Experience
Director of Cyber Security & Infrastructure
Software Engineer
- Full-stack .NET development across healthcare, government/justice, and banking, with a focus on backend services, system integrations, and payment processing
- Grew into the DevOps and infrastructure role organically: built CI/CD pipelines (TeamCity, Octopus Deploy), migrated hosting to AWS, and architected HA across dual data centers
- Simplified distributed service architectures into consolidated, highly available systems with monitoring and self-healing
- Owned security and infrastructure concerns including client incident response, firewall management, VPN design, and on-premise deployment architecture for regulated clients
- Introduced observability tooling (SeriLog, Seq) and drove front-end modernization (Webpack, TypeScript, NPM)
Co-Founder / Software Engineer
- Built a multi-tenant, cloud-based workflow and task management application on .NET and Windows Azure
- Shipped v1.0 in 3 months; shipped v2.0 with a redesigned interface based on market feedback in 4 months
- Maintained a 2-week release cycle for bug fixes, enhancements, and new features
- Leveraged open source tools including Elmah, MVC MiniProfiler, nLog, Dapper, and NuGet
Information Security Analyst
- Performed network, application, and physical penetration tests across corporate facilities; GPEN score qualified as SANS mentor candidate
- Primary engineer for ArcSight SIEM: led infrastructure redesign, built custom FlexConnectors, and architected the enterprise logging (E-Log) initiative
- Led NAC evaluation from requirements through proof of concept and vendor selection across five competing platforms
- Built custom tooling and automation in Perl and SQL to streamline vulnerability analysis and eliminate hours of daily manual review
- Promoted from Vulnerability Specialist to Information Security Analyst to Information Security Consultant
Skills
Cloud & Infrastructure
- AWS
- Docker
- Terraform / IaC
- CI/CD Pipelines
Development
- C# / .NET
- TypeScript / Node.js
- SQL / NoSQL
- REST / gRPC
Security
- Penetration Testing
- Network Security / Firewalls
- Compliance
- Intrusion Detection