Cloud Infrastructure Security Architect resume example with 10+ years of experience

Jessica Jessicayinka
  • , , 609 Johnson Ave., 49204, Tulsa, OK 100 Montgomery St. 10th Floor
  • H: (555) 432-1000
  • C:
  • Date of Birth:
  • India:
  • :
  • single:
Professional Summary

Senior Cloud Security Solutions Architect with 10+ years of technology experience and very strong infrastructure design, architecture, threat modeling, and security experience. Excellent problem-solving and analytical skills with the ability to implement upgradable, scalable hyper-converged and highly available infrastructures.

  • AWS Solutions Architect Associate (AWS SSA)
  • AWS Certified Cloud Practitioner (AWS CCP)
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Auditor (CISA)
  • Certified SAFe (SAFe)
  • Certified ScrumMaster (CSM)
  • Certified Cloud Security Professional (CCSP)- In- View
  • Salesforce
  • Implementing Security Measures, System Architecture Design & Cloud Security Applications Design.
  • Amazon Web Services (EC2, EBS, S3, IAM, VPC, VPC Peering, NACL, Security Groups, Route53.
  • Auto Scaling Group, ELB, SNS, CloudWatch, Elastic Beanstalk, Cloud Formation) Cloud Passage, F5, Barracuda Security Guardian.
  • Security Architecture Technologies & Infrastructure Architecture.
  • Cloud Architecture Design & Security Regulations Compliance.
  • Network Security Architecture & Data Security Encryption.
  • Governance, Risk & Compliance (GRC). BCP & DRP, PKI, Cisco Umbrella, Dome9, Device42. Palo Alto Panorama, Expedition, Lambda.
  • AWS Firewall, Control Tower concepts, Security Hub, Security Guardrails. Information Protection and Analysis.
  • Containers Security, CI/CD Security, Threat Modelling, Zero Trust Architecture.
  • AWS Firewall (WAF), Control Tower concepts, Security Hub, Security Guardrails, Transit Gateways, Direct Connection.
Work History
Cloud Infrastructure & Security Architect, 12/2021 - Current
Tarang Corp City, STATE,
  • Responsible for using AWS shared security responsibility model to secure applications in the cloud.
  • Administered AWS Cloud Security – Allowing access to service and users with IAM, Security Group, Network Access Control List (NACL), MFA, KMS
  • Used AWS control Tower and security Hub for security monitoring.
  • Deep knowledge of Kubernetes architecture, cloud agnostic Kubernetes patterns, container management and cloud computing capabilities.
  • Led and worked along teams on POCs and R&D efforts on cloud agnostic Kubernetes adoption. Ensured compliance and controls of Kubernetes cluster.
  • Worked on Container Orchestration framework such as Amazon EKS, AWS Fargate and OCP Kubernetes.
  • Used AWS inspector Dome9 and Nessus for vulnerability scanning multiples AWS accounts
  • Set up and maintain the monitoring infrastructure, analyze system bottlenecks, issues/bugs and solve them in Real-time to maintain quality of product.
  • Used AWS KMS and HSM for data encryption in S3, EC2, and VPC etc.….
  • Used Cloud Watch, VPC Flow Logs to monitor and retain account activity related to actions across AWS infrastructure.
  • Leveraged cloud services such as EC2, auto-scaling and VPC to build secure, highly scalable and flexible systems that handled expected and unexpected load bursts.
  • Solution VPCs for various environments including NAT Gateway, VPC Peering and Transit Gateways.
  • Experience creating and implementing Single Sign On (SSO) with OKTA
  • Provisioned end user accounts to internal applications using OKTA
  • Used AWS config, AWS inspector Turbot Guar Duty for analysis and compliance.
  • Improved AWS cloud risk posture by driving security standards with hardening baselines, vulnerability scanning, management console access controls, both logging and monitoring of cloud infrastructure, and secure communication channels between business and internet facing systems.
  • Solid understanding of container security with Twist lock scanning procedures.
  • Provided security expertise for cloud based devops development and deployment.
  • Created and managed IAM solutions policies, roles, identity federation, etc. to multi-tier apps that are migrating to the cloud for multiple cloud platform providers
  • Used IAM for creating roles, users and groups to provide additional security resources and accounts.
  • Provided AWS operations and deployment guidance and best practices throughout the lifecycle of the project using VPC, Elastic Compute Cloud, EBS, Auto-scaling, ELB, etc.
Consultant; Senior Cloud Security Architect , 02/2020 - 10/2021
Bank Of America City, STATE,
  • Responsible for cloud security architecture, reviewed internal and external IT projects and applications for risk and adherence to security policies, standards, and industry best practices.
  • Participated on multiple internal security projects, evaluated and deployed cloud security technologies.
  • Helped defined, designed and secured infrastructure application architectures within primary tenants of Availability, Integrity and Confidentiality.
  • Delivered Cloud Security Architecture on assigned projects using AWS & Azure. Built cloud architecture with Azure, using Azure Resource Manager, Azure IaaS, PaaS offerings and services in Azure Commercial offerings and the AWS equivalent products and services.
  • Provided technical expertise and guidance on AWS security tools and guidance on cybersecurity and vulnerability monitoring using both cloud-native and third-party security tools and controls.
  • Managed security tools and procedures, demonstrated and taught operational teams to utilize controls. Assisted and supported leJessicarship for organizations cloud strategy decisions.
  • Supported with designing, testing, and implementation of complex security solutions to meet security and regulatory requirements for cloud environments. Contributed to cloud security documentation including standards, specifications, and Security Reference Architectures.
  • Performed technology evaluations, supported business case development, test case definition, and vendor selection based on industry standard criteria.
