Summary
Overview
Work History
Skills
Timeline
Generic
Harshitha K

Harshitha K

Summary

● Network Engineer with 6 years of experience in assisting multiple clients with Switching, Routing, Network Security (Firewalls and Proxies), Application Delivery Controllers, Authentication and Wireless environments.

● Experience with legacy and high-end switching technologies in Campus and Data Center environments. Worked on Cisco, Juniper, and Aruba/HP gear in campus environments.

● Involved in working on Cisco, Arista, Dell, Cumulus, Juniper gear in the Data Center environment.

● Strong experience in working with computer, network, storage, Load Balancers, AWS, Azure, OCI, Tencent cloud and, extensive knowledge of deploying & troubleshooting Layer 2/Layer 3 TCP/IP, Multilayer Switching, IPSec, UDP.

● Experienced SolarWinds Engineer with a proven track record of designing, implementing, and optimizing network monitoring solutions.

● Hands-on experiencewith BIG-IP environment utilizing two or more of the following: GTM, LTM, APM or ASM.

● Managed enterprise wireless networks using Cisco Prime Infrastructure for centralized monitoring, configuration, and troubleshooting of Cisco wireless LAN controllers and access points. Maintain asset management in Solarwinds and ServiceNow(SNOW).

● Managed enterprise wireless and IoT integration, deploying Bluetooth PAN solutions for seamless device communication, and enforced next-generation security policies using Palo Alto PAN-OS firewalls.Integrated and supported NFC-based network components for secure authentication and contactless access systems in enterprise infrastructure.

● Strong Experience with SD-WAN solutions for optimization of WAN traffic. Hands on experience with creating in path rules, traffic policies, troubleshooting issues related to delay, jitter,throughput on Riverbed Steelhead.

● Established AWS, Azure technical credibility with customers and external parties.

● Experience with Interior and Exterior routing protocols that includes RIP, OSPF, EIGRP, ISIS and BGP. Worked on Cisco, Juniper, and Arista routers.

● Implementing IOS-XR routing in SD-WAN networks with enhanced security policies.

● Configuring and troubleshooting F5 BIG IP LTM load balancing and implementing, Creating I rules, Virtual servers, Pools, Nodes with health, Profiles, SNAT, SSL, NAT, Traffic Policies and QoS.

● Creation and Monitoring all System Alerts via Solarwinds.

● Experience deploying BIG-IP F5 LTM, Cisco ACE and A10 Load Balancers for load balancing and

● Implementation traffic filters on Cisco routers using Standard, extended Access lists.

● Implemented and maintained network monitoring system using Solarwinds Orion and PRTG.

● Worked on ASA, Firepower, Checkpoint and Palo Alto firewalls. Experience on MWG, Bluecoat and Zscaler proxies.

● Perform network engineering, design, planning LTM & GTM load balancing implementation and scheduling infrastructure related tasks by coordinating with other teams.

● Network performance monitoring using SevOne in SD-WAN environments. Securing SCADA networks with SD-WAN-enabled firewalls.

● Deployed and maintained Cisco CMX for real-time location analytics and customer engagement, enhancing wireless network visibility and business intelligence.

● Integrated Cisco ACI and ASR with SD-WAN for data center connectivity.

● Worked with different models of Cisco/Juniper/Arista switches, routers, firewalls, load balancers, VPNs and wireless systems and deployed Cisco Nexus Fabric Extenders (FEX) with parent switches to simplify access layer architecture and improve scalability and manageability.

● Successfully designed and delivered secure cloud solutions for some of the Major organizations on AWS Cloud. Hands on experience on Azure cloud – migrated a number of applications from NSX private cloud to Azure.

● Delivered secure AWS cloud solutions with Transit Gateway and hybrid connectivity; migrated applications to Azure using NSGs and VPN Gateway for secure access.

● Implemented SAML-based Single Sign-On (SSO) integration with Azure Active Directory for secure and seamless user authentication across cloud and on-prem applications.

● WLAN, MPLS, Multicasting, Ethernet, IP Routing Protocols RIP, OSPF, EIGRP, GRE, BGP Cisco routers, switches, ASA and PIX firewall deployment.

● Daily Monitoring Topology and Logical Network devices through Cisco Solarwinds Orion.

● Structured cabling and infrastructure planning with Palo Alto network segmentation.

