Ram Prasad
Network Engineer/Administrator
Email ID: *******@*********.***
Professional Summary
Cisco Certified Network Professional with Over seven years of experience as a Network & Security Engineer (L2 & L3) / administrator implementing, designing and troubleshooting LAN, WAN, MPLS in Branch, Campus and Data Center environments.
Experience in designing, installing, configuring and maintenance of Enterprise Networks using Cisco routers, Catalyst Switches and Load Balancers, Cisco Firewalls.
Experience in Installing, Configuring of Cisco 6500, 4500, 2900, 3500, 3750 XL series switches, Cisco 1800, 2500, 2600, 2800, 3600, 3800, 7200 series Routers.
Hands on experience in configuring Cisco Catalyst 2960, 3750, 4500, 6500 series switches.
Expertise on JUNOS OS, J Series, M Series, MX Series & EX series.
Experience working with Nexus 7010, 5020, 2148, 2248 devices.
Strong experience in configuration and troubleshooting of routing protocols PPP, RIP, EIGRP, BGP, OSPF, HSRP, IPX, IP, IGMP, QoS, 802.1q and SNMP with excellent documentation skills.
Experience in implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, Ether channel, STP and RSTP, inter VLAN routing and ISL/802.1q.
Expertise in Designing, implementing and configuring virtual device contexts (vDCs), virtual port channels (vPCs), and virtual routing and forwarding instances (VRFs).
Experience in implementing site-to-site, remote access VPN, DMVPN Technologies using GRE, IPSEC & MPLS.
Experience with F5 (BIG IP) load balancers – APM, LTM, GTM series like 6400, 6800, 5000 and 2000 for the corporate applications and their availability.
Expertise in configuring Big-IP F5 LTMs, GTMs (virtual servers, iRules, pools, SNATs, health monitors) for managing the traffic and tuning the load on the network servers.
Worked extensively on Cisco Firewalls Cisco PIX (506E/515E/525) & ASA 5500(5510/5540) Series.
Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500 with ACL, NAT, Object Groups, Failover, Multi-Contexts.
Strong experience on Juniper SSG series Firewalls and Checkpoint R75, 76 Firewalls.
Experience in installing and configuring DNS, DHCP on Inflobox server.
Experience in maintenance of existing network for day to day activities like link utilization and traffic monitoring.
Experience in implementing and maintaining network monitoring tools like Cisco Works, HP Open view and network analyzers like Wire shark, Solar winds tool.
Extensively exposed to troubleshooting, maintaining devices and migration of technology.
Good Understanding of Python scripts for system automation, monitoring and security reporting. Maintain existing Perl scripts and migration existing Perl scripts to Python.
Efficient use of Microsoft VISIO/Office for technical documentation and presentation tools.
Experience in Wireless LAN (IEEE 802.11) and deployment of light weight access point.
Good knowledge and experience in Installation, Configuration and Administration of Windows 2000/2003, HTTP, FTP, DNS, NTP, DHCP servers under various LAN and WAN environments.
In-depth knowledge and hands-on experience in Tier II ISP Routing Policies, Network Architecture, IP Sub netting, VLSM, TCP/IP, NAT, DHCP, DNS, FT1 / T1 / FT3 / T3 Sonet POS OCX / GigE circuits, Firewalls.
Worked on Juniper Net Screen Firewalls like, NS50, SSG 550M, SSG520M, ISG 1000, and ISG 200.
Experience through Hand-on Experience with configuring T1.5, Gigabit Ethernet, Channelized T3 and full T3, OCX, ATM, Frame-Relay and VOIP (Voice-Over Internet Protocol).
Efficient use of Microsoft VISIO/Office for technical documentation and presentation tools.
Excellent analytical, organizational, problem solving & resolution skills.
Good Knowledge of Python scripting language.
Technical Skills:
Routers
Cisco 2600, 2900, 3600, 3800, 7200 and 7600
L2 & L3 Switches
Cisco 2900, 3560, 3750, 4500, 4900, 6500
LAN Technologies
Ethernet, Fast Ethernet, and Gigabit Ethernet, SMTP, VLAN, Inter-VLAN Routing, VTP, STP, RSTP, Light weight access point, WLC.
