Summary
Overview
Work History
Education
Skills
Timeline
Generic

Sydney Kanda

Melbourne City,AUSTRALIA

Summary

I am an organized and committed individual who is not afraid to get my hands dirty, I can carry out any duties to requirements and perfection. I thrive in a team environment and can work with minimum supervision as I am a quick learner and can adapt to situations fast.

I actively participate as a member of a team to move the team toward the completion of set goals. I consistently maintain high levels of activity or productivity operating with drive, effectiveness, and determination over extended periods of time. I set high standards of performance for self and others; assuming responsibility and accountability for successfully completing assignments or tasks; self-imposing standards of excellence rather than having standards imposed. I thrive in meeting client needs, building productive client relationships, taking responsibility for client satisfaction and loyalty.

I am currently a Senior Security Architect at Melton City Council working in the Security architecture team. I deliver effective information security solutions to support the operational and strategic needs of the Melton City Council business. I act as a member of the technology enterprise architecture group in accordance with the EA Charter.

Overview

12
12
years of professional experience

Work History

Senior Principal Security Architect

Melton City Council
Melbourne, Australia
09.2023 - Current
  • Developed and implemented security solutions that addressed enterprise-wide risk management issues.
  • Provided guidance to the organization on best practices for secure systems development, configuration, and operations.
  • Conducted security assessments of existing IT infrastructure to identify vulnerabilities and threats.
  • Designed secure architectures for networks, applications, databases, operating systems, virtualization platforms, cloud environments and mobile devices.
  • Implemented secure network segmentation strategies to reduce attack surfaces and protect critical assets from malicious actors.
  • Created policies and standards related to authentication, authorization, encryption technologies, patching processes and vulnerability scanning procedures.
  • Developed incident response plans for data breaches or other cyber threats.
  • Reviewed system logs for anomalies or suspicious activity patterns.
  • Performed penetration testing to evaluate the effectiveness of security controls in place.
  • Assessed third-party applications and services for potential risks associated with their use within the organization's environment.
  • Monitored threat intelligence sources for new information about emerging threats or attacks targeting similar organizations.
  • Identified gaps between current state security posture and industry standards such as NIST 800-53 or CIS 20 Critical Security Controls framework.
  • Maintained up-to-date knowledge of evolving security trends including malware variants, phishing campaigns, ransomware attacks.
  • Trained technical staff on proper implementation of security measures in their respective areas.
  • Investigated security incidents in conjunction with internal teams or external vendors as necessary.
  • Provided recommendations on appropriate countermeasures when responding to incidents.
  • Ensured compliance with applicable laws and regulations regarding data protection.
  • Participated in architecture reviews to ensure that proposed solutions take into account all relevant security considerations.
  • Documented detailed system designs which included a comprehensive set of technical requirements needed for successful deployments.
  • Managed projects related to the deployment of new technologies or upgrades of existing ones from a security perspective.
  • Actively participated in vendor selection process by evaluating products based on their ability to meet organizational needs from a security standpoint.
  • Monitored systems for indications of threats, security breaches or intrusions.
  • Investigated information security breaches to identify vulnerabilities and evaluate damage.
  • Provided technical support related to security product installation and use.
  • Implemented software tools to assist in threat detection, prevention and analysis.
  • Directed vulnerability assessments or analysis of information security systems.
  • Evaluated performance indicators to assess security control quality.
  • Safeguarded data through installation of firewalls and data encryption programs.
  • Maintained documentation of security and disaster recovery policies and procedures.
  • Directed risk assessment operations and system test execution.
  • Conducted penetration tests to uncover security system weaknesses.