● Updated training Silver Peak SD-WAN, SolarWinds, Splunk, Aruba wireless, F5 LTM/GTM & Cisco SD-WAN - Silver Peak & Cisco Viptela.

● Worked on Cisco Catalyst (3550, 3750, 6500) series switches, Cisco (2500, 2600, 2800, 3600, 3800, 7200) series Routers, ASA Firewall (5505/5510), Load Balancers using Cisco ACE, F5 LTM/GTM.

● Maintained comprehensive network documentation and ensured compliance with industry standards such as ISO 27001, NIST, PCI-DSS,and GPDR supporting audit readiness and reinforcing a secure and well-governed infrastructure environment.

● Developed and monitored network performance KPIs to ensure SLA compliance, drive continuous improvement, and support capacity planning and optimization efforts

Overview

6
6
years of professional experience

Work History

Network Security Engineer

Barclays
08.2023 - Current
  • Worked for the Global Deployment and Operations team to support multiple migrations in switching, routing, firewalls, LB and Proxies
  • Involved in wildfire malware analyze the threat log and create rules for DDOS Attacks, Phishing, Malware and Brute force.
  • Designing and implementing IPv4 and IPv6 networks with Palo Alto security enhancements. Palo Alto firewall configuration, troubleshooting, and integration with SD-WAN solutions.
  • Integrated Cisco Catalyst Center with SD-WAN solutions to streamline WAN edge provisioning, enforce intent-based policies, and optimize application performance across hybrid multi cloud environments.
  • Expertise in SolarWinds products, including Network Performance Monitor (NPM), Server & Application Monitor (SAM), and other relevant tools.
  • Deployed and managed LogicMonitor for proactive network infrastructure monitoring, enabling real-time performance analytics, automated alerting, and capacity planning across multi-vendor environments.
  • Utilized WahaGold to monitor network availability and performance, configuring dashboards and alert policies to ensure uptime and quickly isolate and resolve connectivity issues across LAN/WAN infrastructures.
  • Configured and managed DNS, DHCP, and VOIP services with Palo Alto security overlays. VMware virtualization and SD-WAN integration for multi-cloud environments.
  • Configured and supported Citrix NetScaler (ADC) for load balancing, secure remote access, and SSL offloading for enterprise applications.
  • Managed Infoblox DDI platforms to automate DNS, DHCP, and IP address management, ensuring efficient network resource allocation.
  • Involved in Terraform to automate deployment of network infrastructure, improving consistency and reducing manual configuration errors.
  • Configured and troubleshooting the F5 LTM and APM and providing level 2 support for the customers.
  • Migrated ASA firewalls to PA next gen using the migration tool in PA. Migrated all IPSEC tunnels, ACL’s, NAT rules and policies.
  • Configure, deploy, and maintain SolarWinds solutions tailored to clients' specific network and infrastructure requirements.
  • Structured cabling planning for SD-WAN branch deployments. Wireshark packet analysis for Palo Alto network security monitoring.
  • Designed and deployed Cisco Viptela and Versa SD-WAN solutions for branch connectivity, policy-based routing, and secure communication between remote sites.
  • Led proof-of-concept evaluations for Versa and Viptela SD-WAN to determine the best fit for enterprise-wide adoption.
  • Implemented Cisco SD-Access with DNA Center and ISE integration for fabric provisioning and secure network segmentation.
  • Migration of servers from one datacenter to another, providing switch connections to the new servers, updating Check Point Firewall rules for the new servers, A10 to F5 load balancers Migration.