WAN Technologies
Frame Relay, PPP, HDLC, (E1/T1/E3T3), DS3, OC192.
Network Security
Cisco ASA, ACL, IPSEC.
OS products/Services
DNS, DHCP, Windows (2000/2003/2008, XP), UNIX, LINUX.
Routing Protocols
IP v1/v2, OSPF, EIGRP, BGP, PBR, MPLS, Route Filtering, Redistribution, Summarization, and Static Routing.
Gateway Load Balancing
HSRP, VRRP, GLBP
Various Features / Services
IOS and Features, IRDP, NAT, SNMP, SYSLOG, NTP, DHCP, CDP, TFTP and FTP.
Network Management Tools
Wireshark, Netflow Analyzer, Cisco Works, SNMP, HP open view, Infoblox.
Security Server Protocols
TACACS+, RADIUS
Facilities
DS0, DS1, DS3, OCX, T1/T3
Load Balancers
Cisco CSM, F5 Networks (Big-IP) LTM 8900, Cisco ACE 4710.
Operating Systems
Windows (98, ME, 2000, XP, Server 2003/2008, Vista, Windows 7/8/10), Linux, UNIX, WINTEL
Firewall & Security
Checkpoint, Cisco ASA, Palo Alto, SRX
Scripting Languages
Python.
Certifications:
CCNA - Cisco Certified Network Associate in Routing & Switching
CCNP - Cisco Certified Network Professional in Routing & Switching
Education:
Bachelor of Technology
Professional Experience:
International Monetary Fund, Washington, DC Jan 2015 to Present
Network Engineer (Firewall- VPN, F5 Engineer)
Responsibilities:
Configured Site to Site IPsec VPN tunnels to peer with different clients and each of client having different specifications of Phase 1 and Phase 2 policies using Cisco ASA 5500 series firewalls.
Configured Easy VPN server and SSL VPN to facilitate various employees’ access internal servers and resources with access restrictions
Configuring Big-IP F5 LTMs, GTMs (virtual servers, pools, SNATs, health monitors) for managing the traffic and tuning the load on the network servers.
Dealt with creating VIP (virtual servers), pools, nodes and applying iRules for the virtual servers like cookie persistency, redirection of the URL.
Worked with uploading SSL certificates on F5 load balancer.
Perform DNS, DHCP and IP address management using Infoblox tool.
Implementation of Site-to-Site VPNs over the internet using 3DES, AES/AES-256 with ASA Firewalls
Managing and troubleshooting of Juniper M320 routers including installation, upgrade, configuration and network management.
Configuration and troubleshooting of CSM, integration with ASA devices.
Experience in migration of VLANS & Configured VLANs with 802.1q tagging, Ether channels, and Spanning tree for creating Access/distribution and core layer switching.
Creation of firewall rules on Checkpoint Smart Dashboard and install policies.
Management of corporate Checkpoint Firewall implementing security protocols and alleviating network attacks.
Deployed Palo Alto Firewalls for web filtering and application control.
Configured EBGP load balancing and ensured stability of BGP peering interfaces.
Worked on Route-Reflectors to troubleshoot BGP issues related to customer route prefixes also route filtering using Route-maps.
Designed and implemented DMZ for Web servers, Mail servers & FTP Servers using Cisco ASA5500 Firewalls.
Worked extensively on Cisco ASA 5500(5510/5540) Series, experience with convert PIX rules over to the Cisco ASA solution.
Worked on migration of existing PIX firewall to ASA firewall, PIX OS upgrade from 6.3 to 7.0.
Design and Implement DMZ for FTP, Web and Mail Servers with CISCO PIX 506, PIX515.
Mapped, Network Diagrams and physical identification in MS Visio.
Worked with engineering team to resolve tickets and troubleshoot L3/L2 problems efficiently.
Configure various LAN switches such as CISCO CAT 2900, 3550, 4500, 6509 switches and Access layer switches such as Cisco 4510, 4948, 4507 switches for VLAN, Fast Ether Channel configuration.
Configuring Static, IGRP, EIGRP, and OSPF Routing Protocols on Cisco 1600, 2600, 2800, 3600, 7300 series Routers.
