SHUBHAM PATIL
Philadelphia, PA • 571-***-**** • *****.********@*******.*** • LinkedIn • GitHub
Highly skilled and proactive Cloud Security Consultant/Analyst with extensive experience in cloud security operations, vulnerability management, and compliance frameworks. Expertise in AWS, Azure, and GCP, integrating advanced CSPM tools and automating security processes. Proven track record in enhancing cloud security posture and regulatory adherence for top-tier clients, ensuring robust data protection and access control. EDUCATION
Temple University, Philadelphia, PA Sep 2022
Master of Science in IT Auditing and Cyber Security Penn State University, Middletown, PA May 2018
Bachelor of Science in Information Sciences and Technology
● Minor in Business Administration and Security Risk Analysis SKILLS & OTHER
Scripting: Python, Bash, PowerShell
Cloud: Amazon Web Services, Microsoft Azure, Google Cloud Platform, Oracle Cloud Infrastructure Cloud Security Posture Management (CSPM): Wiz.io, CrowdStrike Falcon Discover, Laceworks, Microsoft Defender for Cloud Apps, Microsoft 365 Defender, Microsoft Sentinel Identity and Access Management: AWS IAM, Okta, Duo Security, Centrify (Delinea) Automation Tools: Secure CI/CD pipeline, Ansible
Vulnerability Management: Tenable, TrendMicro, Qualys Compliance Frameworks: NIST 800-53, CIS Benchmarks, OWASP, CWE, ISO 27001 Network Security: AWS (GuardDuty, WAF, Shield, Network ACLs, VPC Security, Route 53 Resolver DNS Firewall), Fortinet VPN, AWS Client VPN setup with Duo RADIUS
Data Protection: AWS KMS, Amazon Macie, AWS Secrets Management, AWS Certificate Manager PROFESSIONAL EXPERIENCE
ERNST & YOUNG, Philadelphia, PA Sep 2022 - Jan 2024 Cloud Security Consultant/Analyst
● Integrated CrowdStrike Falcon CSPM via APIs into Azure, AWS, and GCP with 100% coverage and continuous monitoring.
● Created fine-grained IAM policies using AWS Access Analyzer, ensuring least privilege access and robust cloud security.
● Developed a NIST 800-53 aligned compliance playbook for Azure Cloud, enhancing audit and regulatory adherence.
● Configured Check Point firewall logs to feed into Microsoft 365 Defender, identifying 8,120 risky SaaS applications.
● Identified privileged users in AWS using Wiz CSPM, generating detailed security reports to enhance access control.
● Conducted control framework gap analysis for NIST compliance, identifying critical security controls for improvement. DELOITTE, Mechanicsburg, PA July 2018 - July 2021
Cloud Security Operations Specialist
● Designed AWS infrastructure for EC2, S3, VPCs, enhancing cloud security for Government and Public Services Clients.
● Deployed 100+ Red Hat Linux, Windows servers with security configs, significantly improving post-deployment compliance.
● Achieved 80% CIS compliance using Ansible playbooks, ensuring secure, hardened environments across cloud platforms.
● Configured AWS VPNs for sandbox accounts, providing secure, isolated environments for developer testing activities.
● Managed 500+ users with Centrify PAM, deploying Active Directory on domain controllers for enhanced access security.
● Maintained FortiGate VPN with Duo Radius for remote users, securing remote access and enhancing user management. CERTIFICATIONS
● ISC2 Associate Certified Cloud Security Professional (CCSP)
● ISC2 Certified in Cybersecurity
● AWS Certified Developer - Associate
● AWS Certified Cloud Practitioner