Enterprise Cloud Security Architect Resume
2.00/5 (Submit Your Rating)
Irvine, CA
PROFESSIONAL EXPERIENCE
Enterprise Cloud Security Architect
Confidential, Irvine, CA
Environments: On - premise, Cloud: AWS, GCP, Azure
Responsibilities:
- Designing and Implementing security on hybrid cloud/on-premise environments based on business requirements
- Identifying security gaps/threats in current and new architectures (cloud and/or on-premise environments) and halping various teams provide solutions for those gaps.
- Designing and implementing end-to-end security controls and architectures of new and existing environments surrounding the below security domains
- Data encryption (at rest and in-transit)
- Incident Management (Logging/monitoring systems/environments)
- Design security logging strategy and SIEM architecture
- Identity and access management & Privileged access management
- Application, API, and container security
- Designing and implementing PKI architecture (data in transit) as well as data-at-rest encryption strategies
- Designed and implemented database security which includes encryption of data-at-rest and data-in-transit, data classification, and data masking
- In order to ensure security of PII, PHI, and PCI (confidential) data while being stored in databases as well as transferring to other data stores
- Implemented threat modeling to expose security risks in enterprise environments and facilitate remediation of those threat discoveries
- Experience wif implementing and operating Security Orchestration, Automation and Response (SOAR) technologies
- Designing and implementing identity and access management architectures to meet business requirements (using Sailpoint, Saviynt, CyberArk)
- Planning on autantication and authorization strategies (SSO, SAML, OIDC, OAUTH Tokenization processes)
- Planning and implementing security on various cloud service models (IaaS, PaaS, SaaS)
Information Security Architect
Confidential, Santa Ana, CA
Responsibilities:
- Designed and implemented security architectures Planned identity access and management architectures for secure, solid role-based access controls
- Implemented threat modeling to expose security risks in enterprise environments and facilitate remediation of those threat discoveries
- Ensuring web applications comply by OWASP Top 10 best practices (web application security)
- Reviewed various security technology vendors (vendor management) for cost TEMPeffective, performance, and functionality.