State Farm, Chicago, IL Aug 2013 – Dec 2014
Network Administrator
Responsibilities:
Network consists of heavy Cisco equipment such as: Cisco 356*-****-**** switches, Cisco 650*-****-**** series Layer 3 switches, Cisco 382*-****-**** series routers, Cisco ASA firewalls and Wireless Access points Cisco 1230.
Troubleshooting the TCP/IP networks for connectivity, outages and slow network issues and recommended appropriate and cost-effective solutions for the congestion.
Worked on F5 BIG-IP LTM 8900, configured profiles, provided and ensured high availability.
Worked on F5 and CSM load balancers deploying many load balancing techniques with multiple components for efficient performance.
Implementation and Configuration (Profiles, iRules) of F5 Big-IP LTM-6400 load balancers.
Worked with design and deployment of Client VPN technologies including Cisco’s IPSECVPN between the ASA Firewall and between Cisco Routers.
Configuring routing protocols OSPF, EIGRP, RIP, MPBGP, LDP and BGPV4.
Configuring HSRP between VLANs, Configuring Ether-Channels, Port Channel on 6500 catalyst
Experience working with design and deployment of MPLS Layer 3 VPN cloud, involving VRF, Route Distinguisher RD), Route Target(RT), Label Distribution Protocol (LDP) & MP-BGP.
Responsible for Cisco ASA firewall administration across our global networks.
Experience with migration of Checkpoint R54 to SPLAT.
Configured various BGP attributes such as Local Preference, MED, Extended Communities, Route-Reflector clusters, Route-maps and route policy implementation.
Actively participated in upgrading fast Ethernet, Layer 3 switched/routed LAN infrastructure from Cisco 3640 to Cisco 2811 ISR routers and switches at access level to 2950, 3550.
Working with Capacity management on network bandwidth utilization reporting of the sites WAN link and vendor co-ordination for new site turnovers / WAN links.
Troubleshooting issues related to Layer 1/2/3 skills like switching / routing, WAN /Hardware and critical network links by coordinating with the vendor.
Worked with Infoblox for secure DNS, DHCP and IPAM.
Configured Nexus 7010 including NX-OS Virtual Port Channels, Nexus port profiles, Nexus Version 4.2 and 5.0, Nexus VPC peer links.
Configured various Router interfaces like ATM interface, T3 & Channelized T1 interfaces.
Network monitoring and Packet analyzation using Solar winds.
Build Logical design and Implementation of Wireless Solution.
Pfizer, Chicago, IL Mar 2012 - July 2013
Network Engineer
Responsibilities:
Project to migrate/re-design 700+ customer connections (MPLS & Frame) out of retired Data center to new Juniper M120.
Manage and coordinate all infrastructure related moves, adds, and changes.
Implement, and maintain Local/Wide Area Network over 13 branches.
Configure RIP, OSPF and Static routing on Juniper M and MX series Routers.
Worked in Configuration and extension of VLAN from one network segment to other segment between different vendor’s switches (Cisco, Juniper)
Configured network using routing protocols such as ISIS, RIP, OSPF, BGP and troubleshooting L2/L3 issues.
Time to time upgrade network connectivity between branch office and regional office with multiple link paths and routers running HSRP, EIGRP in unequal cost load balancing to build resilient network.
Providing technical security proposals, detailed RFP responses, security presentation, installing and configuring ASA firewalls, VPN networks and redesigning customer security architectures.
Troubleshoot Hardware, Cisco IOS, install and configure Cisco routers and switches.
Configure switch VLANs and inter-switch communication. Build and setup network Laboratory.
Actively involved in troubleshooting on network problems with Wire shark, identifying and fixing problems
Maintain effective communications with vendors, peers and clients in resolution of trouble-tickets,
Equipment RMAs, and support requests.
Configuration of NAT.
Design and implement Catalyst/ASA Firewall Service Module for various LAN’s.
Key contributions include troubleshooting of complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF & BGP.
Configured Client VPN technologies including Cisco’s VPN client via IPSEC.
Configuring ACL to allow only authorized users to access the servers.
