Career Profile

Cybersecurity specialist and DevSecOps practitioner with 10+ years across federal agencies, financial services, and international environments. I build security into the places most teams skip: CI/CD pipelines, cloud identity, and developer workflows. Currently interning at Decyda SRLS in Poland, where I deploy Cloud Custodian on AWS and integrate AI-based guardrails into pipelines. Previously at the Department of the Interior, where I automated phishing triage, integrated SAST/SCA into Azure DevOps and GitHub Actions, and built Splunk queries that improved anomaly detection by 30%. Pursuing a Master’s in Information Security Engineering at SANS Technology Institute, with active research into how NIST SP 800-204D maps to real federal CI/CD pipeline risks. GIAC-certified across five domains.

Experiences

DevSecOps Intern

Aug 2025 - Present
Decyda SRLS

• Engineered cloud security governance by deploying Cloud Custodian on AWS, writing custom Python-based policies to enforce compliance and auto-remediate risks.

• Executed penetration testing on web applications, identifying critical vulnerabilities and partnering with developers to patch code before production deployment.

• Deployed AI-based security guardrails within CI/CD pipelines, automatically blocking risky code changes and reducing manual code review time.

IT Cybersecurity Specialist

Jul 2024 - Jul 2025
Department of the Interior

• Developed and integrated automated security scanning tools into Azure and GitHub pipelines, successfully detecting and mitigating 40+ critical vulnerabilities during the build phase.

• Scripted automation for phishing analysis and document processing, which increased team efficiency by 60% and reduced mean time to respond (MTTR).

• Programmed custom Splunk queries to correlate data sources, improving anomaly detection rates by 30% across the enterprise environment.

• Conducted comprehensive identity audits and engineered stricter access controls (IAM) to harden the environment against unauthorized entry.

IT/Cyber Security Auditor

January 2024 - July 2024
United Services Automobile Association (USAA)

• Developed comprehensive technical documentation for internal threat management controls and monitoring systems

• Created detailed process maps identifying business partner workflows and technology integration points

• Analyzed control effectiveness and identified opportunities for refinement and improvement

• Collaborated with cross-functional teams to enhance security posture and threat detection capabilities

Systems Administrator

December 2022 - May 2023
Piedmont Regional Council, Kernersville, NC

• Developed and deployed custom Microsoft PowerApps solutions, automating business processes and creating data visualization dashboards

• Managed Azure cloud infrastructure for 200+ users, including VM deployment, storage configuration, and network resource maintenance

• Enhanced organizational productivity through streamlined workflows and improved decision-making capabilities

• Implemented security best practices and ensured system scalability and reliability

Systems Administrator

December 2012 - December 2022
Various locations in the US and overseas

• Managed critical infrastructure including Windows systems, LAN networks, and cloud backup solutions

• Supervised application maintenance and computing infrastructure activities ensuring 99.9% uptime

• Provided technical support to 200+ employees across the United States with <2-hour response times

• Implemented robust backup and disaster recovery procedures ensuring data resilience and availability

• Provided Tier 1/2 technical support for over 500 personnel, resolving an average of 200+ helpdesk tickets monthly with a 87% satisfaction rating

• Managed user accounts, permissions, and group policies within Active Directory to ensure compliance with strict Department of Defense (DoD) security protocols

Projects

A collection of projects demonstrating expertise in cybersecurity, software development, and data analysis. These projects showcase practical applications of security principles, automation, and analytical thinking.

Inventory Management Application - Developed a comprehensive Android inventory management system using Java and SQLite database, featuring user authentication, real-time inventory tracking, and data persistence capabilities.
Animal Shelter Analytics Dashboard - Built an interactive data visualization dashboard using Python Dash framework, integrating REST API with MongoDB for real-time animal shelter data tracking and analytics.
Financial Fraud Detection Analysis - Conducted comprehensive fraud analysis on financial payment datasets using Python and pandas, creating data visualizations and statistical models to identify patterns and support risk management decisions.
OWASP Security Vulnerability Assessment - Performed comprehensive security assessment of banking application using IntelliJ and OWASP tools, identifying vulnerabilities, remediating false positives, and recommending security improvements including Spring Boot updates.
Data Analytics Shopping Cart System - Developed a data processing system that analyzes sales data from text files, generating comprehensive reports including product sales summaries, item-specific analytics, and visual histograms for business intelligence.

Technical Skills & Proficiencies

Cybersecurity & Security Tools

Threat Management, Security Auditing, Compliance Frameworks (NIST, ISO 27001), Vulnerability Assessment, Incident Response, Security Controls, OWASP ZAP, Penetration Testing, Risk Assessment, Security Scanners, IntelliJ

Cloud & Infrastructure

Microsoft Azure, AWS, Cloud Security, Infrastructure Management, Virtual Machines, Network Security, Azure Active Directory, Microsoft Entra ID, Cloud Backup Solutions, Disaster Recovery

Programming & Development

Python, Java, JavaScript, SQL, PowerShell, REST APIs, Microsoft Power Platform, PowerApps, Power Automate, HTML/CSS, Git, Version Control

Data & Analytics

Data Analysis, Data Visualization, Pandas, Jupyter Notebooks, MongoDB, SQLite, Business Intelligence, Dashboard Creation, Statistical Analysis

IT Management & Support

Windows Systems Administration, LAN/WAN Management, Technical Support, System Maintenance, User Training, Documentation, Process Automation, Change Management

Business & Leadership

Strategic Planning, Project Management, Team Leadership, Stakeholder Communication, ROI Analysis, Digital Marketing, Business Process Optimization

Latest Blog Posts

Sharing insights on cybersecurity, technology trends, and professional development.

View All Posts →

Site Security

This site is scanned weekly for secrets, vulnerabilities, and code security issues using open-source tools. View scan history on GitHub

Gitleaks
Secret Scanning
Exposed credentials, API keys, tokens
Trivy
Vulnerability Scan
HIGH & CRITICAL CVEs in dependencies
Semgrep
Static Analysis
Security issues in source code