Summary
Overview
Work History
Education
Skills
Timeline
Generic

JUSTIN MCCUTCHEON

Hiram,Ga

Summary

To obtain a position to utilize my skill set as a Network Architect. Committed to designing and building robust data networks. Excels in local area networks, wide area networks and intranets. Researches and understands company's business plan and supports goal attainment.

Overview

18
18
years of professional experience

Work History

Network Architect

Artivion (Formerly, Cryolife)
03.2021 - Current
  • Designed and deployed Palo Alto Prisma Access globally and integrated with Okta for MFA
  • Researched and designed new technologies to help improve the current infrastructure and to support the needs of the business
  • Design and Implemented a Global Firewall migration using Palo Alto Expedition migration tool from the Cisco ASA platform to Palo Alto
  • Configured the Palo Altos to use layer 7 application security to prevent from internal and external attacks
  • Created and configured IDS/IPS policies on Palo Alto as well as URL Filter, DNS Security etc
  • Redesigned our Global Branch network to include multiple networks to help with network performance
  • Installed 20 Palo Alto firewalls across 10 locations globally to ensure we had redundancy at the firewall level
  • Designed dual site to site VPN solution via BGP routing to ensure uptime to branches and Azure in the instance that our primary Internet circuits went down
  • Created firewall rules, NATs, VNET Peering within our Azure environment
  • Installed and configured redundant circuits for all branch locations
  • Configured OSPF between Branch locations and HQ across P2P circuits
  • Designed and configured network segmentation globally to help with network performance and security
  • Reconfigured AnyConnect VPN globally during our rebranding phase
  • Completed Cisco Catalyst 9200L switch refresh in Austin to replace outdated hardware
  • Acted as lead for all network projects and installs globally
  • Worked with vendors to provide necessary requirements and quotes for all projects
  • Documented and created diagrams for all major sites.

Sr Network Engineer

Delta Community Credit Union (Contractor)
11.2016 - 02.2021
  • Cleaned up the current firewall environment from Rules, NATs, and Objects to prepare for migration
  • Engineer in charge of getting the Cisco Security Stack installed and racked
  • In depth testing of the firepower
  • Successfully completed migration from the ASA 5550 to the FTD 4100
  • Configured the FTDs with Active Directory for AD based rules using ISE PxGrid
  • Upgraded the FTDs and Management Center from version 6.2.2.2 to 6.4.0.10
  • Deeply involved in data center migration in Franklin Tn
  • Built out Anyconnect using ISE for authentication and completed the transition from Juniper VPN client
  • Installed and configured virtual and Physical WSAs using WCCP to filter web traffic
  • Configured Nodes, Pools, and VIPs on the F5 load balancer
  • Configured iRules on the F5 load balancer
  • Created detailed documentation on the configuration of the Firepower Firewalls
  • Created Visio diagrams to show the new design and flow from a network segmentation perspective
  • Setup VRF’s on the 7ks and configure HSRP for failover between the 2 data centers
  • Created Heat Maps to help with the planning of the wireless project
  • Configured rules and helped troubleshoot access to devices in different zones going through the ASA
  • Created test servers and for the firewall migration on the VMware environment
  • Added Vlans to the UCS environment
  • Helped maintain the network for 27 branch locations.

Sr Network Engineer

Beazer Homes
02.2016 - 11.2016
  • Segmented Wireless Guest network from internal resources
  • Setup NAT’s and ACL’s on ASA 5550 firewall
  • Configured Anyconnect on ASA 5550 with 2 factor authentication using RSA software tokens for mobile devices
  • Added secondary wireless controller in the data center for HA and enabled LAG
  • Traveled to division offices to resolve wireless issues
  • This consisted of pre and post wireless site survey to ensure adequate coverage and other troubleshooting steps
  • Have segmented some of our division office networks so that Data, Voice and Wireless are on separate networks
  • Started replacing equipment in the division offices with more up to date hardware
  • Implementing a standard IP scheme across all division offices and HQ
  • Worked with Fuze during our migration from using analog phones to VOIP phones
  • Installed firewalls are remote offices for failover of the phone system to the Internet in the instance MPLS goes down
  • Testing Cisco ISE in order to have mobile devices register with Mobile Iron prior to having access to internal resources
  • This is for our future BYOD policy
  • Helped setup access to VDI infrastructure from the outside to reduce grey screens
  • Experience in troubleshooting NetScaler routing issues
  • Installed and binded SSL certificates on NetScaler
  • Setup and configured Servers, Service Groups, and VIPs
  • Requested for purchase of LogicMonitor
  • This allowed us to be able to monitor all network equipment
  • Tuned thresholds for alerting and added all devices as well as came up with the SNMP standard for all routers, switches, and firewalls
  • Worked with vendors to schedule a professional service health check on our WAN optimization using the Steelhead appliance
  • Planning the future state of Beazer Homes and how we can upgrade our network but at the same time reduce overall cost
  • In the process of designing a DMVPN setup for Beazer Homes
  • Designing and Planning for future redundancy within the Beazer Homes network
  • Work with VAR to ensure specs are correct and order all equipment
  • Working with and managing vendors for circuit installs and business grade internet installs
  • Manage Office moves and work with onsite contacts and their vendors for a smooth transition.

