto PA 3060 to protect Data Center and provided L3 support for routers/switches/firewalls.
Configuration and troubleshooting of Cisco 2500, 2600, 3000, 6500, 7500, 7200 Series routers.
Providing Technical Support and solutions for Network Problems.
Planned, tested and evaluated various equipment’s, systems, IOSs and procedures for use within the Network / security infrastructure.
Upgrading IOS, troubleshooting network outages.
Participate in all technical aspects of LAN, WAN, VPN and security Internet Service projects including, short and long-term planning, implementation, project management and operations support as required.
To secure configurations of load balancing in F5, SSL/VPN connections, Troubleshooting CISCO ASA firewalls, and related network security measures.
Implemented Site-to-Site VPNs over the internet utilizing 3DES, AES/AES-256 with ASA and JUNIPER SRX Firewalls
Configuring network access servers and routers for AAA Security.
Documentation and change control.
Worked on troubleshooting of complex LAN/WAN infrastructure.
Administration of Cisco 11.x and 12.1 versions.
Monitoring all Cisco equipment’s using Cisco Works.
Involved in SNMP Network management.
Upgrading and backups of Cisco router configuration files’
Implementing and maintaining backup schedules.
Well Experienced in configuring protocols HSRP, GLBP, VRRP, ICMP, IGMP, PPP, PAP, CHAP, and SNMP.
Environment: Cisco ASA 5505, Catalyst 2960, Nexus 7K, STP, RSTP, VTP, HSRP, BGP, OSPF, EIGRP, SNMP, DNS, Cisco3560/2950/2924/6509/6513/5500switches, Cisco1800/2800/2500/2600/2800/1600/3800/3900/7204/7606 routers, Palo Alto, BMC Remedy, Cisco ASA 5540, BIG-IP LTM 8900, QOS, HDLC. SNMP, TACACS+, DNS, DHCP, Infoblox, Solarwinds, Nexus 7K,5K,2K, Juniper 3600, 5600, Cisco AP’s, DHCP, Cisco Unity, Orion Solar winds.
Visa, Denver CO Aug 2015 – Feb 2016
Sr. Network Engineer
Responsibilities:
Performed RIP, OSPF, BGP EIGRP routing protocol administration.
Assisted in troubleshooting LAN & WAN connectivity and hardware issues in the network of 10000 hosts.
Troubleshoot problems on a day to day basis & provide solutions that would fix the problems within their Network.
Support customer with the configuration and maintenance of PIX and ASA firewall systems.
Assisted with various duties that will arise including: implementation, configuration, management, rules definition, problem solving, design advice, troubleshooting, updating, maintenance, etc.
Maintenance and Troubleshooting of LAN connectivity problems using Ping, Trace route.
Involved in SNMP Network management.
Upgrading and backups of Cisco router configuration files’
Implementing security policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA (TACACS+ & RADIUS).
Plan for migrations off Cisco CSS and Cisco ACE/GSS onto F5 LTM active/passive pair and deploy F5 GTM for site redundancy across two data centers connected via two diverse service providers.
Experience with all F5 BIGIP Platforms running LTM and GTM 9.x - 11.x, from planning greenfield installations to conducting platform upgrades to an existing install base of the F5s.
Most recently conducting F5 platform upgrades, equipment swaps, as well as 9.x OS upgrades to 11.x.
Implemented Zone Based Firewalling and Security Rules on the Palo Alto Firewall.
Experience configuring and administering Cisco/Juniper/Palo Alto firewalls (NAT/PAT, ACL, VPN)
Palo Alto design and installation (Application and URL filtering, Threat Prevention, Data Filtering)
Modified internal infrastructure by adding switches to support server farms and added servers to existing DMZ environments to support new and existing application platforms.
Dealing with monitoring tools like Orion Solar Winds and network packet capture tools like Wire-shark, etc.
Installation, Configuration and Administration of Windows Servers 2000/2003, Active Directory, FTP, DNS, DHCP, TFTP, Linux OS under various LAN and WAN environments.
Responsible for layer 2 securities which was implemented using a dedicated VLAN ID for all trunk ports, setting the user ports to non-trunking, deployed port security when possible for user ports
Configuring VLAN, STP VSTP, SNMP, Port Security on Juniper EX series switches.
Experience with configuring Cisco 6500 VSS in Distribution layer of the Data center network
Network security including NAT/PAT, ACL, and ASA Firewalls.
Configuring and installation of Cisco 2960 Switches and ASA 5505 Firewalls.
Updating the SNMP string for various Routers and Switches in Solar Winds for monitoring purpose.
Performing security audits of perimeter routers, identifying missing ACL’s.
Settings of the networking devices (Cisco Router, switches) co-coordinating with the system/Network administrator during implementation.
Worked on troubleshooting of complex LAN/WAN infrastructure.
Administration of Cisco 11.x and 12.1 versions.
Monitoring all Cisco equipment’s using Cisco Works.
Troubleshooting of complex LAN/WAN infrastructure including routing protocols EIGRP, OSPF & BGP.
Conversions to BGP WAN routing. Which will be to convert WAN routing from OSPF to BGP (OSPF is used for local routing only) which involves new wan links
Configuration and Administration of Cisco and Switches.
Good knowledge with the technologies VPN, WLAN and Multicast.
Configuring network access servers and routers for AAA Security.
Environment: Cisco ASA 5505, Catalyst 2960, RSTP, VTP, HSRP, BGP, OSPF, EIGRP, SNMP, DNS, DHCP, HDLC Cisco Call Manager, Cisco Unity, Orion Solar winds, NAT/PAT, ACL, JUNIPER SRX and ASA Firewalls, Cisco IOS-XR, ASA, DMZ, HSRP, Palo Alto, Port-Channel
Taco Bell, Irvine CA Jan 2014 – June 2015
Sr. Network Engineer
Responsibilities:
Involved in Configuring and implementing of Composite Network models consists of Cisco7600, 7200, 3800 series routers and Cisco 2950, 3500, 5000, 6500 Series and Nexus switches.
Configured networks using routing protocols such as RIP, OSPF, BGP and manipulated routing updates using route-map, distribute list and administrative distance for on-demand Infrastructure.
Configured and maintained Cisco ASA firewalls.
Implementing traffic engineering on top of an existing Multiprotocol Label Switching (MPLS) network using Frame Relay and Open Shortest Path First (OSPF).
Working with Cisco Nexus 2248 Fabric Extender and Nexus 5500 series to provide a Flexible Access Solution for datacenter access architecture.
Provided redundancy in a multi homed Border Gateway Protocol (BGP) network by tunings AS-path.
Implemented Hot Standby Router Protocol (HSRP) by tuning parameters like preemption.
Implemented various OSPF scenarios on networks consisting of 7600 routers.
Configured policy based routing for BGP for complex network systems.
Configured Multiprotocol Label Switching (MPLS) VPN with Routing Information Protocol (RIP) on the customer's Site.
Cisco Secure Access Control Server (ACS) for Windows to authenticate users that connects to a VPN 3000 Concentrator.
Worked on FTP, HTTP, DNS, DHCP servers in windows server-client environment with resource allocation to desired Virtual LANs of network.
Responsible for day to day management of Cisco Devices, Traffic management and monitoring.
Configured and managed OSPF redistribution and authentication with type 3 LSA filtering and to prevent LSA flooding and also configured OSPF over frame relay networks for NBMA and point to multipoint strategies.
Extensively worked on layer 2 features like STP, VLAN, and VTP and implemented them on new switches and used to troubleshoot any issues.
Designing, configuring, implementing and troubleshooting (LAN) VLAN's, VTP, Spanning Tree (STP), Trunking (dot1q and ISL) and Ether channel.
Implementing and managing traffic engineering on top of an existing Multiprotocol Label Switching (MPLS) network using Frame Relay and Open Shortest Path First (OSPF).
Hands on experience with Nexus Switches 2K, 5K and 7K.
Network consists of Heavy Cisco equipment such as: Cisco 356*-****-**** switches, Cisco 650*-****-**** series Layer 3 switches, Cisco 382*-****-**** series routers.
Hands on experience and good working knowledge with Checkpoint Firewall policy provisioning.
Worked on Firewall Administration, Rule Analysis, and Rule Modification.
Environment: Cisco ASA 5505, Catalyst 2960, Nexus 7K, STP, RSTP, VTP, HSRP, BGP, OSPF, EIGRP, SNMP, DNS, DHCP, HDLC Cisco Call Manager, Cisco Unity, Orion Solar winds, NAT/PAT, ACL, JUNIPER SRX and ASA Firewalls, Cisco IOS-XR, ASA, DMZ, HSRP, Port-Channel
Vision International IT Solutions, Hyderabad, India April 2011 – Oct 2013
Network Support Engineer/Intern
Responsibilities:
Responsible for Internal and external accounts and, managing LAN/WAN and checking for Security
Planning and configuring the entire IP addressing plan for the clients' network.
Managed the IP address space using subnets and variable length subnet masks (VLSM).
Involved in troubleshooting IP addressing issues and Updating IOS images using TFTP.
Provided redundancy in a multi homed Border Gateway Protocol (BGP) network by tunings AS-path.
Implemented Hot Standby Router Protocol (HSRP) various OSPF scenarios on networks consisting of 7600 routers.
F5 Big- IP LTM-6400 load balancers, all Clustered, 3DNS GTM Balancers, Active and Secondary Datacenter's, working with IIS 6 and up for migration.
Deploying and decommission of VLANs on core ASR 9K, Nexus 7K, 5K and its downstream devices
Configured policy based routing for BGP for complex network systems.
Interacted with support services to reduce the downtime on leased lines.
Daily responsibilities included monitoring remote site using network management tools, assisted in design guidance for infrastructure upgrade & help LAN administrator with backbone connection and connectivity issues.
Configured Multiprotocol Label Switching (MPLS) VPN with Routing Information Protocol (RIP) on the customer’s Site.
Implemented strategies for operating systems, virus protection, mail systems and Internet services
Installing operating systems, software and hardware on computers.
Handling various trouble tickets, firewall rule changes, assisting other teams to bring the device to production, making DNS changes in Infoblox and routing changes.
Experience with configuring BGP, OSPF on 7609 routers.
Maintained redundancy on Cisco 2600, 2800 and 3600 routers with HSRP.
Monitor performance of network and servers to identify potential problems and bottleneck.
Performed RIP & OSPF routing protocol administration.
Environment: Switching, Routing, Nexus, Access-lists, Sub netting, STP, RSTP, VTP, HSRP, Port-Channel, EIGRP, RIP, PPP, HDLC. SNMP, DNS, DHCP, Cisco 3640/12000 /7200/3845/3600/2800 routers, Cisco ASA5510, Checkpoint, Cisco Nexus9K/5K/2k/1k, 2248/3560/5020/6509, OSPF, MPLS, F5 Load Balancer, SSL, VPN, IPsec, Infoblox, Solar winds.
Techno Brain Ltd, Hyderabad, India March 2009 – Feb 2011
Network Administrator/Intern
Responsibilities:
Deploying the network infrastructure to meet the requirements
Installed and set up Cisco routers and switches per deployment plans.
Applied access lists and NAT configurations based on implementation guidelines.
Designed and implemented F5 Big IP load balancers that resulted in improving application performance.
Designing solutions for corporate requirements using Cisco Routers and Switches.
Designed and implemented an IP addressing scheme with subnets for different departments.
Configuring and designing VPN rules for Net Screen VPN Box and Checkpoint Firewall.
Created VLAN and Inter-Vlan routing with Multilayer Switching.
Completed service requests (i.e. – IP readdressing, bandwidth upgrades, IOS/platform upgrades, and etc)
Installed wireless access points (WAP) at various locations in the company.
Maintained redundancy on Cisco 2600, 2800 and 3600 routers with HSRP.
Migration of RIP V2 to OSPF, BGP routing protocols.
Configured EIGRP for Lab Environment.
Configuring of IP Allocation and sub netting for all applications and servers and other needs throughout company using FLSM, VLSM addressing.
Troubleshot the issues related to routing protocols.
Perform routine network maintenance checks as well as configure and manage printers, copiers, and other miscellaneous network equipment.
IOS upgrades on Catalyst 1900, 2900, 3500 series switch and 2500, 2600, 3600 series routers.
Troubleshot problems on a day to day basis and documented every issue to share it with design teams.
Implemented ISL and 802.1Q for communicating through VTP.
Maintained core switches, creating VLAN's and configuring VTP.
Designed IP Addressing schemes, VLAN tables and Switchport assignments, Trunking and Ether-channel implementation.
Environment: TCP/IP, RIP, Access-lists, LAN/ WAN, Trunking 802.1, ISL