Skip to main content

Professional Skills

As a technology professional, I’ve developed expertise across multiple technical domains throughout my career. This skills showcase highlights both my technical capabilities as well as professional skills.

Skills

Secure Systems Architecture

4+ years Architecting secure, resilient systems using Secure by Design and Zero Trust principles aligned to NIST SP 800, ISO27000 Series, JSP 440 and JSP 604 documentation across multi‑classification and high‑assurance environments.

Enterprise Network Architecture

8+ years Designing high‑availability, multi‑site and geo‑redundant networks for mission‑critical operations, including hub‑and‑spoke and multi‑domain architectures.

Enterprise Networking

8+ years Design and operation of campus and data centre networks using Cisco and Juniper platforms, including routing, switching and secure connectivity for 50–250+ user sites.

Enterprise Routing

8+ years Implementing and troubleshooting dynamic routing (BGP, OSPF, EIGRP, MPLS) in complex, multi‑site environments supporting deployed and fixed infrastructure.

Remote Access & VPN Architecture

8+ years Designing and operating IPsec and remote‑access VPN solutions (including DMVPN‑style designs) to provide secure reach‑back and remote access into high‑security domains.

Enterprise Network Security

8+ years Delivering firewalling, segmentation, VPNs and network threat prevention using next‑generation firewalls and network security platforms in sensitive environments.

IT Security Operations & Incident Management

4+ years Running security operations, incident response and disaster recovery across multi‑tenant MSSP and Defence environments, with strong focus on process and communication.

Linux Systems Engineering

4+ years Designing and operating Linux‑based services and infrastructure across CentOS, Alma and Ubuntu, including integration into secure enterprise environments.

Linux Administration

11+ years Administering, hardening and troubleshooting Linux servers and endpoints, including patching, configuration management and secure baseline implementation.

Windows Server & Domain Services

11+ years Implementing and managing Active Directory, Group Policy, PKI/CA, IAM and SSO/WAF capabilities for secure enterprise domain environments.

Virtualisation & Software‑Defined Infrastructure

8+ years Designing and operating virtualised data centre and edge platforms using VMware vSphere/VCF, NSX, vSAN and Microsoft Hyper‑V.

Infrastructure & Telemetry Monitoring

4+ years Building and operating infrastructure telemetry and health‑monitoring solutions, including dashboards and alerting for servers, networks, applications and OT systems.

SIEM Architecture & Log Monitoring

4+ years Designing and implementing SIEM platforms to collect, normalise and analyse logs from diverse sources, providing centralised visibility and alerting.

Detection Engineering

4+ years Designing and tuning detections, correlation rules and use‑cases across SIEM and NSM platforms to improve threat visibility and reduce false positives.

Network & Host Automation

4+ years Automating build, configuration and operations workflows using Ansible, PowerShell, Bash and Python to reduce manual effort and configuration drift.

CI/CD & DevOps Practices

4+ years Implementing CI/CD pipelines and GitOps workflows to provide consistent, auditable delivery of infrastructure, configuration and security policies.

Cloud Architecture

3+ years Designing and deploying secure workloads across Azure, GCP and AWS, with a focus on identity, least privilege, network security and compliance in cloud environments.

Cloud Security

3+ years Ensuring and enhancing security controls surrounding workloads deployed within cloud native environments.

Microsoft 365

Related Experience: Lead Cyber Security Engineer
1+ years Architecting and operating secure M365 environments (Exchange Online, SharePoint, OneDrive, Teams) in both cloud-native and hybrid scenarios, including identity, access and conditional access controls.

Identity & Application Integration

Related Experience: Lead Cyber Security Engineer
1+ years Designing and implementing application identities and service principals to enable secure multi‑tenant authentication and authorisation across M365/Azure/Entra, using modern methods such as certificate‑based auth and OAuth2/OIDC.

Cloud-native Security Monitoring

Related Experience: Lead Cyber Security Engineer
1+ years Integrating cloud platform logs and signals (e.g. M365, Azure, AWS, GCP) into central SIEM and detection pipelines, enabling cross‑tenant and cross‑platform visibility for MSSP operations.

SaaS Platforms

Related Experience: Lead Cyber Security Engineer
1+ years Hardening and configuring SaaS platforms (with emphasis on Microsoft 365 and Google Workspace) to enforce data protection, identity security and safe collaboration for diverse customer environments.

IT Service Management (ITIL)

8+ years Applying ITIL practices for incident, change and problem management, service reporting and continual improvement in operational environments.

Process Design & Scalability

4+ years Designing and documenting processes, workflows and runbooks that enable scalable, repeatable and high‑quality service delivery and onboarding.

Technical Leadership & Mentoring

8+ years Leading cross‑functional teams in demanding operational contexts and mentoring engineers at all levels to build technical capability and autonomy.

Stakeholder Communication

12+ years Translating complex technical concepts for non‑technical stakeholders, senior officers and business leaders through clear presentations, whitepapers, reports and briefings.

Problem Solving & Innovation

12+ years Delivering first‑of‑type solutions under tight timelines and constraints, with measurable improvements in capability, cost efficiency and resilience.

Time Management & Delivery Under Pressure

12+ years Consistently delivering high‑impact solutions against tight deadlines in live operational, exercise and multi‑stakeholder environments.

Technologies

Networking

8+ years Cisco IOS/NX‑OS, Cisco Catalyst, Cisco Nexus, JunOS, BGP, OSPF, EIGRP, MPLS, IPsec VPN, DMVPN topologies, remote‑access VPNs.

Network Security

8+ years Cisco Firepower, Cisco ASA, Palo Alto NGFW, pfSense, Sophos NGFW, VPN concentrators, segmentation, secure remote access, RSA SecurID.

Detection & Network Security Monitoring

4+ years Corelight, Zeek, Suricata, Arkime, network security monitoring pipelines and enrichment.

Infrastructure & Telemetry Monitoring

4+ years Grafana, Zabbix, System Centre Operations Manager, InfluxDB, Prometheus, Telegraf, OT and infrastructure health dashboards.

SIEM & Log Analytics

3+ years Splunk (including ITSI), ELK‑style stacks, log collection/normalisation, correlation and alerting.

Virtualisation & Platforms

8+ years VMware vSphere, VMware Cloud Foundation (VCF), VMware NSX, vSAN, Microsoft Hyper‑V, Proxmox.

Automation & Scripting

8+ years Ansible, PowerShell, Bash, Python, Git, GitLab CI and related CI/CD tooling, Terraform, Packer, Hashicorp Vault.

Identity & Access

11+ years Entra, Active Directory, Group Policy, PKI/Certificate Services, ADFS, IAM, SSO, WAF‑integrated authentication.

Cloud

3+ years Microsoft 365, Entra ID (Azure AD), Azure Arc, Azure App Registrations / service principals, AWS (core compute/networking), Google Cloud Platform (GCP), Google Workspace.