· With over 6 years of experience in telecommunications and networking, I have specialized in medium to large-scale enterprise and data center networks. My skill set includes expertise in switching, routing, network security, application delivery, wireless technologies, VoIP, virtualization, and software-defined networking (SDN).
· Hands-on experience installing, configuring, and maintaining Cisco switches, including 3850, 6500, 6800, 9200, 9300, 9400,9410,9500, and 9600 series in enterprise environments, as well as Nexus3k, 5k, 7k, and 9k in data center environments.
· Proficient in network monitoring using SolarWinds NetFlow Traffic Analyzer, Network Performance Monitor (NPM), Network Configuration Manager (NCM), Cisco Prime, Security Device Manager (SDM), Cisco Works, Infoblox, HP OpenView, and Wireshark.
· Extensive experience with Palo Alto Next-Gen Firewalls (PA-5420, PA-800 series, PA-3200 series, and VM series), managing internal and internet traffic filtering, Panorama (M100 series), and maintaining up to 75 firewalls in large networks. Expertise in SSL forward proxy, URL filtering, and policy management.
· Skilled in using diagnostic tools like Wireshark, TCPDump, SSLDump, firewall session logs, and Splunkfor network and application troubleshooting.
· Experience in Virtual Port Channel (VPC), Virtual Device Context (VDC) technologies, and Gateway redundant protocols like HSRP, VRRP, and GLBP. Well-versed in Access, Distribution, and Core Layer architecture in data centers, as well as Spine-Leaf architecture.
· Extensive knowledge of Cisco ASA 5500Xseries firewalls (5505, 5510, 5512-X) with Firepower modules, Palo Alto firewalls, Panorama, and Check Point firewalls (NG, NGX). Experience converting Check Point VPN rules to Cisco ASA solutions.
· Hands-on experience migrating applications from CIS private cloud to Azure cloud environments.
· Experience configuring F5 LTM (10000 & 20000 series) for corporate applications, high availability, and DMZ/internal network deployments. Expert in LTM, GTM, VIPs, SNAT, SSL offloading, iRules, and iAPPs. Migration experience from ACE to F5.
· Experience in installing, configuring, and troubleshooting Juniper EX switches, including EX9200, EX4600, EX4400, EX4300, EX4100, EX3400, and EX9250 series.
· Experience with Zscaler Internet Security(ZIA) and Zscaler Private Access, including migrating from IronPort to Zscaler ZIA for secure web traffic.
· Experience in installing, configuring, and managing AAA servers (RADIUS, TACACS+), DNS, and DHCP servers, using Infoblox and Active Directory databases.
· Skilled in troubleshooting high-priority network issues and executing Proof of Concepts (PoCs) for installations, migrations, and the adoption of new technologies. Proficient in IDF and MDFarchitecture, data center support roles, iOS upgrades, and migration projects across different vendor equipment.
· Hands-on experience with SCIMprovisioning from Azure AD to Zscaler ZIA for user and group synchronization.
· Expertise in manipulating BGP attributes like Local Preference, MED, Extended Communities, route reflectors, route maps, and implementing route policies.
· Experience with FortiGate appliances, including 3200D, 1500D, and 1200D, running the latest FortiOS 5.2.
· Proficient in configuring and troubleshooting Cisco routers, including ASR 1000, ASR 9000, ISR 4000, and ISR 1000 series.
· Worked on Proof of Concept (PoC) projects involving Cisco ACI and Arista Cloud Vision, with knowledge of Spine-Leaf architecture, EVPN, VXLAN, VTEPs, bridge domains, and MP-BGP.
· In-depth knowledge of OSPF, EIGRP, RIP, and BGP routing protocols. Proficient in Layer 1/Layer 2 troubleshooting in complex environments, MPLS over BGP, and edge router upgrades, including ISP circuit failover.
· Experience with McAfee Web Gateways and Bluecoat proxies for internet traffic filtering, and expertise in configuring IPS sensors and proxies in DMZ and internal networks, including WCCP.
· Experience working with Aruba and Cisco Wireless LAN controllers, configuring and provisioning access points(APs), SSIDs, virtual APs, remote and campus APs, and managing wireless LAN infrastructure with active/active controllers.
· Proficient in network traffic analysis and troubleshooting using tools like ping, traceroute, Gigamon, Wireshark, TCPDump, and Linux servers.