Prasad
Sr. Network Engineer
Ph No: 908-***-****
Email id: ********.*******@*****.***
Professional Summary:
8+ years of IT experience in design, development, implementation, troubleshooting and maintenance of complex Network & Security devices, Network Security, Linux Kernel Programming.
Expertise in network protocols, Firewalls and Communication Network design.
Experience with Troubleshooting tools for example protocol analyzers, load generators & network traces.
Working knowledge of frame relay, MPLS services, OSPF, BGP and EIGRP routing protocols, NATing, sub-netting, also including DNS, WINS, LDAP, DHCP, http, HTML, HTTPS, TCP/IP, UDP, SNMP, OSPF, RIP, IPSEC, PPTP, VLAN, STP (Spanning tree Protocol), RTSP & Multicasting protocols
Corporate trainer for certification like CCNA, CCNP, Hardware & Networking.
Designing, Implementing and Troubleshooting Cisco 3750, 3550, 3560, 2924, 6509-V-E, 6513, 6504, 6503, 6506, 6500 series switches.
Knowledge and experience with F5 ADC, Palo Alto, Dell Force10, Brocade, Meru/Aruba WLAN, Splunk, TACACS.
Experience with design and implementation of Virtual Switching System (VSS).
In-depth knowledge of Linux Kernel Programming (Module Programming).
Network security including NAT/PAT, ACL, VPN Concentrator.
Utilize identity management and access control applications to process requests for access to a wide variety of client applications, networks, and systems.
Cisco VPN Concentrators, F5 Fire pass SSL VPN, 6509 Core Datacenter designs.
Strong knowledge of Cisco and Juniper software (IOS/XR and JunOS) and hardware.
Well Experienced in configuring protocols HSRP, GLBP, VRRP, ICMP, IGMP, PPP, HDLC, PAP, CHAP, and SNMP.
In-depth Cisco technology experience/knowledge in design, implementation, administration and support.
Strong hands on experience in installing, configuring, and troubleshooting of Cisco 7600, 7200, 3800, 3600, 2800, 2600, 2500 and 1800 series Routers, Cisco Catalyst 6500, 4500, 3750, 2950 and 3500XL series switches.
Exhibit superior talents in supervising wireless migration of more than 40 sites with multiple WLAN controllers and APs
Advanced knowledge of OSI model, TCP/IP, Internet technologies, system security, firewall infrastructure, network architecture and Cisco network routing / switching (Layer 2 and 3) experience, including LAN and WAN, design and implementation which includes Layer 1 to Layer 7 experience
Designing, Implementing and Troubleshooting Cisco Routers (2800,2900,3900,3800,7600) using Static, RIP, IGRP, OSPF, EIGRP & experience with Checkpoint, Cisco PIX & ASA devices
Well experienced in configuring gateway redundancy protocols like HSRP, GLBP, PPP and SNMP.
Juniper: EX-2200, EX-4200, EX-4500, MX-480, M Series, SRX210, SRX240
Strong Hands on experience in installing, configuring and troubleshooting of Cisco 12404,12406,7600, 7200, 3800, 3600, 2800, 2600, 2500 and 1800 series Routers, Cisco Catalyst 6500, 4500, 3750, 2950 and 3500XL series switches.
Worked on Load Balancer F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
Technical Skills:
Routers
Cisco 17XX, 18XX, 26XX, 28XX, 37XX, 38XX, 39XX &72XX series.
Switches
Cisco 3550, 3750, 45XX, 65XX series, Nexus 7K, 5K, 2K
Load Balancer
Cisco CSS, F5 Networks
WAN Optimization
Cisco WAAS, PPP Multilink
Routing
OSPF, EIGRP, BGP, RIP-2, PBR, Route Filtering, Redistribution, Summarization, Static Routing
Switching
VLAN, VTP, STP, PVST+, RPVST+, Inter VLAN routing & Multilayer Switching, Multicast operations, Layer 3 Switches, Ether channels, Transparent Bridging
LAN
Ethernet, Fast Ethernet, Gigabit Ethernet, FDDI, CDDI, Token Ring, ATM LAN Emulation
WAN
Leased lines 64k - 155Mb (PPP / HDLC), Channelized links (E1/T1/E3/T3), Fiber Optic Circuits, Frame Relay, ISDN, and Load Balancing.
Security/ Firewalls
Cisco ASA Firewalls 55XX, IPSEC & SSL VPNs, IPS/IDS, DMZ Setup, CBAC, Cisco NAC, Checkpoint, ACL, IOS Firewall features, IOS Setup & Security Features
Professional Experience:
Client: General Electric, Cincinnati, OH Apr 15 - Present
Sr. Network Engineer
Responsibilities:
Responsible for turning up BGP peering and customer sessions, as well as debugging BGP routing problems.
Perform root cause analysis on the problems coming across Project execution
Maintained a BGP/MPLS infrastructure.
