Brian D Krueger Work 206.310.0464 5017 54th Ave S Home 206.725.9977 Seattle, Washington 98118 Email: brian@stormgates.com CURRENT STUDIES: Network Design – currently working on next generation Data Center designs with Nexus and Virtualization. CERTIFICATION: CCNA - Cisco Certified Network Associate SELECT - Cisco Select Certified Partner 640-407 (expired) 646-171 and 642-176 NETWORKS: Ethernet (Fast 802.3u/ Gigabit 802.3ab/ 10 Gigabit 802.3ae),PoE (802.3af), Spanning-Tree (802.1d), Cisco Switches(Catalyst 3750 - 6500), WiFi (802.11a/b/g/n), Load Balancing, EtherChannel(802.3ad), Access Control (802.1x), Content Networking, WAN Optimization, Fiber Switches/Hubs, Network Analyzers, Multi-Layer Switching, Cisco Switch Probe, NetFlow, Satellite, DS1-DS3, OC12-48, Frame Relay, HDLC, HSRP, VRRP, GLBP, HSSI, ISDN, CSU/DSU, PBX, Advanced Routing, Cisco 1600-7200 & ASR Routers, VPN, PIX Firewalls, ASA Firewalls, Context Based Firewalls, Internet Security, IPSec, Access Lists, SMTP, DNS, IDS/IPS, Spam Filters, VoIP, Voice Gateways, Call Manager, Cisco Unity, QoS Advanced knowledge of TCP/IP – RIP, EIGRP, OSPF, and BGP. Excellent troubleshooting skills and thorough understanding of Layers 1-5 of OSI model. HIPAA and PCI real world network experience. Expert in Cisco OS (CatOS 5.1-6.3 and IOS 10.3 - 15.x), PIX/ASA (OS 5.x – 8.x). Windows, Linux, and Solaris 7/8 experience also. O/S: NETWORK SOFTWARE: Checkpoint Firewall 1, What’s Up Pro, HP Cisco ACS. Configured several network monitoring tools CiscoWorks, Traffic Director, Shomiti Surveyor. Have over a decade programming experience with Network Tools such as; Ethereal/Wireshark, Swatch, ACID, Snort, Cricket RRD Tool, and MRTG. TRAINING: Network Training 2001-Present Building Multilayer Switched Networks VoIP – pertinent information to design the network that is best for your Company. Business Continuance and Disaster Recovery, providing an IT infrastructure that is resistant to business interruption. Security Policy Implementation and Network Security Design. Cost savings and improved employee productivity to enterprise businesses. Cisco Networking Academy (North Seattle College) 1998-1999 Advanced Cisco Internetworking and router configuration. Configuring routers with Cisco IOS, LAN/WAN protocols and enhanced TCP/IP network administration. Setting up LAN’s, network design, security, cabling media. Troubleshooting internet connections, routing issues, LAN connectivity and switching Building and configuring remote access with Cisco routers EXPERIENCE: Corbis Corporation 2/10-Present Network Architect/Network Consultant Worked in large scale network deployments and redundancy design for remote sites and data center. One specific project that I successfully deployed was an Internet Perimeter upgrade with multiple carriers and new equipment such as ASR and 3750X series for DMZ switches. Designed Corbis three year network strategic vision. This included an upgrades to support our virtualization strategy (Core Upgrade to Nexus 7000, 10 Gig Transition, Top of Rack Datacenter Switch Upgrade, etc). Designed and deployed MPLS network globally to all remote sites. The designed solution included a Re-IP site wide, network equipment replacement, and a WAN QoS restructure. Cut significant costs in several areas of the network: renegotiated service contracts, sold unused network equipment to third party, cut cost in purchase negotiations. Successfully consolidated network equipment, companywide, and moved to a simplified design model reducing troubleshooting times and improving network clarity. Holland America 6/06-2/10 Senior Network Engineer/Network Consultant Full time Network and Security Consultant for Stormgates, Inc. Working with various companies in developing, implementing, and documenting secure network solutions. Tech Lead in many core network projects including but not limited to: Core Switch Upgrades, Partner integration through Business to Business VPN design and build out. Most recent projects include a full network design and layout for a business, a major core infrastructure upgrade – including dual 4510s w/ 10 Gigabit Ethernet and 6509s, and Firewall migration from PIX platform to ASA. Other projects involve – VPN, Remote Access, ACS ugrade and rollout, 802.11b/g, and firewall configurations/upgrades. Developed Policies & Procedures for several companies – many require documentation and organization of current documents for ease of management. Sound Transit 1/05-6/06 Network Engineer – Full Time Worked with on many implementation projects from the very beginning of my arrival. Managed projects included, but not limited to; VoIP, Firewall conversion, Wireless Security, Remote Access, VPN, UPS, Data Center Upgrade, Switch Upgrade, WAN Acceleration, SmartCard. Focused on implementing new technologies in a secure fashion and securing current network technology already residing