Senior Security Engineer - (Contract)

Metro Trains
Melbourne, AUSTRALIA
03.2023 - 09.2023
  • Administration of Zscaler ZIA and DLP solutions including uplifting the Zscaler platform to best practice
  • Administration of Splunk for Enterprise
  • Administration of Crowdstrike
  • Determined possible breach of company proprietary data to unauthorized resources and analyzed past performance data to enhance operations.
  • Automation enablement using Splunk across all Metro trains Security Stack.
  • Ran routine security checks, suggesting improvements as necessary.
  • Communicated security policies to staff members and performed security training.
  • Monitored internal and external company communication and reported abnormalities.
  • Designed and utilized data recovery and asset protection plans.
  • Implemented security software, programs and firewalls to minimize cybersecurity threats.
  • Made recommendations to improve security procedures and systems.
  • Audited networks and security systems to identify vulnerabilities.
  • Protected secure data files and regulated access.
  • Designed, implemented and maintained security systems and controls.
  • Updated virus protection systems based on computer virus reports.
  • Designed and implemented plans to secure computer files against breach, destruction or accidental modification.
  • Built firewalls and encrypted data to secure confidential information.
  • Supervised network activity and security camera footage to locate potential threats.
  • Gathered data from daily logs and incident reports to locate security weaknesses.

Senior Security Engineer - (Contract)

Victoria University
Melbourne, AUSTRALIA
09.2021 - 03.2023
  • Architected, deployed, and managed the Palo Alto XSOAR platform
  • Architected, deployed and managed the Qualys vulnerability and cloud scanning platform
  • Deployed and managed the Victoria University Microsoft Information protection solution for data loss prevention purposes
  • Deployed and managed the Victoria University MCAS solution for web proxy purposes
  • Investigated critical incidents and conducted analysis and remediation on those incidents
  • Assessed critical vulnerabilities on workstations and hosts and remediated them through patch management
  • Tested all cyber playbooks and runbook and organized tabletop exercises to ensure our reaction to cyber threats was efficient
  • Evaluated existing security architecture and protocols for risk of vulnerability and recommended improved tools and protocols to management.
  • Reviewed security audits to bring awareness to security problems and issues.
  • Identified opportunities to improve network, application and cloud security through implementation of secure frameworks.
  • Created and maintained appropriate cyber metrics and reported this to the business to showcase monthly cyber performance
  • Ran advanced threat hunting detection campaigns hunting for vulnerabilities.
  • Assisted with developing training materials to cover organizational policies, procedures, tools and monitoring requirements.
  • Established procedures for controlling remote access to network facilities and components.
  • Made recommendations to improve security procedures and systems.
  • Protected secure data files and regulated access.
  • Designed, implemented and maintained security systems and controls.
  • Updated virus protection systems based on computer virus reports.
  • Built firewalls and encrypted data to secure confidential information.
  • Designed and implemented plans to secure computer files against breach, destruction or accidental modification.
  • Determined possible breach of company proprietary data to unauthorized resources and analyzed past performance data to enhance operations.

Senior Security Engineer (Contract)

Bupa Global
Melbourne, AUSTRALIA
09.2020 - 09.2021
  • Architected, deployed, and managed the Palo Alto XSOAR platform
  • Architected, deployed and managed the Qualys vulnerability and cloud scanning platform
  • Architected, deployed, and managed the Bupa cloud web proxy solution – Zscaler Web Cloud Proxy
  • Deployed and managed the Bupa Microsoft Information protection solution for data loss prevention purposes
  • Deployed and managed the Bupa IBM Database firewall solution for database security purposes
  • Deployed and managed the Bupa MCAS solution for web proxy purposes
  • Deployed and managed the Azure Sentinel SIEM and ingested logs from all infrastructure, networks, and security platforms to align with all pre-configured and custom playbooks
  • Ran cyber security awareness campaigns across all Bupa business departments
  • Investigated critical incidents and conducted analysis and remediation on those incidents
  • Assessed critical vulnerabilities on workstations and hosts and remediated them through patch management
  • Tested all cyber playbooks and runbooks and organised tabletop exercises to ensure our reaction to cyber threats was efficient
  • Investigated suspicious user activity and conducted analysis and remediation on those incidents
  • Created and maintained appropriate cyber metrics and reported this to the business to showcase monthly cyber performance
  • Ran advanced threat hunting detection campaigns hunting for vulnerabilities
  • Assessed all web applications using the MITRE ATT&CK framework
  • Assessed the Bupa cyber posture using the NIST and HIPPA frameworks.
  • Evaluated existing security architecture and protocols for risk of vulnerability and recommended improved tools and protocols to management.
  • Reviewed security audits to bring awareness to security problems and issues.
  • Identified opportunities to improve network, application and cloud security through implementation of secure frameworks.
  • Established procedures for controlling remote access to network facilities and components.
  • Delivered markedly improved data center security through complete system overhaul.
  • Determined possible breach of company proprietary data to unauthorized resources and analyzed past performance data to enhance operations.
  • Coordinated security updates to avoid outages and downtime.
  • Updated virus protection systems based on computer virus reports.
  • Reviewed security bulletins and vulnerability patch releases.
  • Designed, implemented and maintained security systems and controls.

Information Security Analyst - (Contract)

Catholic Church Insurance Australia
Melbourne, AUSTRALIA
03.2020 - 09.2020
  • Maintained and delivered CCI information security to enable the business to effectively meet regulatory and business requirements
  • Analysed, developed, and delivered TECHNOLOGY information security solutions to meet business requirements
  • Delivered all Information Security reporting requirements to meet the company’s short, medium- and long-term objectives
  • Developed and maintained strong and lasting relationships with key stakeholders, both internal and external
  • Developed and maintained the documentation, review and improvement of Information security policies, processes, and practices for continuous improvement
  • Supported a culture within the company which is consistent with CCI values and promises and facilitates the achievement of objectives of the company
  • Ensured the company meets its corporate risk, legal and regulatory obligations
  • Chaired the information security management meeting in order to facilitate a forum for IT administrators to discuss security issues
  • Maintained EA Charter and Frameworks when required
  • Performed EA activities and tasks as defined by the EA Charter
  • Fostered business partnerships with the business key stakeholders by promoting TECHNOLOGY as a business enabler and engaging the business at various levels, such as attending regular business meetings, strategy planning & deployment discussions, system design workshops and so on
  • Performed quality assurance reviews of all TECHNOLOGY information security process and procedures as per schedule
  • Provided monthly report on information security breaches and incidents within 5 days of the end of month
  • Assisted the preparation and resolution of TECHNOLOGY responses to meet audit and regulatory obligations agreed timeframes
  • Ensured compliance with all TECHNOLOGY governance processes and procedures
  • Looked after the daily Symantec MSS SOC Incidents and Alerts
  • Implemented the Azure Sentinel SOC POF platform
  • Administered the Panorama Palo Alto firewalls
  • Implemented the crowdstrike falcon edr platform
  • Administered the Imperva WAF Firewall
  • Pushed out Phishing campaigns using the Proofpoint Phishing Campaign Platform
  • Pushed out MFA to all CCI users on all cloud platforms
  • Pushed out MFA to all citrix netscaler gateways
  • Enabled dmarc on the main CCI domain
  • Enabled SSL decryption for outbound traffic
  • Administered and monitored users, entity behavior and activities with learning-based analytics in Azure ATP
  • Protected user identities and credentials stored in Active Directory on Azure ATP
  • Within Azure ATP I provide clear incident information on a simple timeline for fast triage.

Security Engineer - (Contract)

Healthscope Corporate Australia
Melbourne, AUSTRALIA
09.2019 - 03.2020
  • Management of reported Phishing Alerts
  • Led the initiative to meet the NIST security framework
  • Ticket management of escalated service desk tickets
  • Investigation of Security Events
  • Monitoring and Management of Patching
  • Identity Management
  • Access Management
  • Database Encryption
  • Database Anonymisation
  • Designed and implemented the new IDM Solution
  • Designed and implemented the lastpass password management tool
  • Co-coordinated penetration testing on general infrastructure, databases and core applications
  • Created an Architectural Review Board for future system and application solutions
  • Created an enterprise architect document for the healthscope organization
  • Created a security architecture document for the healthscope organization
  • Was a member of the change management control team assessing risks for system maintenance and amendments
  • Created an asset register tagged to each core application and infrastructure using tenables
  • Set up and Conducted monthly vulnerability assessments using Nessus
  • Implemented the Vormetric tokenization dynamic data masking solution

