Sridhar Batchu
Contact No: 770-***-****
E-mail ID: *******.*********@*****.***
Summary
●Over 9 years of experience in designing, implementing and maintaining enterprise data networks.
●Experience with Juniper SRX, Palo Alto and Netscreen management and upgrades to support 24x7 operations
●Hands on experience using diagnosis tools like TCPDUMP, Wireshark for analyzing the real time statistics during the packet flow
●Hands on experience on Citrix Net scalar load balancers.
●Advanced Knowledge in IPSEC VPN design connection and protocols, IPSEC tunnel configuration, encryption and integrity protocols
●Profound Knowledge on Switching: VLAN, VTP, STP, Ether Channel, Trunking, HSRP, VRRP, GLBP
●Expert level experience in configuring, implementing and troubleshooting Routing Protocols including OSPF, EIGRP, RIP, BGP, and switched L2 networks VLANs, Trunking, VTP, STP, PVST, RSTP, HSRP, VRRP, and Port Security.
●High level understanding on developing IT strategies, policies and procedures per businesses requirements.
●Strong working experience in Change Management Process, Communication, Escalations. Working with Problem Management team on trouble tickets escalated from Incident Management.
●Skilled professional with the proven ability to provide technical, analytical solutions and problem solving skills.
●Responsible leading the development and execution of a project independently and in a timely fashion.
Technical Skills
Certifications
PaloAlto Certified Network security Engineer(PCNSE),CCNA, CCNP ( Router and Switch ), ITIL v3
Routing Protocol
TCP/IP, Cisco IOS, LAN/WAN interconnection, VPN, IP-Sec, RIP, OSPF, EIGRP, IS-IS, BGP, MPLS, STP, RSTP, VTP, NAT, ACLs, Subnetting (classful and classless), Multicasting (PIM)
Hardware Routers
Cisco (1800/2600/3600/3800/7200/7600 series)
Switches
Cisco (2900/3500/3700/5500/6500 Series, Nexus 7k),
Firewalls
Juniper SRX240, SRX1500,SRX1400, SRX3400,SRX3600, SRX5800, Netscreen ISG2000
Palo Alto PA-200, PA-800, PA3000, PA5000, PA 7000
Other Networking Tools
Panorama,Space, NSM, Splunk, Tufin, Secure Tufin change, IPAM, Wireshark, Service Now, Solarwinds
Operating Systems
Win 95/98, NT, XP, VISTA, WINDOWS7, WINDOWS8, LINUX 5.1, UNIX, Windows 2008 Server, Blade Server, Exchange Server 2010
Professional Experience
The HomeDepot Oct 2015 – Present
Network Security Engineer
Experience in deploying configuring and managing various Juniper security platforms like SRX240, SRX1400, SRX3600, SRX5800, Netscreen ISG2000, Junos Space Security Director
Hands on Experience on Panorama.
Experience in deploying configuring and managing various PaloAlto security platforms like PA850,PA820 and PA 220.
Monitoring and alerting including SPAM Filter Tuning, URL Protection Monitoring
Design and implement Layer 7 inspection on Internet traffic
Implementation of Security policies by traffic behavior (application signatures) across Non-store and Data center firewalls
Works with client engineering groups to create, document, implement, validate, and manage policies, procedures, and standards that ensure confidentiality, availability, integrity, and privacy of information.
Provide 24*7 supports for day to day global operational activities including Change Implementation, Handling Work order access Request, High Priority incident handling/troubleshooting for Security Devices (Firewalls, Proxies, IPS, SSL, VPN Devices etc.).
Performing Functional review(Identifying Firewalls) and then implementing Policies on Juniper SRX,Netscreen and PaloAlto
Managing Palo Alto PA-7050 and PA-5060 firewalls
Analyzing policies through Tufin and identifying Broader rules or over permissive rules
Creating zones and Interfaces on SRX and PaloAlto
Creating and managing VPN tunnels on SRX and Netscreen
Managing Policies through Network and Security Manager and Space tools. And also maintenance of NSM and Space
Performing In-Service-Software-Upgrades (ISSU) on firewalls as per compliance requirements
Adding firewalls in Solarwinds and monitoring health of firewalls
Blocking malicious IPs which are recommended by vendor security advisory in a timely manner on the outbound firewalls
Creating and resolving issues with Filters on Juniper firewalls
Onboarding and managing various Juniper Firewalls in Junos Space. Publishing firewall policies using Junos Security Director
Creating and modifying static Routes and managing prefix lists
Experience of working on Policy Based Routing (PBR)
Coordinating planned failover activities with minimum to zero downtime to support regular code upgrades
Supporting various IP segmentation and application lockdown efforts to continuously validate and improve security posture of the network
Trace options and packet captures on firewalls to understand and analyze traffic path
Using sniffing tools like next hop and Wireshark to analyze packet captures between internal servers and destinations (both internal and external) to identify network issues and packet drops
Troubleshooting network incidents and understanding traffic flow on devices in path
The HomeDepot August . 2013 – Sep 2015
Network Engineer
Troubleshooting & Coordinating with ISPs to maintain the health of WAN links
Managing Stack switches like scheduled reboot and patch upgrade
Enabling/disabling Switch port and vlan configuration.
Managing of DIGI servers & ISP STUX servers(DNS&DHCP services)
Adding and removing servers from the Citrix netscalar LB VIPs
Analyzing and troubleshooting firewall related issues using STRM tool
Troubleshooting on Nexus 2k.5k and 7k Switches
Managing ACLs on Cisco Switches and Routers
Adding/modifying/removing IP address to hostnames in Bluecat DNS . Also creating Alias records in DNS
Managing all Wireless devices (WLC,NCS,AP,RAP,MAP) .
Creating TAC cases with Cisco for faulty devices and coordinating with 3rd parties to provide the network solution
Technologies & Protocols used are BGP,MPLS, IPSec, Metro Ethernet,LTE(4G) and VDC
Provided 12*7*365 Pager support.
Managed 180 Non-Stores and two data centers.
Tata Consultancy Services April 2011 – July 2013
Network Engineer
Performed BCP on network devices (Switches,routers and firewalls) in a quarterly basis
Worked in Data center and deployed network devices
Configured port security based on Project requirement
Worked on change requests to move the vlan configuration of switch ports
Provided support for annaul power shutdown from network side.
Firmware and patch upgrade of Cisco Switches and Routers