Work Experience#

Context:#

I am a CISSP and Red Hat Certified Engineer who builds and runs the security programs and cloud infrastructure that keep businesses operating. With nearly a decade of experience across the security lifecycle, my work centers on two things: Governance, Risk, and Compliance, and secure, performant, and cost-efficient cloud infrastructure. On the GRC side, I have led SOC 2 Type 1 and Type 2 programs, written the policies and procedures behind them, and passed rigorous audits with zero findings. On the infrastructure side, I architect and operate AWS environments that are secure by default, fast under real workloads, and economical to run. I have delivered these results for organizations across SaaS, critical infrastructure, government, education, and banking, and my focus is always the same: leave the client secure, compliant, and satisfied.

Experience:#

Founder & Principal Consultant, Brooks Security LLC#

April 2024 – Present · Part-time · Moscow, Idaho, United States · Remote

  • Independent consulting practice: Run Brooks Security LLC as an independent security and infrastructure consulting practice, serving multiple organizations across regulated industries.
  • SOC 2 and compliance delivery: Help clients build and maintain SOC 2 programs that pass the audit with zero findings.
  • Infrastructure and automation: Design and operate secure, cost-efficient AWS environments using Terraform and Ansible.

Senior Security & Systems Engineer, AvatarFleet#

Mar 2024 – Present · Full-time · Moscow, Idaho, United States · Remote

  • SOC 2 Type 2 accreditation: Led AvatarFleet through SOC 2 Type 1 and Type 2 accreditation by establishing comprehensive security policies and procedures, strengthening compliance, and building customer trust. Achieved SOC 2 Type 2 with no adverse findings.
  • Security program initiation: Developed and implemented AvatarFleet’s initial security program, including foundational policies, procedures, and a security-aware culture, in an early-stage startup environment.
  • Cloud security enforcement: Drove AWS security improvements through Terraform and Ansible, standardizing controls and automating compliance for a stronger security posture.
  • Enterprise infrastructure: Architected and built the organization’s enterprise infrastructure from the ground up, replacing legacy infrastructure with minimal downtime.

Lead Solutions Architect, Syxsense Inc.#

Mar 2023 – Mar 2024 · Full-time · Moscow, Idaho, United States · Remote

  • Hybrid and multi-cloud expertise: Led the design and implementation of security solutions across hybrid and multi-cloud environments, focusing on automation to streamline operations and enhance security.
  • Technical leadership and automation: Oversaw deployment of automated security solutions using Ansible and Python, reducing manual overhead and improving response times.
  • Strategic development contributions: Helped align product development with emerging cloud security trends and customer needs.
  • Industry advocacy: Served as a technical voice at industry events on security automation in hybrid and multi-cloud settings.

Senior Security Solutions Architect, Syxsense Inc.#

Apr 2022 – Mar 2023 · Full-time · Salt Lake City, Utah, United States

  • Solutions engineering: Designed and implemented tailored security automation solutions in critical infrastructure, leveraging Ansible and Python for integration of AWS-hosted EC2 workloads into the platform.
  • Vulnerability management: Developed vulnerability management frameworks for Linux servers in regulated on-premises environments, supporting customers with tens of thousands of endpoints under management.
  • Product support: Contributed to the platform user guide and technical customer support.
  • Platform engineering: Committed code (mostly Bash and Python) to improve Linux endpoint availability and reliability.

Solutions Architect, Syxsense Inc.#

Apr 2021 – Apr 2022 · Full-time · Salt Lake City, Utah, United States

  • Sales engineering: Helped bring more than 100 new logos to Syxsense through proofs of concept and RFI/RFP responses.
  • Solutions architecture: Co-architected deployments to match client environments.
  • Marketing initiatives: Developed and delivered educational webinars for the marketing team.

Associate Information Technology Analyst, Schweitzer Engineering Laboratories#

Sep 2020 – Apr 2021 · Full-time · Pullman, Washington, United States

  • Operations support: Supported Linux users across the organization.
  • Platform development: Created a standardized, domain-integrated Ubuntu Linux distribution for the company.
  • Security operations: Partnered with Security Operations to apply CIS benchmarks to Linux endpoints using Chef.

Information Technology Technician, Schweitzer Engineering Laboratories#

Aug 2018 – Sep 2020 · Full-time · Pullman, Washington, United States

  • Desktop support and migration: Provided desktop support and played a key role in the organization’s transition from Windows 7 to Windows 10.

IT Technician, Washington State University#

Nov 2016 – Aug 2018 · Part-time · Pullman, Washington, United States · On-site

  • Department IT support: Provided desktop and basic physical networking support in the Chemistry department while completing undergraduate studies.