Post Job Free
Sign in

Senior Network Implementation Engineer (EVPN & Load Balancing)

Location:
Austin, TX
Posted:
October 08, 2026

Contact this candidate

Resume:

harshavardhan reddy dasappagari

Senior Network Implementation Engineer

+1-737-***-**** *****************@*****.*** Linkedin

Arista EVPN-VXLAN & BGP Cisco Nexus & ACI Palo Alto NGFW & Panorama Fortinet SD-WAN AWS & Azure

professional summary

Senior Network Implementation Engineer with around 6 years of experience supporting enterprise load balancing, application delivery, network security, and production infrastructure across banking and large-scale environments. Hands-on experience with F5 BIG-IP LTM and GTM, including virtual servers, pools, health monitors, persistence, iRules, SSL offload, GSLB, DNS, and high availability. Experienced in troubleshooting complex Layer 4 through Layer 7 issues involving TCP/IP, BGP, DNS, HTTPS, SSL/TLS, routing, certificates, persistence, and backend application connectivity. Work across F5 BIG-IP, AVI/NSX Advanced Load Balancer, A10, Citrix ADC, AWS ALB/NLB, and Azure Application Gateway, supporting application delivery, production changes, validation, incident response, and RCA. Develop Python and Bash automation for configuration validation, audits, backups, and repetitive operations, with additional experience using REST APIs, Ansible, Terraform, and GitLab CI/CD. Work closely with application, security, network, and operations teams on implementation planning, runbooks, change management, rollback procedures, SLA-based troubleshooting, and production service restoration.

key achievements

Load Balancing & Application Delivery

• Supported F5 BIG-IP LTM and GTM application delivery environments, configuring virtual servers, pools, health monitors, persistence, iRules, SSL offload, GSLB, DNS, and high availability.

• Troubleshot Layer 4 through Layer 7 application traffic involving TCP/IP, HTTPS, SSL/TLS, DNS, persistence, backend connectivity, routing, and load-balancer health using packet-level diagnostics.

Application Delivery Platforms & Cloud

• Supported F5 BIG-IP, AVI/NSX Advanced Load Balancer, A10, Citrix ADC, AWS ALB/NLB, and Azure Application Gateway across enterprise, data-center, and cloud environments.

• Supported application traffic across hybrid AWS, Azure, and GCP environments using BGP, Direct Connect, ExpressRoute, Cloud Interconnect, DNS, routing controls, and cloud load-balancing services.

SSL/TLS, DNS & Network Security

• Supported SSL offload and HTTPS application connectivity through SSL/TLS profiles, certificate validation, DNS resolution, firewall policies, backend reachability, and production traffic troubleshooting.

• Managed Palo Alto, Check Point, and Cisco security controls protecting application traffic, including Security policies, NAT/PAT, App-ID, User-ID, SSL inspection, segmentation, and threat prevention.

Data Center, Routing & Switching

• Supported Arista 7800R3/7280R3 EVPN-VXLAN, Cisco Nexus 9K, and ACI fabrics, troubleshooting BGP advertisements, VTEPs, VRFs, vPC/MLAG, BFD, MTU, and application connectivity.

• Managed enterprise routing across Cisco, Arista, and Juniper environments using BGP, OSPF, VLANs, VRFs, HSRP/VRRP, and redundant network paths supporting application delivery.

Automation & APIs

• Automated configuration validation, audits, backups, provisioning, and operational checks using Python, Bash, Ansible, Terraform, Netmiko, NAPALM, REST APIs, and Git-based workflows.

• Used automation and validation workflows to support controlled infrastructure changes, configuration consistency, pre-change checks, post-change verification, and repetitive network operations.

Monitoring, RCA & Production Operations

• Resolved production application and network issues using Wireshark, Splunk, ThousandEyes, ScienceLogic SL1, SolarWinds, NetBrain, NetFlow, syslog, packet captures, and traffic-path analysis.

