CV
Jeremy Hicks
Security Architect
Six years progressing from cloud security engineering to architecture and executive advisory at a fintech. Specializations: cloud IAM and policy-as-code, generative AI governance, and security controls for regulated environments. Open to remote Security Architect and CISO opportunities.
Work Experience
defi SOLUTIONS Sep 2019 - Present
Security Architect Aug 2021 - Present
- Designed self-service IAM governance for GitHub Actions to Azure using Workload Identity Federation, eliminating long-lived credentials across CI/CD pipelines; built policy-as-code CI gates enforcing RBAC allow-lists, scope limits, and naming conventions
- Developed AI governance framework: authored policies and standards, led security assessments of AI vendors, and implemented technical controls via CASB
- Advises VPs and CIO on security architecture for new technology initiatives; develops enterprise security standards; leads escalations on cloud IAM, SSO, and automation
- Application security testing using Burp Suite and OWASP ZAP; validation of external penetration test findings
- Database security: TDE, column-level encryption, data masking, tokenization, auditing, and access control design
- Mentors team of ~5 security engineers; leads weekly lunch-and-learn sessions; delivered companywide AI safety training
Lead Security Engineer Sep 2020 - Aug 2021
- Primary incident POC; post-incident forensic investigation; SAST/DAST tooling with CI/CD integration; technical audit
Security Engineer IV Sep 2019 - Sep 2020
- Implemented IAM controls (SSO, MFA, RBAC, PIM) and security automation via PowerShell and Azure Pipelines
- Managed CSPM, SIEM, endpoint detection, DLP, CASB, and vulnerability tooling in Azure
HookBang Jun 2017 - Sep 2019
Advanced Software Engineer Nov 2018 - Sep 2019
- Cloud infrastructure as code (AWS CloudFormation, Ansible); CI/CD maintenance; backend development in Node.js and Python
Software Engineer Jun 2017 - Nov 2018
- Mobile AR game development (Unity); serverless web apps (Python, AWS Lambda); automated software testing
NetBoundary Sep 2014 - Jul 2015
IT Security Analyst
- Security appliance monitoring (IDS/IPS, SIEM); incident response; PCI compliance reporting at a managed security service provider
Education
SMU Guildhall
Certificate in Digital Game Development, Software Development Specialization 2015 - 2017
UT Dallas
MS Applied Cognition and Neuroscience 2012 - 2014
BS Cognitive Science 2008 - 2012
Skills
- Cloud security architecture (Azure, AWS)
- Threat modeling and risk assessment
- Identity and access management, policy-as-code
- Regulatory frameworks and technical audit
- AI governance and vendor risk assessment
- Security automation (PowerShell, Python)
- Security standards development
- CSPM, SIEM, DLP, CASB operations
Certifications
- Certified Information Systems Security Professional (May 2022)