Ryan Wilson
Security Engineer
Des Moines, IA (open to remote)
Summary
Security-focused engineer with experience across networking, systems administration, and infrastructure operations. Specialized in enterprise networking, Linux systems, and cloud environments, with hands-on experience in a variety of technologies including FortiGate NGFW, Cisco Firepower, CrowdStrike Falcon, and Snort. Currently pursuing a B.S. in Cybersecurity and Information Assurance. Focused on security engineering, infrastructure security, and AI-driven security systems.
Technical Skills
Vulnerability assessment, threat detection, incident response, network segmentation, Fortinet NGFW, Cisco Firepower, Snort, CrowdStrike Falcon, Splunk, Wireshark, Nmap, Burp Suite
Linux administration, Windows Server, Active Directory, system hardening, VMware, Proxmox, Hyper-V, Ubuntu, RHEL, Debian, Kali, AlmaLinux, SELinux
JavaScript/TypeScript, Python, Go, C, C#, PHP, Node.js, React, REST APIs, GraphQL, Supabase, PostgreSQL, MySQL, MariaDB
TCP/IP, VLANs, VPNs, routing & switching, DNS, DHCP, Cisco, Juniper, Aruba, pfSense, Riverbed, Talari SD-WAN
AWS, Azure, GCP, Terraform, Ansible, Docker, Kubernetes, VPC networking, WAF, CloudFront/CDN, CloudWatch
Professional Experience
- Develop web applications using React and Next.js, along with WordPress sites for small business clients
- Project specific, full-stack applications using Next.js, Vue/Nuxt, SvelteKit, and Laravel
- Build backend APIs and services using Node.js, Express, GraphQL, tRPC, and Supabase
- Deploy applications across AWS, Vercel, Netlify, Linode, and DigitalOcean
- Implement CI/CD pipelines, CDN distribution, and Redis caching with Upstash
- Design application data layers using PostgreSQL, SQLite, MongoDB, and MariaDB
- Manage full project lifecycle including client onboarding, architecture, deployment, and support
- Administered VMware vSphere infrastructure (vCenter, ESXi) across hybrid environments
- Managed AWS workloads and Cisco Meraki cloud-managed networking
- Deployed and maintained Fortinet NGFW policies and site-to-site VPN infrastructure
- Supported Cisco and Aruba networking equipment across enterprise locations
- Implemented CrowdStrike Falcon endpoint protection across enterprise endpoints
- Provided IT consulting and infrastructure support for small and mid-sized businesses
- Managed Windows Server and Linux environments including Active Directory and Group Policy
- Supported AWS and Microsoft Azure infrastructure deployments
- Performed infrastructure troubleshooting, system upgrades, and maintenance
- Assisted clients with network configuration, system administration, and operational support
- Managed Fortinet Security Fabric deployments, Cisco ASA, and Cisco Firepower firewalls
- Implemented Riverbed SteelHead WAN optimization appliances
- Deployed Talari SD-WAN solutions
- Administered Linux servers and automation scripts
- Maintained strict SLA requirements
- Supported rollout of Casey's online ordering platform across retail locations
- Assisted with incident triage, ticket resolution, and remote troubleshooting
- Provided technical support for store systems and retail infrastructure
- Worked with deployment teams during rollout of new ordering systems
- Diagnosed and triaged server and hardware failures across datacenter clusters
- Performed Cisco Nexus switch configuration and network troubleshooting
- Assisted with rack deployments and server cluster provisioning
- Maintained compliance with strict Microsoft SLAs for outages and hardware failures
Security Projects
- Built a local static analysis and dependency vulnerability scanning tool for identifying security issues in source code
- Implemented multi-phase scanning (baseline + deep analysis) to refine findings and reduce false positives
- Integrated dependency vulnerability lookups using OSV.dev to detect known CVEs in project dependencies
- Developed rule-based detection for insecure coding patterns, exposed secrets, and misconfigurations
- Generated structured findings with severity, file location, and remediation guidance aligned to OWASP and CWE standards
- Released a modular CLI-based security assessment suite for attack-surface discovery, vulnerability scanning, and reporting workflows
- Built and integrated multiple products including BitScope (asset discovery), BitProbe (web vulnerability scanning), BitReport (report aggregation), and BitAI (verification tooling)
- Developed plugin-based scanning pipelines for web application analysis, TLS misconfiguration detection, exposed service discovery, and CVE identification
- Implemented automated crawl and attack-surface enumeration workflows with scoped target handling and service fingerprinting
- Designed CI/CD- and Docker-compatible execution paths for portable security testing and automation workflows
- Built multi-format reporting outputs (JSON, Markdown, PDF, HTML) for remediation tracking and operational analysis
- Structured the platform around extensible orchestration to support future offensive security and monitoring modules
Education
Certifications
- ISC2 Certified in Cybersecurity (CC)
- Riverbed RCPE Associate (Expired)
- LogicMonitor Certified Professional (Expired)
- Fortinet NSE3 (Expired)