Naveen A
***********@*****.***
Professional Summary:
7+ years of Professional experience in Network and Security, including hands-on experience in providing network support, installation and analysis for a broad range of LAN / WAN communication systems.
Experience with designing, deploying and troubleshooting LAN, WAN, Frame-Relay, and Ether-channel.
Experience in Configuring & implementing VLAN, VTP, LAN switching, STP and 802.x authentication in access layer switches.
Switching tasks include VTP, ISL/802.1q, IPsec and GRE Tunneling, VLANs, Ether Channel, Trunking, Port Security, STP and RSTP.
Experience securing and managing remote access using various VPN technologies like IPsec, SSL, and GRE.
Perform 802.11 a/b/g/n WLAN indoor site surveys. Onsite installation and programming Cisco wireless access points. Knowledge on Installing; setup Aruba wireless networks
Utilizing management tools cisco works, solar winds, HP, IMC, Riverbed/mazu, Visio, Sniffer and Network Analyzer.
Implementation, Configuration and Support of Checkpoint NGX R65, R70 and R71, Cisco Firewalls ASA 5505, 5506-X, 5585, Palo Alto Networks Firewall models PA-2k, PA-3k, and PA-5k and Juniper SRX100,110 and Juniper ISG1000, ISG2000 Series Firewall.
Configuration and troubleshooting L3 switches with VLAN, STP, SPAN, ETHERCHANNEL, HSRP, VRRP and GLBP.
Experience with convert Checkpoint VPN rules over to the Cisco ASA solution. Migration with both Checkpoint and Cisco ASA, VPN experience.
Practical experience in Active directory, OU, DNS, DHCP, Group policy, Replication, Active directory domain trust relationship.
Expertise in IP Subnetting and worked on various designing and allocating various classes of IP address to the domain.
Knowledge on security attacks like DoS, DDoS, Spoofing, Nessus & Cisco IOS, Cisco Works.
Having knowledge and hands-on experience on IP Addressing, Sub netting, VLSM and ARP, reverse & proxy ARP, Ping Concepts.
Hands on experience with Cisco, Brocade, Bluecoat, Juniper, Checkpoint and Palo Alto devices
Understanding the JUNOS platform and worked with IOS upgrade of Juniper devices
Installing and configuring F5 Load balancers and firewalls with LAN/WAN configuration.
In-depth understanding of IPV4, IP Sub netting, VLSM and ARP, Ping Concepts.
Have Extensive knowledge of OSI and various network protocols (DNS, DHCP, TCP/IP, FTP, TFTP, UDP, ICMP, IPv4/IPv6, NFS, HTTP, SMTP etc.).
Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NAT with the firewalls as per the design.
Configuring Checkpoint Firewall in IPSO, Secure Platform and GAIA platforms.
Expertise in maintenance of layer2 switching tasks which advocate VLAN, VTP, STP, RSTP, PVST, RPVST, configuring of ether channel with LACP and PAGP along with troubleshooting of inter-VLAN routing.
Hands-on configuration and experience in setting up Cisco routers to perform functions at the Access, Distribution, and Core layers.
Experienced on different network monitoring and administrative tools like HP node manager, Cacti, Net flow, Netscout, splunk and wireshark.
Troubleshoot network and application performance with tcpdump, Wireshark, Gigamon and netflow.
Expert level hands on experience in configuration & troubleshooting of routing protocols and deployment of OSPF, EIGRP, BGP, HSRP and Pbr, Pfr on Cisco Routers.
Using Smart Update, User Management and Authentication in Checkpoint Firewall.
Experience deploying BIG-IP F5LTM Load Balancers for load balancing and traffic management of business application.
Worked on F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
TECHNICAL SKILLS:
Routers
:
Cisco 7609, 2600, 2800, 3800, 3640, Cisco 3745, 7200 Series.
Switches
:
Cisco 3500, 5000, 6500 Catalyst Series Cisco 7000, 2000 Nexus Series
Firewalls
:
Palo Alto PA-500, PA-2k, PA-3k, PA-5k & PA-7050, Checkpoint R65/R70/R75/R76/R77, Cisco ASA.
Load Balancer
:
F5-Big-Ip, LTM, Ax10, HSRP, VRRP, GLBP
Routing Protocols
:
BGP, OSPF, EIGRP, VRRP, HSRP, GLBP, and RIP.
Switching Protocols
:
STP, RSTP, PVSTP, VTP, ARP, and VLAN.
IP Services
:
DHCP, NAT, VLAN, DNS, FTP, TFTP, LAN/WAN.
WAN Technologies
:
ATM, ISDN, PPP, MPLS, ATT, 802.11, 802.11a, 802.11b, APLUS.
Network Technologies
:
IPsec, GRE, NAT/PAT, ACL, IPv4, IPv6.
Operating System
:
Windows XP, Vista, Windows 7, UNIX, SPLAT (Secure Platform), Linux
Network management tools: solar winds, HP, IMC, Riverbed/mazu, Wireless,Visio, Sniffer and Network Analyzer.
CERTIFICATIONS:
Cisco Certified Network Associate (CCNA)
Cisco Certified Network Professional (CCNP)
EDUCATION:
Bachelor’s in Electronics and Communications Engineering
PROFESSIONAL EXPERIENCE:
Barclays, Wilmington, DE June 2015 – Till Date
Role: Network Engineer
Responsibilities:
Responsible for designing, implementing and monitoring of LAN WLAN and Wireless Infrastructure for the entire organization
Worked on Cisco Layer 2 switches (spanning tree, VLAN).
Configured HSRP and VLAN trucking 802.1Q, VLAN Routing on Catalyst 6500 switches.
In depth knowledge on AAA protocol.
Develop, refine, and document NOC/SOC policies, processes, procedures, and associated systems requirements and drive their implementation and use
WAN Infrastructure running OSPF & BGP as core routing protocol.
Configuration and troubleshooting of Cisco 2500, 2600, 3000, 6500, 7500, 7200 Series routers.
Optimized performance of the WAN network consisting of Cisco 3550/4500/6500 switches by configuring VLANs.
Design and configuring of OSPF, BGP on Cisco Routers and SRX Firewalls.
Configuration 7609, 7606 with OSPF and catalyst 6505, 4500, 3550 switches with various VLAN.
Troubleshooting IOS related bugs based on past history and appropriate release notes.
Worked on different connection medium like Fiber and Copper Connectivity.
In-depth expertise in the implementation of analysis, optimization, troubleshooting and documentation of LAN/WAN networking systems.
Planning and configuring the routing protocols such as OSPF, EIGRP, RIP, and Static Routing on the routers.
Implemented wireless networks for multistory buildings, including installing, configuring, and securing access points, antennas, bridges, routers, switches
Modified internal infrastructure by adding switches to support server farms and added servers to existing DMZ environments to support new and existing application platforms.
Configuring various advanced features (Profiles, monitors, iRules, Redundancy, SSL Termination, persistence, SNATs, HA on F5 BIGIP appliances SSL termination and initiation, Digital Certificates), Cisco GSR 12416, 21418 (with PRP and RPR processors).
Executed various migration/upgrade projects across F5 and hands on with F5 BIGIP LTMs.
Create and maintain detailed documentation for all expected NOC/SOC functions
Performed and technically documented various test results on the lab tests conducted.
Planning and configuring the entire IP addressing plan for the clients' network.
Assist the certification team and perform configuration of LAN\WAN technologies such as Ethernet, Fast Ethernet, and Gigabit Ethernet.
Determine IP address port assignments for WLAN/LAN devices Supported networks, which are comprised of 2000+ Cisco devices.
Supported nationwide LAN infrastructure consisting of Cisco 4510 and catalyst 6513.
Deployed the switches in high availability configuration with HSRP.
Design, implementation and operational support of routing/switching protocols in complex environments including BGP, OSPF, EIGRP, Spanning Tree, 802.1q, etc. Support various Series of Cisco Routers like 7200/7600 series.
Support Complex 6500 /5500 Series Switches.
Network Monitoring using tools like Cisco Works 2000 and Net Flow Analyzer.
Worked on presale network environment.
Troubleshoot network problems using Packet Analysis tools like Ethereal.
Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500.