Network Engineer

Everops MSP
07.2015 - 01.2016
  • Lead Engineer and Project Manager for new Site build out
  • Created BOM and worked with company to order all equipment
  • Designed the IP addressing scheme for the new site as well as did all of the implementation work
  • Configured 2 4331 routers, 2 Palo Alto Firewalls with HA, 2 3850 core switches, a stack 5 of 2960 access switches, 2504 Cisco WLC with 18 AP’s, and a 2911cisco console router
  • Worked with the vendor to install circuits
  • Also setup multiple PBF policies on the Palo Alto for failover in case one circuit went down
  • Setup Global Protect VPN on the Palo Alto with Active Directory Authentication
  • Built 2 Cisco servers, configured Active Directory, DNS, DHCP, and synced all On Premise AD accounts to their Office 365 email subscription
  • Configured OSPF, NAT’s, Zones, and Security Policies on the Palo Alto firewalls
  • Created Access-list on 5540 cisco firewalls for a separate company
  • Create Site to Site VPN tunnels and configured BGP peering across the tunnel on Palo Alto’s
  • Built and Configured Aruba 7030 wireless controller and setup 9 Aruba AP’s
  • Resolved issue with Rogue DHCP server on network by configured DHCP snooping on 2960x switch stack
  • Setup Radius authentication for all network work devices and setup all network policies for Radius on 2008 and 2012 R2 server
  • Upgraded AT&T circuit from 150 Mbps to 500 Mbps circuit.

Network Engineer

CareerBuilder
08.2014 - 07.2015
  • Lead Engineer in Branch Office deployment
  • Configured 2911and ISR4451 routers and 2960x stacked switches as well as 3560 switches
  • Lead Engineer in testing Cradlepoint 4G devices and setting up GRE tunnels between the 4G device and the ASR 1001 at out data centers
  • Also configured IPSEC for security purposes to run on top of the GRE Tunnel
  • Configured site-to-site VPN tunnels on ISR 4451 and ASR 1001
  • Created NATS and Access list on Cisco ASA 5540’s
  • Configured Radius Authentication for all wireless authentication
  • Setup and configured monitor sessions remotely on switches in order to capture data via Wireshark
  • Setup and configured DMVPN for Branch Offices in the instance that MPLS was down
  • Lead Engineer for the HQ wireless Deployment
  • Deployed and configured over 120 Wireless AP’s
  • Lead Engineer in wireless deployment for our Chicago office
  • Deployed over 100 AP’s on 12 different floors
  • Worked with Service Provides to install and configure MPLS circuits ranging from 10 Mbps to 100 Mbps
  • Configured prefix-lists and route-maps for permitting and denying routes via bgp
  • Configured NAT’s on ASA 5540 Firewalls running version 8.4
  • Configured IP SLA at our Norcross office to switch over from our Comcast Internet Circuit to Masergy MPLS circuit in the case that our Comcast circuit went down
  • Configured BGP load balancing on our Branch Office Routers
  • Configured NAT ( Network Address Translation ) On branch office routers
  • This allowed for, Internet access on our DIA circuit in the case that our MPLS circuit went down
  • Configured NATs and Port Forwarding on Cisco 2911 Router
  • Updated Security License and Images on ISR4451 Router.

Network Support Specialist

Genuine Parts
05.2013 - 08.2014
  • Performed troubleshooting in a large WAN/LAN environment
  • Configure and troubleshoot issues related to BGP
  • Configured and maintained multiple 2950, 2960, 3560, 3750, Nexus 2k, 5k, and Nexus 7k switches
  • Configured interfaces, vlans, trunk ports, access ports, and port security on over 50 devices
  • Setup and configured over 50 devices to uses tacacs for authentication purposes
  • Lead Engineer in cleaning up switches in 6 IDF closets at our Headquarters
  • Resolved issues with VTP and Spanning-tree and cleaning up unused vlans
  • Lead Engineer for installing and configuring Perle Out of Band Modems for our Distribution centers
  • This was in place as a backup to the network in case the circuit went down
  • Configured and maintained multiple 2811, 2921 and 3945 cisco routers
  • Tested SNMP traps as well as standardized SNMP on over 400 devices
  • Configured nodes, pools, and VIPs on F5 load balancers
  • Configured static routes for our 3G network
  • This was in place in case the circuit went down to the Distribution Centers then they would still have network connectivity
  • Configuring basic access lists on Checkpoint Firewall
  • Troubleshooting and setting up user accounts for Juniper SSL VPN
  • Experience in configuring and troubleshooting HSRP
  • Performed troubleshooting on the following routing protocols EIGRP and BGP
  • Upgraded IOS on or around 15 switches and routers
  • Configured and updated code on approximately 25 Motorola access points
  • Configured DNS, DHCP, CNAME Records, and Reservations using Infoblox for internal use
  • Also configured Ultra DNS for external use
  • Perform network monitoring on a daily basis using Solar Winds
  • Created network diagrams for over 50 distribution centers as well as the IDF closets at our Head Quarters
  • Lead engineer in standardizing all routers, and switches for all 59 distributions centers
  • Used Service Now ticketing system tracking and creating tickets
  • Also used the ticketing system for creating change request.

Managed Services were out sourced to CDI

TechBridge
07.2012 - 05.2013
  • Configured DFS as a hub and spoke topology between 4 different sites
  • Setup Active Directory Replication as mesh topology between 4 different sites
  • Built 2008R2 Domain Controller
  • Migrated AD, DNS, DHCP and installed FSMO roles on the 2008R2 Server from a Windows 2003 Domain Controller
  • Performed troubleshooting related to DNS
  • Created A Host, SPF, and PTR records
  • Created forwarding zones and Reverse Zones in DNS
  • Configured Backups and Test Restores with the following backup software Barracuda, Backup Exec 2010 and 2012, and MozyPro
  • Created SQL accounts in order to backup SQL databases for Backup Exec
  • Helped with the transition from Microsoft Exchange to Office 365
  • Built and Configured SMTP Server as well as configured IIS to function as a relay from Scanners to Office 365
  • Ran scripts for Office 365 to allow the following; Full Access to Mailbox, Send as Permissions, and Shard Calendars using PowerShell
  • Configured folder redirection through group policy
  • Created Group Policies at a client site for creating a local admin in the local user account and local administrator group locally to each computer in the network
  • Performed Printer Scripts and Mapped Network Drive as logon Scripts through Group Policy
  • Performed upgrades of Finance Software for several clients
  • Performed in place upgrades of Windows Server 2008 Domain Controller to Server 2008 R2
  • Ran Ad prep commands on Master Server in order to perform the update
  • Built Approximately 50 Dell, IBM and HP servers and configured Raid
  • Built Approximately 20 Windows 7 workstations and configured Windows XP mode for virtualization on about 6 of them
  • Built WDS Server for client
  • Created Approximately 50 windows 7 workstations from the WDS server
  • Built Test Lab for my current Company
  • Built Domain Controller
  • Configured Active Directory, DNS and DHCP
  • On separate server built 5 different virtual workstations using the Hyper-V role
  • Updated Documentation for all changes made to each environment.

Network/Systems Administrator

City of Sandy Springs
05.2011 - 07.2012
  • Built Virtual Web Server for a P2C application
  • Installed IIS roles
  • Formatted hard drives and used sysprep in order to create an image for police mobiles
  • Configured L-3 camera systems for wireless download of police data to a server
  • Configured 16 8945 cisco model phones for the EOC (Emergency Operations Center) using Cisco Call Manager
  • Configure all ports for the voice Vlan on a Cisco 3560 switch
  • Setup 6 wireless access points for the police department in Sandy Springs
  • Responsible for providing network and desktop support for personnel that consists of approximately 350 personnel
  • Migrated GPO’s from Active Directory 2003 to Active Directory 2008
  • Experienced in using trouble ticket software Kaseya and remote desktop using VNC in order to remotely fix client issues
  • Helped build and maintain approximately 75 physical and virtual 2008 and 2008 R2 servers for the city
  • The virtual servers were setup using vSphere
  • Used software such as Image X and Acronis in order to take images of client computers for reimaging purposes
  • Reimaged over 100 computers
  • Experience with Active Directory 2003 and 2008 setting up organizational units, group policies and adding users and computers to the domain
  • Responsible for dealing with DNS issues on 2008 R2 domain controllers
  • Setup 4 different domain trust for the city
  • Provided support in taking a backup of a database on SQL creating a new instance and restored it to a new SQL server with no issues
  • Experience in Exchange 2010 by creating mailboxes setting up storage quotas etc
  • Setup and configured all network printers on a Print Server for the City of Sandy Springs
  • Server was 2008
  • Provide support with windows XP, Windows 7, Office 2007, and Office 2010 on a daily basis.

