Post Job Free
Sign in

Engineer Network

Location:
Hyderabad, Telangana, India
Posted:
July 12, 2016

Contact this candidate

Resume:

Ronald

732-***-****

****@*********.***

Professional Summary:

Certified Network Engineer with Over 8 years of experience in testing, troubleshooting, implementing, optimizing and maintaining enterprise data network and service provider systems.

Implementation, Configuration and Support of Checkpoint (NGX R65, R70 and R71), Juniper Firewalls (SRX5400, SRX5600, and SRX5800), Cisco Firewalls (ASA 5505, 5506-X, 5585), Palo Alto Networks Firewall models (PA-2k, PA-3k, and PA-5 k).

Proficient in Cisco IOS for configuration & troubleshooting of routing protocols: MP-BGP, OSPF, LDP, EIGRP, RIP, BGP v4, MPLS

Provide scalable, supportable military grade TCP/IP security solutions along with expert TCP/IP network designs that enable business functionality.

Experience in Network LAN/WAN deployment,Extensive knowledge of WAN technologies such as T1, T3, DS3, OCx, SDH, SONET, LTE, Fiber and Frame relay.

Experience with Bluecoat Proxy servers, LAN & WAN management.

Extensive understanding of networking concepts, (IE. Configuration of networks, router configuration and wireless security, TCP/IP, VPN, Content Filtering, VLANs, and routing in LAN/WAN, Ethernet Port, Patch Panel and wireless networks.)

Good knowledge of IPv4 and IPv6 Addressing, Fixed Length and Variable Length Subnet Masking (VLSM), OSI and TCP/IP models.

In depth understanding of IPV4 andimplementation of Subnetting.

Experienced in DNS, DHCP, SMTP, FTP, HTTPS and web security architecture.

Experience in testing Cisco routers and switches in laboratory scenarios and then deploy them on site for production.

Worked on Juniper Net Screen Firewalls like, NS50, SSG 550M, SSG520M, ISG 1000, ISG 200 and Cisco PIX 535, 520, 515, ASA -5500 and 5505.

Responsible for Checkpoint and Cisco firewall administration across global networks.

Experience with Firewall migrations from PIX firewall to Cisco ASA and Juniper SRX firewall appliances.

Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, ISL/ 802.1q, Ether channel, Port Security, STP, RSTP and MST.

Extensive experience in Layer 3 routing and Layer 2 switching. Experienced dealing with router configurations like 7200, 3800, & 2800 and switches 6500, 4500, 3750, 2900 and 3500XL series

Experience in working with Cisco Nexus Switches and Virtual Port Channel configuration.

Worked on Cisco Catalyst Switches 6500/4500/3500 series.

Policy development and planning / programming on IT Security, Network Support and Administration.

Configuration of Network and Security devices such as Cisco routers and switches (Cisco 7600/3500/Nexus 7K/5K), Firewall (Checkpoint R75/Gaia and Cisco FWSM), Load Balancers and DNS and IP Manager (Infoblox)

Experience with Checkpoint VSX, including virtual systems, routers and switches.

Black listing and White listing of web URL on Blue Coat Proxy Servers.

Administration of production Windows Servers infrastructure that includes Domain Controllers, IIS Web Servers, SharePoint, File and Print and FTP/SFTP servers.

Extensive experience in Windows 2008 R2/2008/2003 Wintel Servers at single or multi domain platforms.

Proficient in installing and configuring Windows Server 2003, 2008, 2012 and Windows XP, 7 & 8 Professional Client Operating Systems

IDS and IPS event management using CSM including signature updates for SSM Modules, IDSM.

Provides management level reporting of firewall and Intrusion Protection System (IPS) activity on a periodic basis.

24 x 7 on call support.

Technical Skills:

Cisco routers : 2500, 2600, 2800, 3600, 3700, 3800, 7200, 7609.

Cisco Catalyst Switch : 2900XL, 2950, 2960, 3560, 3750, and 4500.