Worked on ASA (5540/5550) Firewalls and Implemented Security Policies using ACL, Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA (TACACS+ & RADIUS).
Efficient at use of Microsoft VISIO/Office as technical documentation and presentation tools.
Create and test Cisco router and switching operations using OSPF routing protocol, ASA Firewalls, and MPLS switching for stable VPNs.
Experience working with Nexus 7010, 7018, 5020, 2148, 2248 devices.
Experience working with High performance data center switch like nexus 7000 series.
Performed load balancing and application level redundancy by deploying F5 BIG-IP LTM 3900.
Environment: Cisco 6506/4948/4510 switches, Aruba,Cisco 3660/3845/7609 Routers, VLAN, Checkpoint, F5 Load Balancers, OSPF, RIP, RIRP, BGP, MPLS, HSRP, VRRP, GLBP, ASA 5500, Nexus 2K,5K,7K.
Vista Print, Waltham, MA Nov 2014 – May 2015
Network Security Administrator
Responsibilities:
Travel to Postal facilities, assess medium to large scale mail processing and operation local network/802.11 infrastructures, and perform LAN/WLAN installations based on site survey results
Working on the project of F5 LTM and GTM code upgrade project, doing couple of them every week.
Successfully installed Palo Alto PA-3060 firewalls to protect Data Center and provided L3 support for routers/switches/firewalls.
Design and deployment of WLAN using Cisco 5508 and 3700 Access Points
Implemented Positive Enforcement Model with the help of Palo Alto Networks.
Responsible for setting up the infrastructure environment with majority of Cisco & Palo Alto appliances apart from various other equipment.
Configuring rules and Maintaining Palo Alto Firewalls & Analysis of firewall logs using various tools.
Work on Checkpoint Platform including Provider Smart Domain Manager. Worked on configuring, managing and supporting Checkpoint Gateways.
Researched, designed, and replaced aging Checkpoint firewall architecture with new next generation Palo Alto appliances serving as firewalls and URL and application inspection.
Palo Alto design and installation (Application and URL filtering, Threat Prevention, Data Filtering).
Configured and maintained IPSEC and SSL VPN's on Palo Alto Firewalls.
Support customer in large scale NOC environment, as well as small remote sites, and teleworking users
Implementing and configuring F5 LTM's for VIP's and Virtual servers as per application and business requirements.
Implemented Zone Based Firewalling and Security Rules on the Palo Alto Firewall.
Exposure to wild fire feature of Palo Alto.
Resolved network connectivity issues within the corporate Data Center in Cisco Nexus 7k, Nexus 5k, and Cisco FEX 2248.
Building up the infrastructure in new data center such as F5, Juniper SRX and Cisco Switches.
Setting up IPsec VPN from the new Data centers to external vendors.
Racking, installation and configuration of datacenter switches - Nexus 9508 and 9332.
Designed and implemented IT security policies and networked backup systems.
Configured route redistribution between OSPF and EIGRP in a multi-area OSPF network.
Implemented Hot Standby Router Protocol (HSRP) by tuning parameters like preemption.
Daily responsibilities included design, implementation, support and administration of multiple security products running Checkpoint Provider-1 and VSX, Sourcefire, and ISS Real secure.
Regularly performed firewall audits around Checkpoint Firewall-1 solutions for customers.
Provided tier 3 support for Checkpoint Firewall-1 software to support customers.
Work on Checkpoint Platform including Provider Smart Domain Manager. Worked on configuring, managing and supporting Checkpoint Gateways.
Troubleshoot and configure Palo Alto Networks central management system.
Palo Alto ticketing system that allows you to escalate issues & you can also use this tool as a Knowledge base for troubleshooting issues.
Handling new application load balancing requirements through F5 devices.
Performing network monitoring, providing analysis using various tools like Wireshark, Solar winds, riverbed etc.
Log all NOC/SOC incidents in our internal ticketing system
Integrating new locations with existing MPLS Network and enabling standard corporate application access.
Working on the project of F5 LTM and GTM code upgrade.
Tuned BGP internal and external peers with manipulation of attributes such as weight, local preference.
Daily monitoring of network traffic using sniffers (Wireshark) and access logs to troubleshoot and identify network issues.
