John M. Powell **********@*****.*** 770-***-****
Powder Springs, GA 30127
EDUCATION:
Bachelor Science in Telecommunications Management – DeVry Institute of Technology (1999)
Master Science in Network Architecture – Capella University (2010)
CERTIFICATIONS:
Cisco Certified Network Associate (CCNA)
Cisco Certified Design Associate (CCDA)
Cisco Certified Network Professional (CCNP)
Cisco Certified Design Professional (CCDP)
Cisco Certified Internetwork Expert (CCIE Written Only)
SECURITY CLEARANCES:
Gained Public Trust Clearance as a Government Contractor (Active)
Held Confidential (Level 1) and Secret (Level 2) Clearances in the US Military (Not Active)
PROFESSIONAL EXPERIENCE
Federal Reserve Bank System 2012
–Present
Network Engineer
• Implement Cisco routing and switch at all Federal Reserve Bank sites nationally
• Build 2960, 2811, 3750, 3845, 4507, 6506, 6509 through layers 2, 3, and 4, implementation, design, and
troubleshooting
• Perform lab network design, build-outs and implementations, to test new Cisco IOS images before implementing
the new code onto the production network
• Consistently perform site refreshes by implementing the enterprise performance life cycle framework for all
vendor equipment prior to end-of-life (EOL)
• Work with networking management tools like iPerf, jPerf, Wireshark, and Netflow for performance testing
• Configure, implement and troubleshoot HSRP and SSO for routing and switching configurations in order to
maintain high availability
• Perform spanning-tree LAN upgrades and conversions at layer 2 from PVST to Rapid-PVST
• Implement OSPF and BGP at layer 3, route redistribution, and both IBGP and EBGP peering relationships
• Connect fiber and copper cabling between layer 2 and layer 3 network devices
• Configure layer-2 trunks and Ether-channel bundling for switching uplinks
• Monitor Cisco Wireless components: Access Points (3602I) and Wireless LAN Controllers (5508) through Cisco
Prime Network Control System (NCS) to maintain high availability of the FRB Wireless infrastructure
• Perform for network support and troubleshooting as tickets are assigned through the Remedy ticketing system
• Work on a team with other network engineers, both individual and team projects, assignments, and tasks
Implement QoS configurations and policies on 4507 and 6509 switches, both Core and Access Layer Switches
• Configure Netflow interfaces and network build-outs to test reception of Netflow data
• Contributes to the design and architecture of the FRB System's reference architecture documentation
• Take design and architecture documents and produces implementation plans and configuration templates
• Uses network performance data to determine network inefficiencies or for problem resolution
• Schedules and executes complex changes to the Enterprise network
1
John M. Powell **********@*****.*** 770-***-****
• Implement process and tools in development organization and evaluate changes prior in order to amalgamate
and/or implement those processes and tools in production
• Collaborates with peers in telephony, video, server and security spaces during complex problem resolution;
• Tests hardware and software for feature performance as well as compatibility with existing systems, hardware,
software, and operating systems
• Reviews customer requirements and participates in the development of network solutions to address requirements;
• Partners with Reserve Banks, business lines, and national IT providers to ensure successful migrations and
achievement of program goals and objectives
• Use Oral Communication to express ideas and facts effectively to both individuals and groups; taking into account
how technical, controversial, and of a sensitive nature of the information that is communicated
• Evaluates and tests designed solutions against requirements and produces necessary test documentation
• Participates in INS and national projects
• Tests hardware and software for feature performance as well as compatibility with existing systems, hardware,
software, and operating systems
• Reviews customer requirements and participates in the development of telecommunications solutions to address
requirements
• Develop and implement Security Assurance for Federal Reserve (SAFR) requirements for network systems
• Update security policies, rules and risk management based on Federal Reserve’s National Institute of Standards
and Technology (NIST)
• Implement security measures designing, development, and implementation of security measures, protocols and
technical approaches to protect Personally Identifiable Information (PII) data
• Operate, maintain and perform audit of information systems according to the adopted SAFR policy and controls
outlined for Federal Reserve Information Security Standard (FRISS) requirements
Georgia System Operations (Contract) 2012 – 2012
Network Engineer
• Work on team projects and individual projects; provide direction to team highlighting tasks, status reports, E-mail
updates and face to face reviews
• The implementation and support of Cisco ASA 5500 series firewalls, rules and policies
• Configure and implement Zone-based firewall policies
• Support and troubleshooting of IP routing: configure static routing, dynamic routing using EIGRP and BGP
• Used models, figures, tables, from original analysis to prepare written documentation on information products
such as Cisco Security Manager (CSM) as a way of centralizing firewall and security management
• Worked on implementation of Cisco Security Manager (CSM) to push rules and policies to PIX, ASA, and routers
• Administer and manage network security using Cisco ASA Firewalls
• Worked with Checkpoint Provider-1 management servers and P1 architecture, UTM and Power-1 appliances
running VSX R65 and R70, firewalls running in transparent and routed mode configurations and support
• Monitors system performance and implements performance tuning
• Research network vulnerabilities in order to prevent hacker and backdoor attacks to the network infrastructure
• Troubleshoot Frame Relay and T1’s, and configured T1’s on routers
• Configured static and dynamic routing on internal routing and NetVPN connections
• Setup, installed, configured and implemented ASA Configuration of Site to Site VPN Tunnels and Split Tunnel
Configuration and Troubleshooting
• Actively participate in network and system designs to ensure implementation of viable system security policies
and procedures of the organization
• Served as an information system security administrator by developing, implementing and ensuring compliance
with security policies, standards, procedures and best business practices of the organization
• Apply risk management practices and procedures to complex information systems
• Assist Operations team with first office and/or initial customer deployment
2
John M. Powell **********@*****.*** 770-***-****
Dell/Perot Systems (Centers for Disease Control and Prevention), Atlanta GA 2005 – 2012
Network Engineer
• Provide Tier III support to IP Services Operations Team and NOC on escalated technical issues on a 24 7
operational basis
• Responsible for keeping the network updated with Visio diagrams and network drawings
• Consistently work on a team to build, develop, design and install new networks in new locations and perform
network upgrades on CDC campuses and WAN sites
• Developed, installed and configured the network at Patriots Plaza in Washington DC on an individual assignment
• Analyze and define network infrastructural requirements for building floor wiring closets
• Perform Local Area Network (LAN), Wide Area Network (WAN), VLAN and network troubleshooting on a daily
basis
• Perform network Disaster Recover planning and implementations using Cisco technologies (i.e. GLBP, HSRP)
• Configure 802.1q trunks, GRE routing tunnels, Ether-channel bundles and configurations, static routing, default
gateways for switches and routers, network load balancing,
subnet masks, and gateway addresses on multiple routers and switches
• Provide network support, configurations, and connectivity for CDC’s DMZ environment, configuring secure
VLANs and configuring network interfaces for servers
• Install and configure IP Video phones and Quality of Service (QoS), and configure switch-ports with voice, video,
and data settings to support Tandberg devices
• Connect video equipment (i.e. Tandberg and Tele-presence) for system administration and content management
• Install and configure new Cisco routers and Cisco switches and put them on the production network
• Design and configure switches with VLANS, port security, VTP Domains, and inter-switch communication
• Manage and maintain router and switch IOS images and perform backups of such images and configurations to
our TFTP servers
• Perform network monitoring, analysis, diagnosis on the Local and Wide Area Network, implement network
security on routers using IP access lists and firewall service modules, and configure EIGRP on CDC’s campus
routers
• Perform installations, and configuration of Cisco 2911, 2921, 2951, 2924, 2948, 2960, 2980, 3550, 3560, 3750,
4503, 4506, 4507, 4510, 5505, Cisco-CGR, 7204, 6506, 6509 and 6513 layers 2, 3, & 4 switching and routing
• Install, maintain, and troubleshoot network cabling and network equipment including hardware and software that
runs of such equipment
• Work alongside CDC’s security team to remotely enable and disable network ports advertising devices on the
network suspected of potential security threats
• Provide customer support for Cisco and Juniper VPN devices enabling customer remote connectivity
• Consistently perform day to day network troubleshooting to resolve network outages
• Configure routers and switches with the following services: DHCP (DHCP helpers), DNS (within the GLBP
groups), http and https, and Secure-Shell (SSh).
• Maintain computer and network systems to ensure that data and information made available to the general public,
individuals, organizations and agencies who work outside the Government are protected
• Test and configure firewalls (PIX 501’s and ASA 5500 series), and install at strategic locations on the network
• Worked with vendors and service providers to implement MPLS and Metro-Ethernet off service provider’s
backbone Internet connections
• Makes clear and convincing oral presentations while also listening to others, and responds appropriately to verbal
and nonverbal cues
• Planning and implementation stages of Big IP F5 LTM Load Balancers, and configuration of VIPs, Pools, and SSL
Certificates
• Configured Tandberg / Cisco tele-presence endpoints in conference rooms, for video conferencing, and put them
on the network
• Uses sound judgment to generate and evaluate alternatives, and to make recommendations
• Uses problem solving skills to identify problems in order to determine the accuracy and relevance of information
• Develop and implement network operational procedures related to Voice over IP (VOIP), and provide support for
voice equipment, IP voice phones, IP video phones, along with new/emerging network related technology
3
John M. Powell **********@*****.*** 770-***-****
• Responsible for the on-site deployment of a variety of VoIP network equipment, IP Phones, IP Video Phones,
Voice server(s), and routing voice traffic from end-to-end using Quality of Service on routers and switches
• Build and configure Voice-VLANs and IP Addressing Schemes (subnets) to segment voice traffic from normal
network data traffic
McKesson Corporation (Wellstar Health System) 2004 – 2005
Network Systems Administrator III
• Supported between 50 to 200 teleworkers for McKesson Corporation and Wellstar Health System on Cisco VPN
clients and Easy VPN solutions
• Install, support, manage, and monitor Windows NT, Windows 2000, and Windows 2003 operating systems on
Compaq proliant platforms in support of Wellstar’s data center network infrastructure
• Perform installation, maintenance, upgrades, and troubleshooting of Hewlett Packard Server hardware
• Conducted health system and medical device information systems security evaluations, audits, and reviews.
• Responsible for planning, establishing, and implementing enterprise information system security programs that
takes into consideration the unique and complex needs of health systems and medical devices, which includes
cyber security, authorization and accreditation, risk assessment and management throughout the life cycle of the
medical device and health systems
• Primary Citrix server farm engineer responsible for troubleshooting, local and remote problems including the
design, implementation, and maintenance of internal servers, NFuse Web sites and server farm infrastructure.
• Primary support for Wellstar’s Remote Access solutions, including Total Control hardware using PRI ISDN
channels, RADIUS software, VPN user accounts and access problems.
• Develop and design IT programs to ensure controlled accessibility to the health information systems, medical
devices, and its associated networks
• Possess knowledge of leading and conducting teams in comprehensive risk assessment studies, research, and
evaluations to ensure efficiency and viability of medical devices and associated health information systems as it
relates to compliance and adherence to federal laws, regulations, policies, and procedures
• Implement and develop program procedures to ensure that network systems and data users are aware of medical
and health information system and device system policies and procedures inside and outside the organization
• Administer and support Wellstar’s Single Domain Model Windows NT Domain, including DHCP and WINS
administration, and member of the Active Directory planning team
• Setup and support Microsoft’s Terminal Services (RDP) across Windows 2003 & Windows 2000, and Windows
NT Server v4.0 Terminal Server Edition platforms for remote management.
