Sai
Network Engineer
*********@*********.***
Professional Summary:
Over 8+ years of experience in design, development, implementation, troubleshooting and maintenance of complex network systems
Sound knowledge of Routing and switching concepts and MPLS design.
Proficient in Cisco IOS for configuration & troubleshooting of routing protocols: MP-BGP, OSPF, LDP, EIGRP, RIP, BGP v4, MPLS
Experience working with Cisco Nexus 2148 Fabric Extender and Nexus 5000 series to provide a Flexible Access Solution for a datacenter access architecture
Familiar with Cisco Security SDM, NAT/ACLs, AAA, Layer 2 Security, Layer 3 Security, IPS/IDS, Cryptography, VPN, IPsec.
Worked on F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
Strong hands on experience in installing, troubleshooting, configuring of Cisco 7200, 3800, 3600, 3400, 2800, 2600, 2500 and 1800 series Routers, Cisco Catalyst 6500, 4500, 3750, 2950 and 3500XL series switches.
In-depth knowledge and hands-on experience on IP Addressing, Sub netting, VLSM and ARP, reverse & proxy ARP, Ping Concepts.
Worked on Cisco Firewalls Cisco ASA 5500(5510/5540) Series and Checkpoint R75, 76 Firewalls.
Network planning and implementation of WAN technologies including E3, E1, T1, T3, ISDN, HDLC, PPP, Frame Relay, ATM and MPLS VPN.
Worked on Juniper Net Screen Firewalls like, NS50, SSG 550M, SSG520M, ISG 1000, ISG 200 and Cisco PIX 535, 520, 515, ASA -5500 and 5505.
Implemented and maintained Big-IP F5 load balancing solution across multiple datacenters
Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, ISL/ 802.1q, Ether channel, Port Security, STP, RSTP and MST.
Extensive experience in Layer 3 routing and Layer 2 switching. Experienced dealing with router configurations like 7200, 3800, & 2800 and switches 6500, 4500, 3750, 2900 and 3500XL series
In depth understanding of IPV4 and implementation of Subnetting.
Well Experienced in configuring protocols HSRP, ICMP, IGMP, PPP, PAP, CHAP, and SNMP.
Experienced in DNS, DHCP, SMTP, FTP, HTTPS and web security architecture
Implemented IPv4 migration to IPv6 (NAT-PT, Tunneling, etc.) and IPv6 routing protocols (RIP, OSPFv3, EIGRP, BGP etc.).
Moderate knowledge in configuring and troubleshooting Cisco Wireless Networks: LWAPP, WLC, WCS, Standalone APs, Roaming, Wireless Security Basics, IEEE 802.11 a/b/g, RF spectrum characteristics.
Experience in testing Cisco routers and switches in laboratory scenarios and then deploy them on site for production.
Excellent interpersonal, communication and organizational skills with the ability to interact effectively with employees at all levels within the organization.
Involved in troubleshooting network traffic and its diagnosis using tools like wire shark, TCP dump and Linux operating system servers.
Hands on experience in configuring CISCO prime 2.1, WLC wireless platforms.
Design and administer public wireless using CISCO 5500 WLC and CICSO Prime for WiFi and WlAN networks.
Strong knowledge on Wireless Standards and Technologies, i.e. Ethernet, WAN, LAN, IEEE 802.11a, b, g, n (Wi-Fi). Cisco Wireless Management system, Cisco Meraki Products, PCI standards. Very good knowledge on IEEE 802.15.1 (Bluetooth), Mesh networks, etc.
Moderate knowledge in configuring and troubleshooting Cisco Wireless networks; LWAPP, WLC, WCS, stand-alone apps, roaming, wireless security basis, IEEE 802.11a/b/g, RF spectrum characteristics.
Experience working on Cisco ASR 9001&ASR 1006.
F5 BIG-IP application load balancing subject matter expert with particular concentration on layer 7 load balancing using I-Rule scripting in TCL.
Hands on experience on windows server 2007, 2008, 2012.
Experience in Designing and assisting in deploying enterprise wide Network Security and High Availability Solutions for ASA.
Experience on dealing with VoIP information deployment including troubleshooting protocols like Session Initiation Protocol (SIP), Real-Time Transport Protocol (RTP), Media Gateway Routing Protocol (MGRP) and Session Description Protocol (SDP)
Installation of IP Voice System PBX and Voice gateway Cisco SPA 8000
Involved in troubleshooting of DNS, DHCP and other IP conflict problems.
Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP, Ether channel, STP, RSTP and MST. Implementation of HSRP, VRRP for Default Gateway Redundancy.
Experience on dealing with Aruba Wireless products including Access Points, Mobility Access Switches and Outdoor mesh routers
Hands on experience on dealing with Microsoft Azure cloud computing including implementing access lists in the Network Security Group.
Responsible for Check Point and Cisco ASA firewall administration across global networks.
Experience in working with Cisco Nexus Switches and Virtual Port Channel configuration.
Worked on F5 LTM, GTM series like 6400, 6800, 8800 for the corporate applications and their availability.
Experience working with Nexus 7K, 5K, 2K devices.
Experience in testing Cisco routers and switches in laboratory and deploy them on site production.
In-depth knowledge and hands-on experience in Tier II ISP Routing Policies, Network Architecture, IP Subnetting, VLSM, TCP/IP, NAT, DHCP, DNS, FT1 / T1 / FT3 / T3 SONET POS OCX / GigE circuits, Firewalls.
Strong knowledge of TACACS+, RADIUS implementation in Access Control Network.
Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NAT with the firewalls as per the design.
Hands on experience in configuring and supporting site-to-site and remote access Cisco, IPsec, VPN solutions using ASA/PIX firewalls, Cisco and VPN client.
Excellent customer management/resolution, problem solving, debugging skills and capable of quickly learning, effectively analyzes results and implement and delivering solutions as an individual and as part of a team.
Experience in designing MPLS VPN and QoS for architecture using Cisco multi-layer switches.
Experience on dealing with Silver Peak WAN optimization.
Expertise in creating groups and pruning traffic flow using VLAN, VTP, ISL, 802.1Q.
Excellent in documentation and updating client’s network documentation using VISIO.
Certification:
Cisco Certified Network Professional (CCNP)
Cisco Certified Network Associate (CCNA)
Technical Skills:
Network Configuration: Advanced switch/router configuration (Cisco IOS access list, Route redistribution/propagation).
Routing Protocols: IGRP, EIGRP, OSPF, BGPv4, MP-BGP, IS-IS, RIP
WAN Protocols: HDLC, PPP, MLPPP
Circuit switched WAN: T1/E1 – T3/E3/OCX (Channelized, Fractional & full).
Packet Switched WAN: ATM, FRAME RELAY, MPLS VPNs
Security Technologies: Cisco FWSM/PIX/ASDM, Juniper SRX, Palo Alto,
Checkpoint, F5 Load Balancer, ASA firewall.
Cisco Routers: Cisco GSR 12416, 12418, Cisco 7200vxr, Cisco 3640, Cisco 3600
Security Firewalls Checkpoint, Palo Alto, Citrix NetScaler App, Fortinet 6TD,
3815, 900, 800, 600 series, Imperva, Bluecoat
Redundancy and management: HSRP, VRRP, GLBP, RPR, NSF/NSR, Wireshark, Solarwinds, SNMP
Physical interfaces: Fast Ethernet, Gigabit Ethernet, Serial, HSSI, Sonet (POS)
Layer 2 technology: VLAN, HSRP, VRRP, GLBP, STP, RSTP, PVST+, MST, PVLAN, Optimizing STP (Port Fast, Uplink Fast, Backbone Fast, Root Guard, BPDU Guard),
Layer 3 Switching: CEF, MLS, Ether channel (PAGP & LACP, Load Balancing)
Switches: Cisco Catalyst 6500, MSFC, MSFC2, 7600, 3700, 3500, Cisco2948/3560/4500/3560/3750/3550/3500/2960
Operating Systems: Microsoft XP/Vista/7, UNIX, Linux (Red hat, Opens use, Fedora), Windows Servers 2003/2008Windows MS-Office. VMware ESX 5.1, VMware Vsphere client, Microsoft Azure, office 365, Python
Professional Experience:
Key Bank, Cleveland, OH Oct 2015 to Present
Network Security Engineer
Responsibilities:
Configured routers and coordinated with LD Carriers and LECs to turn-up new WAN circuits. Configuring, Maintaining the Routers and Switches and Implementation of RIP, EIGRP, OSPF, BGP routing protocols and troubleshooting.