Firewalls : Cisco ASA 5500, Cisco PIX 500, checkpoint r60, checkpoint r65

Load Balancing : Cisco ACE 4700 series, F5 LTM

Routers : Cisco routers (1900, 2600, 2800, 2900, 3600, 3800, 3900, 7200,

7600), Cisco L2 & L3, Juniper routers (M7i, M10i, M320)

Switches : Cisco switches (3560, 3750, 4500, 4900 & 6500), Nexus (2248,

5548 &7010)

Routing : RIP, EIGRP, OSPF & BGP, Route Filtering, Redistribution,

Summarization, Static routing

WAN Technologies : FRAME RELAY, ISDN T1/E1, PPP, ATM, MPLS, leased lines,

DSL modems.

LAN Technologies : Ethernet, Fast Ethernet, Gigabit Ethernet, NAT/PAT, FDDI.

Cisco

Secure Access Control Server (ACS) for TACACS+/Radius.

VOIP Devices : Cisco IP phones, Cisco 5500, 6500 series controller, Avaya

3000, 6000, 7200 series Controllers.

IPSEC/VPN Configuration: PIX to Router, Router to Router, PIX to VPN wildcard client,

Router to VPN wildcard client, PIX to PIX, fully meshed configurations.

Ticketing software : Connect Wise, Remedy system

Routing Protocols : RIP, OSPF, EIGRP, and BGP.

Switching Protocols : VTP, STP, RSTP, MSTP, VLANs, PAgP, and LACP.

Network management : SNMP,Cisco Works LMS, HP Openview, Solar winds,

Ethereal.

Layer 3 Switching : CEF, Multi-Layer Switching, Ether Channel.

Cabling : CAT 5, CAT 5e, CAT 6, CAT 6a

Redundancy protocols : HSRP, VRRP, GLBP.

Security Protocols : IKE, IPsec, SSL, AAA, Access-lists, prefix-lists.

Operating Systems : Windows Server/8/7/Vista/XP, Nexus OS, Cisco IOS-XR.

Microsoft Office : Visio, Excel, PowerPoint, Word

Certifications:

Cisco Certified Network Associate (CCNA) Certified.

Check Point Certified Security Associate (CCSA) Certified.

Cisco Certified Network Professional (CCNP)

PROFESSIONAL EXPERIENCE:

Capital One, Mclean, VA June 2015 – Till date

Network Engineer

Responsibilities:

Day-to-day work involves scheduling firewall policy provisioning and working with users to identify connectivity related issues and troubleshoot using both Smart Utilities and CLI.

Managing and administering Juniper SRX and Checkpoint Firewalls at various zones including DMZ, Extranet (Various Business Partners) and ASZ and internal.

Juniper Firewall Policy management using NSM and Screen OS CLI.

Troubleshooting Firewall Connectivity related issues using Smart view tracker on Checkpoint, NSM Log viewer for Juniper Firewalls.

Configure and administer Cisco ASA Firewalls (5585, 5550, and 5540) and use command line CLI, Cisco CSM, ASDM for day-to-day administration.

Active/Standby and Active/Active HA configuration on Cisco ASA Firewalls.

Configuring High Availability using Cluster XL on Checkpoint as well as VRRP and monitor the Sync status for stateful replication of traffic between active and standby member.

Configuring rules and maintaining Palo Alto firewalls and analysis of firewall logs using various tools.

Experience on ASA firewall upgrades to 9.x.

Configured Panorama web-based management for multiple firewalls.

Configuring rules and Maintaining Palo Alto Firewalls& Analysis of firewall logs using various tools.

Understand the flow of traffic through the Check Point Security gateway cluster and troubleshoot connectivity issues using advanced troubleshooting from Command Line Utilities.

Use Tools such as SKYBOX for Firewall Policy optimization and rule base Clean up.

Build and configure Active/Standby Failover on Cisco ASA with stateful replication.

Configure and tweak the inspection policies on Firewall to allow legacy application traffic.

Understand different types of NAT on Cisco ASA firewalls and apply them.

Firewall policy provisioning on Fortinet FortiGate appliances using FortiManager.

Support Blue Coat Proxy in explicit mode for users trying to access Internet from Corp Network.

Troubleshooting connectivity issues through Blue coat as well writing and editing web policies.

Administration Big IP F5 LTM for all Local Load balancing and use GTM for load balancing across Data Centers.