Systems Technician

ChatComm 911 Center
01.2009 - 05.2011
  • Responsible for providing daily support for 911 dispatch personnel that consists of approximately 60 employees
  • Provides support for changing VLANS on Catalyst 3560G switches depending on which applications need to be reached on different subnets for training and the EOC environment
  • Configured VPN accounts on a Cisco ASA 5520 for end users
  • Installed Cisco VPN Client on desktops and imported PCF files for end users to gain access to VPN
  • In charge of setting up 50 Cisco 7941 IP based phones and voicemails through Cisco Call Manager
  • Involved in the process for setting up Metro-E to the surrounding agencies
  • Setup virtual windows workstations
  • Responsibilities also include working with switches and patch panels as well as doing cable clean up in 6 server and network racks
  • Setup virtual desktops using Oracle VMWare
  • Helped in the process of installing SQL Server 2008 on a new server for replication purposes from a SQL 2005 database
  • Troubleshoots all desktop support issues for approximately 50 workstations with many different applications such as CAD (Carrier Aided Dispatch), ProQa for fire and EMS, Zetron, and Smart 911
  • In charge of managing 24 servers and all radio equipment
  • Responsibilities also include troubleshooting issues pertaining to Active Directory and Exchange Server 2007
  • In charge of setting up user accounts in SQL and providing ODBC connections for different individuals to run Crystal for reporting purposes
  • Create all user accounts in Active Directory, sets rules in group policy as well as Email accounts in Exchange 2007
  • Lead IT responsible for resetting all passwords to user accounts in active Directory as required
  • Deeply involved in configuring the Domain Trusts between ChatComm and the surrounding agencies
  • Performs as a leading role for all Exchange 2007 troubleshooting and has experience using power shell
  • In charge of finding the helpdesk application SysAid and pushing the application to the perspective terminals, and provided training on how to use the application
  • In charge of providing documentation and training for all end users when ChatComm implemented new software, as well as provides documentation of how new projects would be installed and what the projects are for
  • Other responsibilities include providing support for surrounding fire station alerting systems and police mobiles
  • He also setup all network printers for the agency.

Information Systems Technician

US Navy HM-14
01.2006 - 01.2009
  • Responsible for performing day to day operations for performing 159 terminals and approx 915 user accounts
  • System Administrator for the command, creating and servicing accounts via Active Directory for approximately 750 squadron personnel
  • Serves as Tier 1 and 2 tech-support for command personnel on issues pertaining to hardware, software, and Common Access Cards, covering over 1000 military and civilian customers
  • Responsibilities are related to detachment and deployment preparation, including the packaging and loading of classified equipment, electronic administrative deployment of the traveling terminals, and performing assessments in order to coordinate the needs of the deploying staff with the capabilities of the traveling vessel/ship
  • Takes a leading role in the identification and replacement of defective hardware for over 150 Dell-brand network terminals within the command
  • In charge of IT-related functions such as hardware and software troubleshooting, account management, and customer service principles
  • The lead IT assigned to handle individual hardware and account issues for the squadron’s Commanding Officer, Executive Officer, and Officer-in-Charge.

Education

CISSP

MCTS Windows Server 2008 Active Directory, Configuration

MCTS Windows Server 2008 Network Infrastructure, Configuring

CCNP Certified
03.2016

ITIL Certified
04.2014

CCNA Certified
04.2013

Associates degree in Information Technology Networking -

University of Phoenix
06.2011

Security+ Certified
05.2009

Network+ Certified
04.2009

A+ Certified
01.2009

Skills

  • Migration, Implementation, and Managing Firewalls
  • Switching Technologies
  • Local Area Network
  • Wide Area Network
  • Network Problem Solving
  • Network Security
  • Cisco switching expertise
  • Network design
  • Routing Protocols

Timeline

Network Architect

Artivion (Formerly, Cryolife)
03.2021 - Current

Sr Network Engineer

Delta Community Credit Union (Contractor)
11.2016 - 02.2021

Sr Network Engineer

Beazer Homes
02.2016 - 11.2016

Network Engineer

Everops MSP
07.2015 - 01.2016

Network Engineer

CareerBuilder
08.2014 - 07.2015

Network Support Specialist

Genuine Parts
05.2013 - 08.2014

Managed Services were out sourced to CDI

TechBridge
07.2012 - 05.2013

Network/Systems Administrator

City of Sandy Springs
05.2011 - 07.2012

Systems Technician

ChatComm 911 Center
01.2009 - 05.2011

Information Systems Technician

US Navy HM-14
01.2006 - 01.2009

CISSP

MCTS Windows Server 2008 Active Directory, Configuration

MCTS Windows Server 2008 Network Infrastructure, Configuring

CCNP Certified

ITIL Certified

CCNA Certified

Associates degree in Information Technology Networking -

University of Phoenix

Security+ Certified

Network+ Certified

A+ Certified
JUSTIN MCCUTCHEON