Nihar Ambati
******.*****@*****.***
Network Engineer
Professional Summary
* ***** ** ********** ** networking, installing, configuring and maintaining network devices.
Implementing IP addressing schemes, LAN/WAN protocols, IP Services, to fulfill network requisites in different environments.
Hands on experience in configuring Cisco Catalyst 2960, 3750, 4500, 6500 series, and Cisco 2600, 2800, 3600, 3800, 7200, 7600 series routers
Comprehensive expertise in the implementation of optimization, analysis, troubleshooting and documentation of LAN/WAN networking systems.
Proficient in Configuring Virtual Local Area Networks (VLANS) using Cisco routers and multi-layer Switches and supporting STP, RSTP, PVST, RPVST along with trouble shooting of inter-VLAN routing and VLAN Trunking.
Implemented redundancy with HSRP, VRRP, GLBP, Ether channel technology.
Implemented traffic filters using Standard and Extended access-lists, Distribute-Lists, Route Maps and route manipulation using Offset-list.
Hands on in deployment of GRE tunneling, SSL, Site-Site IPSEC VPN and DMVPN.
Managed inventory of all network hardware, Management and Monitoring by use of SSH, Syslog, SNMP, NTP.
Experience with F5 load balancers - LTM, GTM series like 6800 and 8900 for the corporate applications and their availability.
Expertise in OSI layer model/TCP/IP.
Well versed and experienced in routing and switching protocols RIP, OSPF, EIGRP, BGP and VLAN.
Exposed to handling and troubleshooting issues on NAT.
Working knowledge on configuring access lists. Troubleshooting DNS/DHCP issues within the LAN network.
Expertise in IP subnetting and worked on various designing and allocating various classes of IP address to the domain.
Sound knowledge of Routing and Switching concepts and MPLS design.
Involved in troubleshooting network traffic and its diagnosis using tools like Ping, Traceroute, WireShark, TCPdump and Linux operating system servers.
Worked extensively in Configuring, Monitoring and Troubleshooting Cisco's ASA 5500/PIX security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
In-depth knowledge and hands-on experience in Tier II ISP Routing Policies, Network Architecture, IP Subnetting, VLSM, TCP/IP, NAT, DHCP, DNS.
Configured and deployed QOS and defined class of service (COS) WRED and WFQ for bandwidth management.
Reviewed audit files and security logs for potential vulnerabilities and problem-related issues to make the necessary security changes on the servers, switches and firewalls.
Providing input on day-to-day security architecture policies and procedures.
Technical Skills
Cisco Routers
1600,1700,2600,2800, 2900, 3600, 3800, 7200 and 7600
Cisco L2 & L3 Switches
1900,2900, 3560, 3750, 4500, 4900, 6500
LAN Technologies
Ethernet, Fast Ethernet, and Gigabit Ethernet, SMTP, VLAN, Inter-VLAN Routing, VTP, STP, RSTP, Juniper, Nexus.
WAN Technologies
Frame Relay, PPP, HDLC, (E1/T1/E3T3)
Network Security
Cisco ASA, ACL, IPSEC.
OS products/Services
DNS, DHCP, Windows (2000/2003/2008, XP), UNIX, LINUX.
Routing Protocols
OSPF, EIGRP, BGP, ISIS, VRF, PBR, Route Filtering, Redistribution, Summarization, and Static Routing.
Gateway Load Balancing
HSRP, VRRP, GLBP, EBGP
Various Features / Services
IOS and Features, NAT, SNMP, SYSLOG, NTP, DHCP, CDP, TFTP and FTP, IDS/IPS, SQL, Perl, VMvare.
Network Management Tools
Cisco Works, Ethereal, SNMP, Monitoring tools (HP open view.)
Security Server Protocols
TACACS+, RADIUS.
Load Balancers
Cisco CSM, F5 Networks (BIG-IP) LTM 8900
Operating Systems
Windows ( Server 2008/2012, Vista, Windows 7/8), Linux, Unix.
