Nagabrahmendra Putta
Hartford, CT, USA
+1-860-***-**** *****.*******@*****.*** http://www.linkedin.com/in/brahmendra-putta-
Summary
•Network Engineer with over 5 years of experience designing, deploying, and managing robust, secure, and scalable network infrastructures across enterprise and cloud environments.
•Proven expertise in configuring and maintaining LAN/WAN, data center, and cloud network systems using Cisco, Juniper, Arista, and Palo Alto technologies.
•Strong background in Cisco and Arista platforms, routing protocols (EIGRP, OSPF, BGP), and network automation using Arista CloudVision, Arista AVD, Ansible, and Terraform.
•Skilled in automation and network orchestration with Python, REST APIs, Ansible, and Terraform to streamline deployments and minimize operational overhead.
•Hands-on experience supporting mission-critical applications in Agile environments, participating in sprint planning, retrospectives, and backlog grooming with cross-functional teams.
•Specialized in enterprise security implementations using Cisco ISE, Cisco ASA, Fortinet, and Palo Alto Panorama; integrated advanced monitoring via Wireshark, SolarWinds, NetBrain, Splunk, and ThousandEyes.
•Contributed to cloud networking and SD-WAN transformations leveraging AWS Direct Connect, GCP, Cisco ACI, EVPN-VXLAN, and Silver Peak.
•Strong communicator with a track record of authoring detailed HLD/LLD designs, SOPs, and change documentation while adhering to ITIL frameworks and DevSecOps best practices.
Certifications
Cisco Certified Network Professional (CCNP) Enterprise
Palo Alto Networks Certified Network Security Administrator (PCNSA)
Education
University of Bridgeport
Master’s in Computer Science Bridgeport, CT
Experience
Kaiser Permanente May 2024 – Present
Senior Network Engineer Oakland, California
•Architected and deployed a high-performance, low-latency network infrastructure to support Kaiser Permanente’s telemedicine and EHR (Electronic Health Record) systems, ensuring HIPAA-compliant data transmission and real-time access to patient information.
•Designed and deployed dynamic routing solutions using OSPF and BGP to ensure optimized routing paths and redundancy across critical hospital sites.
•Configured and maintained Arista DCS and CCS platform switches, leveraging Arista CloudVision and AVD for automated configuration management and compliance tracking.
•Performed regular validation of BGP peering status, prefix advertisements, and route policy updates in multi-homed environments.
•Deployed and supported Cisco Catalyst and Nexus switches in multi-site healthcare networks, including configuration of VLANs, EtherChannel, VTP, and spanning tree protocols to ensure network redundancy and performance.
•Delivered L1/L2 support for network tickets related to firewall rule modifications, and wireless connectivity issues across Cisco and Fortinet environments.
•Responded to customer support tickets through ServiceNow and Jira, maintaining SLA adherence while delivering high-quality technical resolutions.
•Installed and configured firewall policies, IPSec tunnels, and NAT rules on Fortinet and Palo Alto firewalls for branch office connectivity.
•Troubleshot Layer 2 and Layer 3 issues including VLAN mismatches, STP loops, and BGP route flaps in Cisco Catalyst and Nexus environments.
•Conducted wireless access points (Cisco and Aruba) troubleshooting including RF interference analysis, VLAN assignment, and DHCP conflicts.
•Created and maintained standard operating procedures (SOPs), runbooks, and network health check documentation where vendor guides were insufficient.
•Worked with vendors (Cisco, Fortinet) to escalate and resolve critical networking issues and hardware replacements.
•Monitored logs and traffic using syslog servers, SNMP-based tools (SolarWinds, NetBrain), and packet analyzers like Wireshark for performance and security insights.
Visa Inc. May 2023 – Apr 2024
Network Engineer Austin, Texas, USA
•Involved in complete LAN, WAN development (including IP address planning, designing, installation, configuration, testing, maintenance etc.). Design of DMZ in primary and redundant data centers with Next Gen Firewalls, IPS/IDS sensors, Switching and routing.
•Redesigned network segmentation architecture for data center modernization in collaboration with the security and infrastructure teams using Cisco Nexus 9000 and ACI fabric.
•Built REST API-based automation scripts using Python to streamline configuration validation and logging, reducing dependency on manual verification.
•Led cross-functional sprint planning with DevSecOps teams to align infrastructure readiness with product release cycles.
•Implemented advanced routing configurations using BGP and OSPF for optimal path selection and failover in highly available network environments.
•Integrated Cisco ISE with Active Directory to enforce context-based access and dynamic VLAN assignments for 10,000+ endpoints.
•Configured port-channels, HSRP, and dual uplinks across edge routers to meet high availability standards during regional disaster recovery exercises.
•Collaborated with Splunk engineering team to set up log correlation for real-time anomaly detection tied to network behavior.
•Created and maintained detailed network design documentation and runbooks to support agile sprints and rapid deployment cycles.
Lloyds Banking Group October 2020 – June 2022
Network Operations Engineer Hyderabad, India
•Led operations support for enterprise-wide WAN and LAN infrastructure, managing over 250 devices including routers, switches, and firewalls.
•Utilized Cisco Prime Infrastructure and NetFlow Analyzer to monitor real-time traffic, generate performance reports, and troubleshoot anomalies.
•Performed ACL and firewall policy modifications across Palo Alto and Cisco Firepower appliances to meet dynamic security requirements.
•Enabled seamless remote work environment by enhancing VPN load balancing and redundancy using Cisco AnyConnect and ISE integration.
•Supported network automation initiatives using Python and Ansible for device configuration backups and compliance checks.
•Improved network incident resolution time by 30% by implementing SOPs and conducting RCA for recurring issues.
•Assisted in SD-WAN proof-of-concept testing and migration for regional branches using Viptela solutions.
•Provided L2/L3 support aligned with ITIL processes, documented changes and resolutions in ServiceNow.
Carl Zeiss AG March 2019 – September 2020
Network Engineer Bengaluru, India
•Configured and maintained Cisco routers and switches (Catalyst 2960, 3850 series), supporting enterprise LAN and WAN infrastructure across corporate offices.
•Monitored network performance using SolarWinds NPM and Wireshark, ensuring 99.9% uptime and proactive issue resolution.
•Assisted in implementing firewall rules and NAT policies on Palo Alto and Fortinet devices as part of the security hardening process.
•Deployed and managed VPN tunnels (IPSec/SSL) for secure remote access using Cisco ASA.
•Collaborated with the senior network engineering team during a site-to-site VPN rollout across 5 global locations.
•Conducted routine network audits and device backups using TFTP servers and configuration management tools.
•Troubleshot Layer 2 and Layer 3 issues involving STP, VLANs, EIGRP, and OSPF routing protocols.
•Documented network diagrams using Microsoft Visio and maintained accurate change logs in ITIL-based service management tools (e.g., ServiceNow).
Technical Skills
Networking: LAN/WAN, BGP, OSPF, EIGRP, STP, VLANs, HSRP, EVPN-VXLAN, SD-WAN, DNS, DHCP, NAT, VPN (IPSec/SSL)
Devices/Platforms: Cisco (Catalyst, Nexus, ASA, Firepower), Juniper MX, Arista 7280, Palo Alto, Fortinet, Silver Peak, Cisco ISE, Cisco ACI
Cloud & Virtualization: AWS (VPC, Direct Connect), GCP, Azure, VMware ESXi, GNS3, EVE-NG Monitoring/Automation Tools: SolarWinds, Wireshark, NetFlow, NetBrain, Splunk, ThousandEyes, Ansible, REST APIs, Python, Terraform
DevOps/CI-CD Tools: Git, GitLab, Jenkins, Jira, ServiceNow, Microsoft Visio
Security Tools: Cisco SecureX, Palo Alto Panorama, Firewalls, ACLs, Cisco AnyConnect, Cisco ISE, Snort
Routing Protocols: Deep expertise in OSPF (multi-area, stub, NSSA) and BGP (iBGP, eBGP, route reflectors, communities).
Switching Technologies: VLANs, VTP, STP, HSRP, EtherChannel, with hands-on experience configuring Arista 7280 series, Cisco Catalyst 9K and Nexus 9K.