Home

Pramod - Sr. Network Engineer
[email protected]
Location: Harrison, New Jersey, USA
Relocation: Open
Visa:
Professional Summary
Accomplished Network Engineer with 10 years of experience in architecting, deploying, and managing complex network infrastructures, excelling in Routing, Switching, Firewall Configuration, and Load Balancing to ensure seamless and secure connectivity.
Extensive hands-on expertise with Cisco routers (ISR 4461, ASR 1009-X, ASR 9903) and switches (Catalyst 9600, 9500, 9300, Nexus 9800, 9500, 7000 series).
Proficient in configuring Data Center infrastructure with Cisco Nexus 5K/7K series switches and Fabric Extenders.
In-depth knowledge of network protocols, including spanning tree, VLANs, DTP, and port security on access layer switches.
Expertise in implementing traffic filters using Access Control Lists, with a deep understanding of TCP/IP and OSI models.
Strong experience in LAN/WAN architecture design, implementation, troubleshooting, and documentation.
Skilled in configuring and troubleshooting Cisco ASA firewalls and Checkpoint R75 firewalls.
Installed Palo Alto PA-5260 and PA-3450 firewalls for Data Center protection, with L3 support for routers, switches, and firewalls.
Hands-on experience with Cisco ACI fabric infrastructure, cloud security solutions, and SDN security applications.
Proficient in deploying F5 BIG-IP iSeries Load Balancers, for traffic management and SSL offloading.
Experienced in automating network tasks with PowerShell, Python scripting, and integrating CI/CD pipelines.
Skilled in cloud technologies, including Azure and AWS, with expertise in VPC/VNet, hybrid cloud architecture, and migration.
Expertise in managing network performance with tools like ScienceLogic, NetScout, and Cisco Secure Network Analytics.
Strong knowledge in SD-WAN solutions, Zscaler, Prisma, and Aruba/Meraki wireless networks for secure, optimized connectivity, EX-2200 series Ethernet switches & Juniper QFabric QFX3500.
Extensive experience with Azure and AWS cloud environments, including Virtual Networks (VNet/VPC), hybrid cloud architectures, and Direct Connect/ExpressRoute for seamless integration.
Proficient in deploying cloud-native security solutions, such as Azure Firewall, Zscaler, and Prisma, ensuring compliance and secure application delivery.
Extensive experience configuring and optimizing OSPF, BGP, and EIGRP for enterprise-level network routing.
Proficient in deploying and managing Cisco ISE for secure access control, including 802.1X authentication and posture assessments.
Configured and managed Fortinet FortiGate firewalls for SSL inspection, application control, and robust network protection.

Technical Skills

Routers & Switches Cisco ISR 4000, ASR 1001-X, ASR 9K, Nexus 9000/7000/5000, Catalyst 9500/9300/9200, Juniper EX4200, MX5, MX10, MX40
Routing & Switching Protocols OSPF, BGP, EIGRP, MPLS, VRF, STP, RSTP, VLAN, HSRP, VRRP, TCP/IP, IPsec
Operating Systems Windows, Linux, Cisco IOS, Junos, Gaia, Azure, AWS
AAA & Network Security Cisco ISE, TACACS+, RADIUS, Palo Alto Panorama, Check Point SmartConsole.
Firewalls & VPN Cisco ASA 5500-X, Palo Alto PA-5260/PA-3450, FortiGate 600F, Juniper SRX4600, Check Point Quantum 7000, IPsec VPN, DMVPN, Zscaler ZTNA

SD-WAN & Cloud Security Cisco Viptela SD-WAN, SilverPeak EdgeConnect, Velocloud, Zscaler, Prisma Access, Azure Firewall, AWS Security Groups
Wireless & WLAN Cisco Catalyst 9800 WLC, Meraki MR86/MR76, Aruba AP-635, 802.11ax (Wi-Fi 6)
Load Balancing F5 BIG-IP LTM/GTM, Citrix ADC, iRules, ASM, SSL Offloading
LAN Ethernet (IEEE 802.3), Fast Ethernet, Gigabit Ethernet, VLANs, Inter-VLAN routing, EtherChannel, Spanning Tree Protocol (STP), VLAN Trunking Protocol (VTP), IEEE 802.1Q
Network Management & Monitoring Wireshark, SolarWinds, Cisco Prime, Meraki Dashboard, FortiManager, Splunk, SNMP
Network Automation Python, Ansible, Terraform, CloudFormation

Certifications
Cisco Certified Network Associate (CCNA)
Cisco Certified Network Professional (CCNP)
Palo Alto Certified Network Security Engineer (PCNSE)

Education:

Master s in Information Science, SUNY at Albany.
Bachelor s in Electronics and Communications, JNTUH.

