SENIOR NETWORK ENGINEER
Send a job offer directly to this candidate
Senior Network Engineer with progressive experience across enterprise LAN/WAN, data centers, carrier networks, hybrid cloud, and infrastructure security, moving from hands-on branch deployments into large-scale network modernization, cloud connectivity, production incident ownership, and cross-functional design work for business-critical environments. Deep routing and WAN experience with BGP, MP-BGP, OSPF, EIGRP, MPLS, VRF, HSRP/VRRP, QoS, and Cisco Viptela SD-WAN, including vManage/vSmart/vBond, OMP, TLOCs, path selection, route control, failover behavior, and troubleshooting across branches, datacenter, carrier, and cloud-connected networks.
Cisco background across Catalyst 2960/3560/3750/9300/9500, Nexus 7000/9000, ISR, ASR, and ASR 9000 platforms, covering switching, routing, high availability, data-center connectivity, software lifecycle work, migrations, capacity changes, and production support in geographically distributed enterprise environments. Hands-on Juniper MX and Junos experience in carrier and core-routing environments, working with BGP/MPLS, MP-BGP, VRFs, routing policies, prefix controls, interface configuration, route validation, and troubleshooting while integrating Juniper routing with Cisco, firewall, load balancing, and transport infrastructure. Data-center networking experience with VXLAN EVPN, BGP EVPN, spine-leaf architecture, VNI/VTEP, VRF, vPC, LACP, and Nexus 9000, supporting workload migrations, scalable segmentation, high availability, and fault isolation across both the underlay routing and overlay control planes.
Hybrid and multi-cloud networking experience across Microsoft Azure and AWS, with Azure Virtual WAN, ExpressRoute, VPN Gateway, and VNet Peering used for Azure modernization and AWS VPC, Transit Gateway, Direct Connect, and Site-to-Site VPN used for separate cloud-integration requirements across enterprise datacenter and WAN environments. Network-security experience across Palo Alto/Panorama, Fortinet FortiGate, Check Point, Cisco ASA, and Zscaler ZIA/ZPA, with hands-on work spanning NGFW policy, App-ID, security zones, NAT, ACLs, threat prevention, GlobalProtect/IPSec, secure Internet access, and private-application access rather than treating each platform as an interchangeable firewall stack. Experienced with Zero Trust, SASE, and NAC using Zscaler ZIA/ZPA and Cisco ISE, including App Connectors, 802.1X, EAP-TLS, MAB, dynamic VLAN assignment, and identity-aware access controls, with troubleshooting across authentication, DNS, routing, policy, connector health, and application reachability for wired, wireless, and remote-access users.
Enterprise campus and wireless networking experience with Cisco Catalyst 9300/9500, Catalyst 9800 WLC, Cisco APs, Aruba Wireless, Cisco ISE, and ClearPass, supporting VLAN/trunk design, AP onboarding, SSID and policy configuration, 802.1X/MAB authentication, roaming and client-connectivity troubleshooting, and wired/wireless access integration across large multi-sit
Senior Network Engineer at BLUE CROSS BLUE SHIELD (2024-10 – Present)