Paul Godolphin
Mt. Pleasant, SC *9466
****.*********@*****.***
SUMMARY
Over 15 years of experience in enterprise IT environments in both Systems and Network roles.
NETWORKING SKILLS
Routing
• Inbound/outbound route management using route-maps (prefix-lists, ACLS)
• BGP – OSPF - EIGRP
• Route redistribution
• ASA 5505, 5520, 5585 firewalls
• Check Point firewalls
• DR design using multiple carriers, multiple sites
• Client IPsec tunnels requiring NAT/Double-NAT
Hardware
• Nexus 2K, 5K
• Cisco 6500, 4500, 3750X, 3500, etc. switches
• Cisco 1800, 2800, 2900, 3800, 7200 series routers
• Cisco ASA 5505, 5520, 5585 firewalls
• Cisco VPN 3000 concentrator
• Cisco Meraki APs, switches
Systems Administration
• Shell/PowerShell scripting – complex scripts automating a range of actions including new user Active Directory and Exchange account creation, automated application testing, PC imaging
• VERITAS NetBackup, Backup Exec – Active Directory, SQL, file backups – enterprise scale employing policy scheduling, multiple media servers, CASO server, SAN storage
• VMware – VMWare ESX infrastructure on IBM H-series BladeCenter chassis, multiple clusters, 100s of guest servers, boot from SAN
• MCSE, MCSA
• Management of 600-1000 seat dual-site call-center
EXPERIENCE
Senior Network Engineer 8/2012 – 10/2014
Pilot Flying J
5508 Lonas Drive
Knoxville, TN 37909
• Redesigned Pilot’s routing infrastructure developing a unique, fully redundant failover to DR via GRE over IPsec tunnels
• Management of Pilot enterprise MPLS WAN consisting of over 800 Travel Center networks with multiple ISPs, dual ingress/egress points
• Management of corporate backbone between HQ and multiple DR Datacenter networks. Over 4000 routes in BGP, multiple carriers – AT&T, Verizon, Sprint, VPN routes. Redistributed via EIGRP to campus and DR core aggregation routers
• DMVPN – point-to-multipoint VPN for C-store primary network connection over broadband, travel center backup connection. Tunneled BGP over IPSec. Increased redistribution metrics into EIGRP for sites using VPN as a backup route
• Use of route-maps (with ACLs and prefix lists) for route filtering, policy based routing
• Backup store access for Credit Card transactions using Cradlepoint cellular connections and DMVPN tunnels
• Management of ASA 5505, 5520 and 5585 (SSP10 and SSP20) firewalls
• Built Pilot’s enterprise ASA 5585 SSP20 Active/Active firewall infrastructure – wrote custom shell scripts converting thousands of objects and groups from Check Point to Cisco ASA IOS format and importing into new firewalls. Reevaluated and recreated hundreds of ACLs
• Linux Expect scripts
• WhatsUp/SolarWinds monitoring
• Build Pilot’s RADIUS server
• L2L VPN tunnels
• EIGRP, BGP, OSPF routing – redistribution
• Creation of fully representational and functional lab environment
• Creation of the company’s first comprehensive Visio diagrams
• Designed and implemented Pilot’s DR datacenter in Oklahoma City, OK
• Nexus 5000, 2000, 3000, 4000 (Blade Center switches) – Nexus 5K-VPCs to Nexus 2K fabric extenders. Complete build out of DR site with Nexus 5K-2K, built-out unused half of Pilot corporate data center with Nexus 5K-2K (planned to migrate to new Nexus side and upgrade existing Catalyst side)
• Cisco Catalyst 6509 cores switches, 6509 distribution switches
• Cisco Unified Fabric training
• Cisco Nexus 7K
• Cisco 4507, 3750X stacks
• Cisco 7204, 7206, 2811, 2911, 1841 routers
• OC3, DS3, T1, frame-relay, metro-e circuits
• Management of corporate campus consisting of 6 fully staffed buildings
Network Engineer 1/2010 – 8/2012
EdFinancial Services
298 N Seven Oaks Drive
Knoxville, TN 37922
• Brought company network to meet FIPS/NIST standards
• Replaced 75% of all Cisco gear as required to meet FIPS compliance.
• Introduced dynamic routing (OSPF) for Internet edge, corporate WAN
• Visio diagrams to fulfill auditor requirements
• Management of Cisco MDS 9000 series fiber switches
• Cisco ASA 5520 – Active/Standby, Active/Active – Management of EdFinancial’s multi-tiered ASA firewall infrastructure
• Cisco ASA 5505 – remote vendor access via IPSec VPN
• Cisco 6500, 4507, 3750X switches
• Introduced PEAP wireless infrastructure
• PowerShell scripting to assist Systems Engineering department
• Introduced Microsoft Direct Access VPN solution using IPv6
Network Engineer 11/2009 – 1/2010
Saratoga Technologies
1209 Euclid Ave
Knoxville, TN 37921
• Small to medium sized business consulting
• Firewall configurations
• Network design – installation
• Active directory scripts
• Active Directory domain upgrades
Network Engineer 9/2009 – 11/2009
IT Group
9040 Executive Park Drive, Suite 200
Knoxville, TN 37923
• Small to medium sized business consulting
• VPN small office solutions
• Microsoft Small Business Server
Senior Network Engineer 6/2006 – 9/2009
Clayton Homes
500 Clayton Road
Maryville, TN 37804
• Management of enterprise MPLS WAN network consisting of over 75 manufacturing plants and branch offices
• Introduced dynamic routing on the network edge
• Introduced trunking on the Alcatel LAN
• Worked to implement VMWare infrastructure on IBM H-series Blade Centers
• Check Point firewall training
• PowerShell scripting for new user account creation, Exchange 2007 management, discovery needs for Legal department
• Redesigned file server system security model – per server local/domain security groups
• Managed all backups using Backup Exec – CASO media server model based on backup policies
• VMware – assisted with the creation of and later managed VMware ESX infrastructure – IBM H-series BladeCenter chassis, boot from SAN, trunked connections carrying multiple VLANs
• Active Directory delegation of control – allow Site Support techs to unlock AD accounts, reset passwords, and disable accounts within specific OUs
Junior Network Engineer
3/2004-6/2006
ClientLogic/Sitel
3102 West End Avenue #900
Nashville, TN 37203
• Created new call center campaigns – router/switch configurations, route advertisements across Sitel/Clientlogic’s Enterprise WAN – EIGRP-OSPF
• Introduced client circuits and routing into ClientLogic MPLS WAN
• Introduced WhatsUp monitoring for all network equipment
• PIX, ASA firewalls
• Troubleshoot routing and application issues nationwide, Panama and Canada
Systems Administrator 8/1999-3/2004
ClientLogic/Sitel
3102 West End Avenue #900
Nashville, TN 37203
• Managed 600-1000 seat dual-site call-center in Oak Ridge Tennessee
• Shell scripting – automation of new user account creation, Ghosting of computers, application deployment
• AI packages for application deployment
• Active Directory IP Security Policies – Original idea pushing IP white lists via Group Policy to workstations increasing security – Used by Blizzard Entertainment campaign in Albuquerque, NM
• Achieved Microsoft MCSE
• Achieved Cisco CCNA
• Promoted to Corporate Network Team
EDUCATION
University of Tennessee 1998-2001
Knoxville, TN
• History/Literature
• Left after Junior year to pursue IT job out of state – GPA 3.93
IT Certifications
• Cisco CCNA (2003)
• Microsoft MCSE (2000)