Professional Experience
Senior Network Engineer Nov 2024 Present
Client : Walmart - Bentonville, Arkansas
Responsibilities:

Configured and managed Cisco SD-WAN (Viptela), Silverpeak EdgeConnect, and VMware Velocloud for enterprise-wide connectivity.
Implemented Zero Trust Network Access (ZTNA) using Zscaler Private Access (ZPA) and Palo Alto Prisma Access for secure remote workforce connectivity.
Configured and optimized Cisco ACI for micro-segmentation and policy-based automation in data centers.
Deployed and managed Cisco Meraki MX450, MS390, and MR76 for cloud-managed networking and security across branch offices.
Configured Cisco DNA Center with SD-Access for automated policy enforcement and network assurance.
Deployed Fortinet FortiGate 600F and FortiManager 7.2 for Next-Generation Firewall (NGFW) security and SD-WAN.
Configured F5 BIG-IP LTM and GTM for load balancing, SSL offloading, and Web Application Firewall (WAF) security.
Configured and managed Aruba ClearPass for 802.1X authentication and device profiling.
Expertise in Juniper SRX4600 and EX4600 for firewalling and high availability.
Hands-on experience with Cisco ISE 3.2 for TrustSec, TACACS+, and posture assessment.
Configured Check Point Quantum 7000 firewalls for intrusion prevention and VPN connectivity.
Managed Cisco Firepower 4150 and 9300 for deep packet inspection and threat intelligence.
Configured Palo Alto PA-5260 and PA-3450 with Panorama for advanced threat prevention.
Strong expertise in BGP, OSPF, and EIGRP for large-scale enterprise WAN and data center routing.
Configured Cisco Catalyst 9500, 9600, and Nexus 9332C switches with VLANs and VXLAN overlays.
Hands-on experience with Infoblox Grid Master for DNS/DHCP management.
Configured wireless networks using Aruba AP-635, Cisco Catalyst 9800 WLC, and Meraki MR86.
Experience with Azure Virtual WAN, Azure Firewall Premium, and ExpressRoute for hybrid cloud connectivity.
Configured and managed AWS Transit Gateway and Route 53 for multi-account cloud networking.
Experience with Terraform, Ansible, and Python scripting for network automation and Infrastructure as Code (IaC).
Configured Cisco ISR 4461, ASR 1009-X, and CSR 1000v with IPsec VPNs and cloud interconnects.
Extensive experience in network troubleshooting and performance optimization in multi-site enterprise environments.

Network Engineer Jan 2024 Nov 2024
Client : State of Illinois - Springfield, IL

Administer Palo Alto (PA-5050/5260) and FortiGate firewalls including HA, NAT, VPNs.
Strong hands-on expertise in Azure Virtual Networks, Google Cloud Platform networking, NSGs, Load Balancers, VNet Peering, ExpressRoute, and Azure monitoring tools
Proven experience in BGP, OSPF, WAN operations, firewall security, Adept at incident management, ISP coordination, and supporting mission-critical production environments.
Hands-on experience supporting enterprise-scale Azure and hybrid network infrastructures with high availability, security, and performance requirements
Strong understanding of cloud-first and hybrid networking architectures, integrating on-prem data centers with Azure using BGP-based WAN connectivity.
Proven ability to troubleshoot complex network and cloud issues across routing, security, and connectivity layers in production environments.
Administer enterprise firewall infrastructure (Palo Alto, FortiGate) ensuring secure and compliant network operations.
Execute firewall audits, rule optimization, and documentation to support regulatory and security standards
Monitor and optimize network performance using Azure monitoring tools, improving visibility and incident response time
Collaborate with cross-functional teams and vendors to resolve critical incidents and maintain SLA compliance
Support large-scale WAN and cloud connectivity using BGP-based routing across hybrid environments
Experienced in monitoring, analyzing, and optimizing cloud network traffic using Azure Monitor, Log Analytics, and NSG Flow Logs.
Demonstrated expertise in network security controls, including firewall rule management, SSL inspection, and secure internet access solutions.
Adept at working in 24 7 enterprise support environments, adhering to strict SLAs and ITIL-based incident management processes
management processes
Strong collaboration skills, working closely with cloud teams, security teams, ISPs, and vendors to resolve critical incidents.
Manage centralized firewall operations using Panorama.
Configure GlobalProtect, IPSec, and SSL VPNs.
Support BGP and OSPF routing for inter-site connectivity.
Handle production changes via ServiceNow (ITIL).
Troubleshoot firewall and network incidents (Tier-2/Tier-3).
Monitored enterprise infrastructure using proactive monitoring tools and performed performance analysis to identify potential issues before business impact occurred.
Communicated project status and operational updates with customers, business stakeholders, and technical teams using ServiceNow, Microsoft Teams, and email
Supported multiple concurrent infrastructure requests from design through implementation and closure.
Maintain documentation and Visio diagrams.
Worked on firewall rule audits and cleanup activities
Network Engineer Mar 2023 Dec 2023
Client : Leidos - Austin TX
Responsibilities:

Configured and optimized BGP, OSPF, EIGRP, and MPLS for enterprise and data center networks.
Deployed and managed Cisco ACI, Nexus 9000, 7000, and 5000 series switches for VXLAN overlays and Layer 2/3 segmentation.
Configured and troubleshooted Cisco ISR 4451, ASR 1001-X, ASR 9K series routers for WAN connectivity and SD-WAN deployments.
Designed and implemented SD-WAN solutions using Cisco SD-WAN (Viptela), SilverPeak EdgeConnect, and Velocloud.
Configured and optimized Cisco Meraki MX security appliances, MR access points, and MS switches for cloud-managed networking.
Managed and configured Aruba ClearPass for 802.1X authentication and network access control (NAC).
Deployed and managed Infoblox Grid Master for DNS/DHCP/IPAM automation.
Configured and managed Fortinet FortiGate 600F, Palo Alto PA-5260, Check Point Quantum 7000, and Juniper SRX4600 firewalls.
Deployed VPN solutions including IPSec, DMVPN, and remote access VPNs using Cisco ASA, Palo Alto GlobalProtect, and Zscaler ZTNA.
Configured F5 BIG-IP LTM and GTM for application load balancing and SSL offloading.
Managed Cisco Firepower 4150 and 9300 for deep packet inspection (DPI) and threat intelligence.
Configured Cisco ISE 3.2 for TrustSec, posture assessment, and TACACS+/RADIUS authentication.
Managed AWS, Azure, and GCP networking including VPCs, Transit Gateway, ExpressRoute, and hybrid cloud security.
Configured Azure Firewall Premium, NSGs, and ISE cloud security for multi-cloud environments.
Developed Python and Ansible scripts for network automation and configuration management.
Designed and implemented SDN solutions for large-scale enterprise networks.
Configured and troubleshooted Cisco Catalyst 9500, 9600, and Nexus 9332C switches for high-performance LAN/WAN networks.
Configured Cisco Wireless LAN Controllers (WLC) and Aruba AP-635 for enterprise Wi-Fi.
Provided AAA security using TACACS+ and RADIUS for centralized authentication and authorization.
Configured DNS, DHCP, NAT, and ACL policies for multi-vendor security environments.
Troubleshot QoS policies to optimize VoIP and business-critical applications across WAN/LAN networks.

Network Engineer Mar 2018 Feb 2023
Client : Hexaware - Jersey City, New Jersey
Responsibilities:

Configured and managed routing protocols including BGP, OSPF, EIGRP, IS-IS, and MPLS for enterprise and data center networks.
Designed and deployed SD-WAN solutions using Cisco SD-WAN (Viptela), SilverPeak, and Velocloud to enhance performance and security.
Managed Cisco ACI for data center networking, application segmentation, and automation.
Configured and deployed Infoblox for DNS, DHCP, and IPAM to improve network efficiency and automation.
Managed Cisco Meraki MX security appliances, MR access points, and MS switches using the Meraki Dashboard for cloud-based network operations.
Configured Aruba ClearPass for NAC and policy-based authentication to enhance enterprise security.
Managed and optimized F5 Load Balancers (LTM/GTM), including iRules scripting and high-availability configurations.
Deployed and troubleshooted Cisco ISE for identity-based network access control and security policies.
Configured VLANs, ACLs, QoS, and network segmentation to optimize network performance and security.
Designed and implemented high-availability solutions using Cisco ISR, ASR routers, and Catalyst switches.
Managed enterprise firewalls, including Fortinet FortiGate, Juniper SRX, Palo Alto, and Check Point for advanced threat protection.
Configured and troubleshooted Cisco ASA and Palo Alto firewalls for VPN, site-to-site, and remote access solutions.
Designed and deployed Cisco Nexus 5000/7000 switches, including vPC, VXLAN, and Fabric Extender (FEX) configurations.
Deployed and managed wireless networks using Cisco Wireless LAN Controllers (WLC), Catalyst Wireless, and Aruba ClearPass.
Implemented Cisco Prime Infrastructure for network monitoring, automation, and compliance.
Configured hybrid cloud connectivity using AWS Direct Connect, Azure ExpressRoute, and VPN gateways.
Managed AWS, Azure, and GCP network infrastructure, including VPCs, Security Groups, IAM roles, and VPN gateways.
Automated network configuration and monitoring using Python and PowerShell scripting.
Configured HSRP, GLBP, VRRP, and redundant networking architectures for high availability.
Provided ongoing network maintenance, software upgrades, and security patches to ensure a secure enterprise network.

L1/L2 Network Engineer Feb 2016 Mar 2018
Client : IVY Mobility - Princeton, New Jersey
Responsibilities:

Configured and maintained Cisco and Juniper routers and switches, ensuring network stability across LAN/WAN environments.
Managed routing protocols including RIP, OSPF, and EIGRP to optimize network performance and redundancy.
Configured VLANs, Spanning Tree Protocol (STP), Port Security, and ACLs to ensure secure and segmented network access.
Administered DNS, DHCP, and IPAM for IP address management and network availability.
Managed Cisco ASA and Juniper SRX firewalls, configuring firewall rules, NAT, and VPN policies for secure remote access.
Supported enterprise wireless networks, configuring Cisco Wireless LAN Controllers (WLC) and Aironet access points for optimal Wi-Fi coverage.
Provided L1/L2 network support for enterprise LAN/WAN environments.
Configured and supported VLANs, trunking, STP, and EtherChannel on Cisco switches.
Assisted in managing Cisco ASA and Checkpoint firewalls, including ACLs, NAT, and basic VPNs.
Monitored network performance and resolved connectivity issues for end users.
Supported routing protocols (OSPF, basic BGP) under senior engineer guidance.
Monitored enterprise network infrastructure (routers, switches, firewalls, WAN links) in a 24 7 NOC environment.
Performed L1 troubleshooting for connectivity issues related to LAN/WAN, VPN, DNS, and routing problems.
Handled incident tickets using ticketing tools and escalated issues to L2/L3 teams based on SLA impact.
Performed basic configuration checks on Cisco routers and switches including VLANs, IP addressing, and interface status.
Monitored alerts using network monitoring tools and identified anomalies in bandwidth usage, latency, and packet loss.
Assisted in firewall rule verification and access validation for application connectivity issues.
Worked with ISP providers during outages and tracked resolution updates.
Documented incidents, troubleshooting steps, and resolutions to improve team knowledge base. Gained hands-on exposure to TCP/IP, subnetting, routing concepts, and network troubleshooting methodologies.
Followed ITIL-based incident management practices (P1 P4 prioritization).
Maintained network documentation, IP addressing records, and SOPs.
Deployed and managed IPsec VPNs and site-to-site VPN tunnels to connect branch offices securely.
Conducted network troubleshooting using tools such as Wireshark, SolarWinds, and Ping/Traceroute to diagnose and resolve connectivity issues.
Provided technical support for network incidents, escalating complex issues as needed.
Performed IOS upgrades, software patching, and hardware replacements for network equipment lifecycle management.
Keywords: continuous integration continuous deployment ffive microsoft mississippi Illinois Pennsylvania South Dakota Texas Wisconsin

To remove this resume please click here or send an email from [email protected] to [email protected] with subject as "delete" (without inverted commas)
[email protected];7502
Enter the captcha code and we will send and email at [email protected]
with a link to edit / delete this resume
Captcha Image: