Devsecops Engineer Resume
5.00/5 (Submit Your Rating)
OhiO
SUMMARY
- IT Professional with over 8 years of experience in systems management in areas relating to security automation, and DevOps practices. Great interest in building secured systems and automations.
- TEMPEffective Team Player with excellent interpersonal skills.
- TEMPEffective verbal and written communication skills.
- Thorough knowledge of the Globally Accepted Information Security Principles.
TECHNICAL SKILLS
- AWS
- Azure
- Terraform
- Jenkins
- Git
- Azure DevOps
- Cloud Security
- Automation
- Python
- Linux.
PROFESSIONAL EXPERIENCE
Confidential, Ohio
DevSecOps Engineer
Responsibilities:
- Knowledge and experience with fundamental AWS cloud services, Security, Network, Compute, Storage, Serverless, Database.
- Understanding of TCP/IP model, key network protocols and secured server configurations.
- Ability to setup a fully automated CI/CD Pipeline for application building, testing and deployment (Github, Jenkins, AWS Code*).
- Experience with designing, building, and automating deployment of secured, repeatable, and scalable cloud infrastructure/services with Terraform.
- Address escalated infrastructure issues, and monitor infrastructure components for performance, capacity, failures, and uptime.
- Utilize scripting languages such as Python, JSON, YAML for automation. Architect and build serverless services and systems.
- Knowledge of SAST, SCA, DAST and building integration to CI/CD pipeline for automated testing.
- Knowledge of build - release management, automating security processes in a CI/CD pipeline and deployment strategies.
- Experience in AWS services such as ECS, EC2, ELB, EBS, RDS, DynamoDB, ElasticCache, Route53, S3, CloudFront and gathering, monitoring metrics with CloudWatch.
- Designed automation of KMS key creation with dual control and detective control.
- Experience using python scripts for automated security remediation in AWS (Lambda, CWE, Config)
- Integrate AWS Lambda function with API Gateway, CloudWatch Event, Config to automate processes.
- Completed migration of over 120TB eDiscovery data from customer data center to AWS S3.
- Provisioned and managed Linux EC2 servers, mounted AWS EFS, performed backups and migration of EBS volumes from gp2 to io1 for improved performance..
- Slashed the budget cost of the data migration by over 30% by automating tasks, improving the AWS EC2 infrastructure performance, and saved subscription cost of over $120k.
- Build and Implementation of Prisma Cloud for cloud resource protection on multiple cloud platforms.
- Implement SCPs for preventive controls and Lambda functions for detective controls rules, and remediation actions for base config in AWS.
Confidential, Colorado
Cloud Engineer
Responsibilities:
- Understanding of TCP/IP model, key network protocols and secured server configurations.
- Setup Jenkins, installation, and configuration with a Master-Slave architecture for distributed builds.
- Maintaining and spinning up application servers.
- Experience building and maintaining secured AWS network and storage services, EC2, VPC, S3.
- Proficient understanding of AWS services such as IAM, EC2, ELB, EBS, RDS, DynamoDB, ElasticCache, Route53, Amazon S3, Athena and CloudFront.
- Configured automated monitoring and remediation of events in AWS with Lambda, Config, CloudWatch etc.
- Developed python scripts for automated remediation of quad zero security group CIDR on specific ports using AWS serverless services (Lambda, Config, SNS, SQS)
- Use Venafi to track SSL certificates on applications and network devices.
- Perform SQLAE renewal ceremony and database key rotation.
- Migrated on-premises users, application resources to Azure with experience in Azure AD connect, Azure File Sync, Application proxy.
- Implemented TEMPeffective IAM practices, AAD-Identity protection, PIM, SSPR, B2B, Conditional access policy, and audit log review.
- Performed major software upgrades, system maintenance activities and technical patching.
- Ensured Data Security Standards are maintained for data integrity on the network and monitoring in-scope systems for compliance with PCI regulations which reduced risk of data loss.
Confidential
System Admin
Responsibilities:
- Configuration and troubleshooting of Cisco network devices and layer 2/3 protocols for LAN/WAN.
- Worked on Active Directory, Group Policy, Organizational Units, Permissions and Passwords in a large corporate organization.
- Managed users’ mailboxes, EOP, DLP (PCI-DSS) Legal Hold, eDiscovery and other policies, Lync, SharePoint, Flow and understand of firewall requirements needed for all Office 365 functions.
- Experience with cisco network devices; routers, switches, firewall for network and security management.