• Supported ITIL-based production changes through implementation planning, peer validation, maintenance windows, rollback procedures, post-change testing, incident troubleshooting, RCA, and service restoration.

certifications

• Cisco Certified Network Professional (CCNP)

• AWS Certified Advanced Networking – Specialty

• Microsoft Certified: Azure Security Engineer Associate (AZ-500)

• CompTIA Security+ ce

• Zscaler ZDTA (Digital Transformation Administrator)

• Fortinet FortiAnalyzer 7.6 Analyst (NSE 5)

technical skills

Load Balancing & Application Delivery: F5 BIG-IP LTM, GTM/DNS, ASM (Application Security Manager), APM (Access Policy Manager), Virtual Servers, Pools, Nodes, Health Monitors, Persistence, iRules, SSL Profiles, SSL/TLS Offload, SSL Termination, Traffic Management, GSLB, DNS, High Availability, Device Service Clustering; AVI/NSX Advanced Load Balancer, A10, Citrix ADC/NetScaler, HAProxy, AWS ALB/NLB, Azure Load Balancer, Application Gateway/WAF

F5 Application Security & Access: F5 BIG-IP ASM/WAF, APM, Access Policies, SSL/TLS Profiles, PKI, X.509 Certificates, Certificate-Based Authentication, HTTP/HTTPS Inspection, Application Security Policies, SSL Offload, Secure Application Access

Application Delivery Protocols & SSL: TCP/IP, HTTP/HTTPS, SSL/TLS, DNS, BGP, Layer 4/Layer 7 Traffic Management, SSL Termination/Offload, PKI, X.509 Certificates, Application Persistence, Backend Connectivity, DNS Resolution

Scripting Languages & APIs: Python, Bash, PowerShell, REST APIs, YAML, JSON, Jinja2, Netmiko, NAPALM, Paramiko, Nornir, AWS CLI

Network Automation, IaC & CI/CD: Ansible, Terraform, Infrastructure as Code, NETCONF, RESTCONF, YANG, Git/GitHub, GitLab CI/CD, Jenkins, Azure DevOps, Configuration Validation, Provisioning, Backups, Drift Detection

Monitoring, Troubleshooting & RCA: Wireshark, tcpdump, Splunk, SolarWinds NPM/NCM, ThousandEyes, ScienceLogic SL1, NetBrain, Nagios, NetFlow/sFlow/IPFIX, SNMP, Syslog; F5 Traffic Troubleshooting, Packet Analysis, Application-Path Troubleshooting, SSL/TLS Troubleshooting, DNS Troubleshooting, Incident Triage, Root Cause Analysis

Application Delivery Lifecycle & ITSM: Application Delivery Infrastructure, Application Onboarding, Infrastructure Refreshes, Code Upgrades, Production Cutovers, Configuration Validation, Implementation Plans, Migration Plans, Test Plans, Runbooks, Rollback Plans, Production Readiness, Operational Handoff, P1/P2 Escalations, Incident Management, Problem Management, Change Management, ITIL, ServiceNow, Jira, BMC Remedy, Vendor TAC Coordination

Data Center, Routing & Switching: BGP, eBGP/iBGP, OSPF, EIGRP, IS-IS, MPLS, EVPN-VXLAN, BGP Underlay/Overlay, VRF, VLANs, Layer 2/Layer 3 Networking, TCP/IP, IPv4/IPv6, 802.1Q, STP/RSTP/MSTP, EtherChannel/LACP, QoS, Multicast, HSRP, VRRP, BFD, DMVPN, GRE, IPsec

Network Platforms & Data Center Fabrics: Arista Networks 7280R3/7800R3, Cisco Nexus 5K/7K/9K, Catalyst 2960-X/3560-X/3850/9300/9500, Cisco ASR/ISR, Cisco ACI/APIC, Juniper MX/SRX/EX, HPE Aruba Switching, Cisco Meraki MS, Nokia 7750, Dell; Spine-Leaf/Clos, VTEP, vPC, MLAG, Bridge Domains, EPGs/ESGs

