Architected and implemented a comprehensive security compliance automation system integrating multiple platforms (Slack, Asana, AWS, GitHub) to streamline CFIUS compliance workflows and enhance operational efficiency.
Key Achievements
- Developed an interactive Slack bot for automated report generation and user management, enabling teams to trigger compliance workflows directly from Slack
- Created seamless integration between Slack and Asana for automated task management and compliance tracking
- Implemented automated log analysis system using AWS Athena to process CloudTrail logs, providing deep visibility into AWS infrastructure activities
- Built GitHub activity monitoring system to track repository access and code changes for compliance requirements
- Reduced manual compliance checking time by 75% through cross-platform automation and centralized reporting
- Established real-time alerting system for unauthorized access attempts and suspicious activities across all integrated platforms
AWS Athena
CloudTrail
Slack API
Asana API
GitHub API
Python
Security Analytics
Compliance
Led security implementation for a cloud-based medical device platform, enabling secure IoT connectivity and data management.
Key Achievements
- Architected and implemented comprehensive security infrastructure using Terraform
- Successfully integrated Okta SAML authentication, enhancing platform security
- Spearheaded AWS Control Tower implementation for secure multi-account strategy
- Developed automated CI/CD security scanning pipelines
- Managed end-to-end security tool procurement and integration
AWS
Terraform
Okta
CI/CD
Control Tower
Enhanced security automation for Cisco MSX, a cloud-native software-defined networking platform designed for delivering managed services to enterprise customers.
Key Achievements
- Implemented comprehensive security automation workflows for the MSX platform
- Led integration of Black Duck for container and application security, managing open source risks
- Developed and integrated security tools into CI/CD pipelines, ensuring continuous security validation
- Established automated security testing frameworks for software releases
- Streamlined security compliance processes for managed service delivery
Cisco MSX
CI/CD
Black Duck
Container Security
DevSecOps