Principal Consultant
Principal level architecture, full-stack development and DevOps consulting services for a client specialized in vehicle/home service contracts and claims administration industry
- Responsible for Azure infrastructure, application architecture and development for large digital transformation effort splitting legacy in-house administration system into Azure cloud-first replacement for service contract management. System implements two-way integration with new claims system that has been simultaneously migrated to Salesforce by another vendor.
- Architected and developed generic import service for intake of contracts from various fulfillment companies. Service is responsible for rating contracts against business / data-driven guidelines and rules to ensure profitability and flags or rejects those that are not.
- Developed API integrations, messaging, queuing and auditing, including data aggregation across multiple source systems into single managed back-end.
- Process improvement and modernization has reduced import and rating process from 35 minutes to ~10 seconds.
- Automation and process improvement has reduced contract cancellation process from full-time 40 hour+ effort to less than four hours / week.
- Designed and developed data-driven, expression-based calculation engine for contract rating and cancellations with ability to show its work. Greatly reduced that amount time spent debugging calculations for both developers and business users as it shows how system arrived at result for each calculation.
- Recently upgraded application data contexts from EF Core 5 to EF Core 6 with compiled models which as increased startup time and query performance nearly 70%.
- System is composed of Blazor (WASM) and Angular SPA(s), Web API, Function Applications, Azure Storage, Service Bus topics and queues, Redis Cache, Azure SQL, and developed with .NET 6.0 / .NET Standard 2.1. Secured with OAuth 2.0, Azure Active Directory and Key Vault.
Principal architect, full-stack development and DevOps consulting services for Nourished Rx, specialists in the engagement of patients and health plan members with custom dietitian approved meal plans for the prevention / progression of heart disease, diabetes and obesity.
- Partnered with subject matter experts and team to consolidate multiple systems and data sources into single application responsible for management of vendor meal catalogs, approval, scheduling, and fulfillment of meal orders for Nourished Rx members. Service oriented integration with Dynamics (system of record) for member/patient data that allowed dietitians ability to quickly customize meal plans, while avoiding duplication and storage of sensitive healthcare PII.
Principal level architecture and full-stack development consulting services for client's commercially-marketed, cloud-based automotive shop management SaaS product hosted in Azure
- Provided expertise administering and implementing features for all aspects of product's Azure environment (App Services, Service Bus Pub/Sub and Queues, SignalR, Search, Logic Apps, Key Vault and Azure SQL)
- Shared responsibility for all aspects of build and deployment pipeline, maintaining separate branches and environments (deployment slots) for dev, alpha, beta, staging and production.
- Produced and implemented application scaling strategies to optimize performance while controlling costs.
- Led application telemetry initiative that provided insights into products performance and usage characteristics, allowing team to identify and improve performance bottlenecks.
- Championed, designed and implemented load testing strategy to allow team to effectively measure each deployment/release's effect on performance of application under load.
- Implemented improvements to outside purchase, inventory and returns areas of product.
Strategic security assessment for client's commercially-marketed case management SaaS product
- Led team to identify and inventory areas of application to get overall picture of attack surface.
- Applied principles from OWASP Top 10 most critical web application security vulnerabilities to identify threats/vulnerabilities.
- Using combination of white-hat hacking techniques, and demonstrated current security posture of product to members of executive team. Used vulnerabilities and script injection to show live take-over of their multi-tenant SQL Server to point of being able to encrypt their backups with new key that could be used as ransom in hands of malicious attacker. All attacks were executed through console of Chromes development tools.
- Delivered findings and recommendations along with defense in depth strategies for consumption by software development team.
- Partnered with client's software development team to provide strategic guidance while demonstrating security best practices.
Security assessment for client's emerging loan platform hosted in Google Cloud
- Used various white-hat hacking techniques, tools, and automation to provide current security posture.
- Delivered findings and recommendations report along with defense in depth strategies to client.
