Focus & Summary
Enterprise security leader with 20+ years of experience designing defensible architectures across cloud governance, automated Policy as Code, and enterprise digital transformations without sacrificing developer speed. Specialized view focusing on automated pipeline guardrails, infrastructure drift elimination, and shift-left workflows.
Targeted Experience
- Architected automated Policy-as-Code baselines across AWS, GCP, and Azure CI/CD pipelines, preventing configuration drift prior to production deployment.
- Replaced permanent developer access credentials with automated, short-lived IAM federation, eliminating credential leakage across multi-account topologies.
- Engineered automated security compliance unit tests within continuous integration pipelines, cutting developer friction and review queue delays by 85%.
Certifications & Credentials
- Information Systems Security Architecture Professional (ISSAP) — ISC2 (2026)
- Information Systems Security Management Professional (ISSMP) — ISC2 (2026)
- Certified Information Systems Security Professional (CISSP) — ISC2 (2010)
- Professional Cloud Security Engineer — Google Cloud (2026)