Configuring, upgrading and deployment of Nexus 7010, 5596 and 2248
Working with Cisco Nexus 2248 Fabric Extender and Nexus 5500 series to provide a Flexible Access Solution for datacenter access architecture.
Experience with configuring Nexus 2000 Fabric Extender (FEX), which acts as a remote line card (module) for the Nexus 5000.
Configure various LAN switches such as CISCO 2900, 3550, 4500, 6509 switches and Access layer switches such as Cisco 4510, 4948, 4507 switches for VLAN, Fast Ether Channel configuration.
Configured Site-to-Site IPsec VPN tunnels to peer with different clients and each of client having different specifications of Phase 1 and Phase 2 policies using Cisco ASA 5500 series firewalls.
Configure Virtual Servers, Nodes, and load balancing Pools in F5 BigIP LTM.
Configuration of Silver Peak WAN optimization software.
Experience on dealing with Microsoft Azure Virtual Network including configuring access lists in the Network Security Group.
Configured and deployed BIG-IP LTM 6900 for providing application redundancy and load balancing.
Configured Session based persistence and configuring i-Rules for specific redirection purpose and also i-rules for persistence
Supported core network consisting of Cisco 7200 series routers running multi area OSPF.
Responsible for all aspects of TCP/IP functionality across multiple enterprise environments.
Troubleshot issues and outages on Trunks and Router interfaces and firewalls extensively.
Worked with team managing and configuring CISCO Access points.
Modified internal infrastructure by adding switches to support server farms and added servers to existing DMZ environments to support new and existing application platforms.
Planned resources and presented project status to higher management.
Configured and played with various BGP attributes such as Local Pref, MED, Extended Communities, Route-
Performed the ACL request changes for various clients by collecting source and destination information from them.
Created MOPS (Method of procedures) and sought the approval of peers to perform configuration changes. Experienced and configured firewall administration including Bluecoat, F5, Checkpoint, Citrix NetScaler App and Fortinet
Analyzed customer application and bandwidth requirements, ordered hardware and circuits, and built cost effective network solutions to accommodate customer requirements and project scope Ensures the project will achieve targeted dates to ensure business continuity. Involved in meetings with engineering teams to prepare the configurations according to the client requirement.
Creation of change tickets and implement according to the customer requirements.
Worked on the security levels with RADIUS, TACACS+.
Created Visio Dean / Visio Documentation to give complete picture of network design for each building.
Environment: Cisco 2948/3560/4500/3560/3750/3550/3500/2960, 6500 switches and Cisco 3640/12000/7200/ 3845/3600/2800 routers, Cisco Nexus 7K/5K, Cisco ASA 500, windows server 2003/2008: F5 BIGIP LTM, RIP, OSPF, BGP, EIGRP, LAN, WAN, VPN, HSRP, CISCO access point.
Western Union, Washington, DC June 2014 – Sep 2015
Sr. Network Engineer
Responsibilities:
Configuration and troubleshooting of Cisco Routers such as Cisco 3640, Cisco GSR 12416,21418(with PRP and RPR processors), Cisco catalyst 6509,7613 with supervisor cards
Involved in the configuration of the Nexus 2248 Fabric Extender (FEX) module on the Nexus 5000 to connect servers and storage devices.
To secure configurations of load balancing in F5, SSL/VPN connections, Troubleshooting CISCO ASA firewalls, and related network security measures.
Hands-on experience with Ether Channel, Spanning Tree, Trunking, ACLs, Syslog. Experience in setup of HSRP, Access-Lists, and RIP, EIGRP, and tunnel installations.
Experience with Firewall Administration, Rule Analysis, Rule Modification.
Experience working on different monitoring tools Q radar, Zenoss and Net scout to analyze and resolve the issues.
Configuring, Monitoring and Troubleshooting Cisco’s ASA 5500 security appliance. .
Worked with multiple customers over a period of time to enhance their network, resolve and do the RCA (root cause analysis) for in service production problems and create work around for known IOS issues.
Expertise in maintenance of layer2 switching tasks which advocate VLAN, VTP, STP, RSTP, PVST, RPVST, configuring of ether channel with LACP and PAGP along with troubleshooting of inter-VLAN routing.
Configured PVSTP+ for loop prevention and VTP for Inter-VLAN Routing.
Configured various Router interfaces like ATM interface, T3 interface, and Channelized T1 interfaces
Involved in IOS and CAT OS upgrade procedures and Pre/Post checks for customer production upgrades.
Experience working with NCM and Infoblox.
Experience with Project data and voice documentation tools & experience with developing network design documentation and presentations using VISIO
Replaced old 6500 and WAN routers from DR testing site and Installed Nexus 7K and ASR 1006 routers.
Commissioning and decommissioning, configuring, URL and Web filtering, SSL Certificates, monitoring, SNMP traps, logging, blocking on Palo Alto devices, migrating from one network to other.
Installation and management of overall administration of LAN, WAN, systems involving design of network layouts, configuration and maintenance, Commissioning Routers & Switches, firewalls, IPS and ensuring maximum uptime during site deployment to VoIP.
Working on HP open view map for Network Management System and Ticketing
Configuration was running and completed in timely manner. Configure policies and enabled rules to alerting on intrusion events.
Responsible for entire LAN and WAN/WLAN maintenance and troubleshooting of the company network. Involved in the Team of Data Center Operations to perform duties like administration and deployment of Cisco Routers and Switches according to the organization requirements.
Configured FWSM on cisco 7600 router to reduce costs and operational complexity while enabling organization to manage multiple firewalls from the same management platform.
Provide solutions to Tier 1/2 escalated issues and tickets.
Implementation and configuration of F5 Big-IP LTM-6400 load balancers
Worked in projects converting P2P circuits into MPLS circuits, commissioning and decommissioning of the MPLS circuits for branch offices.
Configuring and resolving various OSPF issues in an OSPF multi area environment,
Implemented, configured BGP WAN routing, converting OSPF routes to BGP (OSPF in local routing).
Worked on commissioning and decommissioning of the MPLS circuits for various field offices & POPs.
GRE tunneling & Site-to Site VPN configuration between other two sites in USA.
Implemented redundancy for Routers, Switches and Firewalls.
Environment: Cisco 7200, 7204, and 7206 Routers, Switches: Cisco Distribution layer switches such as 4510, 4948, 4507, 7k, 5k and 2k series. Firewalls 5GT, 208, EIGRP, RIP, OSPF, CISCO ASA, DHCP, DNS, SAN, Spanning tree, Windows Server, Windows NT
New York Life, Lebanon, NY Mar 2013 to May 2014
Network Engineer
Responsibilities:
Installation and Configuration of Cisco routers 2500 series, 2600 series, 3600 series, 3800 series and 7200 series.
Used BGP attributes such as Local preference, ASPATH and extended communities for path control/manipulation.
Designed schemes for IP addressing, subnetting and routing policies using BGP/OSPF.
Configured dynamic routes, static routes and source IP routes for intra-net access. The routing protocol used within the network was OSPF
Troubleshoot OSPF/BGP neighbour issues and followed standards in setting up OSPF and BGP neighbours.
Developing a design layout for a LAN environment with segregation of server resources for different departmental needs
Study the existing architecture and incorporate available equipment and resources into the design
Configure various levels of security for data access from within the network
Installed and Configured of Cisco Switches 2950, 3500, 3750, 4500 and 6500 series.
Implementation of VLANs, STP configuration on Cisco 2900XL, 3750.
Established WAN connectivity using Cisco 2600 series router for the corporate outlets.
Cisco routers and switches, application of TCP/IP, including routing protocols, IP subnetting and common TCP network applications such as Telnet.
Establish LAN & WAN connectivity for different client hosting networks and ensure connectivity for all web & email services.
Monitor traffic and access logs in order to troubleshoot network access issues.
Gather information for specific technologies as to function and deployment configurations.
Prevented asymmetric routing issues by redistributing routes from BGP to OSPF with right metric values.