Utilized Netflow, NetQoS, Cisco Works and Link Analyst to proactively detect anomalous network behavior. Served as resource for 3rd level troubleshooting. Worked with ISP and TAC to resolve vendor and circuit specific issues.
Experience with configuring Virtual Server and Configuring Load balancing methods in F5 LTM
Experience with Firewall Administration, Rule Analysis, Rule Modification.
Resolved application problems using WireShark, OpNet, and other network analysis tools requiring an understanding of TCP protocols and state analysis (e.g. three-way handshake, four way close)
Resolved application and network related problems using Wireshark, OpNet and other network analysis tools
Analyze/resolve bandwidth and slow connection issues relative to users/user applications using Solarwinds and Netflow.
Strong hands on and exposure to Checkpoint & Palo Alto on a regular basis.
Researched, designed, and replaced aging Checkpoint firewall architecture with new next generation Palo Alto appliances serving as firewalls and URL and application inspection.
Successfully installed Palo Alto PA 3060 firewalls to protect Data Center and provided L3 support for routers/switches/firewalls.
Configuration and Administration of Checkpoint, Palo Alto Firewalls to manage large scale firewall deployments.
Configuring rules and Maintaining Checkpoint, Palo Alto & Analysis of firewall logs using various tools.
Migration from Cisco firewalls to Palo Alto firewalls platforms PA 4000 and PA 500 and PA- 200 firewalls.
Configuration and troubleshooting of Site to Site as well as Remote Access VPN on Cisco ASA and Check Point firewalls.
Maintained and Configured Check Point VSX with firewall virtualization.
Configured and maintained IPSEC and SSL VPN's on Palo Alto Firewalls.
Implemented Zone Based Firewalling and Security Rules on the Palo Alto Firewall.
Migration from Cisco firewalls to Palo Alto firewalls platforms PA 4000 and PA 500 and PA- 200 firewalls.
Experience with F5 load balancers and Cisco load balancers (CSM, ACE and GSS).
Design, Configuring and troubleshoot F5 LTM load balancing
Maintained and Configured Check Point VSX with firewall virtualization.
Configuration and Administration of Checkpoint, Palo Alto Firewalls to manage large scale firewall deployments
Designed and configured the commands for QoS and Access Lists for Nexus 7K and 5K.
Conversions to BGP WAN routing. Which will be to convert WAN routing from OSPF to BGP (OSPF is used for local routing only) which involves new wan links.
Experience with configuring Nexus 2000 Fabric Extender (FEX) which acts as a remote line card (module) for the Nexus 5000
Hands-on experience on Checkpoint Firewall R77, Palo Alto and Cisco ASA 5520 firewalls.
Implementing and Maintaining Network Management tools (OPAS, Solar Winds, Cisco Works)
Involved in the modification and removal (wherever necessary) of BGP from the MPLS routers.
Configuring IPSEC VPN (Site-Site to Remote Access) on SRX series firewalls.
Responsible for Checkpoint firewall management and operations across our global networks.
Working with Checkpoint Support for resolving escalated issues.
Replace branch hardware with new 2851 routers and 2960 switches.
Designed, validated and implemented LAN, WLAN & WAN solution to suite client’s needs.
Configured and designed LAN networks with Access layer switches such as Cisco 4510, 4948, 4507 switches
Client: Alliant Energy, Madison WI Oct 13 – Mar 15
Sr. Network Engineer
Responsibilities:
Maintained network security using CISCO PIX, Check Point Firewall 1, CiscoSecure, NetScout, router access list and various other network security technologies
Involved in configuration of routing protocols like MP-BGP, OSPF, LDP, EIGRP, RIP, BGP v4.
Analyze packets using OpNet and Wireshark tools and hands on experience on all software blades of checkpoint firewall.
Supported the design, development and implementation of the Riverbed Steelhead and Interceptor architecture for WAN optimization.
Configured VPN, clustering and ISP redundancy in Checkpoint firewall
Configured, maintained and troubleshooting IPS and IPS-1 in Checkpoint
Configured redundant interfaces, DHCP server, DHCP relay, NTP settings, and sub interfaces on firewalls
Built and support VRRP / Cluster based HA of Checkpoint firewalls
Performed QA Checks on block point builds of SPLAT and GAiA Checkpoint Firewalls running on HP Proliant Servers
Upgrading Checkpoint security gateways in cluster with minimal downtime.
Perform SSL Offloading on LTMs and web accelerators with 2048-bits VeriSign certificates. Also, renewing certificates to ensure the security of websites.
Configuration and troubleshooting of Firewalls ASA 5520, ASA 5510, Nokia Check Point VPN1 NGX R55/R65/R70.
Experience with F5 load balancers and Cisco load balancers (CSM, ACE and GSS).
Design, Configuring and troubleshoot F5 LTM load balancing.
In depth understanding of implementing and configuring F5 Big-IP LTM, GTM (11.x, 10.x ).
Basic and advance F5 load balancer configurations, including migrating configurations from Cisco ACE to F5 and general troubleshooting of the F5 load balancers.
Supported network diagrams utilizing OpNet NetMapper and Visio2003. Utilized CA NetQoS monitoring tools to maintain and perform RCA for network management.
Installed and monitored performance of wired and wireless networks to maximize operations.
Used various tools from Solarwinds, Wireshark, tshark, OpNet, Riverbed to capture network packets and Netflow and SNMP based information to analysis application and network based performance issues.
Configuration of SSL VPN through access blade and up-gradation of Firewall
Works closely with Customers in determining the business needs for a Project and build Detail design which includes Data Flow diagram, Logical and Physical Diagram
Monitor Ridgeline, Solar Winds, Netflow and syslog/logarithms for alerts/alarms
Client: Verizon Wireless, Alpharetta, GA Jan 12 – Sep 13
Network Engineer
Responsibilities:
Involved in configuring IP Quality of service (QoS)
Experienced in WAN environments, installing and troubleshooting data circuit problems (MPLS, T1)
Involved in designing and applying QOS and policy map to 2800 series routers for all the branches
Involved in designing GRE tunnels for encryption of data flow from source to destination.
Hands on experience with Cisco 3500, 3750, 4500, 6500 series equipment and configuring and deploying and fixing them with various modules like Gig card, VPN SPA card, WIC card.
Experience on Check Point Firewalls NG, NGX R65, R70, R75, R77, NSX (VMware Network).
Experience in creating multiple policies and pushing them in to Checkpoint Firewall (Gateways) and hands on experience in managing the Checkpoint Management Server.
Configuring BGP/OSPF routing policies and designs, worked on implementation strategies for the expansion of the MPLS VPN networks.
Hands on experience with Cisco ACS 4.x servers.
Applying crypto maps and security keys for the branches, ISAKMP (Internet security association key management protocol) for establishing Security associations (SA) cryptographic keys.
Experience with Project documentation tools & implementing and maintaining network monitoring systems (Cisco works & Net info, Info man Virtual Change) and experience with developing network design documentation and presentations using VISIO.
Understanding & Implementation of IPSEC & GRE tunnels in VPN technology.
Involved in designing L2VPN services and VPN-IPSEC authentication & encryption system.
Experience in HSRP standby troubleshooting & Experience in configuring & upgrading of Cisco IOS.
Implementing & Troubleshooting of T1, MUXES and CSU/DSU and data circuits.
Have experience with Cisco Works LAN Management Solution.
Experience in migration of Frame-relay based branches to MPLS based technology using multi-layer stackable switch like 6500 series and 2800 series router.
Involved in design and implementation of Data Center Migration, worked on implementation strategies for the expansion of the MPLS VPN networks.
Client: iGATE, Hyderabad, India Apr 10 – Nov 11
Network Engineer
Responsibilities:
Configured Cisco Routers for OSPF, RIP, IGRP RIPv2, EIGRP, Static and default route.
Performed troubleshooting, while maintaining trouble ticket tracking, following internal/external escalation procedures and customer notifications.
Supporting Development team for the access to corporate network and outside world. Providing access to specific IP, Port filter and port access.
Configured the Cisco router as IP Firewall and for NATting.Switching (Ethernet) related tasks included implementing VLANS and configuring ISL trunk on Fast-Ethernet channel between switches.
Installing and maintaining local as well as network printers.
Validating existing infrastructure and suggesting new network designs.
Providing technical support to LAN & WAN systems.
Configuring all the required devices and equipment for remote vendors at various sites and plants
Installation and maintenance of new network connections for the customers.
Installing and maintaining Windows NT Workstations and Windows NT Server.
Monitor performance of network and servers to identify potential problems and bottleneck.
Monitoring Memory/CPU on various low end routers in a network.
Configuring routers and send it to Technical Consultants for new site activations and gives online support at the time of activation.
Provided technical support on hardware and software related issues to remote production sites.
Performed administrative support for RIP, OSPF routing protocol.
Client: Reliance Communications, India Jul 08 – Mar 10
Network Engineer
Responsibilities:
Was Responsible for service request tickets generated by the helpdesk in all phases such as troubleshooting, maintenance, upgrades, patches, fixes, and all around technical support
Experience in Cisco 7200, 7600 routers, Cisco 2800 3700 series switches: Physical cabling, IP addressing, Wide Area Network configurations (Frame-relay and ATM).
Configuring VLAN, Spanning tree, VSTP, SNMP on EX series switches.
Configured and debugged policy based routing for special traffic, route filtering with route maps, route redistribution.
Configured VLAN Trucking 802.1Q, STP, and Port Security on Catalyst 6500 switches.
Ensured network, system and data availability and integrity through preventative maintenance and upgrade.
Performed OSPF, BGP routing protocol administration.
Router memory & IOS upgrade with TFTP.
Responsible for designing and implementation of customer’s network infrastructure
Help negotiate hardware, software, and circuit contracts for customers
Redesign customer’s office copper and fiber cable plant for scalability
Build and maintain Visio documentations for Clients.