Firewall & Network Security: Palo Alto Networks NGFW PA-3220/PA-5220/PA-5450/PA-7080/VM-Series, PAN-OS, Panorama, App-ID, User-ID, Threat Prevention, WildFire, URL Filtering, SSL Decryption, GlobalProtect, Security Policies, NAT/PAT, HA; Fortinet FortiGate, FortiManager, FortiAnalyzer; Check Point R80/R81/SmartConsole, Cisco ASA/FTD/FMC, Juniper SRX, IDS/IPS, IPsec/IKEv2, SSL VPN

Cloud Networking & Hybrid Infrastructure: AWS VPC, Subnets, Route Tables, Transit Gateway, Direct Connect, PrivateLink, VPN, Route 53, Security Groups, NACLs; Azure VNet, VNet Peering, ExpressRoute, Virtual WAN, VPN Gateway, NSG, UDR, Azure Firewall; GCP VPC, Cloud Router, Cloud VPN, Cloud Interconnect, Cloud NAT, Cloud DNS; Hybrid Cloud, Multi-Cloud Networking

SD-WAN, WAN, Zero Trust & SASE: Cisco SD-WAN/Viptela, vManage, vBond, vSmart, cEdge/vEdge, OMP, ZTP, Application-Aware Routing, SLA Policies, Fortinet Secure SD-WAN, Versa, Silver Peak/Aruba EdgeConnect, VMware VeloCloud, MPLS/VPLS; Prisma Access, Zscaler ZIA/ZPA, ZTNA, SASE, SSL Inspection, CASB, DLP, Secure Remote Access

Network Access Control, Identity & IPAM: Cisco ISE 3.x, Aruba ClearPass, 802.1X, EAP-TLS, MAB, RADIUS, TACACS+, Active Directory, Azure AD/Entra ID, Okta, SAML, OAuth2, MFA, PKI, X.509 Certificates, Identity-Aware Access, Infoblox DDI/IPAM, DNS, DHCP

SDN, Virtualization & Micro-Segmentation: Cisco ACI/APIC, VMware NSX-T, Tier-0/Tier-1 Gateways, Logical Switching, Distributed Firewall, Micro-Segmentation, East-West Traffic Segmentation, Network Virtualization, Software-Defined Networking

Wireless Networking: Cisco WLC 9800, Catalyst 9100/9120, Aironet 2802, Cisco Meraki, Aruba Wireless 7240/7280, Wi-Fi 6/6E, 802.11a/b/g/n/ac/ax, WLAN/SSID, WPA2/WPA3-Enterprise, CAPWAP, FlexConnect, RF Tuning, Roaming, 802.1X/EAP-TLS

professional experience

Tesla - Austin, TX Aug 2024 – Present

Senior Network Implementation Engineer

•Support F5 BIG-IP LTM/GTM application delivery services, troubleshooting virtual servers, pools, nodes, health monitors, persistence profiles, iRules, SNAT, SSL profiles, GSLB, DNS, and backend connectivity.

•Administer F5 BIG-IP ASM/WAF controls for application traffic, analyzing security policies, HTTP/HTTPS requests, violations, blocked traffic, attack signatures, and application-access issues during production incidents.

•Support F5 BIG-IP APM application access, troubleshooting access policies, authentication flows, session profiles, SSO dependencies, SSL/TLS connectivity, user sessions, and backend application availability.

•Troubleshoot Layer 4 through Layer 7 application traffic involving TCP/IP, HTTPS, SSL/TLS, DNS, BGP, load balancing, persistence, firewalls, SNAT, and backend services using packet-level analysis.

•Configure and troubleshoot F5 application switching and traffic management components including profiles, persistence, OneConnect, connection reuse, TCP optimization, HTTP profiles, pool-member selection, and health monitoring.

•Perform pre-change and post-change F5 validation, checking virtual-server status, pool-member health, monitors, persistence, DNS resolution, SSL/TLS behavior, traffic flow, and application reachability.