Worked with vendors and Engineering team to test new hardware and procedures.
Consulted with engineering team to resolve tickets and troubleshoot L3/L2 problems.
Monitored LAN/WAN network activity utilizing CA/Spectrum monitoring tools.
Environment: Cisco 6509/ 3750/3550/3500/2950 switches, Cisco 7200/3845/3600/2800, F5 LTM & GTM, Wireshark, Net Flow, TACACS, EIGRP, RIP, OSPF, BGP, VPN, MPLS, CSM, SUP720, Ether Channels, Fluke and Sniffer.
Verizon, Wallingford, CT Feb 2013 - Oct 2014
Sr. Network Engineer
Key Responsibilities:
Configuring Static, IGRP, EIGRP, and OSPF Routing Protocols on Cisco 1600, 2600, 2800, 3600, 7300 series Routers.
Thorough understanding of VPN technologies like IPsec, GRE tunneling, MPLS for remote access security.
Execute WLAN/LAN device configurations remotely and onsite
Configured Site to Site IPsec VPN tunnels to peer with different clients and each of client having different specifications of Phase 1 and Phase 2 policies using Cisco ASA 5500 series firewalls.
Identify and escalate situations requiring urgent attention, and escalate to the SOC
update internal documentation on best NOC practices
Worked extensively with Nexus 7000, 5000, 2000, Cisco 6500 series multilayer switches, Cisco 2960s series switches and Cisco 3560/3750s switches
Set up VSS cluster, ether channel, VLAN Trunking, VTP and inter-VLAN routing on 6506.
Configure VDC, OTV and VPC on Nexus 7000 and Nexus 5000.
Configure various LAN switches such as CISCO CAT 2900, 3550, 4500, 6509 switches and Access layer switches such as Cisco 4510, 4948, 4507 switches for VLAN, Fast Ether Channel configuration
Responsible for creating, modifying, removing VLAN Private VLAN’s configurations as per the need
Engaged in Network Cutover for multiple sites
Upgrade Cisco 6500, 3750, 2960s, Nexus 5000, Nexus 2000, Nexus 7000 switch IOS software.
Support after hours cut-over issues, opening trouble tickets with NOC for special support Responsible for entire company network infrastructure that includes Cisco Switches, Routers, Firewalls, Access Points, Servers and PBX.
Migrated Servers from 6500 Platform to Nexus without any application outage
Configured inside ACL, outside ACL, inside, outside interfaces.
Configured NAT and PAT policies.
Configuration and troubleshooting of EIGRP, OSPF, BGP.
Configuration and troubleshooting of CSM, integration with ASA devices.
Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500.
Experience in migration of VLANS.
Implementation of Access Lists for allowing/blocking desired traffic.
Configuring VLANs/routing/NAT with the firewalls as per the network design.
Configured EBGP load balancing and Ensured stability of BGP peering interfaces
Worked on Route-Reflectors to troubleshoot BGP issues related to customer route prefixes also route filtering using Route-maps.
Provided proactive threat defense with ASA that stops attacks before they spread through the network.
Designed and implemented DMZ for Web servers, Mail servers & FTP Servers using Cisco ASA5500 Firewalls.
Worked extensively on Cisco ASA 5500(5510/5540) Series, experience with convert PIX rules over to the Cisco ASA solution.
Worked on migration of existing PIX firewall to ASA firewall, PIX OS upgrade from 6.3 to 7.0.
Design and Implement DMZ for FTP, Web and Mail Servers with CISCO PIX 506, PIX515
Worked extensively on Cisco ASA 5500(5510/5540) Series, experience with convert PIX rules over to the Cisco ASA solution.
Building the VPN tunnel and VPN encryption.
Mapped, Network Diagrams and physical identification in MS Visio.
Updated documentation as necessary.
Preformed IOS upgrades on cisco routers and switches
Provided technical assistance for LAN/WAN management & troubleshooting and complex customer issues using Network monitoring tools such as Solar winds.
Worked with engineering team to resolve tickets and troubleshoot L3/L2 problems efficiently.
Configured Cisco 2800, 3800 routers and 3750, 4500, 6500 switches as part of the implementation plan.
Propose network redesign based on client hardware guidelines, network policies and individual site’s unique characteristics.
Preformed installation, cabling and cable testing.
Environment: Cisco2948/3560/4500/3560/3750/3550/3500/2960 6500 switches and Cisco 3640/1200/7200/3845/3600/2800 routers, Cisco Nexus 7K/5K/2K, Cisco ASA 500, Checkpoint, windows server 2003/2008: RIP, OSPF, BGP, EIGRP, LAN, WAN, VPN, HSRP
Tribro Softech Pvt. Ltd, Hyderabad, India May 2011 – Jan 2013
Role: System/Network Administrator
Responsibilities:
Enhanced abilities to install and maintain Microsoft Exchange and worked extensively on different applications.
Created network diagram under senior Network Engineers using the Microsoft Visio.
Preparing Client Machines for users with Operating Systems, Software, antivirus and required utilities and mailing clients etc.
Manage WLAN and/or LAN tasks assigned by Postal management via internal request systems
Perform daily maintenance, troubleshooting TCP/IP problems, configuration, and installation of all network components and connectivity Issues.
Configuration of CISCO Routers (3600, 4000, 7200, 7600 Series) and 3550, 4500, 2800 3700 series switches.
Physical cabling, IP addressing, Wide Area Network configurations (Frame-relay and ATM).
TCP/IP network planning, Implementation and Management with subnets.
Enabled SNMP traps for our Cacti Monitoring tool to monitor traffic and check the regular health of Servers and Network Devices
Switching (Ethernet) related tasks included implementing VLANS and configuring ISL trunk on Fast-Ethernet channel between switches.
Providing support for advanced level and on-call support for large variety of networks, systems, and infrastructures.
Configured Site-to-Site IPsec VPN tunnels to peer with different clients and each of client having different specifications of Phase 1 and Phase 2 policies using Cisco ASA 5500 series firewalls.
Worked on Route-Reflectors to troubleshoot BGP issues related to customer route prefixes also route filtering using Route-maps.
Troubleshooting network systems and performance, and remediating issues professionally and concisely.
Implemented and Configured IP Routing Protocols such as RIP, EIGRP.
Implemented and configured LAN Protocols: Ethernet, VLANs, VTP and STP.
Worked with Remedy Ticketing tool in maintaining and keep a track of logs/monitor.
Designed and implemented IP Addressing, Sub netting, Route Summarization and Route Distributions.
Monitoring the Servers and Networks.
Environment: LAN, WAN, Sub netting, VLAN, VTP, VPN, NAT, OSPF, BGP, EIGRP, Cisco 3600,
4500.
McKEN Software Solutions, Hyderabad, India July 2009 – Apr 2011
Jr. Network Engineer
Responsibilities:
Configuring and troubleshooting multi-customer ISP network environment.
Involved in network monitoring, alarm notification and acknowledgement.
Implementing new/changing existing data networks for various projects as per the requirement.
Troubleshooting complex networks layer 1, 2(frame relay, ATM, Point to Point, ISDN) to layer 3 (routing with BGP, EIGRP, OSPF and RIP protocols) technical issues.
Perform final review of vendor's wiring and cabling installation prior to WLAN/LAN deployments
Working on creating new load balancing policies by employing BGP attributes including Local Preference, AS-Path, and Community, MED.
Implemented VTP and Trunking protocols (802.1q and ISL) on 3560, 3750 and 4500 series Cisco Catalyst switches.
Performed IOS upgrades on 2900, 3500 series Cisco Catalyst switches and 1800, 2600, 3600 series Cisco routers using TFTP.
Worked on installation, maintenance, and troubleshooting of LAN/WAN (ISDN, Frame relay, NAT, DHCP, TCP/IP).
Installing and maintaining Windows NT Workstations and Windows NT Server.
Providing technical support to LAN & WAN systems.
Monitoring performance of network and servers to identify potential problems.
Performing RIP, OSPF, BGP, EIGRP routing protocol administration.
Preparing feasibility report for various upgrades and installations.
Other responsibilities included documentation and support other teams.
ENVIRONMENT: Windows NT Workstations, NT servers, RIP, OSPF, BGP, and EIGRP.