Participated in on call support in troubleshooting the configuration and installation issues.
Installation, Maintenance, Troubleshooting Local and Wide Areas Network by using ISDN, Frame relay, DDR, NAT, DHCP, TCP /IP.
Provided Technical support in terms of upgrading, improving and expanding the network. Implementing, configuring and supporting F5 BigIP and Viprion Load Balancers within the Nexus switching / vPC environment.
MBR Informatics, Hyderabad India Aug 2010 – Feb 2012
Network Engineer
Responsibilities:
Configured Cisco 2800, 3800 routers and 3750, 4500, 6500 switches as part of the implementation plan.
Performed switching technology administration including VLANs, inter-VLAN routing, Trunking, STP, RSTP, port aggregation & link negotiation.
Configured VTP domain, trunk links, ether channels and remote VLANs on Cisco and other vender’s switches.
Performed troubleshooting, while maintaining trouble ticket tracking, following internal/external escalation procedures and customer notifications.
Configured & Troubleshooting with BGP OSPF, EIGRP.
Configuration of EIGRP and OSPF as interior gateway protocol with route filtering and route redistribution, installed and maintained Cisco 3600, 2600 and 7200 backbone routes with HSRP.
Configured MPLS VPNS for Customers.
Providing daily network support for national wide area network consisting of MPLS, VPN and point-to point site.
Configuring and troubleshooting with Cisco ASA (5550/5520), Juniper SRX (3600/650)
Migrated Distribution switches from cisco 6509 to Nexus 7010
Used DHCP to automatically assign reusable IP addresses to DHCP clients.
Experienced with PPP and TCP/IP internals and debugging techniques
Troubleshooting the network for the connectivity issues and network performance issues.
Laying down the network design for the premises and recommending the required equipment’s.
Getting the issues solved in a timely manner and escalating the problems which require intervention from higher levels.
LAN / WAN installation, Configuration and support / IOS update (CISCO routers, Switches).
Implemented and administer Cisco LMS 4.0.
Administer & troubleshooting Manage engine firewall analyzer, MRTG Graph for bandwidth utilization.
Responsible for network documentation and daily, weekly and Monthly Reports.
Network connectivity troubleshooting, ping, tracert, telnet.
Responsible for service request tickets generated by the helpdesk in all phases such as troubleshooting, maintenance, upgrades, patches and fixes with all around technical support.
Investigating diagnosing and resolve Level 1 & 2 network problems.
Replaced Fast Ethernet switches with Gigabit Ethernet switches.
Producing reports network productivity, plans and issues for higher management.
Developed documentation, system standards and SOPs within the organization.
Assisted in troubleshooting LAN connectivity and hardware issues in the network.
Eclature Technologies, Hyderabad, India May 2008 – July 2010
LAN Administrator (Jr Network Engineer)
Responsibilities:
Connected switches using trunk links and Ether Channel.
Responsible for maintenance and utilization of VLANs, Spanning-tree, HSRP, VTP of the switched multi-layer backbone with catalyst switches.
Implemented redundant Load balancing technique with Internet applications for switches and routers.
Support Network Technicians as they require training & support for problem resolution including performing diagnostics, & configuring network devices
Used Network Monitoring tool to manage, monitor and troubleshoot the network.
Configured Cisco IOS Feature Set, NAT and Simple Network Management Protocol (SNMP) for Network Security implementation.
Configuration, Installation and maintain IP Phone.
Received inbound calls of technical nature, independently resolved customer complaints, concerns and inquiries regarding their Internet connection.
Troubleshoot a wide range of technical support issues and connectivity problems such as authentication, connection speed, e-mail configuration, and loss of synchronization.
Responsible for support of two computer labs, containing IBM client/server machines.
Heavy hardware troubleshooting for PCs: installed, repaired, and replaced CPUs, mother boards, memory, video cards, network cards, SCSI cards, printers, monitors, floppy, CD ROM and hard drives.
Daily duties include preventive maintenance, installation of various Software, assist students with applications on computer network, troubleshoot problems with installations, and network all machines throughout the campus Achievements
Reduced the cost of installing new equipment’s by identifying the effective solutions from right vendors by 10%.