•Support SSL offload and SSL termination by validating client/server SSL profiles, certificate chains, private keys, PKI dependencies, HTTPS sessions, cipher compatibility, and backend connectivity.

•Support SSL certificate and key lifecycle activities, including certificate installation, validation, expiration tracking, certificate-chain verification, private-key association, and rollover testing for application services.

•Troubleshoot F5 GTM/DNS and Infoblox DDI services covering Wide IPs, pools, GSLB, DNS resolution, DHCP, IPAM, health dependencies, and application name-resolution issues.

•Work with application, security, network, and operations teams to isolate service failures across F5 LTM/GTM, ASM/APM, DNS, SSL/TLS, routing, firewalls, and backend dependencies.

•Develop Python automation using REST APIs and F5 iControl REST concepts for configuration validation, application health checks, network audits, backups, JSON processing, and repetitive operational tasks.

•Build Ansible and Terraform automation for network provisioning, configuration validation, backups, policy deployment, audits, and infrastructure drift detection through controlled Git-based CI/CD workflows.

•Coordinate application-delivery changes through ServiceNow and ITIL processes, maintaining implementation procedures, validation steps, rollback plans, maintenance activities, operational handoffs, and supporting technical documentation.

•Perform production troubleshooting using Wireshark, Splunk, ThousandEyes, ScienceLogic SL1, SolarWinds, NetBrain, NetFlow, SNMP, and syslog to isolate application and network degradation.

•Deploy and support Arista 7800R3/7280R3 spine-leaf fabrics using BGP EVPN-VXLAN, VRFs, VTEPs, MLAG, BFD, and segmentation for high-availability data-center connectivity.

•Configure and troubleshoot BGP underlay and overlay routing across Arista and Cisco environments, resolving route advertisements, path selection, redistribution, MTU, asymmetric routing, and connectivity issues.

•Manage Cisco Nexus 9K and ACI/APIC fabrics using Tenants, VRFs, Bridge Domains, EPGs/ESGs, Contracts, VLANs, vPC, and segmentation across manufacturing and enterprise workloads.

•Operate Palo Alto PA-7080/PA-5450 through Panorama, managing Security and NAT policies, App-ID, User-ID, Threat Prevention, WildFire, SSL decryption, centralized logging, and HA.

Verizon - Tampa, Florida Oct 2023 – Jul 2024

Cloud security Engineer

•Managed F5 BIG-IP LTM/GTM application delivery services, supporting virtual servers, pools, health monitors, persistence, SSL offload, GSLB, DNS, load balancing, and highly available enterprise applications.

•Troubleshot Layer 4 through Layer 7 application connectivity across F5, DNS, SSL/TLS, routing, firewalls, and backend services using packet captures, logs, and traffic-path analysis.

•Supported SSL/TLS application delivery by validating SSL profiles, HTTPS connectivity, certificates, DNS resolution, health-monitor responses, persistence behavior, and backend application reachability during production changes.

•Supported F5 GTM/DNS services for application traffic distribution and availability, validating DNS resolution, GSLB behavior, network paths, application health, and dependent infrastructure.

•Performed application delivery validation during production changes, checking virtual servers, pool members, health monitors, persistence, SSL/TLS connectivity, DNS resolution, routing, and backend service availability.

•Worked with application, network, security, and cloud teams to troubleshoot complex service issues involving load balancing, TCP/IP, HTTPS, DNS, SSL/TLS, BGP, and firewall dependencies.

•Automated infrastructure provisioning and configuration validation using Terraform, Python, Ansible, Bash, REST APIs, AWS CLI, and GitLab CI/CD, including repetitive operational checks and drift detection.

•Investigated application and network incidents using Splunk, VPC Flow Logs, firewall logs, packet captures, DNS records, NetFlow, and cloud-native telemetry to identify connectivity failures.

