Overview
Work History
Education
Skills
Awards
Certification
Timeline
Generic

Derek Kneisel

Overview

5
5
years of professional experience
1
1
Certification

Work History

Senior Cloud Security Engineer

AT&T
07.2020 - Current

Shift-Left Security Scanning Integration

  • Led the development and deployment of a custom security scanner seamlessly integrated into CI/CD pipelines (Azure DevOps, GitHub Actions, and internal on-prem platforms).
  • Implemented advanced security scanning for Infrastructure as Code (IaC) and container images, addressing pre-runtime security risks.
  • Onboarded 4,000+ pipelines, performed 200,000+ scans, and uncovered 300,000+ vulnerabilities, including 90,000+ critical issues.
  • Designed and engineered backend APIs using Node.js and AWS Lambda, with scalable, serverless data storage in DynamoDB.
  • Collaborated with vendors to integrate and enhance third-party security tools, optimizing performance and functionality.
  • Authored and deployed custom cloud security rules in Open Policy Agent (OPA), aligned with Center for Internet Security (CIS) benchmarks and tailored to organizational security requirements.

Automated Firewall Request System for Azure Migration

  • Designed and implemented an automated allow-listing system to streamline secure access via a bastion host.
  • Processed over 250,000 allow-list requests with an 85% automation success rate, reducing manual intervention and approval time.
  • Developed a user-friendly frontend interface using Angular for managing manual approvals and real-time request tracking.
  • Created a database using MongoDB to store requests and built backend services with ExpressJS to handle API interactions and workflow automation.
  • Implemented a database backup and recovery solution in Azure using a Python script to ensure high availability and data integrity.

Education

Bachelor of Science - Computer Science

The College of New Jersey
Trenton, NJ
05-2020

Skills

    Nodejs

    Azure

    AWS

    CI/CD

    Team leadership

    Vulnerability management

Awards

Individual Achievement/Performance Award 2023 :

Recognized for the ability to work across organizations and leverage technical expertise to go above and beyond in modernizing another team's project authentication method from outdated cookie-based authentication to secure OIDC authentication.

Individual Achievement/Performance Award 2022 :

Recognized for exceptional initiative and development talent as the lead front-end developer for an automated firewall request project, significantly improving the cycle time for firewall requests. Also acknowledged for leading the successful launch of a security scanning initiative, enhancing cloud security in CI/CD pipelines.

Certification

AZ-900: Azure Fundamentals

Timeline

Senior Cloud Security Engineer

AT&T
07.2020 - Current

Bachelor of Science - Computer Science

The College of New Jersey
Derek Kneisel