A lead Information Security Engineer with over 10 years of experience in overseeing and managing a wide array of network security projects and have actively contributed to the planning, analysis, implementation, and support of infrastructure security solutions, as well as the formulation of robust security policies and procedures, within both the Government sector and the world's largest retail industry. Leadership roles and hands-on experience in various cutting-edge security technologies.
Overview
13
13
years of professional experience
11
11
Certification
Work History
Sr Security Engineer
Costco Wholesale
Seattle, USA
07.2021 - Current
Identifies, develops, and implements mechanisms to detect security incidents to enhance compliance and support of security standards and procedures in place
Performs duties necessary to assist in establishing practices and system configurations to ensure the safety of information systems assets and to protect information systems from intentional or inadvertent access or destruction in the cloud and on-premises
Working with information systems custodians at different levels in the organization to understand their respective security needs and assist with implementing practices and procedures consistent with Costco Information Security Policy
Design, implement, and manage security measures for Azure and AWS cloud infrastructure
Working analytically to solve both tactical and strategic problems
Analyzes network protocols, data flows, architectural diagrams, and/or network traffic flows in conjunction with security zones and/or architectural strategies to ensure secure communication of data
Creates and maintains network and system diagrams and other documentation
Working with stakeholders to provide security solutions that support business requirements and DDoS attack mitigation techniques
Network Security Monitoring Devices, Fortinet Sandboxing, Cisco Secure Network & cloud Analytics, Bricata IDS/IPS, Gigamon, WAF, SecureX, Wiz Cloud Security and Cisco Umbrella deployment and configuration in more than 850+ warehouses worldwide
Participates in IT strategy planning activities, bringing current knowledge and future vision of systems and best practices as related to the needs of the business, comprised of 850+ Warehouses across the world
Lead and manage projects with overall accountability for project success, regardless of project size
Primary responsibility for designing, deploying, implementing, managing, migrating, and operating network security products like Fortigate Fortisandbox, Gigamon, armies IoT, Secure Network Analytics, and Cloud Analytics.
Worked with teams to develop company-wide information assurance, security standards and procedures.
Coordinated with third-party security information and event management (SIEM) providers to maintain protections and predict threats.
Implemented necessary controls and procedures to protect information system assets from intentional or inadvertent modification, disclosure or destruction.
Senior Network Engineer
British Columbia Lottery Corporation
Kamloops, Canada
10.2017 - 06.2021
Installation and configuration of wide varieties of Network equipment such as Cisco Routers, Switches, firewalls (Palo Alto & ASA), and Site-to-Site VPN
Apply and design best practice to cloud service provider AWS and Azure
Design, implement, and manage security measures for AWS & Azure cloud infrastructure
Analyzed network capacity and availability to meet networking requirements while maintaining a secure environment
Deployment and configuration of network security methodologies and tools such as Network Security Monitoring, Intrusion Detection, and Prevention, Firewalls, WAF, Sandboxing, or DDoS Mitigation
Assists with auditing of information systems activities and systems to confirm information security policy compliance and provide management with security policy compliance assessments
Analyzed network protocols, data flows, architectural diagrams, and/or network traffic flows in conjunction with security zones and/or architectural strategies to ensure secure communication of data
Assess centralized user and configuration management systems and perform and/or coordinate regular security assessments of existing or new infrastructure
Network devices vulnerability assessment and IOS update on those devices
Network infrastructure automation using Ansible
Configured Cisco Catalyst 6500s, 3850s, 3750s, 2960s and Nexus Switches, ASR Routers series according to British Columbia security zone standard and control framework ISO 27001 and PCI DSS
Developed and maintained working relationships with internal stakeholders, vendors/suppliers, and service providers in order to resolve network security issues.
System Administrator
British Columbia Lottery Corporation
Kamloops, Canada
09.2015 - 09.2017
Providing network support for 38+ remote enterprise locations with 4000+ network devices
Troubleshoot time, made efficient and reduced time for the upgrade process, and introduced new NGFW features and automation upgrades using standard change management procedures
Created the roadmap for addressing gaps, improvements, and innovation for network operation
Perform high-level troubleshooting & analysis to determine the cause of network outages & implement solutions
Supervised network operations and new team members
Represent ITRB & CAB meetings and participate in a 24/7 on-call support
Worked in collaboration with vendor for lab configuration, testing, and analysis of Palo Alto Firewall as POC.
System Administrator Intern
Teck Resources
Sparwood, BC, Canada
09.2012 - 09.2013
Conduct routine system maintenance to ensure optimal performance
Monitor system health, resource utilization, and performance metrics
Configure, install and maintain server hardware and software
Manage server roles and services, such as Active Directory, DNS, DHCP, and servers
Provide technical support to end-users, troubleshooting hardware and software issues
Assist with software installations, updates, and account management
Ensure systems adhere to industry standards and regulatory requirements (e.g., HIPAA, PCI DSS)
Perform security audits and maintain compliance documentation
Share expertise with team members and provide training as needed.
Education
Master of Science - Electronics System Engineering