•Built hybrid and multi-cloud connectivity across AWS, Azure, and GCP using Direct Connect, ExpressRoute, Cloud Interconnect, Transit Gateway, VPN, and BGP with segmented private routing.

•Configured AWS networking using Transit Gateway, PrivateLink, VPC Endpoints, route tables, NAT Gateway, Route 53, VPC Peering, Security Groups, and NACLs for application connectivity.

•Managed Azure networking and security using Azure Firewall, NSGs, ExpressRoute, Virtual WAN, Microsoft Defender for Cloud, Microsoft Sentinel, and RBAC across hybrid environments.

•Deployed Prisma Cloud CSPM across 80+ AWS and Azure accounts, identifying exposed services, Security Group misconfigurations, excessive permissions, and NIST 800-53/CIS compliance findings.

•Secured AWS environments using Security Groups, NACLs, Network Firewall, Firewall Manager, WAF, Shield, GuardDuty, Security Hub, CloudTrail, Config, and VPC Flow Logs.

•Administered Zscaler ZIA/ZPA across 15 branches, configuring SSL inspection, URL filtering, DLP, CASB, application segmentation, and identity-based access for internet and private applications.

•Implemented Prisma Access and Zscaler ZIA/ZPA services for enterprise cloud applications, applying identity-aware ZTNA and least-privilege access across distributed user and application environments.

•Managed Palo Alto NGFW and Panorama supporting hybrid-cloud connectivity, including Security and NAT policies, App-ID, User-ID, Threat Prevention, SSL decryption, Device Groups, Templates, and logging.

•Supported Cisco Viptela SD-WAN through vManage, vBond, vSmart, and cEdge, maintaining OMP routing, segmentation, QoS, and application-aware path selection for enterprise connectivity.

•Supported Cisco ASR and Nokia backbone environments using BGP, IS-IS, MPLS L3VPN, VRFs, and BFD, maintaining resilient connectivity between enterprise networks, data centers, and clouds.

HDFC Bank, India Jul 2021 – Jul 2023

Perimeter Network Security Engineer

•Managed F5 BIG-IP LTM/GTM services supporting Internet banking applications, configuring virtual servers, pools, health monitors, persistence, SSL profiles, iRules, GSLB, DNS, and high availability.

•Supported Layer 4 through Layer 7 application delivery, troubleshooting TCP/IP, HTTPS, SSL/TLS, DNS, persistence, health-monitor failures, routing, firewall policies, and backend application connectivity.

•Configured F5 virtual servers, pools, pool members, health monitors, persistence profiles, and traffic policies to maintain controlled application distribution across banking application environments.

•Supported SSL offload and HTTPS application connectivity by validating SSL profiles, certificates, DNS resolution, backend reachability, firewall policies, and application behavior during production changes.

•Supported F5 GTM/GSLB services for resilient application access, validating DNS resolution, application health, traffic distribution, network paths, and dependent infrastructure during production incidents.

•Performed pre-change and post-change validation for application delivery changes, checking virtual servers, pool health, persistence, SSL/TLS, DNS, routing, firewall policies, and backend connectivity.

•Investigated application delivery incidents using packet captures, session tables, DNS queries, route verification, firewall logs, health-monitor status, and traffic-path analysis to isolate connectivity failures.

•Coordinated F5 and network changes through ITIL Change Management, maintaining implementation procedures, validation steps, maintenance-window activities, rollback plans, configuration records, and production acceptance checks.

•Worked with application, network, and security teams to troubleshoot service issues involving F5 load balancing, DNS, SSL/TLS, firewall policy, NAT, routing, and application dependencies.

•Managed Palo Alto PA-3220/PA-5220 through Panorama across perimeter, DMZ, and internal zones, administering Security/NAT policies, App-ID, User-ID, Threat Prevention, and segmented application access.

•Consolidated and optimized 500+ Palo Alto security policies by removing stale and duplicate rules, validating application dependencies, and tightening source, destination, service, and zone-based controls.

