Elvine Tshishiku Network Engineer
************@*****.*** +1-319-***-**** Iowa City, IA 52245 US Citizen LinkedIn Summary
•Highly skilled Network Engineer with 3+ years of experience in designing, deploying, and maintaining enterprise and carrier-grade networks.
•Expertise in routing and switching (BGP, OSPF, MPLS, EIGRP), network security (VPN, Cisco ASA, Azure Security Groups), and cloud networking (AWS, Azure, VMware NSX).
•Proficient in network performance monitoring (SolarWinds, PRTG, Wireshark), compliance frameworks (NIST 800-171, ISO 27001/27002), and automation tools (Cloud APIs, PowerShell, Bash Scripting).
•Strong problem-solving abilities in troubleshooting L3/MPLS networks, optimizing QoS policies, and securing multi-site hybrid infrastructures. Adept at collaborating with cross-functional teams to ensure consistent uptime and seamless network scalability.
•Key Achievements:
•Enhanced proactive network monitoring by 60% using AI-based detection tools and SNMP monitoring
(SolarWinds, PRTG), improving network reliability and reducing downtime.
•Optimized network efficiency by 20% through the implementation of BGP, OSPF, and inter-VLAN routing across Cisco and Juniper environments.
•Reduced latency by 25% by deploying QoS policies across WAN circuits, ensuring seamless VoIP and real-time application performance.
•Secured over 1,500+ endpoints by implementing NAT, ACLs, and VPN policies on Cisco ASA firewalls, strengthening enterprise-wide network security.
•Improved service uptime and network failover by designing and configuring VRRP, HSRP, and GLBP redundancy mechanisms across multi-site environments.
•Led incident response and network troubleshooting efforts, diagnosing Layer 3 MPLS network issues using Wireshark, TCPDump, and TSN Workstation, ensuring SLA compliance. Skills
Networking Technologies & Protocols: OSPF, EIGRP, BGP, RIP, Static Routing, ICMP, SNMP, OSI Model, TCP/IP, UDP, IPv4/v6, ARP, Subnetting, STP, RSTP, VTP, DTP, VLAN, 802.1q, EtherChannel, AGP, PAGP, DHCP, DNS, NTP, HSRP, GLBP, VRRP.
Network Security & Authentication: VPN (IPsec, SSL), Cisco ISE, AAA (TACACS+ & RADIUS), SSH, Azure AD/Entra ID. Firewalls & Security Tools: Cisco ASA, Global Protect VPN, Panorama, ACLs, NAT rules. Network Management & Monitoring: Cisco DNA Center, SNMP, Wireshark, SolarWinds. Cloud & Virtualization Technologies: AWS, Azure, VSS, VDC, VPC, VMware NSX, vRealize Network Insight. Compliance & Security Frameworks: NIST 800-171, ISO 27001/27002. Operating Systems & Languages: Windows, Linux, Unix, Mac OS, .NET. Others Tools: Visio, Microsoft Projects, Microsoft Teams. Professional Experience
Network Engineer, Dominion System Oct 2024 – present Iowa City, IA
•Designed, configured, and optimized enterprise VLAN and VPN networks, ensuring consistent service uptime across multi-site cloud and on-prem environments.
•Enhanced proactive network monitoring by 60% using AI-based detection tools and SNMP-based monitoring
(SolarWinds, PRTG) to predict and mitigate failures before impact.
•Implemented advanced routing solutions with Cisco IOS and Juniper Networks, optimizing BGP, OSPF, and inter-VLAN routing, leading to a 20% increase in network efficiency.
•Deployed and managed DOCSIS systems, ensuring optimal broadband service performance, including provisioning, troubleshooting, and capacity planning.
•Monitored and maintained EPON networks using Netdisco, HPNA, and Splunk, identifying and resolving signal loss, power level fluctuations, and fiber disruptions with minimal downtime.
•Developed and improved network architectures using TCP/IP-based solutions, enhancing interoperability across cloud, WAN, and on-prem infrastructures.
•Configured Layer 3 switches and WAN CE routers, implementing inter-VLAN routing and VRRP failover mechanisms to ensure redundancy and seamless connectivity.
•Deployed IP address management (IPAM) solutions, integrating DHCP, DNS, and NTP services for automated network configuration and improved security policies.
•Implemented firewall security policies on Cisco ASA and Azure Security Groups, strengthening VPN access controls, NAT configurations, and ACL enforcement.
•Led incident response investigations, troubleshooting network outages using TSN Workstation and Wireshark, collaborating with teams to maintain 24/7 network reliability. Network Engineer, CVS Health Jan 2022 – Oct 2024 Remote, IA
•Engineered and optimized BGP peering for a multi-site L3 private IP MPLS carrier network, troubleshooting WAN CE routers, QoS policies, and route flaps.
•Diagnosed and resolved complex Layer 3 (L3) network issues using packet capture analysis (Wireshark, TCPDump) to pinpoint anomalies in BGP, OSPF, MPLS, and EIGRP routing.
•Configured and maintained enterprise-grade firewalls (Cisco ASA), implementing NAT, ACLs, and VPN (IPsec, SSL) solutions to secure 1,500+ endpoints.
•Monitored and analyzed network traffic utilization using Splunk, HPNA, Netdisco, and SolarWinds, improving network performance by 30% through proactive congestion mitigation.
•Developed and deployed QoS policies across WAN circuits, prioritizing VoIP, mission-critical applications, and real-time traffic, reducing latency by 25%.
•Configured and optimized Layer 2 and Layer 3 switching environments, ensuring redundancy via HSRP, VRRP, and GLBP, and implementing EtherChannel, STP, and VLAN segmentation.
•Maintained and optimized enterprise Wi-Fi networks using Aruba Mobility Master, ensuring seamless authentication
(802.1x, Azure AD) for secure wireless access.
•Integrated network automation tools (Cloud APIs, PowerShell, and Bash Scripting) to streamline IPAM, DNS, and firewall rule updates, reducing manual interventions and human errors.
•Investigated security alerts and logs using Cisco ISE, TACACS+, and RADIUS, proactively enforcing zero-trust policies and remediating unauthorized access attempts.
•Conducted network security audits and compliance assessments with NIST 800-171 and ISO 27001/27002, ensuring adherence to industry regulations and corporate policies.
•Trained and mentored junior engineers, enhancing team efficiency by 35%, while developing best practices for network troubleshooting, firewall management, and security hardening. Certificates
CCNA - Cisco Certified Network Associate Certificate in Computer Engineering Network Online Academic
Education
Computer Engineering, Landmark Metropolitan University Jan 2023 – Dec 2023 US Bachelor’s Degree in Economics and Social Law,
University of Lubumbashi
Jul 2005 – Jul 2010 Lubumbashi