  • Installed, configured and troubleshoot F5 Network Load Balancing BigIP’s. Stealthwatch network visibility solutions applied to SD-WAN traffic analysis.
  • Configured and designed OSPF, EIGRP and BGP at Distribution and Core layers. Configured OTV layer 2 connection between Data centers on Nexus (Cisco ASR 9K, Nexus 7k and 9K).
  • Implementing Cisco ACI, ISE, ASR, and DNAC with Palo Alto security for data center networks. DWDM transport optimization for SD-WAN backbone networks.
  • Worked on Juniper devices like M, MX, T routers on advanced technologies like MPLS VPNs, TE and other service provider technologies (EX-2200, EX-4200, EX-4500, MX-480, M Series, SRX650, SRX240).
  • Deployed and managed next-generation Cisco ISR 1000 and ISR 4000 Series routers in enterprise WAN environments, enabling secure SD-WAN integration, high availability, and advanced services like zone-based firewall and voice/video optimization.
  • Designed, deployed, and configured SolarWinds monitoring solutions to ensure optimal performance and effective network management.
  • Configured and managed Cisco Firepower 4100 Series using FXOS to deploy and monitor ASA/FTD logical devices, interface policies, and chassis-level high availability.
  • Deploy Layer 2 layer 3 protocols (BGP, OSPF, STP (PVST+), and EtherChannel, Port channels in Cisco and Arista platforms.
  • Configuring Checkpoint firewalls and integrating with Palo Alto for multi-layered security. Managing Fortinet/Fortigate solutions with Palo Alto for hybrid network security.
  • Configuration and troubleshooting F5 LTM and providing level 2 and level 3 support for the customers.
  • Designed Spine-Leaf architecture for SD-WAN-enabled data centers and F5 migration of applications to new BIG-IP vCMP infrastructure.
  • Regular upgrade and maintenance of Infrastructure, configuring, and maintaining Cisco Switches (2960, 3500 ,7600, 3750, 3850 series, 6500 series) Cisco Catalyst switches(9410,9300) Cisco Routers (4800, ASR 9K, 800,ASR1001-HX,ASR 9901) appliances.
  • Juniper Routers and Firewalls, Nexus 9k, 7k, 5k & 2k, F5 BIG IP, Palo Alto Firewalls (5020,7020), Zscaler Proxy and Versa SD-WAN appliances.
  • Deploying Cisco Firepower Threat Defense (FTD) alongside Palo Alto security solutions.
  • Implementing Software Defined Networking (SDN) with Palo Alto virtual appliances. Automating network tasks using Python, Ansible, and Shell scripting with Palo Alto APIs.
  • Conducted a POC on Versa and Viptela SD-WAN solution as a team and worked on evaluating the solutions.
  • Integrated security monitoring solutions within SolarWinds to detect anomalies, intrusions, and potential security breaches.
  • Built and supported hybrid-cloud environments across AWS, Azure, and GCP, implementing VPN tunnels, routing, Google Cloud Interconnect, and cloud firewall integration with Palo Alto and CheckPoint, while enhancing secure remote access through SASE and ZTNA frameworks.
  • Implemented and optimized Cisco Catalyst 8300 Series Edge Platforms (C8300) for SD-WAN deployments, leveraging advanced security, multi-cloud connectivity, and high-performance routing to support scalable and resilient WAN edge infrastructure.
  • Integrated cloud-native firewalls and load balancers with on-prem SD-WAN solutions to support secure and scalable application delivery.
  • Deployed AWS Direct Connect and Azure ExpressRoute for low-latency, dedicated connectivity between data centers and cloud platforms
  • Deployed and managed Cisco Meraki devices for wireless, switching, and SD-WAN, using the Meraki Dashboard for centralized monitoring and troubleshooting.
  • Implemented and maintained Aruba wireless, Wi-Fi 6, and VoIP infrastructure, leveraging orchestration tools for streamlined deployment and management, optimizing network performance, and ensuring secure user access through 802.1X authentication.

Network Engineer

Cigna
01.2021 - 04.2023
  • Involved in complete LAN, WAN development (including IP address planning, designing, installation, configuration, testing, maintenance etc.) along with integration of wireless infrastructure for branch and campus networks.
  • Worked F5 build-out of the base F5 BIG-IP infrastructure, including the BIG-IP 10200v platforms and vCMP guest instances.
  • Collaborated with clients to assess network capacity requirements and projected growth, ensuring SolarWinds solutions could scale effectively and performance optimization through detailed analysis of SolarWinds metrics and reports.
  • Worked on Infoblox IPAM and DDI solutions integrated with Palo Alto for secure network automation. Assisted in migration from DMVPN to Cisco Meraki SD-WAN.
  • Installation and maintenance of Cisco Layer 3 switches 3750, 4500X, 6500 in multi VLAN environment.
  • Configured and managed VXLAN VNIs in a data center environment to enable scalable Layer 2 overlays across Layer 3 networks, supporting multi-tenant segmentation. Experience in building, testing, deployment, integration, and operation of WAF for web application tenants
  • Installed and managed A10 ADCs for load balancing web applications and applying SSL offloading policies.
  • Designed and operated F5 BIG-IP LTM infrastructure, including vCMP guest provisioning, iRule scripting, and WAF policies for secure application delivery.
  • Maintenance and configuration of Cisco ASR1000 series and 7200VX routers at data center and deployment of 3900, 3800, 2951 and 2821 for branch connectivity.
  • Configured ASA 5510 Firewall and accept/reject rules for network traffic. DNAC automation for SD-WAN deployments across enterprise networks.
  • Managed IP address allocation and DNS/DHCP via BlueCat, ensuring accurate tracking of address spaces.
  • Integrated BlueCat proxy appliances for content filtering, web access control, and SSL inspection.
  • Utilized Splunk for real-time log correlation and threat visibility across firewalls and SD-WAN appliances.
  • Configuration and administration of firewalls, which includes Checkpoint, Juniper, and Cisco ASA firewalls.
  • Successfully installed Palo Alto PA-3000/PA-5000 firewalls to protect the Data Center and provided Layer 3 support for routers/switches/firewalls.
  • Configured and maintained Palo Alto PA-5020 /PA-7020 firewalls to enforce next-generation security policies, including App-ID, User-ID, and Threat Prevention, ensuring high availability and secure perimeter defense for large-scale enterprise environments.
  • Implementing and managing Meraki SD-WAN along with Palo Alto security policies. Webex and Avaya voice traffic optimization in SD-WAN networks.
  • Designed and deployed Cisco ACI fabrics, including tenant policies, bridge domains, contracts, and integration with firewalls.
  • Led multiple enterprise-wide Viptela SD-WAN rollouts, configuring transport VPNs, routing policies, and integrating with Palo Alto firewalls for secure connectivity. Additionally, fine-tuned Viptela performance features such as TLOC extensions and app-aware routing to support hybrid WAN environments.
  • Designed and deployed SilverPeak SD-WAN for branch offices, enabling dynamic path control, SaaS acceleration, and voice traffic optimization. Also managed SilverPeak appliance provisioning, policy configuration, and integration with existing MPLS and internet circuits.
  • Optimized performance of the WAN network consisting of Cisco 3550/4500/6500 switches by configuring VLANs. Configuration, Solution Designing and Managing F5 BIG IP LTM Load Balancer.
  • Managed Datacenter of F5 load balancers, Cisco 4500, Juniper M120 and Extreme switches. Supported for Juniper M120 & J series, Cisco 3745, 6500, Extreme Summit, GPRS CGSN, Memotec switch.
  • Upgraded network equipment, software and hardware components and system configuration. Maintained technical detailed documentation of LAN and WAN systems and applications.
  • Implementing Prisma Cloud security in SD-WAN-based cloud architectures.
  • Deployed secure AWS environments with site-to-site VPNs, VPC routing, and network ACLs for hybrid cloud integration.
  • Built GCP VPCs and established VPN tunnels and custom route tables to extend on-prem SD-WAN networks into Google Cloud.
  • Configured and maintained IPSEC and SSL VPN on Palo Alto Firewalls and also implemented Zone Based Firewall and Security Rules on the Palo Alto Firewall. Performance monitoring with ThousandEyes and Palo Alto threat prevention.
  • Built and managed site-to-site VPNs across Palo Alto, ASA, and CheckPoint firewalls, supporting secure inter-site and cloud communication.
  • Configured IPsec tunnels and security profiles on Palo Alto Firewalls with automated failover for critical applications.
  • Assisted in DMVPN migration to SD-WAN, simplifying tunnel management and improving routing control.
  • Configured BGP, EIGRP and OSPF and Policy based Routing. Configuring OSPF and Static routing on Juniper M and MX series Routers
  • Troubleshoot BGP path selection and convergence delays using show ip bgp, BGP table analysis, and next-hop reachability.
  • Supported multi-homed BGP environments with AS path prepending and MED tuning to control outbound/inbound traffic flow.
  • Configured and supported MPLS networks for WAN backbone communication, including Layer 3 VPNs and TE (Traffic Engineering).
  • Configured and maintained MPLS Layer 3 VPNs across service provider backbone to ensure high-performance, scalable WAN connectivity for enterprise clients.
  • Troubleshoot label switching issues using traceroute, show mpls forwarding-table, and verified label distribution protocols like LDP and RSVP.
  • Managed complex BGP configurations, including routing filtering, redistribution, and peering with ISPs and cloud providers.
  • Designed OSPF area types and cost-based path selection, ensuring optimal Layer 3 convergence across enterprise networks.
  • Troubleshoot adjacency issues using show ip ospf neighbor and DR/BDR election processes to ensure network stability.
  • Integrated OSPF with BGP and EIGRP during migrations and multi-protocol environments, ensuring seamless routing redistribution.
  • Experience working with Windows/Linux, Virtual Machines, software load balancing (F5 Load Balancers), route/switch configurations (Cisco/Juniper) Cisco ACI.
  • Configured Cisco 7200 routers which were also connected to Cisco ASA 5508 security appliances providing perimeter-based firewall security.
  • Developing SOPs and dashboards for SD-WAN monitoring and management. NetApp storage solutions optimized for SD-WAN cloud connectivity.
  • IOS-XR-based routing with Palo Alto firewall rules for secure traffic management. Integrating Cisco ISE and CUCM for secure VoIP communications in SD-WAN networks.
  • Used Python scripting to automate routine network tasks such as log parsing, device monitoring, and configuration backups.
  • Created and managed Ansible playbooks to automate switch/router/firewall configurations and streamline deployment processes.
  • Provisioned cloud networking infrastructure using Terraform, integrating with AWS and GCP to ensure consistency and scalability.
  • Configured and optimized enterprise wireless solutions using Cisco and Aruba, with focus on secure onboarding, roaming, and QoS for real-time traffic.
  • Deployed Aruba Mobility Controllers and ClearPass integration to support secure corporate Wi-Fi and guest access.

