Experienced Network Engineer with over 16+ years of experience in network technologies. Skilled in planning, designing, configuring, managing, securing, optimizing performance, and documenting LAN/WAN networks. Proficient in network system installations, migrations, cutovers, hardware upgrades, repairs, and maintenance. Demonstrated ability to lead projects from inception to completion, driving organizational growth and success.
Overview
17
17
years of professional experience
1
1
Certification
Work History
Network Engineer
Mawer Investment Management
02.2018 - Current
Provided complete end-to-end design and installation of route-based IP network solutions.
Performed overview, comparison, and cost-benefit analysis of proposed solutions to management.
Assessed and planned network design changes and led the implementation of corporate LAN, WAN, cloud, and wireless infrastructure.
Supervised technical communications with service providers, and 3rd party vendors for new installations and services, circuit upgrades, cross connects, Internet, MPLS, layer 2 connections.
Designed and implemented routing and switching changes using OSPF, BGP, and static routing on Cisco and FortiGate devices, connecting branch offices to data centers and the Azure cloud regions.
Managed production network of datacenters and remote offices to ensure over 99.5% network availability, redundancy, scalability, and security.
Performed several mission-critical network changes and cutovers, and supported the creation of key deliverables including High-Level and Low-Level Designs (HLDs and LLDs), runbook, migration plans, and acceptance test plans.
Managed FortiGate firewalls, FortiManager, FortiAnalyzer, FortiWireless controllers, Access Points and responsible for troubleshooting all network related routing, switching, and firewalling issues including traffic monitoring and analysis.
Performed network hardware refreshes and upgraded WAN capacity to optimize link performance and resiliency to meet traffic requirement at all business locations including Azure regions.
Oversaw the design and implementation of multiple secure isolated DEV network environments for dev teams to run proof of concepts.
Reduced downtime with proactive monitoring of network devices and rapid troubleshooting.
Supported Mitel VoIP telephone system, VoIP endpoints, softphones, and teleworker access to Mitel telephony.
Redesigned a non-functional disaster recovery (DR) site to become fully operational across network, compute, and storage layers, overseeing the entire process from concept to implementation to ensure complete DR readiness.
Maintained all network related documentation and network topology diagrams.
Evaluated emerging networking technologies to identify infrastructure improvements and provided recommendations.
Network Engineer
Medical Pharmacies Group
09.2015 - 01.2018
Responsible for planning, designing, installing, and supporting co-located enterprise data center network environment.
Developed and implemented a roadmap and transition plan for multi-site migrations.
Supervised new connections, bandwidth, and IP address allocations, and oversaw installation, configuration, and maintenance of network upgrades.
Worked with various internal teams and third-party vendors during pre/post deployment phase of WAN circuits upgrades at remote office locations.
Implemented routing and security changes and led a comprehensive overhaul of Layer 3 LAN and WAN infrastructure. This included designing and deploying a Multi-WAN Layer 3 VPN, MPLS, and LTE-based backup connections to data centers using IPSec site-to-site VPN tunnels, ensuring redundancy for over 55 remote sites.
Configured and deployed comprehensive network segmentation to enhance security, enabling robust intrusion detection and prevention while controlling access to corporate resources.
Collaborated closely with core and other engineering teams to build, provision, and troubleshoot network-related issues across wintel, storage, and application environments.
Evaluated and upgraded hardware and link capacity for MPLS networks, supporting migration projects that transitioned sites from legacy connections to full-mesh MPLS IPVPN circuits.
Managed Cisco routers, switches, and ASAs, as well as SonicWall and WatchGuard firewalls, including routing, policy configuration, access rules, NAT translations, traffic analysis, and troubleshooting of application access issues.
Managed F5 LTM virtual servers, pools, health monitor, SNATs, irules for managing traffic and tuning load on network servers.
Assisted in developing standards for network and security procedures and controls for Wintel and Linux-based web, application, and database servers.
Created and maintained overall network infrastructure documentation, including High-Level Designs (HLDs) and Low-Level Designs (LLDs) of network topology
Provided L2/L3 support to user application connection issues and coordinated with third party vendors to ensure all issues resolved in timely manner.
Network Support Engineer
IBM Canada
10.2011 - 08.2015
Provided support for LAN, WAN, and wireless infrastructure, contributing to enterprise-wide hardware refresh initiatives, network design changes and enhancements.
Migrated legacy T1, ADSL, and dial-up links to full mesh MPLS IPVPN private network access between remote sites and datacenter locations.
Managed network upgrades, migrations, and expansions while minimizing disruptions to client stores daily operations.
Collaborated with network teams to implement routing, switching, and IPSec VPN tunnels for over 1200 client branches across Canada.
Assisted in the design and implementation of EIGRP and OSPF routing solution to remote sites to connect to datacenters through MPLS and backup redundancy via mGRE DMVPN tunnels with IPsec.
Supported operation and maintenance of physical and virtual infrastructure, including over 3,200 VMware hosts and 21,000+ production VMs in clustered, enterprise-scale environments.
Staged and deployed Cisco voice-gateway routers 2921 and 2960/3760 switches as part of an enterprise-wide hardware refresh rollout.
Configured and deployed link aggregation in Cisco Nexus 7000/5000/2000 switches with vPC to enhance uplink redundancy to ESXi hosts and storage system.
Implemented Layer 2 and Layer 3 configuration changes to ensure seamless integration with UCS B-Series blade servers and storage systems, optimizing overall performance.
Improved network performance by troubleshooting and resolving hardware, software, and application connectivity issues.
Conducted network dependency assessments, documented processes, and maintained change control procedures.
Network Administrator
ALM Canada
07.2008 - 09.2011
Managed network hardware and software and monitored network operation to support network availability to end users.
Provided level 2/3 support and troubleshooting to resolve network reachability issues.
Monitored and maintained network and system resource utilization, capacity planning, and redundancy to ensure the core network is highly available for production.
Performed network maintenance and system firmware upgrades including patches, hot fixes, and network security changes.
Deployed revised VLANs, IP address structure, including port assignments, port channels, Trunks and STP Implementation in the network to improve network performance and resiliency.
Maximized uptime by performing routine maintenance on Firewalls, switches, routers and servers and other networking equipment.
Performed anomaly detection in attack prevention system, vulnerability scanning, network and host IPS/IDS, Cisco ASA.
Enhanced network security through installation, monitoring, and maintenance of firewalls and antivirus software.
Worked with IT team in analyzing and developing network processes designed to strengthen network continuity and deploy security procedures in an attempt to meet and exceed business requirements.
Education
Bachelor of Science - IT (Security)
Western Governor University
Skills
Datacenter network implementations
Disaster recovery operations
Hardware installation & system integration
Firewall Management: FortiGate, Cisco ASAs, Palo Alto, Sonic Wall, WatchGuard