network security engineer resume example with 7+ years of experience

Jessica Claire
, , 609 Johnson Ave., 49204, Tulsa, OK 100 Montgomery St. 10th Floor
Home: (555) 432-1000 - Cell: - - : - -
Professional Summary

Dedicated Network Security professional with history of meeting company goals utilizing consistent and organized practices. Organized and dependable candidate successful at managing multiple priorities with a positive attitude. Willingness to take on added responsibilities to meet team goals and skilled in working under pressure and adapting to new situations and challenges to best enhance the organizational brand.

  • Cisco Routers: Cisco routers 7600, 7200, 3900, 2900, 1900
  • Cisco L2 & L3 switches: Cisco Catalyst switches 6500, 4900, 4500, 3750, 3500, 2960
  • LAN Technologies: VLAN, VTP, STP, RSTP, PVST, 802.1x, Ethernet, Fast Ethernet, Gigabit Ethernet, & 10
  • Gigabit Ethernet, Port- channel
  • WAN technologies: HDLC, PPP, MPLS, leased lines, OC, T1 /T3 & SONET
  • Routing Protocols: RIPv1 & v2, OSPF, IGP, EIGRP, BGP, HSRP, VRRP
  • Network Security: ACL, NAT/PAT, VPN, IPSEC, SSL-VPN, AAA
  • Firewall: ASA Firewall, Palo Alto
  • Network Tools: SolarWinds, SNMP, Wireshark, NetFlow, JIRA
  • SIEM tool: QRadar, Splunk, SolarWinds, NetFlow, Gigamon, and Wireshark
  • Firewall Installation
Work History
06/2021 to Current
Network Security Engineer Commonwealth Financial Waltham, MA,
  • Integrated newly developed router from scratch & tested different security aspects with cisco ASA Firewall, RADIUS server, IXIA & SPIRENT traffic generator in AT&T lab.
  • Worked with teams to develop company-wide information assurance, security standards and procedures.
  • Installing & upgrading Firmware and OS on Cisco XR, ASR & CRS routers, and Cisco ASA firewall.
  • Integrating, testing, and troubleshooting Layer-3/Layer-2 network & Security issues and collaborating with network operations staff and vendors to conduct Root-Cause Analysis.
  • Configuring IP Routing Protocols such as MPLS, BGP, MP-BGP, BGP-LU, BGP- UC, Static, OSPF, CEF, FIB, L2/L3-VPNs.
  • Working on following Networking Technologies – TCP/UDP, NAT, DNS, QoS, VRFs, TACACS, BFD, Netflow, TWAMP, Route-reflectors, Route Policy (RPL).
  • Operating Multivendor Platforms like Cisco IOS and IOS-XR platforms, Cisco CRS, Cisco ASR 9000 series platforms, Juniper MX, Acton Switch, Arista Network Switches 7K, UFI, DriveNets NOS, IXIA and Spirent.
  • Configuring and Troubleshooting IPSec VPN Tunnels on Cisco ASA FWs
  • Managing Cisco ASA firewalls by creating Security Rules, Zones, Zones, NAT, Firewall Firmware Upgrade, etc
  • Managing Gigamons for traffic inspection.
06/2018 to 06/2021
Network Security Engineer Commonwealth Financial San Diego, CA,
  • Configured and Migrated from Cisco ASA firewall to Palo Alto firewall
  • Rolled out new remote access VPN solution
  • Global protect for mobile users to access business resources
  • Enforced best practices and reduced attack surface remarkably
  • Responsibilities
  • Involved in Firewall Administration, Rule Analysis, Rule Modification and responsible for Cisco ASA firewall administration across global networks
  • Composed ACL in Palo Alto firewalls for internet Access requests for servers, Protocol Handling, Object Grouping, NAT and to allow only authorized users to access service
  • Utilized CSM (Cisco Security Manager) for building and supervising Site-to-Site VPN on Cisco ASA firewall
  • Created Palo Alto Virtual Labs for training of basics operation and advanced troubleshooting sessions
  • Deployed 50+ Palo Alto Firewalls in enterprise environment for connection between HQ and branch offices
  • Migrated Cisco ASA to Palo Alto 9.0 firewall using Palo Alto Migration tool (Expedition 2.0)
  • Managed Palo Alto firewalls (PA-820/850/3020/3050/5050) by deploying Panorama management system, performed different operations on firewall to monitor/ block/ allow traffic
  • Created device groups and template stacks on Panorama to define common base configurations
  • Performed SSL decryption of traffic at both Internet Gateway and Data Center PAN firewalls
  • Designed custom URL categories, custom applications, and services for different use cases
  • Evaluated POC on Palo Alto firewall for composing security profiles such as Anti-virus, Anti-Spyware, Vulnerability, File blocking features for security tightening
  • Managed Palo Alto firewalls not limited to managing multi VSYS instance, BGP peering, security policies management, threat prevention components of Palo Alto firewall
  • Analyzed, troubleshot, and investigated network security-related incident based on security platform reporting, network traffic, log files, host-based and automated security alerts
  • Improved efficiencies of redundant tasks by writing scripts and when possible, scheduling automation
  • Executed with Application team to identify, review and push security policy and clean up existing policies
  • Coordinated resolution of issues with other IT groups
  • Performed initial research and diagnostics of issues and used the ticketing system (Zira) to open, update, reassign and close trouble tickets
  • Extensively using Kerberos & NTML as an SSO Method for application login via Pulse Secure SSL VPN
  • Design & configured and managing SAML MFA using Azure as the primary Identity provider for more than 12,000 users
  • Migrated Pulse Connect secure hardware appliance from MAG 360 to PSA 7000c including lab testing, RDP testing, Application access testing, Cluster configuration, Fail-over testing, etc
  • Configured new applications on PSA 7000c along with sign-in URL, Realm, Role, Resource profile, policies, etc