Jr Network Engineer

Tech Indya
10.2019 - 12.2020
  • Assisted in configuring and maintaining network switches, routers, and firewalls. Troubleshoot network performance issues like latency, jitter ,throughput and connectivity problems.
  • Assisted in configuring and maintaining routing protocols including BGP, OSPF, and EIGRP, supporting dynamic routing and ensuring connectivity across LAN and WAN environments.
  • Configured VLANs for network segmentation and applied STP to prevent loops in switching environments, ensuring stable Layer 2 operations.
  • Monitored STP events using SNMP traps to detect topology changes and prevent network loops in Layer 2 environments.
  • Set up and maintained DNS and DHCP servers to automate IP assignment and domain resolution for enterprise networks, ensuring smooth user connectivity.
  • Deployed DNS zones, managed DHCP scopes, analyzed packets with Wireshark, and enabled SNMP for proactive infrastructure visibility.
  • Performed DNS resolution checks, validated DHCP lease assignments, and used Wireshark to isolate latency and packet loss issues during troubleshooting.
  • Used Wireshark to capture and analyze packet-level data for identifying latency, drops, and security events across multiple network layers.
  • Monitored network performance and health using SNMP tools, helping to identify and respond to performance issues before they impacted users.
  • Configured DMVPN with IPSec to enable secure, scalable site-to-site connectivity across branch networks.
  • Configured and supported Site-to-Site VPNs, IPSec tunnels, and DMVPN solutions to enable secure communication between multiple remote and corporate locations.
  • Worked on MPLS circuits with ISPs for enterprise WAN setups, ensuring proper label switching and connectivity between distributed sites.
  • Assisted in basic deployment and troubleshooting tasks involving SD-WAN technologies, improving branch connectivity and application performance.
  • Supported Cisco DNAC operations by helping with device onboarding, configuration templates, and policy automation for LAN switch infrastructure.
  • Installation and configuration of Cisco Routers 3600, 3900 and Switches 3550, 3560, 3560E, 3750, 6500, 7200 routers for VLANs, Routing Protocols (OSPF, BGP,EIGRP), VPNs etc.
  • Troubleshoot and Worked with Security issues related to Cisco ASA/ PIX, Checkpoint, IDS/IPS and Juniper Net screen firewalls.
  • Configured EtherChannels, Trunks, VLANs, STP, HSRP, and VXLAN,VTEPs in a LAN environment, supporting scalable Layer 2 overlays across Layer 3 networks. Worked across Access, Core, and Distribution layers for robust enterprise network design.
  • Provided WAN/LAN Cisco router/switch configuration, implementation, and support to internal customer tickets involving MP-BGP, OSPF, EIGRP.
  • Installed WAN and LAN access for internet and intranet access and conducted network performance analysis and suggested improvements.
  • Assisting in deploying WAN projects. Connectivity and configuration of routers, switches, end to end monitoring in new campuses.
  • Collaborated with cross-functional teams for network expansion projects.

