Post Job Free

Resume

Sign in

Security Engineer Data Center

Location:
Miramar, FL
Posted:
January 21, 2024

Contact this candidate

Resume:

Summary

Professional with over ** years of progressive technical experience in project implementations, support, administration, and troubleshooting of various technologies which includes proficiency in routing, routing protocols, switching, security, firewalls, voice, wireless and data center technologies, I am highly skilled and experienced with diverse skills in various fields such as computer engineering, engineering management, networking engineering, information systems, bioinformatics, and computer science. I have a strong passion for learning and have pursued graduate degrees, which have equipped me with critical thinking and analytical skills. With a focus on both qualitative and quantitative research, I have a deep understanding of data analysis and reconciliation. My career goals revolve around utilizing my skills and knowledge to make a positive impact. I am seeking roles such as Networking Engineer, Networking Security Engineer, and Computer Engineer, where I can apply my expertise. I am also interested in roles such as Networking or Installation Technician, where I can use my troubleshooting skills and experience with Cisco and AWS/Azure to ensure smooth operations. With a strong work ethic and a desire to continuously learn and grow, I am an asset to any organization looking for a dedicated and versatile team member.

Technical Certifications & Skills

●Cisco Certified Network Professional – Enterprise CCNP - ENT

●Cisco Certified Network Associate – Routing & Switching CCNA - R&S

●Cisco Certified Specialist - Enterprise Advanced Infrastructure Implementation CCS - EAII

●Certified WAN Professional / Certified WAN Enterprise Administrator CWP / CWEA

●Firewall Security Engineer / Enterprise Wireless Specialist FSE / EWS

●Cisco Certified Specialist – Security Core

●CompTIA A+, Network+, Security+

●Microsoft Certified: Azure Administrator Associate, Azure Fundamentals, Microsoft 365 Certified: Fundamentals

●AWS Certified Cloud Practitioner

●Python Programming, R Programming

Technical Skills Detail

WAN/Routing Technologies - BGP, MPLS, OSPF, EIGRP, Route-maps, Prefix-lists, ACLs, Static Routing, Stub Routing, IPv4/6, ARP, TCP, UDP, NAT/PAT, Cisco ASR 1004/1002-HX/1001-X, ISR4451/3845/2851, Cisco IOS XRv, Meraki MX 450/100, Juniper SRX 340/210, Juniper vSRX, Cisco IOS XE, JunOS, Python, Automation.

Datacenter/Core Switching Technologies –VPC, VXLANs, VSS, StackWise, HSRP, VRRP, VLAN Trunking, SVI, Portchannel, STP, VTP, Portfast, BPDU Guard, UDLD, F5 Big-IP load balancers, LTM, Nexus 9K/7K/5K/3K/2K, Catalyst 6500/4500/3850/3750X, Meraki 410/210/220, Juniper EX4200/2200, DHCP, CDP, ACL, QoS, SFP+, QSFP, NX-OS, IOS XE, JunOS, SolarWinds, Wireshark, Cacti, Nagios, Remedy, SNMP, DNS, SSH, FTP/SFTP

Security/Firewall Technologies - Cisco ASA 5555-X/5508-X/ASAv/5510, Meraki MX 450/100, Cisco IPS/IDS, Cisco ISE, Juniper SRX 340/240, Juniper vSRX, Palo Alto 850/220/VM, ACLs, SSH, IPSecVPN, SSLVPN, MPLSVPN, AAA, TACACS+/RADIUS, 802.1x Authentication, Port Security.

Wireless/Branch Technologies - Cisco WLC 5500/3504, Cisco vWLC, Cisco 3702i/1852i/3602i/1142 APs, Cisco Meraki MR 42/33/20 APs, Cisco ISE, TACACS+/RADIUS, 802.1x Authentication, 802.11, WLAN, WAP, SSID, LWAPP, SMTP, VoIP/SIP, QoS, CUCM, Cisco CUBE, UCCX, AWS, Cisco Meraki Cloud-based Dashboard, UPS & PDUs.

Professional Experience

Miami Dade County Public Schools Lab Administrator (INST) 2002–current

●Professional responsibilities included supporting engineers, collaboration, escalation, coaching, mentoring, training, administration, documentation and following corporate policies and procedures.

●Other activities include, as needed, scheduling reports to senior management on the status of technical implementation activities, professional/technical review on LAN/WAN Professionals and its overall success, monitoring and working to streamline/improve the company’s standards and processes.

●Responsible for designing, implementing, supporting, and maintaining network infrastructure (physical, logical, and virtual).

●Specific Technologies handled include but not limited to Cisco ISRs/Meraki MX, Cisco Catalyst/Nexus Switches Cisco ASAs, Juniper EXs, Cisco Wireless LAN Controller, Cisco Access Points, Palo Alto (PAN) Firewalls, Nagios, Solar Winds, Cacti, Wireshark, VMware, Cisco Unified Communications Manager & Cisco Unity.

Education

Doctor of Philosophy in Computer Science National University

Educational Specialist in Educational Technology Applications Barry University

Master of Science in Management Information Systems Florida International University

Master of Science in Engineering Management Florida International University

Bachelor of Science in Computer Engineering Florida International University

Bachelor of Science in Biological Science Miami Dade College

Graduate Certificate in Information Assurance University of Maryland University College

Associate of Science in Networking Services Technology - Microsoft Miami Dade College

Certificate in Biological Cisco Certified Network Associate Miami Dade College

Summary of Technical Accomplishments

Security/Firewall

Configured ISE to provide AAA services to enterprise network, 802.1X authentication for wired and wireless access to networks. RADIUS server implementation. Access switches, WLAN controllers configured as 802.1X authenticators to relay endpoint credential information on to ISE for processing, including the use of various VLANs based on business needs. Viewing connection logs in ISE. Ticket resolution and change requests; more extensive changes require scheduling during periods of low network utilization, and users will need to be informed in advance if they will experience a change in behavior.

Deployed and Maintained Cisco ASA 5500 series firewalls including Security Levels, Zones, NAT, ACLs, and Active/Standby HA. Also, implemented NGFW features such as URL filtering and other IPS/IDP functions.

Managed an IPSec Site-to-Site VPNs between Cisco ASA5500s at Main Office and Cisco branch ISR specifying IKE Policy, encryption and authentication protocols, access-lists to define VPN traffic, transform sets and crypto-map. Have used both Certificates and Pre-shared Keys.

Deployed Zone-based Firewalls on Juniper SRX along with IPS/IDS features and on Cisco ISR.

Configured port security, DHCP snooping, and IP ARP inspection for access switchport hardening.

Deployed SSL VPN (WebVPN for secure, remote-access VPN tunnel to the Cisco ASA 5500 series for clients.

WAN/Routing

Deployed and Supported eBGP & iBGP peering using directly connected networks and loopbacks, ebgp-multihop for MPLS and BGP Multihoming. Managed BGP Peer groups, PREFIX-LISTs, ROUTE-MAPs.

Implemented both single area and multiple area OSPF routing. Also implemented stub areas to lower system resource utilization of devices. Utilized link and area authentication to improve security for OSPF neighbors.

Provided Escalation Support for BGP and OSPF neighbor and route issues using Traceroute, Show and Debug commands along Protocol Analyzers such as wireshark.

Deployed WAN infrastructure Branch to HQ and Datacenter utilizing MPLS and IPSec VPNs.

Implemented EIGRP routing on Cisco ISRs and ASAs. Implemented EIGRP MD5 between sites to prevent unauthorized insertion of routes into the domain. Implemented manual EIGRP route summarization to reduce demand on CPU resources, memory, and bandwidth used to maintain the routing tables.

Scheduled, upgraded, troubleshooted and maintained recommended SW/firmware for IOS and JunOS devices.

Designed, supported, deployed, implemented global data network and communications projects with TCP/IP.

Managed interoperability between Cisco and Juniper layer 3 platform using Python.

Deployed and configured routers, switches, and trunk

Datacenter/Core Switching

Managed StackWise & StackPower, VSS on Catalyst, VPC on Nexus, and MLAG on Juniper for Device Redundancy. Implemented Switching utilizing VLAN & trunking using 802.1q.

Managed VTP with transparent mode, Managed RSTP/STP on Cisco and Juniper switches and priority for root election. Managed portfast, bpdu guard, UDLD. Implemented SVIs for VLANs with HSRP, GLBP and VRRP for gateway redundancy on dist. switches.

Implemented Datacenter focused Nexus Switching utilizing NXOS with features including, vPC, Fabric Extenders (FEX), Fabric Path and VXLANs. Familiar with SFP, SFP+, QSFP and Optical and copper-based cabling. Implemented F5 Big IP Local Traffic Manager (LTM) for load balancing Web based applications.

Wireless / Management / Monitoring

Implemented Wireless network infrastructures utilizing Cisco WLC with Flexconnect as well as Cisco Meraki APs using Cloud based Dashboard. Deployed 802.1X port authentication for Wireless utilizing Cisco ISE.

Implemented secure access such as SSH, AAA, Radius, TACACS+ to vty and console ports along with SNMP. Managed SNMP, AAA, TACACS+, Radius, Netflow, Syslog for authentication, logging and management.

Utilized Nagios XI, SolarWinds Orion NPM, CACTI monitoring and graph traffic. Widely used Wireshark for troubleshooting and analyzing traffic flow including HTTP and other network traffic.



Contact this candidate