on network. Worked with many different groups and setup brown bags and training meetings to educate groups about the network. This training included technical and non-technical users and managers at all levels within ST and also within client corporations. Implemented various management tools (Cricket, CiscoWorks, MRTG, What’s Up Professional), monitoring devices and network equipment on multiple platforms (Cisco, Nokia, Dell, Compaq and HP). VoIP deployment – This implementation included an Agency wide switch upgrade, UPS upgrade, firewall implementation, security training, and VoIP meetings in which I educated customers regarding VoIP and QoS Since my tenure, I successfully implemented several agency wide networks in addition to our internal network. These networks provided connectivity to other government agencies, ticket vending machines, and CCTV. Port of Seattle 7/03-1/05 Network Engineer – Full Time Successfully implemented several network security systems. One of which was Snort IDS on Linux (Debian and Redhat). Managed several security projects; including but not limited to Firewall configuration, IDS implementation, Wireless implementation, and Remote Access connectivity. Content Networking as well as automatic Proxy Redirection. Providing an appropriate and secure use for the internet without having to configure desktop proxy. Interfaced with technical and non-technical users and managers at all levels within the agency and also within client corporations. Worked with various management tools (Cricket, MRTG, Smoke Ping), monitoring devices and network equipment on multiple platforms (Cisco, Nokia, Dell, and HP). Worked with CiscoWorks 2000 and HP Openview to provide network monitoring. Configured CiscoSecure ACS server to provide secure connectivity for internal and remote access. Checkpoint/Nokia Firewall configuration and deployment. Configured Cisco Routers up to 7600, Cisco Catalyst Switches up to 6500, and Firewalls, frequently using monitoring tools for network troubleshooting, protocol analysis, and baseline metrics. Provided after-hours and holiday on-call network support. Siemens Medical 10/01-7/03 Network Consultant – Consultant Sole Network Engineer for Siemens Medical based out of Issaquah, WA. Designed and configured a well-planned, scalable switched LAN with multiple VLAN’s to limit broadcasts and control security. Implemented network monitoring tools and configured security using NAT, Access Lists, and a variety of Firewall Applications. Setup a Wireless LAN for Siemens using the latest authentication protocols. Grouped several protocols together to create a secure exchange from client to access point and from access point to ACS server and vice versa. Played the primary role in upgrading all of our network equipment including but not limited to; Cisco routers (up to 4000), Cisco switches (up to 6509), Dell switches, Brocade fiber hubs, and Shomiti Surveyors. Maintained solid and secure WAN/LAN connections and developed ways of expanding the network for future company growth. Thoroughly combed thru every network device to provide accurate, useful Visio drawings of previously undocumented network segments to assist network engineering in troubleshooting, upgrades, and identifying potential problem areas, bottlenecks, routing loops, etc. Time Warner Telecom 1/01-3/01 Network Engineer - Consultant Network Engineer for Core engineering group based out of Vancouver, WA. Managed, configured, and replaced numerous amounts of Cisco equipment between our internal and remote offices at Time Warner Telecom. Most of the equipment used in the carrier class environment was Cisco 2500-7200 series routers and 501/505 Pix firewalls. Several network monitoring tools had to be successfully implemented on Solaris 7/8. Sole proprietor of monitoring tool, cricket, this was the critical network monitor for the engineer department in which it viewed the complete network, spanning 30 states. Setup routing protocol distribution between all of our remote sites and corporate, including redistributing RIP with OSPF. Supported multiple, very complex, multiprotocol networks consisting of a broad range of LAN and WAN protocols- Frame Relay, RIP, OSPF, and IPX configurations, providing proactive problem-solving and troubleshooting to successfully deliver on time. Keane, Inc. 5/00-1/01 Network Administrator - Full Time Installed Compaq servers and Cisco routers/switches into CO site and remote business offices. Advanced configuration for systems to communicate across a wide variety of servers including NT, Novell, and Unix. Server management involving Keane/Care Computer conversion. Implemented, configured and installed several new routers into the network for time critical projects. Restructured backups for entire network in order to provide a stable backup schema without needless redundancy. References available upon request