D sirisha
Contact 205-***-****
Email: *******************@*****.***
LinkedIn: www.linkedin.com/in/dondapati19
Network Engineer
SUMMARY:
Network Engineer with approximately 5 years of experience in network design, implementation, and support, including hands-on expertise with Cisco Nexus 7000, 5000, and 2000 series switches."
Routing, switching, firewall technologies, system design, implementation and troubleshooting of complex network systems.
Experience in site - to-site and remote access VPN solutions
Expertise in routing, switching, and firewall technologies with a strong background in the design, deployment, and troubleshooting of complex network infrastructures.
Hands-on experience implementing and supporting both site-to-site and remote-access VPN solutions to ensure secure connectivity across distributed environments
Worked on network topologies and configurations, TCP/IP, UDP, Frame Relay, ATM, bridges, routers, hubs and switches.
Implementation of Juniper Firewall, SSG Series, Net screen Series ISG 1000, SRX Series.
In-depth knowledge and experience in WAN technologies including OC3, E3/T3, E1/T1, Point to Point, MPLS and Frame Relay.
Experience in Configuring and implementing VLAN, VTP domains, LAN switching and STP/RSTP
Experience in QOS on multicast VPN
Experience on Wide area application services
Experience in Cisco: Physical cabling, IP addressing, Wide Area Network configurations (Frame-relay & MPLS), Routing protocol configurations (RIP, EIGRP, DMVPN, GRE, OSPF, BGP)
Proficiency in configuration of VLAN setup on various CISCO Routers and Switches.
Hands-on configuration and experience in setting up Cisco routers to perform functions at the Access, Distribution, and Core layers.
Knowledge of implementing and troubleshooting complex layer 2 technologies such as VLAN Trunks, VTP Ether channel, STP, RSTP and MST.
Extensive hand on experience with complex routed LAN networks, CISCO Routers and Switches.
Working configuration of new VLANs and extension of existing VLANs on/to the necessary equipment to have connectivity between two different data centers.
Experience in managing routers such as Juniper, Cisco, HP and load balancers such as F5, NetScaler etc.
Experience working in Cloud infrastructure with VMware ESXi Server platforms for application servers. Network Configuration for server apps and app migrations support
In-depth expertise in the analysis, implementation, troubleshooting & documentation of LAN/WAN architecture and good experience on IP services.
Experience through Hand-on Experience with configuring T1.5, Gigabit Ethernet, Channelized T3 and full T3, OCX, ATM, Frame-Relay and VOIP (Voice-Over Internet Protocol).
Experience with Change management process and Project documentation tools like Excel and VISIO.
Experienced working on network monitoring and analysis tools like, SOLAR WINDS, CISCO works and RIVER BED and Wireshark.
Extensive experience in configuring and troubleshooting of protocols RIP v1/v2, EIGRP, OSPF, BGP and MPLS.
Well experienced in configuring HSRP, GLBP, ICMP, PPP, PAP, CHAP and SNMP.
Excellent communication skills, enthusiastic, motivated and a team player.
Experience in installing and configuring DNS, DHCP server.
TECHNICAL SKILLS:
Load Balancer
Cisco CSS, F5 Networks, Citrix NetScaler
WAN Optimization
Cisco WAAS, PPP Multilink
Routing
OSPF, EIGRP, BGP, RIP-2, PBR, Route Filtering, Redistribution, Summarization, Static Routing
Switching
VLAN, VTP, STP, PVST+, RPVST+, Inter VLAN routing & Multilayer Switching, Multicast operations, Layer 3 Switches, Ether channels, Transparent Bridging
LAN
Ethernet, Fast Ethernet, Gigabit Ethernet, FDDI, CDDI, Token Ring, ATM LAN Emulation
WAN
Leased lines 64k - 155Mb (PPP / HDLC), Channelized links (E1/T1/E3/T3), Fiber Optic Circuits, Frame Relay, ISDN, and Load Balancing.
Various Features & Services
IOS and Features, HSRP, GLBP, IRDP, NAT, SNMP, SYSLOG, NTP, DHCP, CDP, DNS, TFTP and FTP Management.
IP Telephony
IP Telephony utilizing Cisco routers, FXO/FXS/E&M/T1/ISDN/ PRI, Call manager (publisher & subscriber)
AAA Architecture
TACACS+, RADIUS, Cisco ACS.
Security / Firewalls
Cisco ASA Firewalls 55XX, IPSEC & SSL VPNs, IPS/IDS, DMZ Setup, CBAC, Cisco NAC, ACL, IOS Firewall features, IOS Setup & Security Features
Juniper
SRX210, SRX240
PROFESSIONL EXPERIENCE:
Client: Pfizer – NYC, NY May 2024 – Present
Role: Network Engineer
Responsibilities:
Providing remote support for Cisco Partners in the Planning Design and Implementation phases.
Supported the technologies like IWAN Solutions, APIC-EM, Prime Infrastructure.
