Security Analyst II
Lead technical contributor on client-facing security engagements across application, infrastructure, and cloud surfaces.
- Delivered enterprise-grade assessments across web, mobile, API, and thick-client environments aligned with OWASP
- Managed engagements end-to-end — scoping, execution, remediation — translating findings into business risk for executives
- Conducted secure code reviews with developer-friendly remediation aligned to Secure SDLC
- Integrated SAST/DAST tooling into GitHub Actions and GitLab CI pipelines
- Performed cloud configuration audits across AWS, Azure, and GCP — IAM gaps, misconfigurations, compliance
- Executed red-team and adversary-simulation assessments, presenting findings to leadership