Ike Anyanwu
Verified Expert in Engineering
Application Security Developer
Maryland City, MD, United States
Toptal member since May 5, 2021
Ike is a senior cloud security engineer with 12 years of experience and a solid knowledge of the National Institute of Standards and Technology (NIST) and International Organization for Standardization (ISO) publications, cybersecurity, cloud, and DevSecOps tools. He's deployed multiple security tools to monitor and mitigate attacks on infrastructure. Ike is proficient in infrastructure as code, managing a CI/CD pipeline, and protecting applications, websites, cloud networks, and infrastructure.
Portfolio
Experience
Availability
Preferred Environment
Windows, Linux, Amazon Web Services (AWS), Azure, Jenkins, Application Security, Cloud Infrastructure, Cloud Security, Secure Containers, DevSecOps, Documentation, Okta, Endpoint Security, FedRAMP
The most amazing...
...DevSecOps project I've worked on is the integration of security into the CI/CD process and building the entire process within the AWS cloud.
Work Experience
Security Architect
Ricoh USA, Inc
- Designed secured infrastructure with the Payment Card Industry (PCI) and Health Information Trust Alliance (HITRUST) certified for a multinational services company.
- Defined security controls for the PCI/HITRUST certified system and mapped the control matrix for security tools deployed within Ricoh AWS infrastructure.
- Provided AWS cloud cost estimation for cloud application migration and infrastructure deployment in AWS from on-perm.
- Carried out the disaster recovery and high-resiliency design for the Ricoh infrastructure in AWS.
Cloud Security Engineer
Hospitality Digital GmbH - Main Hospitality Digital GmbH
- Performed a security gap analysis for the CI/CD process and procedure.
- Reviewed Kubernetes container security scanning, performing DAST, SAST, API security, and SCA.
- Created a playbook to support incident response and requirement definition for SIEM deployment.
- Created a playbook and requirement definition for an IDS deployment and GCP Security Center.
- Did the PCI and HITRUST compliance audit and control implementation.
Security Operations Engineer
Anjuna - Main
- Deployed and managed Okta, an Identity management service for clients which provided a trusted platform to secure identity with SSO, multi-factor authentication, lifecycle management, and Identity governance.
- Configured SSO on applications using Okta identity management.
- Reviewed security gaps with client infrastructure and provided a guideline for compliance.
Security Engineer | Analyst
ASU Pocket - Main
- Reviewed the architecture of applications/systems deployed within the client infrastructure for security flaws.
- Managed the proof of concept for multiple system engineering deployment efforts with the university infrastructure.
- Served as the subject matter expert on incident response issues affecting the university infrastructure.
Senior Cloud Security DevOps
Digital Swiss Gold
- Migrated applications and created mobile apps in Azure.
- Deployed a web application firewall (WAF), Microsoft Defender for Identity, Sentinel, Microsoft Azure Security Center, a virtual private cloud (VPC), security groups, and subscriptions.
- Reviewed Federal Information Security Management Act (FISMA) compliance requirements—NIST SP 800-53 and PCI. Ran security scans to determine the security vulnerabilities in the network.
Senior Cloud Security Engineer
ShorePoint
- Reviewed security concepts and the architecture of applications and systems deployed with the infrastructure.
- Developed and reviewed functional requirements with end-users to determine if the systems met defined standards (NIST, SOX, and ISO 27001) and proposed enhancements.
- Supported evidence collection regarding various SEC compliance frameworks, such as NIST and ISO 27001.
- Updated changes within Firewall (Palo Alto and Juniper), WAF, and the IPS system (Firepower).
- Monitored the daily performance of networking systems, servers, and cloud application infrastructure with SolarWinds and Nagios.
- Implemented and configured DevSecOps tools, such as Git, GitHub, and Jenkins. Used a Python script to automate the infrastructure resource and monitoring and serverless and container infrastructure deployment with Python.
- Managed security alerts and reports from Prisma, AWS Cloud, Azure Security Center CloudWatch, and CloudTrail. Used AWS GuardDuty, Amazon Inspector, Amazon Macie, AWS Config, and Aqua Security (container security).
Senior Cloud Security DevOps
OneZero Solutions, LLC
- Implemented security in all phases of the CI/CD pipeline for secure application development within the cloud.
- Designed and architected the AWS network using VPC, subnets, route tables, and security groups.
- Ensured code development and applications adhered to security compliance frameworks, including NIST, SOX, PCI-DSS, and ISO 27001.
- Tested services and architecture required to build secure cloud computing platforms, especially using encryption for data at rest and in transit.
- Monitored the networking system, servers, and cloud application infrastructure with tools like Datadog and SonarQube.
- Integrated Checkmarx and Fortify (static and dynamic analysis) in the SDLC process. Reviewed code and application for possible OWASP vulnerability (XSS and injection), CVSS, and CWE.
- Used Python scripts to automate the infrastructure resource and monitor, and handled serverless and container infrastructure deployment with Python.
Senior Security Engineer
Pinnacle, LLC
- Deployed multiple threat management, security event and correlation monitoring, and IDS and NAC devices for a client.
- Deployed applications within AWS Cloud, including AWS CloudTrail, AWS Firewall Manager, and Amazon GuardDuty.
- Managed the application scanning and vulnerability management for the entire enterprise.
- Managed the monitoring of the networking system, servers, and cloud application infrastructure.
- Managed the Crowdstrike Endpoint Protection Platform for protecting Cloud workload, data, and endpoints, providing next-generation antivirus, endpoint detection and response (EDR), and a 24/7 threat hunting service.
Senior Security Ops Engineer
ManTech International
- Provided technical assistance for the security threat management with infrastructure.
- Performed the administration and management of complex application security tools, including Sourcefire, FireEye, Splunk, NetWitness, Nessus, Palo Alto, ForeScout, RSA Security Analytics, and malware and APT analysis tools.
- Installed and configured operating systems to meet hardening requirements and standards, such as ISO 20071, NIST, CIS, and HIPAA.
- Configured and updated changes within the firewall.
Information Security Consultant
Accenture
- Managed security risk assessment audit for multiple clients' IT infrastructure (PaaS and AWS managed services). Managed development, design, and implementation of a large enterprise security architectural detailed design.
- Deployed multiple threat management, security event and correlation monitoring, IDS, and WAF devices and application tools.
- Managed enterprise-level configuration management and vulnerability assessment.
- Managed the evidence collection with regards to various security compliance frameworks, including NIST, PCI-DS, and ISO 27001.
- Provided support on ongoing compliance activities and monitored different regulations and GRC standards like SOX, HIPAA, PCI, FedRAMP, and ISO.
- Designed and implemented complex enterprise anti-virus and malware architecture, detailed design, security information, and event management.
Security Operations Engineer
State of Maryland
- Performed application and code scanning to identify vulnerabilities.
- Conducted threat management procedures, vulnerability scans, and penetration testing to identify system vulnerabilities.
- Managed security operations, reviewing and analyzing malicious traffic.
- Reviewed and tracked security patch levels of the servers, workstations, and network devices.
Experience
Security Automation in CI/CD
Security Architect on a Platform as a Service (PaaS) Project
Cloud Security Engineer
Cloud Security
Application migration to Azure Cloud.
Researched vulnerabilities discussed on the system and pushed out patches from Automox.
Provided the documentation of vulnerability CVEs and the level of effort to remediate affected devices.
Education
Master's Degree in Cybersecurity
University Of Maryland - Adelphi, Maryland, USA
Certifications
AZ-900 Microsoft Azure Fundamentals
Microsoft
AWS Certified Security
Amazon Web Services
AWS Certified Solutions Architect Professional
AWS
AWS Certified Solutions Architect Associate
AWS
Certified Ethical Hacker (CEH)
EC-Council
Splunk Certified Power User
Splunk
Security CE+
CompTIA
Skills
Tools
Nessus, Jenkins, Git, Splunk, Prisma, GitLab, McAfee ePolicy Orchestrator (ePO), Azure Application Gateway, Terraform, Source Code Control System (SCCS), SonarQube, Elastic, Kibana, Amazon CloudFront CDN, Azure Kubernetes Service (AKS), Google Kubernetes Engine (GKE), McAfee
Platforms
Windows, Linux, Azure, Amazon Web Services (AWS), Ubuntu, Kubernetes, Google Cloud Platform (GCP), Docker
Industry Expertise
Cybersecurity
Languages
Python, SAML
Paradigms
DevSecOps, Automation, HIPAA Compliance, Penetration Testing, DDoS, DevOps
Storage
Azure Cloud Services
Frameworks
OAuth 2
Other
Application Security, Scanning, Vulnerability Management, Vulnerability Assessment, NIST, Documentation, Antivirus Software, System Administration, IT Networking, Incident Management, Compliance, Cloud Infrastructure, Cloud Security, Secure Containers, IT Security, Firewalls, Intrusion Prevention Systems (IPS), AWS Certified Solution Architect, Network Access Control, SIEM, ISO 27001, Threat Analytics, Threat Intelligence, Palo Alto Networks, ISO 9001, SOX Compliance, PCI, Web Application Firewall (WAF), Platform as a Service (PaaS), Infrastructure as a Service (IaaS), Azure VDI, Web Applications, Okta, Endpoint Security, FedRAMP, Infrastructure as Code (IaC), Identity & Access Management (IAM), SOC 2, Data Loss Prevention (DLP), Server Security, SecOps, Hacking, Certified Ethical Hacker (CEH), Content Delivery Networks (CDN), Single Sign-on (SSO), Authentication, Identity, SAML-auth, Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), APIs, Open Source, Incident Response, Containerization, CI/CD Pipelines, Cloud, Security, Vulnerability Identification, PCI DSS, HITRUST Certification, PCI Compliance, Security Architecture
How to Work with Toptal
Toptal matches you directly with global industry experts from our network in hours—not weeks or months.
Share your needs
Choose your talent
Start your risk-free talent trial
Top talent is in high demand.
Start hiring