Engaged in the Cisco DNA Voucher Operations Program as a DNA Mentor to provide mentoring service to sales eligible Cisco Partners.
Assistance provided with initial installation and configuration for IWAN along with the IWAN Readiness Assessment for the newly implementing customers.
Deep knowledge on the overall IWAN design.
Experience with configuring DMVPN tunnels for the MPLS and ISP clouds, which are responsible for Transport Independent Design of IWAN.
Experience in configuring the PFRv3 routing protocol for the application optimization.
Also configured and troubleshot the EIGRP and IBGP for the IWAN overlay routing.
Worked with ISR 4k, ASR 1k, CSR 1000v and other IWAN compatible routers.
Helped Partners with deploying Greenfield IWAN solution with the built in IWAN App in the APIC-EM appliance.
Expertise on VMware V center, ESX and Citrix environment
Experience with partners on installation and configuration problems and issues related to SDN-NFE, DNAC.
Experience with Cisco DNA solutions ISE, NGFW, Prime, ESA, WSA, VPN and CWS implementations
Compliance with all ESA safety and security policies.
Helped Partners with APIC-EM implementation and understand the features like Discovery, Path Trace.
Also configured built-in out of the box applications like Easy-QOS, PNP and IWAN App.
Configure and installation Cisco prime infrastructure to deploy IWAN.
Review Networking designs, project plans and implementation plan to offer guidance based on best-practices and Cisco Validated Designs
Exposure to multiple technologies and builds/troubleshooting: VSAN/NSX/SDN/VXLAN, etc.
Educate Partners to locate and use documentation, tools and processes associated with solid planning principals.
Assist partners with plans and executions of highly complex system upgrade and migration activities.
IOT & Wireless - Wireless LAN Controllers, Network connectivity i.e. Cisco’s Ruggedized Industrial router and switches configuration and functionality.
Experience with partners on installation and configuration problems and issues related to SDA, DNAC.
Worked on ISE 802.1X, ISE wired/wireless guest and ISE trustsec implementations.
Exposure to multiple technologies and builds/troubleshooting: VSAN/NSX/SDA/VXLAN, etc.
Mentoring the partner technical engineer on executing the Voucher Guidelines for ISE Trustsec activation, ISE Wireless guest management activation.
Upgrade Cisco 6500-E, 3560, and 2960 switches to IOS software that is on the ISE compatibility matrix.
Recently refreshed data center access layer with Nexus 9k's to prepare the infrastructure for future SDA requirements
Implemented Cisco ISE for wired and wireless user authentication utilizing certificates and MAB for all known company assets.
Assistance provided with initial installation and configuration for SDA (ISE, DNAC+Assurance, Stealth watch, APIC-EM, Catalyst 9k and programmability) Assessment for the newly implementing customers.
Provide remote support for partners on installation and configuration problems and issues related to SDA, DNAC.
Assist partners with plans and executions of highly complex system upgrade and migration activities. knowledge on the ISE integration in DNA Center
Worked extensively with Nexus 9K, Catalyst 3K, 6K and ASR 1K, ISR 4K and CSRv.
Environment: Cisco Catalyst 2960/3750/4500/6500 Series Switches, Cisco 2800/2900/3000/4000/4451 Series ISR’s and Cisco 3640/ 0/3845/3600/2800 routers, Citrix NetScaler, Cisco ASR 1K Cisco Nexus 9k,7K, Cisco ASA 5500, Checkpoint, windows server 2003/2008, F5 BIGIP LTM/GTM, ACL, RIP, OSPF, BGP, EIGRP, DMVPN, GRE, LAN, WAN, VPN, HSRP.
Client: Ernst & Young – Charlotte, NC June 2023 – Apr 2024
Role: Network Engineer
Responsibilities:
Responsible for installation, troubleshooting of firewalls (Cisco firewalls, Imperva Web App Firewalls, Checkpoint firewalls and Juniper firewalls,) and related software, and LAN/WAN protocols
Administering multiple Firewall of Juniper/Net Screen, in a managed distributed environment. Fulfilling routine change requests of Net Screen OS Firewall and resolving trouble tickets, maintain and monitoring firewalls using scanning software Nesses
Knowledge of Juniper environment including SRX/Junos Space
Hands on experience on all software blades of checkpoint firewall
Configuring VPN, clustering and ISP redundancy in Checkpoint firewall
Configuring, maintaining and troubleshooting IPS and IPS-1 in Checkpoint
Configured redundant interfaces, DHCP server, DHCP relay, ntp settings, and sub interfaces on firewalls
Involved in migrating applications from NetScaler to F5 Big - IP environment.
Built and support VRRP / Cluster based HA of Checkpoint firewalls
Perform Checkpoint and PIX firewall/IDS design, integration and implementation for Cyber Trap client networks
K2Responsible for installation, troubleshooting of firewalls (Imperva Web app Firewalls, Checkpoint firewalls) and related software, and LAN/WAN protocols.
