Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Koffi Dossou

Chicago

Summary

Cybersecurity engineer with expertise in network architecture security protocols, IAM, and risk assessment methodologies. Proven capability in vulnerability analysis, threat mitigation, and cyber incident response. Implemented advanced security solutions to protect company data and infrastructure.

Overview

1
1
Certification
19
19
years of professional experience

Work History

Cybersecurity Engineer Snr

Boeing
St Louis
01.2023 - Current
  • Partnered with IT teams to design and implement secure system upgrades and changes, embedding security-by-design principles to protect critical aerospace infrastructure.
  • Engineered and deployed security controls (firewalls, EDR, IDS/IPS) to harden infrastructure against evolving threats.
  • Executed vulnerability management life cycle for server and financial systems, enhancing security posture through comprehensive risk assessment, patch validation, and remediation tracking.
  • Leveraged SIEM platforms (Microsoft Sentinel) for anomaly detection,log source monitoring and proactive threat hunting.
  • Performed vulnerability assessments and penetration testing to identify exploitable weaknesses, prioritizing remediation for mission-critical systems.
  • Tuned detection rules and refined system baselines to improve accuracy of alerts and reduce false positives in financial operations monitoring.
  • Led threat analysis initiatives covering malware, phishing, and network intrusions, applying sandboxing and behavioral analysis to mitigate risks.
  • Conducted digital forensics and root-cause investigations on compromised assets, refining incident response playbooks and recovery processes.
  • Managed SOC operations, streamlining alert triage, ticketing workflows, and escalation procedures to ensure timely containment and eradication of threats.
  • Integrated cloud log sources into SIEM pipelines, enhancing visibility and supporting compliance-driven security monitoring in hybrid environments.
  • Embedded DevSecOps practices in CI/CD pipelines through automated SAST, DAST, and IaC scanning, enabling early vulnerability detection in applications and cloud infrastructure.
  • Supported compliance and audit readiness for frameworks including NIST 800-53, ISO 27001, GDPR, and SOC 2, ensuring regulatory adherence and successful audit outcomes.
  • Developed and enforced information security policies and standards, driving governance initiatives and risk reduction across IT and business units.
  • Applied Data Loss Prevention (DLP) tools (Microsoft Defender for Cloud Apps, Microsoft Purview, Netskope) to monitor sensitive data flows, enforce policies, and prevent leakage of financial data.
  • Mentored junior analysts in incident response, SIEM analysis, and threat detection, building a stronger security team capability.
  • Partnered with IT, Legal, and Compliance teams to resolve complex security challenges, balancing risk, regulatory, and operational requirements.
  • Translated technical findings into business risk language for executives and stakeholders, facilitating informed decision-making and aligning security initiatives with business objectives.
  • Translated technical findings into business risk language for executives and stakeholders, facilitating informed decision-making and aligning security initiatives with business objectives.

Cybersecurity Engineer Snr

Maveris LLC
, VA
01.2021 - 12.2022
  • Led implementation and optimization of Netskope CASB/DLP, enforcing inline and API-based controls to protect PII, PHI, and PCI data across SaaS, web, and endpoint channels.
  • Engineered DLP capabilities aligned with Zero Trust Architecture (ZTA) – Data Pillar, strengthening data security posture across cloud-first environments.
  • Designed, built, and tuned Netskope DLP policies (real-time inline protection, user coaching, and blocking), improving detection accuracy and reducing false positives.
  • Conducted DLP threat analysis and risk assessments, identifying sensitive data exposure risks and implementing mitigation strategies across cloud applications and endpoints.
  • Operationalized DLP use cases and requirements, translating business and regulatory needs into scalable technical controls.
  • Performed DLP gap assessments and technology realignment, enhancing coverage across SaaS, IaaS, endpoints, and data-in-transit.
  • Integrated Netskope telemetry into secure data pipeline (Cloudera NiFi, PostgreSQL & Power BI), enabling real-time dashboards and executive-level reporting.
  • Built and maintained incident response playbooks for DLP events, enabling faster triage, investigation, and remediation of data security incidents.
  • Refined DLP and data governance policies, ensuring compliance with NIST, Zero Trust, and regulatory frameworks.
  • Collaborated with cross-functional teams to drive data classification, tagging, and user awareness programs and improve secure data handling practices across the organization.

Infrastructure Security Engineer Snr

PNC Bank
Pittsburgh
01.2017 - 12.2020
  • Leveraged SIEM platforms (Microsoft Sentinel, Splunk, AlienVault) to correlate logs, enhancing vulnerability detection by 25% and reducing risk exposure by 40%.
  • Collaborated with enterprise cyber defense and application teams to secure hybrid environments using DevSecOps and Protegrity-based data protection, enhancing overall security posture.
  • Applied security-first principles to infrastructure as code (IaC) pipelines, ensuring compliance with encryption and data protection standards.
  • Consulted with application owners on Protegrity implementations, overseeing onboarding policy configurations and production rollouts to ensure successful integration.
  • Led triage of high-severity incidents, assessing scope urgency and data exposure risk while improving mean time to containment.
  • Configured cloud monitoring and alerting systems within SOC workflows, reducing false positives and improving detection accuracy.
  • Produced threat intelligence reports, security playbooks, and after-action reviews; mentored analysts to strengthen SOC and cloud incident response capabilities.

Cyber Security Engineer

Synchrony Financial
Chicago, Illinois
10.2014 - 12.2017

Reviewed configurations, recommending actions to ensure compliance with NIST CSF and industry standards, strengthening overall security posture.

Conducted on-site security posture analysis, identifying vulnerabilities in firewall, router, and switch configurations.

Ensured network infrastructure adhered to banking industry security protocols for optimal protection.

Executed network and log analysis to detect potential attacks on internal applications and customer sites.

Performed vulnerability analysis on workstations and servers, implementing hardening measures to enhance security.

Configured and maintained network security settings, safeguarding user data against cyber threats and enhancing network integrity.

Evaluated emerging cybersecurity technologies for alignment with organizational strategic objectives.

Provided field training for personnel to promote secure operations and improve security practices knowledge.

Snr Big Data and Analytics(Hadoop)

HealthScape Advisors
Chicago
09.2012 - 09.2014

Engineered an enterprise big data platform with comprehensive defense-in-depth security measures.

Architected and maintained enterprise big data solutions and complex databases for optimal performance.

Established policies to ensure data security and integrity across the organization.

Diagnosed platform issues by analyzing logs and implemented effective remediation strategies.

Produced audit-ready reports on sensitive data to ensure regulatory compliance.

Automated tasks using bash/Python scripts, Ansible, and stack API, streamlining operations.

Managed commissioning and decommissioning of nodes to optimize resource utilization.

Collaborated with DevOps and data integration teams to facilitate seamless deployments across environments.

Big Data Analyst

Lorven Technologies
Chicago
05.2007 - 04.2009
  • Microsoft SQL Server DBA: Administered SQL Server databases, ensuring high availability, performance tuning, replication, backup/recovery, and security hardening to support enterprise applications.
  • Team Collaboration & Project Delivery: Collaborated with cross-functional teams and independently to achieve project milestones and deliverables.
  • Technical Documentation & Reporting: Authored comprehensive documentation and provided timely project status updates, including technical specifications for Web2Py, .NET applications, and supported systems.
  • Remote User Support: Provided multi-site technical support using remote access tools, VPN, and phone assistance, effectively troubleshooting and resolving application and infrastructure issues.
  • Infrastructure & Networking: Configured and managed DSL/Cable Modem Routers, Windows Server 2008/2012, Cisco Switches/Routers, and VoIP systems (Cisco Call Manager), ensuring secure and reliable network operations.

Education

Masters - Computer Science

Chicago State University
Chicago
01-2017

Bachelors - Computer Science

Chicago State University
Chicago
01-2012

Skills

  • Strategic and technically skilled Security Engineer & Architect with 15 years of hands-on experience in enterprise cybersecurity, including 7 years designing and implementing scalable cloud security controls across Azure,AWS & GCP Adept at securing infrastructure layers (VMs, databases, storage, key vaults), enforcing real-time detection and response, automating cloud hardening tasks, and integrating Zero Trust architecture Proven track record of leading complex, cross-functional programs, coordinating with infrastructure, network, and application teams, and shaping long-term security roadmaps that align with business and compliance goals
  • Zero Trust Architecture (ZTA) – Data Pillar Implementation
  • Identity-Centric Security & Conditional Access
  • Secure Service Edge (SSE) / SASE
  • SaaS, IaaS, and Web Security Controls
  • Enterprise DLP Strategy & Architecture
  • Data Exfiltration Prevention (Endpoint, Cloud, Network)
  • DLP Policy Design, Tuning & Optimization
  • Data Governance & Compliance Alignment
  • Microsoft Sentinel (SIEM, SOAR, KQL, Incident Response)
  • Microsoft Defender for Endpoint (EDR, Threat Detection & Response)
  • Microsoft Defender for Cloud Apps (Cloud App Security & DLP)
  • Microsoft Intune / Endpoint Manager (Device Compliance & Policy Enforcement)
  • Microsoft Entra ID (Azure AD, Conditional Access, Identity Protection)
  • Microsoft 365 Security & Compliance (Purview, DLP, eDiscovery, Insider Risk)
  • Netskope (CASB, DLP, Inline & API Protection)
  • Splunk (SIEM, Detection & Analytics)
  • IBM QRadar (SIEM & Threat Monitoring)
  • Cisco Email Security Appliance (ESA)
  • Varonis (Data Security & Insider Threat)
  • Imperva (Data Security & Web Protection)
  • Security Incident Investigation & Triage
  • Detection Engineering & Use Case Development
  • KQL Query Development & Log Analysis
  • MITRE ATT&CK Mapping
  • Security Data Pipelines (Cloudera NiFi)
  • Security Telemetry Analysis
  • NIST Cybersecurity Framework (CSF)
  • Zero Trust Policy & Architecture Development
  • DLP Governance & Policy Frameworks
  • Risk Assessments & Gap Analysis
  • Security Solution Design & Implementation
  • Enterprise Security Architecture (Data-Centric Focus)
  • Technology Evaluation & Optimization
  • Clearance: Public Trust

Certification

CISM Certified, Microsoft Azure Security Certified, AWS Security Certified Specialist, Comptia Security+ Certified, Graduate Certificate In Information Security, CISSP

Timeline

Cybersecurity Engineer Snr

Boeing
01.2023 - Current

Cybersecurity Engineer Snr

Maveris LLC
01.2021 - 12.2022

Infrastructure Security Engineer Snr

PNC Bank
01.2017 - 12.2020

Cyber Security Engineer

Synchrony Financial
10.2014 - 12.2017

Snr Big Data and Analytics(Hadoop)

HealthScape Advisors
09.2012 - 09.2014

Big Data Analyst

Lorven Technologies
05.2007 - 04.2009

Masters - Computer Science

Chicago State University

Bachelors - Computer Science

Chicago State University
Koffi Dossou