Network/Security Engineer - (Contract)

Intralot Gaming Services Australia
Melbourne, AUSTRALIA
04.2019 - 09.2019
  • Led the initiative to ensure Intralot met the VCGLR gaming framework
  • Micro segmented east/west traffic through Symantec as part of the overall security framework
  • Was a member of the change approval team
  • Reviewed all changes made through tripwire and in constant communication with all security auditors summarizing each change made for auditing tracking purposes
  • Administered penetration testing
  • Installed, configured, maintained and troubleshooted Network Equipment (i.e
  • Routers, firewalls, network switches etc)
  • Cisco/Checkpoint/Juniper/Citrix/Vyos
  • Ensured the stability, integrity, and efficient operation of the systems that support business functions by monitoring, supporting, maintaining and optimizing the network infrastructure
  • Managed network performance tuning and network security
  • Identified, communicated, and resolve issues in a timely manner in order to meet predefined SLAs
  • Provided guidance to the System/Network Administrator
  • Contributed to meeting INTRALOT’s Performance Standards targets
  • Worked with stakeholders to define business requirements and associate these with the system development goals
  • Provided input for the CAPEX and OPEX budgets
  • Proposed solutions for incident mitigation
  • Conducted research on hardware and telecommunications products to justify recommendations and to support purchasing efforts
  • Performed daily systems operations, Integrate servers, including database, applications servers and their associated software into enterprise systems
  • Performed proactive maintenance actions
  • Ensured system availability and connectivity of all servers, middleware software, and other applications
  • Monitored and tested the overall performance of the network infrastructure
  • Prepared and delivered system performance statistics and reports
  • Installed, managed and maintained all remote site and in-house networks
  • Ensured compatibility and interoperability of in-house and remote site networks
  • Designed and performed network and security audits, network high availability and backup procedures, and other recovery processes in accordance with the company’s disaster recovery and business continuity strategies
  • Provided basic onsite or remote training on Network Systems support, configuration, troubleshooting and daily Network Operations
  • Provided written documentation on describing the Network Architecture, Datacenter Network Systems Operation and Monitoring Procedures
  • Redesigned and maintenance of WAN, LAN and supporting infrastructure

Information Security Engineer

Healthcare Holdings Limited
Wellington, NEW ZEALAND
03.2018 - 04.2019
  • Micro segmenting east/west traffic through trend micro as part of the overall healthcare security framework
  • Made sure that we met the NIST Security framework
  • Administered the end-to-end security across multiple platforms, access points and devices
  • Practiced security concepts including MS operating systems, desktops, networks and applications
  • Developed ICT security solutions and experience in proactively monitoring potential risk and security issues
  • Undertook key streams of security project work, in particular for Endpoint Security Services
  • Penetration testing
  • Developed, managed and maintained IPS/IDS and application whitelisting policies
  • Kept an oversight of activities connected to the prioritization and response to cyber security events and incidents as required
  • Contributed to security research and threat analysis that enabled the team to build on their current knowledge, developed further skills, published findings and built on awareness and information sharing
  • Identifying and resolving security incidents following agreed procedures
  • Investigating and identifying security breaches in accordance with established procedures and recommending any required actions
  • Helped HealthcareNZ meet the HISO 10029:2015 Healthcare Information Security Framework
  • Attended Trend Micro CloudSec to learn better ways of protecting a healthcare environment following New Zealand Healthcare frameworks
  • Implemented DLP for email, endpoints using proofpoint
  • Implemented the Imperva camourflage data masking solution
  • Implemented the Azure ATP security solution leveraging on-prem Active Directory signals to identify, detect, and investigate advanced threats, compromised identities, and malicious insider actions
  • Implemented this to meet the HISO 10029:2015 framework
  • Within Azure ATP I Administered and monitored users, entity behavior and activities with learning-based analytics
  • Within Azure ATP I protected user identities and credentials stored in Active Directory
  • Within Azure ATP I provided clear incident information on a simple timeline for fast triage
  • Implemented the Azure AIP security solution as part of the HISO 10029:2015 framework requirement
  • Within Azure AIP I applied classification to documents and emails
  • Within Azure AIP I used Azure RMS to protect business applications and information protection solutions from software vendors both on-prem and in the cloud
  • Within Azure AIP I integrated AIP with end user workflows allowing users to select labels for correct classification
  • Implemented the Azure CASB for log collection, api connectors and reverse proxy
  • Within Azure CASB I discovered and controlled the user of shadow IT
  • Within Azure CASB I protected sensitive information anywhere on the cloud
  • Within Azure CASB I protected HHL against cyber threats and anomalies
  • Within Azure CABS I assessed the compliance of all cloud applications

Senior System Administrator

Healthcare Holdings Limited
Wellington, NEW ZEALAND
01.2018 - 04.2019
  • Administering the end-to-end security across multiple platforms, access points and devices
  • Administering and maintaining our Skype for Business Environment
  • Administering and maintaining our test o365 environment
  • Administering and maintaining our test Azure environment
  • Practicing security concepts including MS operating systems, desktops, networks and applications
  • Being a point of escalation and provide 3rd level technical support where applicable
  • Contributing to internal process and procedure improvements such as; reporting, event and incident handling procedures and response plans etc
  • Maintaining, building and administering all our physical and virtual Windows Server 2008/2012 R2 Server Environment – Active directory, dns, group policy etc
  • Maintaining and administering our Exchange 2013 Environment + our new o365 Hybrid Environment which we currently only have our ICT department migrated on for testing purposes
  • Maintaining and administering our Network Infrastructure – VLAN’s, Layer 2/3 routing, Firewalls etc and maintaining QoS
  • (Cisco 2960s Switches, Cisco 800 Series Routers, HP Switches, Microtik routers, Fortinet 300D and FortiGate VM64)
  • Maintaining our Backup and disaster Recovery – currently using Shadow Protect and Veeam backup/restore softwares
  • Using ITIL-based principles to manage changes and incident management scenarios
  • Updating and maintaining our knowledgebase
  • Part of the cloud migration team that migrated all infrastructure platform into the cloud
  • Part of the WAN migration team that migrated our current WAN from one provider to another
  • Keeping an eye out for any network notifications using our OP Manager Network monitoring tool
  • Applying and maintaining specific security controls as required by organisational policy and local risk assessments to maintain confidentiality, integrity and availability of business information systems and to enhance resilience to unauthorised access
  • Reviewing capacity, performance, availability and other operational metrics and taking appropriate action to ensure corrective and proactive maintenance of storage and backup systems to support the requirement to protect business information
  • Preparing and maintaining operational procedures and providing technical expertise and appropriate information to the management
  • Effectively meeting client needs; building productive client relationships; taking responsibility for client satisfaction and loyalty
  • Setting high standards of performance for self and others; assuming responsibility and accountability for successfully completing assignments or tasks; self- Imposing standards of excellence rather than having standards imposed
  • Consistently maintaining high levels of activity or productivity; operating with Drive, effectiveness, and determination over extended periods of time.

System Administrator

Healthcare Holdings Limited
Wellington, NEW ZEALAND
09.2016 - 01.2018
  • Maintaining, building and administering all our physical and virtual Windows Server 2008/2012 R2 Server Environment
  • Maintaining and administering our Exchange 2013 Environment
  • Maintaining and administering our Network Infrastructure – VLAN’s, Layer 2/3 routing, Firewalls etc and maintaining QoS
  • Maintaining our Backup and disaster Recovery – currently using Shadow Protect and Veeam backup/restore soft wares
  • Using ITIL-based principles to manage changes and incident management scenarios
  • Updating and maintaining our knowledgebase
  • Part of the cloud migration team that migrated all infrastructure platform into the cloud
  • Part of the WAN migration team that migrated our current WAN from one provider to another
  • Investigating and identifying security breaches in accordance with established procedures and recommending any required actions
  • Keeping an eye out for any network notifications using our OP Manager network monitoring tool
  • Applying and maintaining specific security controls as required by organisational policy and local risk assessments to maintain confidentiality, integrity and availability of business information systems and to enhance resilience to unauthorised access
  • Reviewing capacity, performance, availability and other operational metrics and taking appropriate action to ensure corrective and proactive maintenance of storage and backup systems to support the requirement to protect business information
  • Preparing and maintaining operational procedures and providing technical expertise and appropriate information to the management.

Network Engineer

Victoria University of Wellington
Wellington, NEW ZEALAND
05.2015 - 09.2016
  • Configuring new switches and routers to either replace a faulty one or adding one to a subnet when needed
  • Making fibre changes as part of a new network zoning project
  • Migrating old switches onto nexus switches
  • Livening ports for new PC’s and desk phone installations
  • Patching new ports through communication cabinets for PC’s, printers and desk phones and other network devices
  • Creating and allocating new extensions through IPFX phone systems
  • Patching analogue and digital landline phones to staff offices
  • Configuring IP phones and installing them on customer sites for use
  • Troubleshooting network performance around the campus
  • Troubleshooting network failure around the campus
  • Troubleshooting telecommunication issues ie VOIP phones and standard phones
  • Setting up DHCP reservations and assigning ip addresses to user devices through solar winds when requested by users eg network printers
  • Worked on a printer migration project configuring all printers to use DHCP

Network Engineer

Kordia Limited
Wellington, NEW ZEALAND
02.2015 - 05.2015
  • Provided Tier1 technical support; assisted users facing network problems
  • Performed advanced troubleshooting, diagnostics and provided tier/level-1 solutions to network failures
  • Overall administration of Cisco IT infrastructures – Cisco switches, routers, VOIP telephony, QoS, security applications, firewalls and network protocols
  • Keeping an eye out for router and switching alarms on the FMS device monitoring tool
  • Liaised with 3rd party vendors for WAN Circuit fibre issue escalations i.e
  • Chorus, FX Networks & Vodafone
  • Carried out level 2 router and switching troubleshooting
  • Reconfigured routers and switches if needed
  • Assisting level 3 techs and field services techs with router and switching issues on various incidents
  • Worked alongside level 3 techs on ongoing network projects
  • Assisted with subnetting new networks with the architecture team for ongoing network projects
  • Configured a designed topology on a new network working overtime with the level 3 networks team and architecture team
  • Logging and updating jobs through Remedy ticket logging tool
  • Managed installation, configuration and administration of Cisco equipment in IT architecture of organization
  • Configured IT LAN/WAN elements and held responsibility of maintaining and monitoring performance of network
  • Looked after overall customer WANs and LANs issues

Service Desk Analyst

Parliamentary Services
Wellington, NEW ZEALAND
01.2013 - 01.2015
  • General level 1 & 2 IT support to all parliamentary users
  • Priority 1 support to all Members of Parliament and their executive assistants
  • General Hardware and software support
  • Telco support and device builds ie ipads, iphones, android devices and windows tablets
  • All active directory support
  • Level 1 networks support
  • Level 1 Applications support
  • Processing requests from Parliamentary users
  • Logging and updating all incidents and requests through R12 logging system
  • Floor walking entire parliament buildings assisting users face to face with any IT related issues
  • Escalating issues to appropriate teams if level 1 and 2 support has been carried out
  • Meeting set SLAs

Service Desk Analyst

Unisys (Asia Pacific) New Zealand Limited
Wellington, Central
01.2012 - 12.2012
  • NEW ZEALAND Reporting to Service Desk, LEVEL 1 AND 2 ANALYST MAIN DUTIES:-
  • Supporting Clients across Asia Pacific (AU, NZ, Pacific Islands)
  • Responsible for 1st & 2nd level technical support of hardware, software and applications
  • Responsible for consistent achievement of first contact resolution performance metric
  • Responsible for following up cases/issue and requests to completion through BMC Remedy logging tool
  • Responsible for creating and updating relevant process and procedure documentation based on ITIL V3 service delivery, transition and process
  • Responsible for liaising with Internal support groups and external vendors
  • Responsible for working to achieve team wide service level agreements
  • Responsible for Initiating problem management workflow process
  • Responsible for Accurate documentation of incidents and problems
  • My Referees Available on request

