Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic
PRAMOTH RAMARAJ

PRAMOTH RAMARAJ

Concord,NH

Summary

Over 9 years of experience as a Networking Professional in areas concerned with network design, implementation, operation and troubleshooting enterprise data networks. Experience in IP addressing and subnetting with Variable Length Subnet Masking (VLSM), Route Summarization, Route Redistribution, Network cabling, TCP/IP, DHCP, DNS and LAN/WAN technologies. Experience in IP routing protocols such as RIPv1 &v2, EIGRP and OSPF and strong experience in BGP. Experience configuring different layer 2 technologies which includes VLANS, STP, RSTP, VTP, Ether channel and QOS, port Security. Experience in configuring security policies NAT/PAT and ACL's and redundancy protocols HSRP/VRRP/GLBP Experience in configuring ISR 4k ASR 1000 and 9000 (IOS-XR) series service routers, Arista EOS and Juniper MX series routers. Experience in Data center Nexus 2k, 5k and 7k switches and configured vPC, VDC and Fabric Path. Good experience in configuring F5 BIG-IP LTM 3600 load balancers, CISCO WLC and Access Points. Hands-on experience in configuring access rules on Cisco ASA 5505, 5540 and 5580 Firewalls Experience with Fortinet firewall administration of series 3000 and 3815 and configured S2S VPN and troubleshooted it Configured and maintained security policies on Fortinet firewall/manager and Forti Analyzer and assisted migrations from Cisco ASA to Fortinet Security platforms. Performed Fortinet OS upgrades using Forti-Manager. Upgraded IOS images on Cisco ASA Firewalls and performed Migration from Cisco ASA to Palo Alto Firewall Failed over Cisco ASA and Palo Alto Firewalls for maintenance and redundancy purposes Good knowledge of Checkpoint Firewalls and hands-on with Palo Alto Firewalls such as 3000 and 5000 series Experience in configuring Multi-Protocol Label Switching (MPLS) and knowledge in VRF. Experience in configuring VPN technologies such as GRE tunneling, DMVPN, Remote Access VPN, Site-to-Site VPN and SSL VPN. Experience in AAA (RADIUS and TACACS), Multicast routing protocol PIM, and IGMP, IGMP Snooping, CGMP. Experience in McAfee web gateway and managing and configuring Bluecoat proxy devices. Knowledge in Cisco Unified Communications to manage traffic (Voice, Video and Data) in single Network infrastructure, Software Defined Network (SD- WAN Viptela, ACI) and CISCO Meraki. Experience in Infoblox, Net brain and vulnerability tool Nessus. Monitored performance of network devices using Solar wind, Spectrum. Maintaining and updating inventory of all network hardware, management and monitoring by use of SSH, SYSLOG, SNMP. Experience in network troubleshooting and analysis traffic (TCP/UIOSDP) using Wireshark Possess strong network troubleshooting, interpersonal and communication skills. Results-driven Network Engineer with [Number] years of expertise deploying and maintaining LAN and WAN infrastructure. Dedicated technology professional with strong track record of accurately conducting system repairs and troubleshooting. Offering exemplary planning, project management and communication talents.

Overview

11
11
years of professional experience
1
1
Certification

Work History

Senior Network Engineer

State of New Hampshire
02.2022 - Current
  • Configuring and troubleshooting routing protocols such as OSPF & BGP and IPSec VPN
  • Maintain the core network of the State of New Hampshire and working with 85 different local law enforcement agencies (PDs) on building their Site-to-Site and Remote site VPN tunnels over Cisco, Fortinet and Palo Alto firewalls and troubleshooting when necessary
  • Update and troubleshoot network issues including configuration, ACLs and firewalls on primarily cisco routing and switching equipment including Nexus 9000, 7000, 6500 and 5010 and perform maintenance on VOIP systems
  • Working with IDEMIA and local PDs on active directory nontransitive trust build
  • Leading projects like INTOX, SPOTS, AFIS and Domain Trust and implementing them at PDs
  • Experience in working on Sonic Wall, FortiGate, Palo Alto and Cisco Firepower firewalls
  • Hands on experience on migrating ASA, FortiGate into Palo Alto
  • Experience with Cisco Meraki wireless managed network infrastructure
  • Experience in deploying and managing Cisco ISE to implement TACACS+, RADIUS in access control networks
  • Taking ownership of internal network issues and leading them to resolution
  • Participate in various IT projects intended to continually improve/upgrade the network infrastructure, such as evaluation of new software and hardware required to meet a business need or to make a process more cost effective.

Network Engineer

Microsoft
04.2018 - 02.2022
  • Worked in Global Network System which involves maintenance activities that includes code upgrades, device replacements, remediation of known issues, perform partial automation procedures for various network devices which includes Cisco Nexus 7k, 3k (3048, 3132, 3064) devices, Juniper MX80, MX240 series devices, Arista EOS, NetScaler, F5 BIGIP 8900 devices
  • Core Experience on wide networking platforms including but not limited to Cisco ASR, JUNIPER, F5, Citrix, Arista and Brocade
  • Troubleshooted IPV4/IPV6 related BGP issues
  • Deployed various network devices which includes NetScaler and F5 BIGIP devices and replacing different components of devices
  • Upgraded code on NetScaler devices from 10.5 build 55.x to 12.1 build 52.15
  • Set up new F5 VIPs, profiles and iRules for customer migration activities
  • Deploy, configure, and maintain compute on Azure Cloud and troubleshoot any issues and leading them to resolution
  • Analyzed network data, tshoot routing and switching issues, load balancing and helped customers connect and transport data into virtual environments
  • Taking ownership of any network break fix incident which can be reported by Monitoring tools, property managers or Business partners
  • Configured Aruba access points, troubleshoot connectivity issues, prepared wireless survey reports and documenting it
  • Responsible for deploying Aruba access points to different sites
  • Experience in Cisco Prime to manage access points, wireless controller and monitor wireless system
  • Working on various network investigation related issues which involves adding routes, enabling pool members, adding DHCP helpers and various activities
  • Understanding the Traffic Flows for both HTTPS (web Traffic) standard and custom application-based traffic and accordingly designing a solution around it for Firewalling and Proxy services
  • Worked on ticketing tool ServiceNow and Troubleshooting issues with product vendors like Cisco, Juniper and Citrix to isolate any hardware related issues and initiate RMA if necessary
  • Providing technical support for intra-domain and inter-domain multicast and routing issues, IOS bugs and fault tolerance issues
  • Good knowledge in using network tools such as Wireshark and experience in analyzing traffic captures for root cause analysis.

Network Engineer

CVS Health
07.2017 - 03.2018
  • Installing, configuring, and troubleshooting Cisco Routers (7200, 3600 and 2800) and Cisco Catalyst 3560, 3750, and 6500 series
  • Strong experience in configuring, implementing, and troubleshooting Routing Protocols including OSPF, EIGRP, BGP, and switched L2 networks VLANs, Trunking, VTP, STP, PVST, RSTP, HSRP, VRRP, and Port Security
  • Configuring vPC, VDC and Fabric Path Cisco Nexus 2k/5k/7k devices
  • Good understanding in implementing TCP/IP addressing scheme, LAN/WAN Protocols, DNS, DHCP and IP Services
  • Experience in configuring and implementing F5 Load balancing, IDS/IPS, proxy servers and Authorization, Authentication & Accounting (Radius, TACACS+)
  • Experience in implementing network security protocols L2TP, PPTP, and IPSEC
  • Implemented F5 Local Traffic Managers (LTM), APM and ASM of series 8900, 6400, 6800, 3400, 5100, 3600
  • Proficient in F5 based profiles, monitors, VIP’s, pools, pool members, iRules for virtual IP’s
  • Performed SSL Offloading on LTMs and web accelerators with 2048-bits VeriSign certificates
  • Also, renewing certificates to ensure the security of websites
  • Working with the team to identify the security risks relating to PCI DSS and verifying each rules on the firewall and getting business justification from the appropriate application teams
  • Implemented security policies and procedures to ensure compliance with industry standards such as PCI-DSS
  • Working on the firewall device upgradation from Cisco ASA 5500 series firewalls to ASA 5500-X series firewalls
  • Upgrading Cisco ASA images to 9.4(4.5) version on Cisco 5505/5515, 5520, 5540, 5580, 5555 and 5585 devices
  • Involving troubleshooting calls and capture packets and analyze it using Wireshark and experience in Net Brain
  • Strong working experience in Change Management Process, Communication, Escalations
  • Working with Problem Management team on trouble tickets escalated from Incident Management
  • Broad level expertise in Network Monitoring tools like Cisco Network Assistant, Solar winds, Wireshark.

Network Engineer

American Express
10.2016 - 04.2017
  • Configured different routing protocols such as OSPF and BGP across networks in different locations
  • Worked on Spanning Tree Protocol and different layer 2 technologies such as Trunking, RSTP, VTP and Port Security
  • Configured ACL’s, NAT and Routes on Cisco ASA 5505, 5540 and 5580 Firewalls based on Organization Security policy standard
  • Configured Access rules on Palo Alto 3000 and 5000 series Firewalls as well as centralized management system (Panorama) to manage large scale firewall deployments
  • Managed Cisco ASA and Palo Alto firewalls and fail over firewalls for redundancy purposes
  • Implement and troubleshoot the virtual firewall (Contexts) solution in Cisco ASA
  • Upgraded IOS on Cisco ASA firewalls
  • Configuration of security policies for security infrastructure using proper change management process
  • Firewall deployment, rules migration, firewall administration and converting existing rule based on to new Palo Alto next generation firewall platforms
  • Maintained corporate firewalls and Analysis of firewall logs using Security Analytics
  • Experience on McAfee web gateways and other web filtering technologies and giving access to personal email accounts based on Organization’s security policy standard
  • Gained knowledge in MPLS VPN and Virtual Routing and Forwarding (VRF)
  • Implemented Proxy requests, maintaining Proxy incidents and troubleshooting proxy issues using McAfee web gateway
  • Provided technical support for service request issues, customer engagement and internal projects
  • Maintain availability of Network Security Infrastructure by providing emergency incident response, device health monitoring and general troubleshooting support
  • Performed Migration from Cisco ASA to Palo Alto Firewall and support of automated operations within the Network Security platforms
  • Worked on F5 LTM and configured Priority Group Activation and Traffic Persistence on LTM
  • Performed security policy review/approval as well as documenting customer requirements for escalated security review by senior engineer
  • Responsible for monitoring performance of network devices using Spectrum
  • Checking Internet F5 VIP’s security policy using AppviewX
  • Good experience in capturing and analyzing packets using different tools and documentation and reporting of security policies, process, and procedures
  • Worked on Remedy and involved troubleshooting network problems using Cisco ASA packet-capture, tracert and Syslog.

Junior Network Engineer

Opinioz Tech
05.2012 - 06.2014
  • Configured IP routing protocols such as EIGRP and OSPF
  • Configured VLANS using Cisco routers and multilayer switches and supporting STP, RSTP, and PVST along with troubleshooting on inter-Vlan routing and VLAN trunking protocol 802.1Q
  • Worked on IPv4 addressing and divided a network into different sizes using Variable Length Subnet Masks (VLSM)
  • Experience in Cisco Catalyst 2960, 3560 and 3750 switches and 2800, 3600, 7200 routers
  • Redistributed sites from EIGRP to OSPF
  • Experience in Juniper MX routers, EX Switches
  • Configured redundancy protocols HSRP and GLBP
  • Deployed and configured Cisco ASA Firewalls in Production Environment
  • Involved in providing technical assistance for LAN/WAN management and complex customer issues
  • Installed new server and configured hardware, settings, directories and network in accordance with project requirement
  • Planned, implemented, and maintained critical network infrastructure services (DNS, DHCP)
  • Configured and managed domains on Windows 2003/2008 platforms
  • Involved in troubleshooting ip addressing problems and updating IOS images using TFTP
  • Monitored network devices using SolarWinds
  • Involved in troubleshooting and resolved problems related to the networking and server environment

Education

Master’s - Network and Computer Security

SUNY Institute of Tech
Utica, NY
2016

Bachelor of Science - Electronics and Communication

Anna University
2012

Skills

  • Technical Skills:
  • Routing Protocols:
  • BGP, OSPF, EIGRP, RIP, Redistribution, Summarization, Route filtering, Route Maps, Static routing
  • Switching Protocols: VLANs, Dot1Q, VTP, STP, RSTP, HSRP, VRRP, GLBP, and Port Security
  • LAN/WAN Technologies: Ethernet, Frame relay, HDLC, PPP, MPLS, Riverbed
  • Firewalls: Cisco ASA, ASDM, Juniper, Palo Alto
  • Protocols: IP, TCP, UDP, ICMP, NTP, DHCP, SNMP, SSL, HTTP, SSH, DNS
  • Network Security: Network Address Translation (NAT), Access-lists (ACL), Cisco ASA, Checkpoint, Palo Alto, IPS/IDS, Fortinet, AWS direct connect, Tufin
  • Load Balancer: F5 BIG-IP LTM 3600, Citrix NetScaler
  • Wireless: Cisco Aps, Wireless LAN Controllers
  • VPN Technologies: GRE Tunneling, Remote Access VPN, Site-to-Site VPN and SSL VPN
  • Network Monitoring and Configuration Tools: Spectrum, Security Analytics, IPAM, Solar wind, Wireshark, tcpdump, AppviewX, GNS3, Cisco VIRL, Putty, Security Analytics, AppviewX, Spectrum
  • Proxy Monitoring Tool: McAfee Web Gateway, Bluecoat Proxy, and Nagios
  • Vulnerability Tool: Nessus
  • Operating System: Windows, UNIX, Linux
  • Cloud Technologies: Basic understanding of AWS VPC and EC2 instances
  • Change Management: Remedy, Service Now
  • Scripting: Python
  • Network Operations
  • Project Management
  • Root Cause Analysis

Certification

  • CCNA - Cisco Certified Network Associate Routing and Switching and Security
  • CCNP Routing & CCNP Switching
  • Palo Alto Networks ACE

Timeline

Senior Network Engineer

State of New Hampshire
02.2022 - Current

Network Engineer

Microsoft
04.2018 - 02.2022

Network Engineer

CVS Health
07.2017 - 03.2018

Network Engineer

American Express
10.2016 - 04.2017

Junior Network Engineer

Opinioz Tech
05.2012 - 06.2014

Master’s - Network and Computer Security

SUNY Institute of Tech

Bachelor of Science - Electronics and Communication

Anna University
PRAMOTH RAMARAJ