  • Designed Cloud/SaaS security, infrastructure security, key management, web application security, cyber security attack scenarios/kill chain, threat actors and controls, threat modelling, vulnerability assessments, information security governance.
  • Proven experience in designing, implementing and operating large-scale security architecture solutions within large and complex multi-supplier/multi-platform environment.
  • Evaluated and deployed cloud security technologies. Assisted in defining, designing, and securing infrastructure application architectures for availability, integrity, and confidentiality.
  • Managed multiple security initiatives across multiple platforms, networks, data encryption, data loss and applied security technologies.
Consultant; Infrastructure & Security Engineer., 11/2014 - 12/2019
  • Worked closely with enterprise architects to identify and mitigate risks, performed security review, designed top tier security practices and architecture. Delivered strategic, innovative cloud-based security solutions.
  • Collaborated with Operations, Development, Cloud, and Risk Management teams to implement secured Infrastructure design, end-to-end security standards and best practices.
  • Supported projects from ground level up to full project deployment; developed solution at ground level for all project needs and existing environments, evaluated project environment, and developed security requirements and solutions for various levels of projects.
  • Performed deep analysis and develop security metrics that measure current risk & gaps, effectively evaluated and managed threats/risks. Implemented security controls in a self-service environment. Experienced with security domain coverage.
  • Good understanding of designing across public cloud solutions. This includes strategy and choices for individual architectural components as well as implementation design within those components.
  • Supported development of delivery model, operational model, skills, and team structure required to transition projects to Operations aligning with global standards and compliance.
  • Developed and supported security standards for various products and infrastructure projects.
  • Evaluated security postures on projects deployments and provide enhanced security solutions while considering risks and costs.
  • Communicated complex security solutions at all levels from technical detailed documents to executive level presentations and environments.
  • Routinely worked on multiple projects from small focused security enhancements to large infrastructural projects.
  • Handling IT enterprise IaaS and PaaS cloud architecture practices and methods.
  • Architecting, configuring, supporting, and auditing cloud concepts related to subscriptions, resources, service groups, networking, authentication, and tenant governance.
  • Analyzed, designed, implemented, and deployed cloud infrastructure & cloud security solutions for scalability within a hybrid IT environment, specifically Azure and AWS.
  • Liaising with development and infrastructure teams on technology solutions including Azure DevOps, Kubernetes, CI/CD and code scanning tools.
  • Provided tier 3 level cloud infrastructure design and support.
  • Demonstrated success in dealing with firewalls, IDS/IPS, SEIM, access control and load-balancing.
Information Techology Security Analyst, 04/2011 - 09/2014
Enterprise Holdings City, STATE,
  • Assisted in managing entire lifecycle of vulnerabilities from discovery, triage, advising, remediation, and validation.
  • Participated in risk management process, including documenting, reviewing and updating systems on regular basis; which contributed in preparations of internal risk reports.
  • Responsible for configuring vulnerability assessment tools, as well as performing scans, researching, and analyzing vulnerabilities, identifying relevant threats, corrective action recommendations, summarizing and reporting results.
  • Produced metrics, reporting, and recommendations on state of system security, threats, vulnerabilities, and compliance.
  • Supported investigations on risk incidents and produced detailed summaries identifying causes of incident, process failures and proposed risk mitigation and following up actions.
  • Executed risk management processes and procedures to maintain Policies and Standards compliance.
  • Responsible for day-to-day information security analysis; supporting information security manager with events and alerts oversight.
  • Supported the information security manager with various tools, including the Security Incident & Event Management (SIEM) and its various security orchestration, automation, and response capabilities.
  • Helped to evaluate key information security risks, root cause factors for audit testing exceptions and identifying practical solutions.
  • Performed vulnerability scans, assess vulnerabilities risk, and advised on recommended actions.
  • Served as central coordinating and communications component for security efforts coordination, incident and vulnerability management, for teams supporting systems. Also analyzed security issues, determined cause and impact, identified corrective action needed to eliminate and prevent event from happening in future.
Master of Science: Information Technology, Expected in 07/2011
London College of Business & Computing Studies - London, United Kingdom,

By clicking Customize This Resume, you agree to our Terms of Use and Privacy Policy

Your data is safe with us

Any information uploaded, such as a resume, or input by the user is owned solely by the user, not LiveCareer. For further information, please visit our Terms of Use.

Resume Overview

School Attended

  • London College of Business & Computing Studies

Job Titles Held:

  • Cloud Infrastructure & Security Architect
  • Consultant; Senior Cloud Security Architect
  • Consultant; Infrastructure & Security Engineer.
  • Information Techology Security Analyst


  • Master of Science

By clicking Customize This Resume, you agree to our Terms of Use and Privacy Policy

*As seen in:As seen in: