Experience
From network security engineering to architecture leadership and consulting, I've been enagaged in architechture, planning, administratiuon, and support for a wide array of modern information technology platforms and services.
Coalfire
Senior Engineer - Cloud Services
Global services and solutions company that specializes in cyber advisory, assessment, and security
Key Achievements
- Stabilized an at-risk FedRAMP client engagement by acting as dedicated technical lead, restoring trust through clear architectural guidance and delivery execution.
- Designed FedRAMP-ready cloud architectures incorporating zero-trust network access, ITSM-aligned change control, and scalable operational patterns.
- Led FedRAMP discovery and architecture workshops for new clients, producing readiness roadmaps, risk assessments, and project plans that consistently converted to delivery engagements.
- Automated complex configuration management asset discovery workflows, reducing inventory collection errors by **98%** and eliminating a major source of compliance drift.
- Diagnosed and resolved systemic AWS discovery and visibility issues impacting continuous monitoring and audit readiness.
- Standardized engineering and operations documentation across MSS engagements, improving onboarding speed, consistency, and troubleshooting effectiveness.
- Served as a trusted technical advisor to clients maintaining regulated cloud environments across AWS infrastructure, endpoint protection, and vulnerability management platforms.
U.S. Bank
Senior Cloud Audit Specialist
The company serves millions of customers locally, nationally and globally through a diversified mix of businesses including consumer banking, business banking, commercial banking, institutional banking, payments and wealth management
Key Achievements
- Served as technical authority for cloud and infrastructure audits, ensuring audit teams asked the right questions and accurately evaluated complex technical evidence.
- Led a comprehensive audit of the enterprise cloud migration program, assessing technical design, financial governance, security controls, and operational readiness.
- Bridged engineering, audit, and risk teams by translating modern cloud architectures into clear control implications and remediation actions.
- Integrated evolving regulatory expectations and internal risk partner guidance into audit procedures to align reviews with emerging risk trends.
- Supported non-technical audit teams when technology became a factor, preventing misinterpretation of evidence and improving audit accuracy and credibility.
Ansys Government Initiatives (AGI)
Senior Systems Engineer - Infrastructure Services
Ansys Government Initiatives (AGI) is the United States national security subsidiary of Ansys, the global leader in engineering simulation
Key Achievements
- Re-architected a multi-site VMware platform suffering from years of misconfiguration, delivering major performance gains and eliminating recurring outages through a phased redesign.
- Implemented governance controls including change management, t-shirt sizing, and tagging strategies that eliminated uncontrolled capacity growth and emergency hardware purchases.
- Designed and launched a ground-up HPC compute and storage platform supporting hosted client workloads, doubling performance for Ansys Fluent and Mechanical environments.
- Rebuilt Active Directory and RBAC architecture, correcting long-standing technical debt and aligning identity controls with CMMC requirements.
- Implemented business-driven backup automation via self-service tagging, improving recoverability while reducing operational overhead.
- Architected and validated disaster recovery and cyber recovery strategies, including an air-gapped clean-room environment.
- Embedded CMMC readiness requirements into all infrastructure design and operational practices.
Vanguard
Project Manager - Global Technology Audit Services
One of the world's leading investment management companies
Key Achievements
- Modernized audit practices to keep pace with cloud adoption and evolving infrastructure architectures.
- Designed risk-based control frameworks and testing methodologies aligned with regulatory, business, and industry requirements.
- Led audit walkthroughs, technical testing, remediation planning, and validation activities.
- Promoted to Project Manager; assumed full ownership of audit engagements, coordinating internal teams and external partners.
- Built automation and reporting tools using scripting, Excel, SharePoint, PowerBI, and PowerApps to streamline testing and documentation.
- Co-developed and delivered a Cloud Infrastructure Audit Training program, increasing department efficiency and reducing reliance on senior technical auditors.
- Regularly translated technical findings into business-risk language for senior leadership and vice versa.
Flexential
Cloud & Infrastructure Engineer - Professional Services
Specializing in hybrid IT solutions, integrated colocation, cloud, connectivity, data protection, managed and professional services.
Key Achievements
- Served as senior engineer for complex migrations, production recoveries, and compliance-driven infrastructure engagements.
- Led high-risk migrations requiring precise orchestration to prevent data loss and minimize downtime.
- Rebuilt a failed customer Active Directory forest from recoverable artifacts, restoring operations and saving the client relationship.
- Owned white-glove backup and disaster recovery implementation and testing across customer environments.
- Managed patching and remediation for the full customer base, improving audit outcomes and reducing incidents.
- Contributed to ITIL/ITSM adoption, standardizing service delivery and documentation.
- Acted as Northeast Professional Services liaison to Sales, supporting pre-sales solutioning and drafting legally binding Statements of Work.
MARS Technologies
Lead Systems Architect
Sepcialized in IT managed solutions and security
Key Achievements
- Joined as one of the first two employees, helping build the company across sales, architecture, delivery, and MSP operations.
- Designed the technical foundation of the MSP, enabling a four-person team to operate at the scale of a 15–40 person organization.
- Architected the initial datacenter footprint and subsequent expansions, overseeing vendor selection and platform deployment.
- Evaluated and integrated tooling to support endpoint, server, and mobile device management.
- Led client onboarding and delivery for SMB and mid-market customers, including regulated PCI environments.
Signature Systems
Network Security Engineer
Software developer and managed solutions provider specializing in point of sale, cybersecurity, and IT services
Key Achievements
- Supported nationwide rollout of a PCI-in-a-Box POS and back-office solution serving 3,500+ customers.
- Co-led deployment efforts, owning endpoint configuration, UTM firewall integration, and SIEM tuning.
- Built automation tooling that reduced deployment times by up to 75%.
- Migrated the MSSP SIEM platform from AlienVault USM to LogRhythm.
- Partnered with auditors and pentesters to harden platforms beyond PCI-DSS requirements.
- Built a custom Sophos UTM management platform managing 2,500+ firewalls, reducing administrative effort by over 90%.