• Participate in 24x7 on-call rotation to support Wellstar’s VPN and Local Area Network (LAN) infrastructure
• Deploy policies and procedures to ensure secure health systems and medical device related information systems
reliability and accessibility and to prevent and safeguard against unauthorized access to all agency information
systems such as networks, network devices and company and business partner data
WORLDSPAN, Atlanta GA 1998 – 2004
Network Systems Engineer
• Lead engineer that designed, implemented, and installed the remote access solution to support 3,500 tele-workers
both domestically and internationally
• Implemented and supported telecommuting solutions for domestic and international employees using Windows
NT Terminal Server v4.0, Citrix Win-Frame, Citrix Meta-Frame, Cisco VPN Concentrators, Total Control Chassis,
BRI ISDN customer setups and configurations, PRI ISDN and T1 circuits
• Provided firewall administration by opening ports for Web, ICA, TCP and UDP traffic inside and outside the
network
• Provides data communication network support by installing, maintaining, trouble shooting and correcting
problems related to controllers, front-end processors, multiplexers, modems, data communication leased lines,
bridges, routers, switches, Ethernet and token ring networks.
4
John M. Powell **********@*****.*** 770-***-****
• Installed, configured, administered and provided support for Windows NT domain and customer support for
servers and workstations on the network, including backup and disaster recovery
• Support of Project Groups, and administration and backups of SQL Server Databases on Windows NT Servers,
and troubleshoot Server and Network problems, including the design, implementation, and maintenance of internal
corporate WAN infrastructure
• Provided technical expertise to other network support staff as well as support of a data network primarily using
fileservers and servers such as Windows 2000 or NT-based file and print servers.
• Provided network administrative support for cooperate-wide Single Domain model Windows NT Network and
domain, including DHCP, WINS, and DNS administration and configuration
• Setup Terminal Services across Windows 2003 & Windows 2000, and Windows NT Server v4.0 Terminal Server
Edition for remote management and remote access on Compaq Servers and Gateway Workstations.
• Setup and configured Windows XP, Windows 2000, Windows NT, 98, 95 workstations and servers to use DHCP,
DNS, WINS, IP Addressing for 5,000 customer base
• Provided 24x7 on-site and on-call support enterprise network and infrastructure
• Provided third level network support in troubleshooting Cisco and Foundry switches and routers from the
boundary and network edge back to the user layer
• Provided support for firewalls, foundry load balancers, core, distribution and access layer switches, multi-tier
customer applications in the data center
• Install cabling between various types of servers, network and telecommunications equipment, and research,
analyze, troubleshoot and resolve telecommunications related problems
• Supported Middle-Tier Applications and Products such as Tivoli, DB2, Oracle, Sequel server, MQ Series,
installation and renewal of SSL certificates on IIS Web servers
• Provided 24x7 support for various middle-tier applications such as travel button, travel Ingenuity, distance
learning support, virtual monitors for displaying real-time GDS information, response-time monitors, Windows
active directory, topaz monitoring and profile configuration, Tivoli monitoring and client configuration, source
integrity, and Fare-aware for customer “Clark Howard”
• Provide customer service to individuals and any customers who receives or uses the organizations services and
products that my work unit produces
• Possess a wide range of knowledge and knows about available products and services based on research and is
committed to providing quality products and services
• Works with clients and customers to assess their needs, provide information or assistance to resolve their problems
in order to satisfy their expectations
• Possess and demonstrate attention to detail in a thorough and conscientious manner when performing work using
Information Technology
• Establishes and maintain user e-mail accounts, provide e-mail training and software support, and troubleshoot e-
mail problems by reviewing log files, records, and network configurations.
• Build switches for card key systems, and support customers on such systems in order to provide solutions to
customer identified problems
• Plan, recommend, and assist in the design of Compaq Proliant server and telecommunications systems, research
and recommend type of equipment, coordinate the ordering, installation of the equipment.
• Worked inside Worldspan’s Data Center for three years supporting Middle-Tier servers (Microsoft-based), network
equipment (Foundry switches, Cisco routers, opening and closing ports on Checkpoint firewalls), and a host of
software applications for both internal, external and ecommerce customers.
• Responsible for monitoring and tracking controlled access programs to ensure implementation and viability of
appropriate system security policies as well as the acquisition of Information Technology tools
• Developed contingency and disaster recovery plans and procedures
5