Designed and deployed a multi-region ZTNA architecture on AWS using Jamf Connect, enabling secure and scalable cross-region connectivity and ensuring high availability for critical applications.
Developed and executed an Incident Response plan, organizing a comprehensive Tabletop Exercise to train employees in simulated scenarios. Enhanced company-wide preparedness for potential security incidents
Implemented Lacework for advanced cloud security monitoring, integrating it with existing infrastructure to proactively detect and respond to vulnerabilities and threats
Senior DevOps Engineer
OpenSea
11.2021 - 11.2023
Oversaw AWS infrastructure enhancement for scalability and efficiency, orchestrating containers with Kubernetes on EKS, and automating deployment via Argo CD and GitHub Actions.
Spearheaded the development of Terraform-based IaC for reliable cloud setups, led AWS organizational structuring for improved management, and ensured security through comprehensive SCPs, IAM roles, and Okta-integrated SSO.
Senior Cloud Security Engineer
iRobot
04.2021 - 10.2021
Implemented and upheld stringent cloud security measures, safeguarding sensitive data and resources.
Conducted regular audits and monitoring of cloud services to align with security protocols, formulated and updated systematic security plans, and proactively managed incident response.
Senior Cloud Security Architect
Alteryx
09.2020 - 04.2021
Crafted and deployed an AWS multi-region network infrastructure, incorporating AWS WAF, Transit Gateway, and CloudFront for enhanced content delivery.
Engineered Azure Sentinel SIEM to transition from an on-premise Splunk system.
Established Cloud and Serverless Security Standards, integrated IaC with Terraform for template integrity checks, and bolstered security with Kubernetes manifest scans.
Cloud Security Engineer
Alteryx
07.2019 - 09.2020
Engineered an AWS Landing Zone incorporating Transit Gateway network architecture, Direct Connect, and Palo Alto VPN connectivity.
Established comprehensive service control and identity-based policies, structured organizational units (OUs) and accounts, and a centralized logging system for rigorous audit, security, and compliance oversight.
Led security initiatives by utilizing AWS Guard Duty, Security Hub, and Config, and collaborated with Information Security to formulate cloud governance policies focusing on data privacy and infrastructure security.