We provide IT Staff Augmentation Services!

Devsecops Engineer Resume

5.00/5 (Submit Your Rating)

OhiO

SUMMARY

  • IT Professional with over 8 years of experience in systems management in areas relating to security automation, and DevOps practices. Great interest in building secured systems and automations.
  • TEMPEffective Team Player with excellent interpersonal skills.
  • TEMPEffective verbal and written communication skills.
  • Thorough knowledge of the Globally Accepted Information Security Principles.

TECHNICAL SKILLS

  • AWS
  • Azure
  • Terraform
  • Jenkins
  • Git
  • Azure DevOps
  • Cloud Security
  • Automation
  • Python
  • Linux.

PROFESSIONAL EXPERIENCE

Confidential, Ohio

DevSecOps Engineer

Responsibilities:

  • Knowledge and experience with fundamental AWS cloud services, Security, Network, Compute, Storage, Serverless, Database.
  • Understanding of TCP/IP model, key network protocols and secured server configurations.
  • Ability to setup a fully automated CI/CD Pipeline for application building, testing and deployment (Github, Jenkins, AWS Code*).
  • Experience with designing, building, and automating deployment of secured, repeatable, and scalable cloud infrastructure/services with Terraform.
  • Address escalated infrastructure issues, and monitor infrastructure components for performance, capacity, failures, and uptime.
  • Utilize scripting languages such as Python, JSON, YAML for automation. Architect and build serverless services and systems.
  • Knowledge of SAST, SCA, DAST and building integration to CI/CD pipeline for automated testing.
  • Knowledge of build - release management, automating security processes in a CI/CD pipeline and deployment strategies.
  • Experience in AWS services such as ECS, EC2, ELB, EBS, RDS, DynamoDB, ElasticCache, Route53, S3, CloudFront and gathering, monitoring metrics with CloudWatch.
  • Designed automation of KMS key creation with dual control and detective control.
  • Experience using python scripts for automated security remediation in AWS (Lambda, CWE, Config)
  • Integrate AWS Lambda function with API Gateway, CloudWatch Event, Config to automate processes.
  • Completed migration of over 120TB eDiscovery data from customer data center to AWS S3.
  • Provisioned and managed Linux EC2 servers, mounted AWS EFS, performed backups and migration of EBS volumes from gp2 to io1 for improved performance..
  • Slashed the budget cost of the data migration by over 30% by automating tasks, improving the AWS EC2 infrastructure performance, and saved subscription cost of over $120k.
  • Build and Implementation of Prisma Cloud for cloud resource protection on multiple cloud platforms.
  • Implement SCPs for preventive controls and Lambda functions for detective controls rules, and remediation actions for base config in AWS.

Confidential, Colorado

Cloud Engineer

Responsibilities:

  • Understanding of TCP/IP model, key network protocols and secured server configurations.
  • Setup Jenkins, installation, and configuration with a Master-Slave architecture for distributed builds.
  • Maintaining and spinning up application servers.
  • Experience building and maintaining secured AWS network and storage services, EC2, VPC, S3.
  • Proficient understanding of AWS services such as IAM, EC2, ELB, EBS, RDS, DynamoDB, ElasticCache, Route53, Amazon S3, Athena and CloudFront.
  • Configured automated monitoring and remediation of events in AWS with Lambda, Config, CloudWatch etc.
  • Developed python scripts for automated remediation of quad zero security group CIDR on specific ports using AWS serverless services (Lambda, Config, SNS, SQS)
  • Use Venafi to track SSL certificates on applications and network devices.
  • Perform SQLAE renewal ceremony and database key rotation.
  • Migrated on-premises users, application resources to Azure with experience in Azure AD connect, Azure File Sync, Application proxy.
  • Implemented TEMPeffective IAM practices, AAD-Identity protection, PIM, SSPR, B2B, Conditional access policy, and audit log review.
  • Performed major software upgrades, system maintenance activities and technical patching.
  • Ensured Data Security Standards are maintained for data integrity on the network and monitoring in-scope systems for compliance with PCI regulations which reduced risk of data loss.

Confidential

System Admin

Responsibilities:

  • Configuration and troubleshooting of Cisco network devices and layer 2/3 protocols for LAN/WAN.
  • Worked on Active Directory, Group Policy, Organizational Units, Permissions and Passwords in a large corporate organization.
  • Managed users’ mailboxes, EOP, DLP (PCI-DSS) Legal Hold, eDiscovery and other policies, Lync, SharePoint, Flow and understand of firewall requirements needed for all Office 365 functions.
  • Experience with cisco network devices; routers, switches, firewall for network and security management.

We'd love your feedback!