Security Architect
CurrentResponsibilities:Perform security and risk assessments on products & infrastructure using tools such as Tenable Security Center, write and implement security and connectivity requirements alongside development and design teams, and act as a subject matter expert for all security- and connectivity-related design and support issues.Projects:• Technical lead to obtain SOC2 Type 2 compliance for new cloud-hosted products, including performing gap analysis and implementing technical solutions to address issues found• Designed security and connectivity infrastructure for new multi-tenant, cloud-hosted product utilizing a broad range of Microsoft Azure IaaS and PaaS services, to ensure a scalable, robust and secure infrastructure• Designed & deployed public key infrastructure (PKI) to deliver just-in-time certificates on the factory floor to approximately 10,000 embedded medical devices per year • Worked on a team to successfully obtain a Department of Defense Authority to Operate (ATO) for by assessing and implementing security controls detailed in NIST Special Publication 800-53 • Worked with a team to design and implement a security risk assessment process for analyzing products during the design & development phase, as well as executing the risk assessment process for early identification of issues and recommending mitigating design changes