Troubleshoot intra-net and internet connectivity issues using PING, Traceroute
Configuring and maintaining Spanning tree topologies (RSTP) and testing the network response to link failure
Configured VLANs with 802.1q tagging, Ethernet port-channels using LACP for redundancy and load-balanced access to servers
Designing and implementation of routing policy for customers Internet route with optimal Link utilization.
Responsible for providing Network diagram & document for all locations using Visio, Excel and Word.
Activated end to end circuits and tested for issues such as link down, latency, packet drops, link, jitter on T1, T3, DS1, DS3, ATM and Frame Relay circuits
Scheduled and carried out planned activity maintenance for persistent link problems to ensure optimal utilization of the links
Configured VLAN, VTP and trunks for network segmentation.
Analysed power requirements for the routers and testing tools and setting up the same.
Environment: Net Flow, TACACS, EIGRP, RIP, OSPF, BGP, VPN, MPLS, CSM, SUP720, Ether Channels, Cisco 7200/3845/3600/2800 routers, Fluke and Sniffer, Cisco 6509/ 3750/3550/3500/2950 switches, Checkpoint firewalls (SPLAT).
Conrep Solutions Pvt Ltd, Hyderabad, India Nov 2010 – Feb 2013
Network Administrator
Responsibilities:
Configuring Static, IGRP, EIGRP, and OSPF Routing Protocols on Cisco 1600, 2600, 2800, 3600, 7300 series Routers.
Configured, installed software applications, anti-viruses, drivers and security software on user devices, maintained and troubleshoot desktop, laptop and peripheral equipment.
Perform hardware and software diagnostics, fault isolation and coordinate repairs and/or replacement of faulty equipment.
Maintain logs of network and bandwidth utilization of servers and network devices and create utilization report based on the logs
Design network and create physical and logical network layout diagrams
Write and maintain technical documents describing implemented technologies and architecture
Provided consultation services to clients for installing and configuring Cisco routers and switches
Configured Site-to-Site IPsec VPN tunnels to peer with different clients and each of client having different specifications of Phase 1 and Phase 2 policies using Cisco ASA 5500 series firewalls.
Configured VLAN’s, Private VLAN’s.
Configure various LAN switches such as CISCO CAT 2900, 3550, 4500, 6509 switches.
Configuring access layer switches such as Cisco 4510, 4948, 4507 switches for VLAN, Fast Ether Channel configuration.
Configured inside ACL and interfaces, outside ACL and interfaces.
Configured NAT and PAT policies.
Configuration and troubleshooting of EIGRP, OSPF, BGP.
Design OSPF areas for reliable Access Distribution and for Core IP Routing.
Extensively used TCP/IP tool like TELNET for remote login to the routers and SSH for secure login. Has expertise in LAN/WAN technologies (fast Ethernet, Layer2 & 3 switched/routed LAN, and Frame Relay).
Environment: Cisco Routers ASR1002X/3945/3845/2800/3600, IP managers (Infoblox), Load Balancer (BIG-IP), Cisco ASA Firewalls, STP, VLAN, VTP, VPN, NAT, OSPF, BGP, EIGRP
Fiables IT Outsourcing Services, Hyderabad, India July 2008 – Oct 2010
Network Engineer
Responsibilities:
Have ability to install and maintain Microsoft Exchange and worked extensively on different applications.
Primarily responsible for incident and problem management.
Part of Network Operation Center NOC offshore support team from India supporting HP Data Center 24x7. L2 support for Cisco PIX and ASA Firewalls.
Schedule changes and work through maintenance requests over weekends.
Perform daily maintenance, troubleshooting, configuration, and installation of all network components.
Configuration of CISCO Routers (3600, 4000 Series) and 3550, 4500 series switches.
Creating groups, users and policies in Active Directory.
Troubleshoot and support Cisco Core, Distribution and Access layer routers and switches
Built IPSec based Site-to-Site VPN tunnels between various client locations.
Point-to-Point, Frame Relay, T3, ATM, WAN troubleshooting.
Debugging abilities at L1, L2, L3, and L4 protocols in an Internet-centric environment. Troubleshooting Active Directory, DNS, IP manager (Infoblox) and DHCP related issues.
Environment: Cisco 7200/3845/3600/2800 routers, TACACS, EIGRP, RIP and Vulnerability Assessment tools like Nessus, Red Hat, Solaris, Juniper VPN's and SSL