•Administered Panorama Device Groups, Templates, shared objects, Security/NAT policies, commits, backups, and rulebase reviews, reducing firewall policy review time by 40%.

•Administered Check Point R80.10/R81 through SmartConsole, managing security policies, NAT, network objects, Threat Prevention, logging, and rulebase cleanup across Internet-facing gateway environments.

•Configured and troubleshot site-to-site IPsec VPNs using IKEv2, resolving tunnel negotiation, encryption-domain, NAT, routing, failover, and application-reachability issues for banking locations and partners.

•Supported perimeter and DMZ connectivity using BGP, OSPF, VRFs, VLANs, MPLS L3VPN, and Cisco ASR infrastructure between branches, data centers, Internet gateways, and security zones.

•Deployed Cisco ISE 3.0 across 2,000+ endpoints with Catalyst 9300, supporting 802.1X, EAP-TLS, certificate authentication, RADIUS, endpoint profiling, and dynamic VLAN assignment.

•Integrated Palo Alto, Check Point, and Cisco ISE telemetry with Splunk and IBM QRadar, correlating firewall threats, authentication events, and network activity for security investigation.

•Supported PCI-DSS, RBI, ISO 27001, NIST 800-53, and CIS requirements through firewall-rule, segmentation, NAC, access-control, and security-configuration reviews before banking audits.

•Supported Cisco Nexus 9K spine-leaf and EVPN-VXLAN connectivity behind application and perimeter services, troubleshooting VRFs, VLANs, VTEPs, vPC, MTU, and Layer 2/Layer 3 forwarding.

Virtusa, India Nov 2020 – Jun 2021

Network Engineer

•Supported TCP/IP, HTTP/HTTPS, DNS, and basic SSL/TLS connectivity troubleshooting, helping isolate endpoint, switching, routing, firewall, name-resolution, and application-path issues across office environments.

•Supported DHCP scope assignments and DNS records across campus networks, troubleshooting IP conflicts and name-resolution issues affecting development, QA, and production VLAN connectivity.

•Assisted with Cisco ISR 4331 routers running OSPF and EIGRP, verifying neighbor adjacencies, route tables, interface status, and end-to-end connectivity during scheduled maintenance windows.

•Maintained Cisco ASA 5516-X ACL and NAT policies under senior guidance, documenting requested changes and performing pre-change and post-change connectivity validation during approved maintenance windows.

•Assisted with Cisco ASA 5506-X AnyConnect SSL VPN support, including group policies, split-tunnel ACLs, user connectivity validation, and basic VPN troubleshooting for remote employees.

•Troubleshot Layer 2 connectivity involving VLAN mismatches, trunk configuration, STP topology changes, EtherChannel, interface errors, and endpoint connectivity using Cisco show commands and Wireshark.

•Supported Cisco Catalyst 3850 and 3560-X access switches across 200+ endpoints, configuring VLANs, 802.1Q trunks, RSTP, and PoE for office and lab connectivity.

•Configured and maintained Cisco Catalyst 2960-X access switches with VLAN segmentation, port security, and storm control to separate corporate and guest traffic across office environments.

•Supported HSRP gateway redundancy and STP convergence troubleshooting on Catalyst switches, validating active/standby behavior and documenting technical findings for senior engineers during network incidents.

•Monitored Cisco Catalyst and ISR infrastructure using SolarWinds NPM and Nagios, reviewing SNMP availability, interface utilization, error counters, and device alerts before escalating documented findings.

•Assisted ISP and senior network teams during WAN outages using ping, traceroute, and MTR diagnostics, validating restored connectivity and routing behavior following carrier service recovery.

•Supported ITIL-controlled switch, router, firewall, and wireless changes by preparing implementation details, validation checks, rollback steps, and maintenance documentation for senior engineer review.

education

Saint Leo University – Master of Science in Computer Science Tampa, Florida

Jawaharlal Nehru Technological University Anantapur – Bachelor of Technology India



Contact this candidate