  • Troubleshooted application issues with the help of policy trace, ds records, TCP dump, All IV logs and worked with
  • Pulse support by creating tickets
  • Designed, Configure Multifactor authentication for RDP and 60+ application through Azure cloud for more than 12,000 Users on Pulse Connect Secure 7000c.
02/2017 to 05/2018
Network Engineer Fotheringill & Wade Llc Plano, TX,
  • Associated in design, planning and implementation of a network
  • To create, modify switches and routers configurations for variety of Cisco platforms
  • Responsible for providing tier 3 troubleshooting support to users and executives on workstation, server, networking systems and applications
  • Analyze problems to identify significant factors, gather data and recognize solutions
  • Responsibilities
  • Arranged and troubleshot routing protocols namely OSPF, EIGRP and BGP in multiple domains
  • Configured, Troubleshot, and documented Cisco Catalyst Switches 3750, 4500, 6500 series and Cisco Routers 2900, 3900, 7200 series using OSPF, EIGRP
  • Performed maintenance and refinement of Cisco ASA Firewalls including implementing, adding, removing, and editing firewall security policies and NAT rules through command line and CSM
  • Converted Cisco ASA rules to object and group object based as per requirement
  • Engaged in Installation and execution of Cisco ISE servers to provide Network Access Control (NAC)
  • Conceptualized in Wired, Wireless, Guest user configuration of Cisco ISE
  • Effectuated profiling, posture assessment, BYOD, Guest Access by employing ISE server for better visibility and control based on organization’s requirement
  • Major contributor included IOS upgrade for switches, routers, Firewalls and Load Balancers troubleshooting of complex LAN/WAN infrastructure, configuring firewall, monitoring traffic using Wireshark
  • Knowledge and experience of working with ITIL Processes
  • Supported security system deployments, management, and maintenance, including Firewalls, VPNs, and infrastructure monitoring, reporting, and associated sensor systems
  • Determined security violations and inefficiencies by conducting periodic audits
  • Prioritized and responded to Service Desk tickets in ServiceNow as appropriate
  • Documented known issues and provided solutions to proactively reduce service desk tickets
  • Co-ordinated with Field Operations and fiber support team to resolve network outages
  • Prepared documentation including network diagrams and configuration documents.
12/2014 to 08/2016
Jr. Network Engineer Nextgen Healthcare Hunt Valley, MD,
  • Reconciled for on-site support including receiving, inspecting, tracking, installation, configuration, documentation, support, and fine tuning of technology equipment incorporates with server builds and configuration, network equipment, storage systems, and cabling within data center environment
  • Responsibilities
  • Configured large scale network environment using routing protocol OSPF and EIGRP with imposing Access Control List (ACL)
  • Performed basic security and ACL administration on Cisco 5506 ASA firewalls includes rule deployment
  • Troubleshot VPN tunnel issues, DNS, DHCP and other IP conflict problems across the environment
  • Implemented Split Tunneling on VPN Headend Firewalls for Microsoft Teams, SharePoint, OneDrive applications to improve the customer experience and eliminate latency
  • Configured Firewall rules to provide access to third parties according to the security policies
  • Set up and Upgraded routers and switches in network with Senior Network Engineer
  • Performed Security Scans on Application Servers to check for invalid users/accounts to be removed from the servers
  • Organized and directed annual maintenance for customers’ routing, switching, firewall technologies and LAN/ WAN communication system
  • Coordinated in L1/L2 Switching Technology Administration including creating and controlling VLANs, Port security, Trunking, STP, Inter-VLAN routing, LAN security, etc
  • Designed trunk groups, ether channels and spanning tree for Access and Core layer switching architecture
  • Utilized Microsoft Visio to map out network architecture documents
  • Traced Ethernet cable and Fiber cable in IDF/MDF for ensuring network connectivity.
Expected in 12/2018 to to
Master of Science: Electrical and Computer Engineering
New York Institute of Technology - New York, NY
Expected in 05/2015 to to
Bachelor of Engineering: Electrical and Communication Engineering
Gujarat Technology University - , Gujarat

CISSP (Certified Information System Security Professional)

  • CCIE Security Written 350-XXX (Cisco Certified Specialist – Security Core)
  • CCNA (Cisco Certified Network Associate - Routing & Switching)
  • CCNA Security 210 – 260 (Implementing Cisco Network Security)
  • AWS (Amazon Web Services - Solutions Architect Associate)
  • PCNSE (Palo Alto Networks Certified Network Security Engineer)

By clicking Customize This Resume, you agree to our Terms of Use and Privacy Policy

Your data is safe with us

Any information uploaded, such as a resume, or input by the user is owned solely by the user, not LiveCareer. For further information, please visit our Terms of Use.

Resume Overview

School Attended

  • New York Institute of Technology
  • Gujarat Technology University

Job Titles Held:

  • Network Security Engineer
  • Network Security Engineer
  • Network Engineer
  • Jr. Network Engineer


  • Master of Science
  • Bachelor of Engineering

By clicking Customize This Resume, you agree to our Terms of Use and Privacy Policy

*As seen in:As seen in: