Ulises Galeano
Details
Lawrence North
2008 : 2011
Orr Community Academy High School Chicago
2008 : 2011
Mastercard
Director, Information Security Engineering
• Evaluate new mergers and acquisitions to uncover security gaps, risks, and opportunities across all areas of security including organizational, process, tools, change management, architecture, hardware, software, data, hosting, SDLC, physical security and so on
• Perform security assessments and threat modeling of assets, including various blockchain protocols, smart contracts, and other distributed ledger technologies.
• Partner with software engineering teams to advise on code and infrastructure architecture to meet standards and regulations.
• Contribute code to DevSecOps pipelines leveraging several Software Composition Analysis tools to detect and remediate vulnerable software.
• Provide Cloud Security master level advice and mentorship related to all our activities including Information as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS) initiatives, projects, plans, and reviews with a focus on Amazon Web Services (AWS) and Microsoft Azure.
• Provide security mentorship and assistance to development teams using the concepts of DevSecOps
• Participate in working groups of domain specialists for definition and review of security standards, guidelines, principles, governance, and controls
2022 : 2022
Mastercard
Principal Information Security Engineer
• Work in DevSecOps environment, leveraging the use of CI/CD tools and processes to bring security directly to our development teams.
• Responsible for reviewing and assessing the risk of third-party applications, as part of our software business case process, creating Threat Models when applicable.
• Work with software development teams to define alternatives and recommend optimal solutions to meet security and regulatory requirements in the design of new enhanced systems
• Responsible for security requirements, standards, and reference architectures to comply with policies and technical standards. (PCI, ISO, NIST)
• Responsible for providing security consulting, recommending policy or strategic direction on a global scale with attention to detail and customer focus
• Communicate project issues and status in a concise, accurate, and professional manner for senior leadership consumption, escalating blocking issues when appropriate.
• Strong interpersonal, communication, and presentation skills necessary for interaction with business leaders and teams across all levels of the organization
• Determine security capabilities, gaps/overlaps, and opportunities for improvements.
• Manage multiple security initiatives across multiple platforms, networks, and/or applied security technologies
2021 : 2022
Mastercard
Lead Information Security Engineer
• Serve as a subject matter expert for all thing’s CI/CD with a focus on Chef and Saltstack
• Develop and drive standardized patterns that support the cultural, technology, and process transformations of applications and infrastructure teams at Mastercard.
• Act as a change agent via mentoring, code reviewing, pair programming, documenting, designing, and doing Proof of Concepts evaluations including vendor selection, test case definitions, and scoring criteria metrics based on industry-standard criteria.
• Part of a cross-team effort to engineer, promote and evangelize a DevOps mindset across the organization and realize new automation capabilities using Chef and Saltstack.
• Assist in bridging any gaps in knowledge to support Architecture, Software Engineering, and Operations teams implementing technology designs.
2018 : 2021
Mastercard
Lead Software Development Engineer
Contracted at Mastercard.
• Work across the organization to identify gaps in automation capabilities.
• Educate the development community by developing code examples, wikis, blog posts, screencasts, and customized training sessions.
• Ensure CI/CD offerings are developer-friendly and simple to consume.
• Serve as a subject matter expert for all things’ CI/CD.
• Help write Chef Cookbooks for several teams.
• Helped team troubleshoot Saltstack issues.
• Helped write Saltstack Modules currently used today by various teams.
2018 : 2018
TEKsystems
Infrastructure Automation Engineer
Skills
Amazon Web Services (AWS), Ansible, Blockchain, Chef, Cloud Computing, Cloud Security, Continuous Integration and Continuous Delivery (CI/CD), Cybersecurity, DevOps, DevSecOps, Docker Products, Github, Go (Programming Language), Information Security, Jenkins, Kubernetes, Linux, Networking, Python (Programming Language), Ruby, SaltStack, Smart Contracts, System Administration, Terraform, Windows, Technical Support, Software Installation, Troubleshooting, Servers, Routers, Switches, Desktop Computers, Laptops, OS X, Cabling, Printers, Cyber-security, Public Speaking, Magicians, Illusion, Mentalism, NLP, Printer Support
About
I am a passionate and experienced Blockchain Security and DevSecOps leader with a strong desire to make a positive impact on the world. I am committed to using my skills and experience to help businesses and organizations adopt blockchain technology safely and securely.
I am also a strong advocate for diversity and inclusion in the tech industry. I believe that everyone has something to contribute, and I am committed to creating a workplace where everyone feels welcome and respected.
If you are looking for a blockchain and DevSecOps leader who is driven, experienced, and passionate about making a difference, please feel free to contact me.