Summary
Overview
Work History
Education
Skills
Websites
Certification
Languages
Work Availability
Timeline
Hi, I’m

OLUWATOYIN TEJUOSO

Plano
The supernatural is the natural not yet explained.
Elbert Hubbard
OLUWATOYIN TEJUOSO

Summary

AWS Cloud Security Professional with 7 years of experience working with business stakeholders to achieve project deliverables. Conceptualized and built numerous solutions working as a Cloud Engineer and Cloud Security Consultant for several customers. Good understanding of Linux, network automation using python, and proficiency in Windows Active Directory. Designed, implemented, and deployed platforms to support and meet business needs. Identified and recommended opportunities for improvement and performance issue solutions. Designed and deployed security controls and solutions to detect security incidents; vulnerabilities and configurations at the various layers of the cloud infrastructure (virtual machines; containers; network, cloud environment using various AWS native and 3rd party tools – AWS Security Hub, AWS Inspector, AWS Config, Qualys Cloud Platform, Nagios monitoring software, Symantec Endpoint Protection, Implementing security programs, Erecting firewalls. AWS Inspector, AWS Shield, GuardDuty, AWS WAF, AWS Secret Manager, Qualys, OpenVAS, Symantec DLP. (IDS/IPS) SIEM (Splunk/Qradar) Palo Alto Networks, Firewalls & Log Analysis, SIEM Technology. Rapid7 InsightCloudSec, Xpel, Trend Micro One, Barracuda Guardian Security Designed and deployed multi-tier AWS architectures using AWS services – AWS Elastic Beanstalk, AWS EC2, AWS EBS, AWS S3, AWS IAM, AWS AMI, AWS VPC, AWS VPC Peering, AWS NACL, AWS SG, AWS Route53, AWS Auto Scaling, AWS ELB, AWS SNS, AWS CloudWatch and AWS Cloud Formation). F5, PostgreSQL, MySQL, DynamoDB. Managed DevOps Processes: i) Developed and deployed designs to ensure best-practice application of both PaaS and IaaS services. Created and Managed Build/Release pipelines from Development to Production. Designed and implemented Infrastructure as code using DevOps, Terraform and ARM Templates. Utilized expert knowledge of source code repositories and other tools, particularly Git, with agile development practices, for continuous integration and test automation (TDD, BDD, Selenium). Developed and deployed serverless applications especially cloud functions using scripting languages Python, bash, and PowerShell. Designed and deployed RESTful APIs and used relational or NoSQL Cloud Databases from an application point of view - PostgreSQL, MongoDB, MySQL. iii) Designed, and deployed modernization solutions for migration of on-premises applications to cloud native with use of Golang in creation of CLIs, and use of Hashicorp products such as Sentinel, Vault, and Consul, containerization using Docker and container orchestration -Kubernetes or Docker Swarm and configuration management tooling (e.g. Puppet, Chef, and Ansible). Implemented modernization projects with common DevOps technology stacks - NGINX, Apache, RabbitMQ, AWS Elasticsearch, Redis, Prometheus, Consul, and MERN. A good understanding of serverless and microservice architectures. Accomplished engineer proffering extensive cloud monitoring, deployment and troubleshooting skills. Organized and focused person with extraordinary leadership acumen.

Overview

7
years of professional experience
1
Certification

Work History

Chase Bank

Senior Threat and Vulnerability Manager
08.2022 - 10.2022

Job overview

  • Provided recommendations and technical guidance for lifecycle of vulnerability management - from discovery, triage, advising, remediation, and validation
  • Planned & Aligned, Developed Others – Collaborated across teams to reduce vulnerabilities, risks, and incident management; Drove execution of solution deliveries; Guided teams in strategy, alignment, analysis, and execution to ensure priorities objectives/deliverable were met; Provided leadership, mentoring and coaching to direct reports
  • Provided documentation of risk analysis and potential impact to systems to stakeholders
  • Implemented mitigations in accordance with cyber incident response plan
  • Developed automation, orchestration, and scripting to reduce manual processes, improving overall efficiency while also enabling new capabilities to meet rapidly changing needs
  • Identified opportunities to collaborate across cyber teams and optimize efficiencies to reduce level of effort, costs and risks across threat landscapes while facilitating increased organizational situational awareness
  • Performed ad-hoc data manipulations, clean-ups, and reporting using large complex data sets for rapid security responses
  • Developed reports using data hosted in multiple sources/tools (e.g., spreadsheets, databases) and communicated clearly to leadership and other cyber teams
  • Conducted research and analysis to stay up to date with current vulnerabilities
  • Worked with various different business units to perform vulnerability assessments on systems or applications before go live rollouts
  • Managed vulnerability related tickets to ensure issues are remediated within proper timelines
  • Identified vulnerabilities on Desktops, Servers, Networks, and Applications by maintaining and monitoring vendor alerts mailbox and subscriptions
  • Created Change Requests (CR)/remediation release requests in system of record and tracked changes through to completion
  • Supported transition from manual vulnerability tracking to use of automated tools including Splunk and Continuous Diagnostics and monitoring (CDM) Dashboard Eco-System
  • Maintained vulnerability management meeting minutes, report configurations, and program documentation
  • Provided monthly remediation status report with summary of ongoing issues and metrics
  • Provided operation and management functions of vulnerability scanners to include OS and scanning software patching, secure configuration management, lifecycle management, architecture changes, and troubleshooting
  • Conducted vulnerability scans utilizing Tenable.sc/Nessus, Tenable.IO Web application scanner, and Tanium.
  • Monitored scans for any full or partial scan failures
  • Resolved any identified failures
  • Performed investigations of reported false positives and false negatives, including opening support cases with scanner vendors to support and resolve such issues
  • Provided summaries of vulnerability scanning efforts and metrics as part of MPPR monthly.
  • Cut disaster recovery time by 70% in tests

American Airlines

Cloud Security Engineer
05.2019 - 07.2022

Job overview

  • Designed, implemented, and ran security solutions to detect security incidents; vulnerabilities and misconfigurations at various layers of cloud infrastructure (virtual machines; containers; network, cloud environment)
  • Drove forward existing cloud security stack & security automation stack - including maintenance of existing environment, developing new solutions architectures, and implementing them to improve capabilities
  • Maintained constant contact with vendors to identify best practices and escalate potential configuration issues
  • Researched & developed proof of concepts on relevant new security technologies
  • Run and/or participate in RFPs for security technology selection
  • Was responsible for designing, developing, implementing, and maintaining innovative security architectures for protecting systems and data deployed into different types of cloud and cloud/hybrid systems
  • Worked with development teams to ensure that applications follow secure development practices and are built to be robust and easily monitored (Python, Java, Angular
  • Worked with customer's IT security team to ensure that AWS cloud infrastructure had robust monitoring and assistance with triage of incoming reports
  • Ensured availability, performance, security, and scalability of customer's AWS environments
  • Deployed, automated, managed, and maintained AWS cloud-based sandbox, integration, and production environments
  • Defined and deployed systems for metrics, logging, and monitoring of AWS environments
  • Worked alongside developers and product owners to support new infrastructure and operational needs
  • Managed continuous deployment pipeline to fully automate deployment of mission-critical applications within enterprise environment
  • Designed and implemented Infrastructure as code using DevOps, Terraform, ARM Templates, Ansible, Kubernetes, Jenkins
  • Developed automation scripts with Python, Bash, Golang and PowerShell
  • Designed, managed, and maintained tools to automate operational processes
  • Developed and deployed RESTful APIs and used relational or NoSQL Cloud Databases from application point of view - PostgreSQL, MongoDB, MySQL
  • Managed CI/CD pipelines with expert knowledge of source code repositories and other tools, particularly Git, with agile development practices, continuous integration and test automation (TDD, BDD, Selenium)
  • Managed CI/CD pipelines using DevOps technology stacks - NGINX, Apache, RabbitMQ, Prometheus, AWS Elasticsearch, Redis, Consul, MEAN, MERN
  • Executed containerization projects using Docker and container orchestration – Kubernetes, Docker Swarm and used configuration management tools Puppet, Chef, and Ansible.
  • Designed, coded, tested, and delivered software to automate manual operational work
  • Responded to outages within SLA/OLA timelines and provided detailed postmortem reports
  • Engaged with development team throughout life cycle to help develop software for reliability and scale, ensuring minimal refactoring or changes
  • Identified application patterns and analytics in support of better service level objectives
  • Designed self-healing and resiliency patterns
  • Designed automated software and product upgrades, change management, and release management solutions in private cloud and public cloud (AWS)
  • Performed proactive analysis of infrastructure capacity and performance
  • Developed automating config management tasks using Ansible playbooks
  • Built meaningful engineering discipline, combining software and systems to develop creative engineering solutions to operations problems
  • Troubleshot and resolved problems across various application domains and platforms
  • Customized in-development software to clients' current hardware environments, designing applications to span multiple systems
  • Assisted with and designed security oversight of next-generation firewalls, intrusion prevention systems, DDoS solutions, SSL-terminating load balancers,
  • AWS WAF, AWS security groups and AWS NACL
  • Communicated software architecture strategies to senior leadership and third- party business leaders
  • Encrypted extremely sensitive data such as personally identifiable information (PII) using customer-controlled keys
  • Has in-depth understanding of AWS IAM related processes, internal controls, external factors, risk management, and industry standards
  • Worked with stakeholders to gather and analyze requirements for developmental programs
  • Proven experience in systems and cloud network design and development
  • Performed security monitoring, security event triage, and incident response; coordinated with other team members and management to document and report incidents
  • Deployed and managed applications to monitor cloud infrastructure security and intrusions
  • Cut disaster recovery time by 70% in tests
  • Reduced average development environment build time from 3 months to only minutes
  • Stayed abreast of broad technical knowledge of existing and emerging technologies, including public cloud offerings from Amazon Web Services, Microsoft Azure, and Google Cloud
  • Deployed and used Sumo Logic for cloud log management and analytics
  • Deployed and used AWS RDS, AWS Aurora, AWS DynamoDB, AWS Athena, AWS Redshift, AWS Kinesis, AWS Glue, AWS Data Pipeline
  • Identified gaps in market to spot opportunities to create value propositions
  • Used metrics to monitor application and infrastructure performance

Bank of America

Cloud Architect
05.2017 - 04.2019

Job overview

  • Configured multi-account architecture, identity and access management, governance, data security, network design, and logging within provisioned AWS Landing Zones
  • Designed and implemented scalable solutions in cloud environment leveraging cloud enterprise technology and services in AWS such as AWS VPC, AWS Auto Scaling, AWS ELB, AWS Global Infrastructure (Regions and Availability Zones)
  • Designed architectural frameworks solutions (IaaS, PaaS, SaaS) that best suits clients web application hosting demands in AWS cloud Platform, leveraging AWS services such as AWS EC2, AWS elastic beanstalk, AWS S3 web hosting
  • Developed strategies for modernization of existing systems and migration into cloud environment using AWS Migration Hub, AWS Server Migration Service, and AWS Database Migration Service
  • Designed and secured hybrid network connection between provisioned private network in AWS Cloud space (VPC) and customer corporate network leveraging AWS VPC Peering, VPN connection, AWS transit Gateway
  • Experience in deploying and monitoring applications on various platforms using AWS Elastic Beanstalk, setting up life cycle policies to back data from AWS S3 to AWS Glacier
  • Architecting/operating solutions built on AWS Platform; Deployed Palo Alto, F5,Aviatrix Transit Gateway boxes and configured boxes with customer's requirements
  • Recommended and managed transmission protection requirements for all environments (systems, applications, containers) such as VPC peering best practices, SSL certificate management and key pairs
  • Ran code seamlessly using AWS Lambda to build and run various application
  • Utilized AWS snowball to migrate large-scale data transfers quickly and securely
  • Possess required knowledge and hands-on experience in building security data analysis pipelines in cloud systems using AWS Kinesis, AWS Firehose/AWS Lambda/AWS Elasticsearch
  • Extensive experience in security operations and threat detection in cloud infrastructures before material damage to business
  • Developed and refined security processes plans and procedures and partner closely with other stakeholders across businesses
  • Experience in docker containers and Kubernetes security such as pod-security policy, network security policy
  • Developed strong hands-on experience in developing infrastructure-as-a-code using Terraform, AWS CloudFormation, CI/CD, GitHub, Ansible
  • Developed strong hands-on experience working with various AWS logs such as VPC Flow log, AWS CloudTrail,
  • Designed, implemented and deployed web applications, using AWS S3, AWS Route53, AWS ELB, AWS CloudFront .

Netsoft Systems Ltd

CYBERSECURITY ANALYST
05.2015 - 03.2017

Job overview

  • Tested and assessed systems (hardware and software) and network equipment for vulnerabilities, identify mitigation steps, and collaborate with system administrators and network engineers to remediate or mitigate vulnerabilities based on risk levels and threats
  • Recognized and responded to information security incidents, in partnership with IT organizations
  • Performed digital forensics as part of incident response and in response to other community needs
  • Authored and edited incident reports
  • Tracked down systems for remediation based on automated alerts and threat assessment tools
  • Stayed on top of latest developments in information security, industry trends, security risks, and best practices
  • Led evaluation and deployment of new tools and techniques to better secure Client's data and IT related assets
  • Acted as internal consultant on security-related matters to faculty, students, and staff
  • Coordinated and perform security-related awareness campaigns and educational exercises
  • Closely align and coordinate activities with co-workers in Information Security organizations
  • Set up administrator accounts, maintained system documentation, tuning system performance, installing system wide software, and allocating mass storage space
  • Monitored both Linux and Windows Server networks and systems to identify how performance can be improved
  • Established network specifications by conferring with users; analyzing workflow, access, information, and security requirements; designing router administration, including interface configuration and routing protocols
  • Spearheaded inventory control measures to replenish and maintain IT equipment, supplies, tools and replacement parts
  • Automated nightly batch using Active Batch scheduler and created nightly jobs for database backups
  • Performed system administration tasks including adding/deleting users from specific applications, maintaining SQL database tables, deploying non-routine client software installation on future workstations, troubleshooting, maintaining security and generating reports
  • Kept software licenses current for all computers and mobile devices
  • Performed network security design and integration duties
  • Maintained and managed connection to WAN, working closely with Territorial WAN Administrator, operating system, and anti-virus on servers
  • Maintained 96% satisfaction rate while administering systems in MOB sites across 30 states
  • Designed company-wide policies to bring operations in line with Center for Internet Security (CIS) standards
  • Designed and developed company e-commerce site using Drupal, Drupal Commerce, Shopify, PHP and JavaScript.
  • Created cybersecurity best practice communications to educate staff against known threats and potential vectors of attack
  • Participated in creation of device hardening techniques and protocols

Education

Obafemi Awolowo University
Ile-Ife, OS

Bachelor of Science from Electrical/Electronic Engineering
06.1990

Skills

  • Virtual and Cloud Technologies
  • Compliance with Security Requirements
  • Log Monitoring and Management
  • Vulnerability and Threat Management
  • Architecture governance
  • AWS Cloud Architecture
  • Software Development Lifecycle
  • DevOps Processes
  • Quality Control
  • Data Systems
  • Product Design
  • Deployment

Certification

AWS Certified Cloud Practitioner, Amazon Web Services (AWS) –September 2022 AWS Certified Developer Associate, Amazon Web Services (AWS) - September 2022 AWS Certified Solutions Architect Associate, Amazon Web Services (AWS) - September 2022 AWS Certified Security Specialty, Amazon Web Services (AWS) - September 2022 Scrum Master Certified (SMC), International Scrum Institute (Scrum Institute) September 2022

Languages

English
Native language
English
Proficient
C2
Availability
See my work availability
Not Available
Available
monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse

Timeline

Senior Threat and Vulnerability Manager

Chase Bank
08.2022 - 10.2022

Cloud Security Engineer

American Airlines
05.2019 - 07.2022

Cloud Architect

Bank of America
05.2017 - 04.2019

CYBERSECURITY ANALYST

Netsoft Systems Ltd
05.2015 - 03.2017

Obafemi Awolowo University

Bachelor of Science from Electrical/Electronic Engineering
OLUWATOYIN TEJUOSO