Résumé
Security Architect with 11+ years designing and operating enterprise security infrastructure across telecom, MSSP, and Fortune 500 environments. Deep expertise in zero-trust architecture, SASE/SSE (Prisma Access), and cloud security on AWS and Azure. Proven track record translating security requirements into scalable, auditable designs — reducing DR deployment time by 92% and accelerating firewall migration timelines by up to 50% through automation. ISC2 CISSP certified; active Palo Alto Networks and AWS certifications.
Experience
Nov 2022 – Present
Senior Security Consultant & Security Architect
Orange Cyberdefense · Atlanta, GA
- Architected zero-trust security solutions for large-scale enterprise clients — defining security boundaries, access policies, and segmentation strategies aligned to NIST CSF and CIS Controls.
- Designed and delivered SASE/SSE strategy leveraging Palo Alto Networks Prisma Access, enabling consistent policy enforcement for hybrid and remote workforces across client environments.
- Eliminated a 4-hour manual DR process — re-architected Azure Disaster Recovery infrastructure and automated provisioning via ARM templates and GitHub Actions, cutting deployment to under 20 minutes (92% reduction).
- Scaled the cloud firewall fleet from zero to 30+ PA-VM instances in Azure, fully automated via bootstrap configurations, Panorama templates, and Device Groups, with zero post-deployment manual intervention.
- Automated firewall migration workflows using vendor tooling and custom scripting, compressing deployment timelines by 30–50% and reducing human error exposure.
- Hardened enterprise security posture by implementing SSL/TLS inspection and phishing-resistant MFA — capabilities previously absent from client environments.
- Led and mentored two security teams (10+ engineers), owning hiring, performance reviews, and skills development aligned to current threat frameworks.
Aug 2015 – Oct 2022
Security Engineer
Orange Cyberdefense · Atlanta, GA
- Managed security and network operations for a diverse MSSP portfolio — resolving complex L2/L3 incidents and serving as escalation point for advanced troubleshooting across multi-vendor environments.
- Designed and delivered firewall policy architectures (Palo Alto, Fortinet) ensuring least-privilege access and compliance with client security standards.
- Conducted capacity and performance assessments using FortiSIEM and FortiAnalyzer, translating telemetry into actionable hardening recommendations.
- Secured third-party vendor access via IPsec tunnels, maintaining auditability and enforcing vendor access control policies.
- Performed network packet analysis (Wireshark, tcpdump) and protocol-level troubleshooting across TCP/IP, DNS, BGP, and routing environments to isolate complex incidents.
Certifications
- ISC2 CISSP
ISC2 · Sep 2023 · Credential ID 993972
- AWS Certified Solutions Architect – Associate
Amazon Web Services · SAA-C03 · Renewal in progress (2026)
- Palo Alto Networks Certified Next-Generation Firewall Engineer
Palo Alto Networks · Mar 2025
- Palo Alto Networks Certified Network Security Professional (PCNSP)
Palo Alto Networks · Mar 2025
- Palo Alto Networks Certified Network Security Analyst (PCNSA)
Palo Alto Networks · Jun 2025
- Microsoft Certified: Azure Network Engineer Associate (AZ-700)
Microsoft · Feb 2023
- Microsoft Certified: AZ-900, SC-900
Microsoft · 2023
- Check Point Certified Security Administrator (CCSA R81.20)
Check Point · Dec 2023
- Fortinet NSE 7
Fortinet · 2019
- Fortinet NSE 5
Fortinet · 2019
- Fortinet NSE 4
Fortinet · 2017
- ITIL v3 Foundation
AXELOS · May 2013
- Cisco CCNA Security
Cisco · 2019 · Expired
- Cisco CCNA Routing & Switching
Cisco · 2019 · Expired
Professional Development
- Palo Alto Networks SSE / Prisma Access Architecture Training
Jan 2026
- AWS Certified Security – Specialty (SCS-C02)
In preparation
Education
2009 – 2012
Bachelor of Science — Network & Telecommunications
Ecole Pratique des Hautes Etudes Commerciales (EPHEC) · Belgium