FWSM configurations in single/multiple context with routed and transparent modes.

Support Data Center Migration Project involving physical re-locations.

24 x7 on call support.

Environment: STP, RSTP, Cisco IOS-XR, ASA, VTP, VOIP, DMZ, HSRP, Palo Alto, Port-Channel, BGP, OSPF, EIGRP, PPP, HDLC, SNMP, DNS, DHCP.

Western Union, Washington, DC July 2014 - May 2015

Network Engineer

Responsibilities:

Performed network implementation that includes configuration of routing protocols, leased lines, ISDN lines, VLANs and IOS installations.

Troubleshot the network issues onsite and remotely, depending on the severity of the issues.

Deployed and decommissioned the VLANs on core ASR 9K, Nexus 7K, 5K and its downstream devices.

Had hands-on experience with WAN (ATM/Frame Relay), Routers, Switches and IP addressing.

Configured and deployed VPC, OTV, FABRIC PATH between Nexus 7010 and Nexus5596,5548 switches along with FEX2248

Worked with layer 2 switching technology architecture. Implemented L2 and L3 switching functionality, which includes the use of VLANS, STP, VTP and their functions as they relate to networking infrastructure requirements including internal and external treatment, configuration and security.

Supported core network consisting of Cisco 7200 series routers running multi area OSPF.

Configured EIGRP and OSPF as interior gateway protocols with route filtering and route redistribution. Troubleshot complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF and BGP.

Responsible for all aspects of TCP/IP functionality across multiple enterprise environments.

Performed OSPF, BGP, DHCP Profile, HSRP, IPV6, Bundle Ethernet implementation on ASR 9K redundant pair.

Involved in Implementation and Configuration ( Profiles, I Rules) of F5 Big-IP C-4400 load balancers

Configured ASA 5500-X Series firewalls to provide highly secure and high performance connectivity between the site locations.

Configuring Big-IP F5 LTMs (virtual servers, pools, SNATs, health monitors, irules) for managing the traffic and tuning the load on the network servers.

Worked on Juniper SRX 5800 firewalls to create policies using J-Web User Interface.

Performed Network Address Translation on Cisco ASA 8.2 and 8.3

Used DHCP to automatically assign reusable IP addresses to DHCP clients.

Performed the ACL request changes for various clients by collecting source and destination information from them.

Troubleshoot the BIG-F5 1600 LTM through constant contact with the vendor.

Created MOPS (Method of procedures) and sought the approval of peers to perform configuration changes.

Environment: Cisco Routers, Cisco Switches, Nexus 7k/5k/2k Routing protocols,F5, Load Balancer HSRP, VRRP, IPSEC VPN, VPN, QOS, ASA firewall, Load balancer, MPLS, VLANS, VTP, RSTP, ACL, NAT, IDS/IPS, Monitoring tools(PRTG, HP Openview), SIP, RTP, RADIUS, TACACS+, Cisco Wi-Fi technologies, Juniper SRX, ASR 9000, Catalyst 6500, CRS, Cisco ASR Firewall, IPV6, Cisco IP phones

Nationwide Insurance, Columbus, OH Apr 2013 – June 2014

Network Engineer

Responsibilities:

Responsible for PIX 7.x/8.x & ASA 8.x Firewall migration and in place hardware upgrades and Troubleshooting, IOS Security Configurations, IPSec VPN Implementation and Troubleshooting, DMZ Implementation and Troubleshooting.

Configuring static NAT, dynamic NAT, inside Global Address Overloading, TCP overload distribution, Overlapping Address Translation.

As part of Security and network operations team I was actively involved in the LAN/WAN level 3 support (diagnose and troubleshoot layer 1, 2, 3 problems)

VLAN implementation, Spanning Tree Implementation and support using PVST, R-PVST and MSTP to avoid loops in the network. Trunking and port channels creation.

Responsible for Firewall upgrades as well as Troubleshooting, Security Configurations, IPSec VPN Implementation and Troubleshooting, DMZ Implementation and Troubleshooting.

IOS Upgrades from 7.x to 8.x as well as backup and recovery of configurations.

Work in an enterprise network environment with dynamic routing using OSPF and BGP for external connectivity.

Configured Switches with proper spanning tree controls and BGP routing using community and as path prepending attributes.

Install Windows Server 2003, configure IP addresses, network printers and configure Client Access for PCs.

Work with BGP routing protocol for communication with business partners and influence routing decision based on AS Path Prepend and other attributes.

Administer and support Cisco based Routing and switching environment.

Physical cabling, IP addressing, Wide Area Network configurations (Frame-relay).

Deployed a Syslog server to allow proactive network monitoring.

Implemented VLANS between different departments and connected them using trunk by keeping one Vlan under server mode and rest falling under client modes.

Configured Client VPN technologies including Cisco’s VPN client via IPSEC.

Con figured Firewall logging, DMZs and related security policies and monitoring.

Switching related tasks included implementing VLANS and configuring ISL trunk on Fast-Ethernet channel between switches.

Environment: PIX, CISCO routers and switches, Access Control Server, VLAN, Trunk Protocols, CISCO ASA, DHCP, DNS, SAN, Spanning tree, Nimsoft, Windows Server, Windows NT.

Grameenphone, Bangladesh Apr 2010 - Mar 2013

Network Engineer

Responsibilities:

Configuring Static, IGRP, EIGRP, and OSPF Routing Protocols on Cisco 1600, 2600, 2800, 3600, 7300 series Routers.

Configured, installed software applications, anti-viruses, drivers and security software on user devices, maintained and troubleshoot desktop, laptop and peripheral equipment.

Perform hardware and software diagnostics, fault isolation and coordinate repairs and/or replacement of faulty equipment.

Maintain logs of network and bandwidth utilization of servers and network devices and create utilization report based on the logs

Design network and create physical and logical network layout diagrams

Write and maintain technical documents describing implemented technologies and architecture

Provided consultation services to clients for installing and configuring Cisco routers and switches

Configured Site-to-Site IPsec VPN tunnels to peer with different clients and each of client having different specifications of Phase 1 and Phase 2 policies using Cisco ASA 5500 series firewalls.

Configured VLAN’s, Private VLAN’s.

Configure various LAN switches such as CISCOCAT2900, 3550, 4500, 6509 switches.

Configuring access layer switches such as Cisco 4510, 4948, 4507 switches for VLAN, Fast Ether Channel configuration.

Configured inside ACL and interfaces, outside ACL and interfaces.

Configured NAT and PAT policies.

Configuration and troubleshooting of EIGRP, OSPF, BGP.

Design OSPF areas for reliable Access Distribution and for Core IP Routing.

Extensively used TCP/IP tool like TELNET for remote login to the routers and SSH for secure login.

Has expertise in LAN/WAN technologies (fast Ethernet, Layer2 & 3 switched/routed LAN, and Frame Relay).

Environment: Cisco Routers ASR1002X/3945/3845/2800/3600, Load Balancer (BIG-IP), Cisco ASA Firewalls, STP, VLAN, VTP, VPN, NAT, OSPF, BGP, EIGRP

Square Pharmaceuticals, Bangladesh Feb 2008 - Mar 2010

Network Engineer

Responsibilities:

Provide high level technical support, including identifying and resolving problems on Cisco supported products for e-Commerce infrastructure. This included external routing and internal/intranet routing for DMZ servers.

Implemented cable multi-service operator (MSO) to capture traditional Telco subscribers with IP telephony and provide relevant QOS.

Configured EIGRP, BGP, and MPLS.

Configure Firewall, QOS by SDM and provide security by Prefix list, Access- List and By Distribution List.

Moved Core switches and several non-Cisco devices under strict deadlines to maintain network functionality

Implemented new ultra-secure networks in multiple data centers that included Cisco, Juniper security devices.

Designed VLAN’s and set up both L2 and L3 logical to have it communicate to the Enterprise network.

Scheduled preventive maintenance for fire-protection systems, including new protocols. Utilize MS Windows, Word, and Excel for reporting/documenting process.

Satisfactorily Resolved Problems in timely manner with focus on providing a high level of support for all customers.

Environment: Cisco 2950 switches and Cisco 3825 Routers, EIGRP, BGP, MPLS, VLAN, QOS



Contact this candidate