Firewall & Security
Checkpoint, Palo Alto
Professional Experience
Barclays Capital, Menlo Park, CA April 2016- Present
Sr. Network Engineer
Responsibilities:
Responsible for entire company network infrastructure that includes Cisco Switches, Routers, Firewalls, Access Points, Servers.
Configure various LAN switches such as CISCO CAT 2900, 3550, 4500, 6509 switches and Access layer switches such as Cisco 4510, 4948, 4507 switches for VLAN, Fast Ether Channel configuration.
Created and resolved Palo Alto and Checkpoint Firewall Rules, Routing, Pushed Policy.
Responsible to evaluate, test, configure, propose and implement network, firewall and security solution with Palo Alto networks.
Configuring Static, IGRP, EIGRP, and OSPF Routing Protocols on Cisco 1600, 2600, 2800, 3600, 7300 series Routers.
Expansion and implementation of current data center for different phases of migration.
Perform extensive testing around the upgrade, migration and configuration functionality of our software.
Good knowledge about the Linux system files, boot process and Run levels
Extensive knowledge of basic networking hardware (routers, switches, bridges) and protocols (UDP, TCP/IP)
Provide Batching logic for long running SQL queries.
Monitoring and analyzing network traffic, Intrusion Detection Systems (IDS) and Instruction Prevention Systems (IPS), security events and logs.
Experience in detection, response, mitigation and/or reporting of cyber threats affecting classified and unclassified networks.
Configured Easy VPN server and SSL VPN to facilitate various employees’ access internal servers and resources with access restrictions.
Experience in migration of VLANS & Configured VLANs with 802.1q tagging, Ether channels, and Spanning tree for creating Access/distribution and core layer switching.
Creation of firewall rules on Checkpoint Smart Dashboard and install policies.
Management of corporate Checkpoint Firewall implementing security protocols and alleviating network attacks.
Deployed Palo Alto Firewalls for web filtering and application control.
Configured EBGP load balancing and Ensured stability of BGP peering interfaces.
Worked on Route-Reflectors to troubleshoot BGP issues related to customer route prefixes also route filtering using Route-maps.
Designed and implemented DMZ for Web servers, Mail servers & FTP Servers.
Worked on security appliance to maintain SSL Inspection, Application control, Firewall and VPN management.
Configuration and troubleshooting of CSM, integration with ASA devices.
Implementation of Site-to-Site VPNs and DMVPN over the internet using IKE Phase 1 and IKE Phase 2 based on traffic with ASA 5500 series Firewalls.
Sound knowledge of data communication wiring (CAT5/5E/6A and Fiber optics)
Ability to work with Linux friendly applications and able to troubleshoot it when issue arises from the server
Mapped, Network Diagrams and physical identification in MS Visio.
Worked with engineering team to resolve tickets and troubleshoot L3/L2 problems efficiently.
Configured Cisco 2800, 3800 routers and 3750, 4500, 6500 switches as part of the implementation plan.
Provide initial fault isolation, proactive maintenance and monitoring of Company's Network Equipment. Perform monitoring and support of internal network security.
Improved network capabilities and reliability by evaluating, testing, purchasing and implementing new Ethernet and wireless technologies.
Environment: Cisco 2948/3560/4500/3560/3750/3550/3500/2960 6500 switches and Cisco 3640/1200/
7200/7600/3845/3600/2800 routers, Checkpoint, F5 BIGIP LTM, RIP, OSPF, BGP, EIGRP, LAN, WAN, VPN, HSRP, Unix, Incident, Ticketing, Cisco Wi-Fi technologies, Windows server 2008/2012.
Management Science Associates, Pittsburgh, PA Jan 2015 – Mar 2016
Sr. Network Engineer
Key Responsibilities:
Involved in configuring Cisco routers and switch administration, familiar with enterprise level Cisco Routers such as 7200 series, 3800 series, 3700 series, 2800 series, and Cisco catalyst series switches like 6500, 3750, 4500.
Configuring and troubleshooting of routing protocols such as OSPF and BGP for effective communication.
Created and resolved Checkpoint, Palo Alto customer Orders, Request Orders.
Worked on the security levels with RADIUS, TACACS+.
Performed network implementation that includes configuration of routing protocols, leased lines, ISDN lines, VLANs and IOS installations.
Troubleshot the network issues onsite and remotely, depending on the severity of the issues.
Dealt with NAT configuration and troubleshooting issues related access lists and DNS/DHCP issues within the LAN network.
Designed, Configured and troubleshoot Cisco IP switching/routing.
Managed vendor relationships via Service Level Agreements.
Implemented remote dialer solutions using Cisco Access Switch.
Installed and Configured Cisco Load Director for traffic load balancing.
Designed and implemented an IP addressing scheme with subnets for different departments.
Customer’s design, implementation and support personnel to configure and operate the Juniper Networks products.
Utilized various network tools including, HP Open view and network Sniffer software.
Expert-level professional experience with Cisco Ios including configuration and troubleshooting.
Had hands-on experience with WAN (ATM/Frame Relay), Routers, Switches and IP addressing.
Configured and installed Windows server 2008 .
Worked with layer 2 switching technology architecture. Implemented L2 and L3 switching functionality, which includes the use of VLANS, STP, VTP and their functions as they relate to networking infrastructure requirements including internal and external treatment, configuration and security.
Configured EIGRP and OSPF as interior gateway protocols with route filtering and route redistribution. Troubleshot complex LAN/WAN infrastructure that include routing protocols EIGRP, OSPF and BGP.
Responsible for all aspects of TCP/IP functionality across multiple enterprise environments.
Performed EIGRP, OSPF, BGP, DHCP Profile, HSRP, IPV6, Bundle Ethernet implementation on ASR 9K redundant pair.
Involved in Implementation and Configuration) of F5 Big-IP load balancers
Configuring Big-IP F5 LTMs (virtual servers, pools) for managing the traffic and tuning the load on the network servers.
Performed Network Address Translation on Cisco ASA 8.2 and 8.3
Used DHCP to automatically assign reusable IP addresses to DHCP clients.
Performed the ACL request changes for various clients by collecting source and destination information from them.
Worked on a broad range of topics such as routing and switching, dedicated voice access, planning and implementation, large-scale high-visibility outages, change management coordination, proactive monitoring and maintenance, disaster recovery exercises, and core network repairs.
Created MOPS (Method of procedures) and sought the approval of peers to perform configuration changes.
Environment: Cisco Routers, Cisco Switches, F5 Load Balancer HSRP, VRRP, IPSEC VPN, VPN, QOS, ASA firewall, Load balancer, MPLS, VLANS, VTP, RSTP, ACL, NAT, IDS/IPS, Monitoring tools (HP Open View), SIP, RTP, RADIUS, TACACS+, Unix, Incident, Ticketing,Cisco Wi-Fi technologies.
Thermo Fisher Scientific (Offshore) Oct 2012 – Oct 2014
Network Engineer
Key Responsibilities:
Responsible for the configuration of Cisco Routers (7000, 5300, 4000, 2500, 3000, 2600) using RIP, IGRP, OSPF, EIGRP, BGP
Implemented Cisco IOS Firewall IDS using 2600 series router
Configured and installed multi-protocol (IP, IPX) multi-interface Cisco routers
Managed office network with Cisco devices with network devices including 2500 and 3600 series routers and 3500, 2900, 1900 series switches
Analyzed and resolved a high percentage of initial customer contact in the areas of PC/LAN.
Dealt with customer problems to management and support groups utilizing standard escalation model.
Extensive experience in configuring and implementing OSPF and BGP.
Supported core network consisting of Cisco 7200 series routers running multi area OSPF.
Configured EIGRP and OSPF as interior gateway protocol with route filtering and route redistribution, installed and maintained Cisco 3600, 2600 and 7200 backbone routes with HSRP
Implemented stub/Totally stub areas and various OSPF features like route-summarization and SPF throttling.
Hands-on experience with WAN technologies like T1/T3, DS3, STM1 and STM4 circuit types
Implemented Cisco Secure Access Control Server (ACS 3.0) for TACACS+/RADIUS
Knowledge with redistribution of routing protocols and Frame-Relay configuration
Handled Network Migration from RIP to OSPF
Implementation of TCP/IP and related Services-DHCP/ DNS/ WINS
Configured, maintained and troubleshot routing protocols such as OSPF, EIGRP and BGP.
Engaged in office moves, helped in identifying network requirements of new building, installed new networking hardware, and coordinated with vendors for cabling/wiring
Performed troubleshooting, while maintaining trouble ticket tracking, following both internal/external routes.
Assisted with escalation procedures and customer notifications.
Configured Cisco Routers for OSPF, IGRP, RIPv2, EIGRP, Static and default route.
Upgraded Cisco Routers, Switches and Firewall (PIX) IOS using TFTP
Acted as Tier 3 support for connectivity, failures, configuration, implementation, and troubleshooting.
Provided project management for data center cabling, documented all network drawings using Visio
Design, test, and implement global Next Generation MPLS network (150 sites) using Cisco 3800, 2800, 2600, and 1721 routers using BGP and EIGRP protocols.
Implementing traffic policy changes with Cisco PIX Firewall appliance switch WAP configuration and installations.
Environment: Cisco 2600/2800/3600 Cisco 2950/2960 series switches, Cisco Routers 7000, 5300, 4000, 2500, 3000, 2600, NAT, PAT, DHCP, DNS, OSPF, EIGRP, ASR, TCP/IP, LAN, WAN.
Century Link (Offshore) May 2011 – Aug 2012
Network Engineer
Key Responsibilities:
Configured OSPF on CISCO devices with multiple routing processes and redistributed them. Tested and hands on experience in multi area OSPF topologies.
Configuring, managing and troubleshooting networks using routing protocols like RIP, EIGRP and OSPF (Single Area and Multi Area).
Assisted with troubleshooting all network issues with routers and switches when necessary and consulted with on call tech as needed for client.
Monitor, troubleshoot, test and resolve Frame Relay, ATM, MLPPP, PPP, and Dial-up.
Configuring/Troubleshoot issues with the following types of routers Cisco (7200, 6500, 4500, 1700, 2600 and 3500 series), to include: bridging, switching, routing, Ethernet, NAT, and DHCP, as well as assisting with customer LAN /MAN.
Actively participated in upgrading fast Ethernet, Layer 3 switched/routed LAN infrastructure from Cisco 3640 to Cisco 2811 ISR routers and switches at access level to 2950, 3550.
Installation and Configuration of various types of Personal Computers and Printers. Installation of different operating systems on Intel based PC's.
Configuring Vlan’s, VTP’s, enabling trunks between switches.
Assisted in network engineering efforts consistent with the infrastructure of an Internet Service Provider and support of such network services. Helped in designing and implementation of VLAN for the new users.
Plans, coordinates, implements and supports the LAN / WAN hardware, software and Internet /Intranet integration network connectivity, diagnose network failures and resolve any problems.
Troubleshoot Frame Relay; T1, T3, IP and OSPF related router and circuit issues.
Documenting and Log analyzing the Cisco PIX series firewall.
Excellent Troubleshooting Skills and Customer Centric approach.
Environment: Cisco 2990/3550/6550 switches, Cisco 7200/3845/3600/2800 routers, EIGRP, RIP, OSPF, BGP, VPN, Ether Channels, and Sniffer.