Skills

  • Routers and VoIP Platforms: Cisco Routers series ASR9k, 7300, 4000, 3800, 2000, 1900; Juniper-MX,JUNOS Arista - 7000 series, EOS
  • Routing Fundamentals and Protocols: RIP, EIGRP, ISIS, OSPF, BGP, IPX; MPLS, Static Routing, ICMP, ARP, HSRP, VRRP, Route Filtering, Multicast, Policy-Based Routing, Redistribution, Port forwarding Cisco Catalyst switches (9410,9300,6500, 4900, 3750, 3500, 4500, 2900, 6807 series)
  • Switch Platforms: Cisco Catalyst series 2960, series 3560, 3850, 4500, 6500, 7000; Nexus series 2K, 5K, 7K, 9K; Juniper EX, QFX, Aruba 2000, 3000 series
  • Switching Fundamentals and Protocols: Ethernet technologies, LAN / WAN protocols, MAC, VLAN and VTP, STP, PVST, Multicast, RSTP, Multi-Layer Switching, 8021Q, IEEE 80211 a/b/n/ac/ax ,EtherChannel, PaGP, LACP, CDP, HDLC, RARP
  • Firewall Platforms: Checkpoint (NGX R65, 3100, 5100, 5900), Cisco Firewalls (ASA 5505, 5506-X, 5585), Fortinet, Palo Alto Networks (PA series 2K, 3K and 5K) with Panorama 80, WAF
  • Cloud Platforms: AWS, Azure, GCP
  • Security Protocols: Standard and Extended ACLs, IPsec, VPN, Port-security, SSH, SSL, IKE, AAA, Prefix-lists, Zone-Based Firewalls, NAT/PAT, HIPAA standards, Ingress & Egress Firewall Design, Content Filtering, Load Balancing, IDS/IPS, URL Filtering, IDS, TCP Intercept, Router Security, SNMP 10trap
  • Network Management and Monitoring: Wireshark, Infoblox, HP OpenView, Cisco Prime, Splunk, Security Device Manager (SDM), Cisco Works, TCP Dump and Sniffer; SolarWinds NetFlow Traffic Analyzer, NetScout, Network Performance Monitor (NPM), Network Configuration Manager (NCM), SAM, IP Address Manager, Additional Polling Engine
  • Load Balancers and Proxies: F5 (BIG-IP) LTM 2000, 3900, 6400, 6800, AV 510, Citrix NetScaler, MWG, Zcaler, Proxies, Bluecoat Proxies, Cisco CSS, F5 Networks (Big-IP), A10
  • WAN & SD-WAN Technologies: Viptela, Versa, SilverPeak, Velocloud
  • Wireless and Radius Technologies: Canopy Wireless Devices, Cisco 1200 series APs, Aruba wireless and APs, Cisco Meraki, Linksys Wireless/Wi-Fi Routers, Prime Infrastructure, Ekahau, Air Magnet, AirWatch and WLC’s (8510, 5508, 5706), Cisco Aironet APs (2600, 3600, 3700), ISE, MSE, Aruba 225, Aruba 3000 controller & Airwave, ISE, ClearPass 606,265, 80211a, b, c, g, n, ac
  • Other Networking Protocols and Fundamentals: DHCP and DNS server, Active Directory Management, NTP, NDP, TCP, UDP, FTP, Network Implementation, Troubleshooting techniques, NHRP, NetBIOS, NFS, FTP, TFTP, HTTP, PAP, PPTP, SIP Trunking, SNMP logging, SMTP, RADIUS and TACACS, PBX servers, SDN, IPV4, IPV6

Timeline

Network Security Engineer

Barclays
08.2023 - Current

Network Engineer

Cigna
01.2021 - 04.2023

Jr Network Engineer

Tech Indya
10.2019 - 12.2020
Harshitha K