Education

CCNA Network Fundamentals Certificate -

01.2014

MCSE Configuring Windows 7 Certificate -

01.2014

MCSE Supporting Windows 7 Certificate -

01.2014

MCSE Configuring Windows 8.1 Certificate -

01.2014

Enabling and Managing Office 365 -

01.2014

CCNA WAN/LAN Technologies Certificate -

01.2011

ITIL Version 3 Foundation Certificate -

01.2011

CCNA Routing Protocols Certificate -

01.2010

CCNA Switching Protocols Certificate -

01.2010

Cambridge Certificate in Business Fundamentals -

01.2008

Bachelor’s - information technology

Wellington Institute of Technology
Wellington
01.2008

NCEA Level 3 -

Tawa College
Wellington
01.2007

NCEA Level 2 -

Tawa College
Wellington
01.2006

NCEA Level 1 -

Tawa College
Wellington
01.2005

Skills

  • Python
  • Zscaler
  • Crowdstrike
  • Azure Sentinel
  • Splunk
  • AWS
  • Google Cloud
  • Qualys VMDR
  • Palo Alto Cortex XSOAR
  • Azure Cloud
  • Cisco
  • Checkpoint
  • Citrix
  • CCPA
  • Sumologic
  • Kubernetes
  • Linux
  • DevOps
  • CISSP
  • Automation
  • FedRAMP
  • Azure DevOps
  • Microsoft Defender
  • AWS
  • O365
  • ITIL
  • Windows/Linux
  • Fortinet
  • Trend micro
  • Symentec MSS
  • MITREATT&K
  • Palo Alto
  • SQL
  • Oracle
  • Pentest
  • Okta
  • OWASP Top 10
  • Nessus Tenable
  • LogRhythm (SIEM)
  • Vormetric Database encription
  • Proofpoint Protection Server
  • Imperva WAF
  • Palo Alto Traps
  • InSight VM Security
  • KnowBe4
  • ISO-27001
  • Java

Timeline

Senior Principal Security Architect

Melton City Council
09.2023 - Current

Senior Security Engineer - (Contract)

Metro Trains
03.2023 - 09.2023

Senior Security Engineer - (Contract)

Victoria University
09.2021 - 03.2023

Senior Security Engineer (Contract)

Bupa Global
09.2020 - 09.2021

Information Security Analyst - (Contract)

Catholic Church Insurance Australia
03.2020 - 09.2020

Security Engineer - (Contract)

Healthscope Corporate Australia
09.2019 - 03.2020

Network/Security Engineer - (Contract)

Intralot Gaming Services Australia
04.2019 - 09.2019

Information Security Engineer

Healthcare Holdings Limited
03.2018 - 04.2019

Senior System Administrator

Healthcare Holdings Limited
01.2018 - 04.2019

System Administrator

Healthcare Holdings Limited
09.2016 - 01.2018

Network Engineer

Victoria University of Wellington
05.2015 - 09.2016

Network Engineer

Kordia Limited
02.2015 - 05.2015

Service Desk Analyst

Parliamentary Services
01.2013 - 01.2015

Service Desk Analyst

Unisys (Asia Pacific) New Zealand Limited
01.2012 - 12.2012

CCNA Network Fundamentals Certificate -

MCSE Configuring Windows 7 Certificate -

MCSE Supporting Windows 7 Certificate -

MCSE Configuring Windows 8.1 Certificate -

Enabling and Managing Office 365 -

CCNA WAN/LAN Technologies Certificate -

ITIL Version 3 Foundation Certificate -

CCNA Routing Protocols Certificate -

CCNA Switching Protocols Certificate -

Cambridge Certificate in Business Fundamentals -

Bachelor’s - information technology

Wellington Institute of Technology

NCEA Level 3 -

Tawa College

NCEA Level 2 -

Tawa College

NCEA Level 1 -

Tawa College
Sydney Kanda