Responsible for the implementation, documentation, and day-to-day support of the Imperva Database Firewall
Perform advanced troubleshooting using Packet tracer and TCP dump on firewalls
Configuring VLAN, Spanning tree, VSTP, SNMP on Juniper EX series switches
Implement changes on switches, routers, load balancers (F5 and CSS), wireless devices per engineer’s instructions and troubleshooting any related issues
Installed and monitored performance of wired and wireless networks to maximize operations.
Troubleshooting the VPN tunnels by analyzing the debug logs and packet captures
Automation of security operations and optimizing the usage of infrastructure
Configuring and testing Multicast for both IPv4 and IPv6 routing in Data Center Environment
Configuration of SSL VPN through access blade and up-gradation of Firewall
Participated in Pfizer Legacy Data Center Network Infrastructure Transition and Disaster Recovery Center transition for various locations
Works closely with Customers in determining the business needs for a Project and build Detail design which includes Data Flow diagram, Logical and Physical Diagram
Planning, designing and implementing a secure ODC Network setup for upcoming projects
Environment: Cisco 2948/3560/4500/3560/ 3750/3550/3500/ switches and Cisco /7200/ 3845/3600/2800 routers, Cisco Nexus 7K/5K, Cisco ASA 500, F5 BIGIP LTM, RIP, OSPF, BGP, EIGRP, LAN, WAN, VPN, HSRP
Client: Inteq Solutions – India Mar 2020 – Nov 2022
Role: Network Engineer
Responsibilities:
Configuring various advanced features (Profiles, monitors, iRules, Redundancy, SSL Termination, Persistence, SNATs, HA on F5 BIGIP appliances SSL termination and initiation, Persistence, Digital Certificates, executed various migration/upgrade projects across F5 and hands on with F5 BIGIP LTMs/EM.
Experience working in Cloud infrastructure with VMware ESXi Server platforms for application servers. Network Configuration for server apps and app migrations support.
Experience with convert Checkpoint VPN rules over to the Cisco ASA solution. Migration with Cisco ASA VPN experience
Implementation, configuration and support of Checkpoint and ASA firewalls for multiple clients
Implemented and troubleshooting the Virtual firewalls (Contexts) solutions in ASA
Regular upgrade and maintenance of Infrastructure, Installing, configuring, and maintaining Cisco Switches (2900, 3500, 7600, 3700 series, 6500 series) Cisco Routers (4800, 3800, 3600, 2800, 2600, 2900, 1800, 1700, 800) Cisco Router and Switches, Juniper Routers and Firewalls, Nexus 7k,5k & 2k, f5 BIG IP, Palo Alto Firewalls, Bluecoat Proxy and Riverbed Steelhead appliances
Configuring various BGP attributes such as Local Preference, MED, Extended Communities, Route-Reflector clusters, Route-maps and route policy implementation.
Worked extensively in Configuring, Monitoring and Troubleshooting Juniper security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
Convert Branch WAN links from TDM circuits to MPLS and to convert encryption from IPSec/GRE to Get VPN.
Rebuilding data centers and redundant sites for failover, F5 load balancers
Migrated, created, and managed pools and clusters in F5 BigIP GTM 3DNS load balancers across multiple Datacenters.
Converting CatOS to Cisco IOS Config Conversion on distribution layer switches
Conversions to BGP WAN routing. Which will be to convert WAN routing from OSPF to BGP (OSPF is used for local routing only) which involves new wan links.
Involved in Configuration of Access lists (ACL) on Juniper and Palo Alto firewall for the proper network routing for the B2Bnetwork connectivity.
Switching technologies like VLAN, Inter-VLAN Routing, Ether-channel, VTP, MLS, HSRP, VRRP,
Planning, Designing and assisting in deploying enterprise-wide Network Security and High Availability Solutions for ASA.
UDLD, Spanning Tree Protocol 802.1d, 802.1s and 802.1w.
Understanding of mobile backhaul network on IP, Ethernet, ATM, PW & TDM.
Experience of IP/MPLS/Optical Transmission network for access transport & back haul network to facilitate 2/3/4G Network.
Worked extensively in Configuring, Monitoring and Troubleshooting Juniper security appliance, Failover DMZ zoning & configuring VLANs/routing/NATing with the firewalls as per the design.
Troubleshooting and management Cisco, Juniper, Huawei, Redback and Extreme devices.
Understanding of 2/3G services and traffic flow.
Troubleshooting and management of Net Screen and SRX Firewalls.
Environment: Cisco 3750/3550/3500/2960 switches and Cisco 3640/ 0/3845/3600/2800 routers, Cisco ASA5510, Checkpoint, Palo Alto, Cisco Nexus7K/5K, 2248/3560/5020/6509, ASA, Checkpoint, LAN, OSPF, BGP, RIP, EIGRP