Summary
Overview
Work History
Education
Skills
Certification
Languages
Websites
References
Timeline
Generic
Mohammed Bin Alsheikh

Mohammed Bin Alsheikh

Dearborn,MI

Summary

Dynamic Information Security Engineer with extensive experience at Rocket Companies, adept at managing multi-cloud environments and enhancing security postures. Proven expertise in vulnerability management and secure coding, leading teams to achieve operational efficiency and compliance. Skilled in Terraform and incident response, driving significant risk reduction and delivering robust security solutions.

Overview

9
9
years of professional experience
1
1
Certification

Work History

Cyber Security Engineer ADVISOR - Part Time

Salla E-commerce Platform
09.2024 - Current
  • Led and mentored a team of security engineers, providing guidance on best practices, incident response, and security architecture.
  • Managed and optimized Cloudflare Web Application Firewall (WAF), DNS, and Zero Trust configurations to enhance security posture and mitigate threats.
  • Oversaw AWS Cloud Security initiatives, ensuring secure cloud infrastructure and compliance with best practices.
  • Administered and maintained Graylog for centralized log management, real-time monitoring, and incident response.
  • Defended against daily cyberattacks by identifying, mitigating, and escalating threats as necessary.
  • Built and managed a SIEM (Security Information and Event Management) solution compliant with PCI DSS standards to ensure regulatory compliance and improve threat detection.
  • Led the transition to Infrastructure as Code (IaC) using Terraform for automating and managing Cloudflare WAF and DNS rule configurations.
  • Regularly conducted penetration testing on new APIs, services, and tools to identify vulnerabilities and improve system security.
  • Developed automation tools to streamline security processes and enhance incident response efficiency.
  • Created and implemented threat detection alerts integrated with PagerDuty for real-time incident management and faster response times.
  • Managed the bug bounty program through Intigity, collaborating with ethical hackers to identify and fix vulnerabilities.

Information Security Engineer & Architect

Rocket Companies
01.2022 - Current
  • Managed the security posture of 53 AWS accounts, 15 GCP projects, and 30 Azure subscriptions, ensuring compliance with best practices, regulatory standards, and organizational security policies across multi-cloud environments.
  • Led the integration and optimization of Prisma Cloud to enforce cloud security controls, conduct continuous monitoring, and automate vulnerability detection, enhancing visibility and reducing risks across AWS, GCP, and Azure environments.
  • Developed and implemented cloud security frameworks to ensure consistent identity management, access controls, and threat prevention measures, safeguarding critical assets and achieving operational efficiency across a complex, multi-cloud infrastructure.
  • Conducted Red Team operations and penetration tests on on-premises and cloud resources, including WAF and cloud penetration testing.
  • Developed and maintained cloud security standards, including the implementation of security alerting (Prisma) for AWS and Azure.
  • Guided development teams in secure coding practices and architecture design.
  • Created automation and custom tools for cloud security.
  • CI/CD pipelines for automated deployment and code security scanning.
  • Led remediation projects for vulnerabilities like Log4j and TLS 1.2 across cloud instances and containers.
  • Collaborated with multiple teams to deliver secure, scalable solutions and ensure compliance with security policies.

Systems/SysOps Engineer

Rocket Companies
Detroit, MI
01.2021 - 01.2022
  • Conducted penetration tests and security assessments on Windows and Linux servers.
  • Designed and implemented secure architectures for data integration projects.
  • Managed IAM roles and permissions, ensuring secure access to cloud resources.
  • Deployed and secured Docker containers and Kubernetes clusters for various services.
  • Executed cloud cost-saving strategies, resulting in annual savings of $6.2 million.

Penetration Tester - Part-Time

Freelance/BugBounty
01.2017 - 07.2021
  • Performed penetration tests on systems, networks, and applications to uncover vulnerabilities.
  • Engaged in bug bounty programs, discovering and responsibly disclosing critical vulnerabilities.
  • Created custom Python tools for penetration testing, including web crawlers, file finders, and port scanners.

Risk Analyst /Senior Underwriter

Mr. Cooper
05.2020 - 06.2021
  • Gathered requirements and business rules that ensure alignment of development teams' efforts.
  • Analyzed data to understand and communicate project impact, and risk reduction.
  • Trained users on Encompass and any new changes applied.
  • Liaised between business and technical personnel to bridge the communication gap and identify improvement opportunities.
  • Assisted in writing Agile user stories.
  • Participated in the Encompass Pilot (Beta Testing) regarding new system changes.
  • Participated in Encompass UAT, and system validation for automation projects.
  • Researched to obtain a very detailed knowledge of the assigned project to create requirements.

Education

Bachelors - Cloud computing and Solutions

Purdue Global University
USA
12.2025

Skills

  • Linux
  • Vulnerability Assessments
  • Secure Coding
  • Vulnerability Management
  • DevOps
  • Bash (Scripting Language)
  • Python
  • BurpSuite
  • Nmap
  • Cloud Networking
  • IAM
  • Cloudflare
  • Terraform (IAC)
  • Docker
  • Ansible
  • Access Management
  • Microsoft Windows
  • Amazon Web Services
  • Azure
  • Google Cloud Platform (GCP)
  • Kubernetes
  • Jenkins
  • ServiceNow
  • Qualys
  • Prisma Cloud
  • Risk Analysis
  • Agile Software Development
  • Circleci
  • Github and Github Actions
  • Splunk
  • Graylog

Certification

  • Certified SAFe Scrum Master Course, SAFE - May 2023
  • Certified Kubernetes Administrator, Udemy - June 2022
  • Docker Certified Associate, Udemy - December 2022
  • AWS Solutions Architect, Udemy - July 2021

Languages

English
Native/ Bilingual
Arabic
Native/ Bilingual

References

References available upon request.

Timeline

Cyber Security Engineer ADVISOR - Part Time

Salla E-commerce Platform
09.2024 - Current

Information Security Engineer & Architect

Rocket Companies
01.2022 - Current

Systems/SysOps Engineer

Rocket Companies
01.2021 - 01.2022

Risk Analyst /Senior Underwriter

Mr. Cooper
05.2020 - 06.2021

Penetration Tester - Part-Time

Freelance/BugBounty
01.2017 - 07.2021

Bachelors - Cloud computing and Solutions

Purdue Global University
Mohammed Bin Alsheikh
Want your own profile? Create for free at Resume-Now.com