As Technology Partner in FIS Global I am responsible for building and developing the Digital Identity Practice as part of Cyber Security services. The Digital Identity practice consists of PAM (Privileged Access Management), IGA (Identity Governance and Administration) and CIAM (Customer IAM). The current toolset in use for the following topics are as follows: IGA ? SailPoint IIQ, OMADA, MIM 2016, PAM ? CyberArk, CIAM ? ForgeRock and Transmit Security Microsoft Based Security ? On-Premise and Azure Cloud As part of the company leadership team, I am responsible for building, developing and administrating a team of 20+ people across Central and Eastern Europe. Daily, I am taking management and architectural role in various projects covering services such as assessment, design, implementation, and managed service across Europe with the technology stacks mentioned above. I have experience in various industries and expert knowledge in IAM/PAM best practices and compliance standards across widely regulated and non-regulated businesses. In the past 10+ years I have been involved in projects taking various roles from Implementation Engineer to Solution Architect for businesses in any size ? from small to large global companies spanned across the globe. My expertise and understanding of the overall IT Infrastructure and in-depth knowledge in Authorization, Authentication and Security allowed me to successfully deliver all those projects regardless of the project complexity, timeline, location or size. My strongest features are my devotion to work and desire to solve complex challenges with the highest quality, ability to lead teams and coordinate activities, ability to consult and discuss on every level from top management level through enterprise architecture down to in-depth technical discussions and low-level solution specific conversations with developers and engineers. In my current role, my main responsibilities include driving the line of business forward by developing new client relationships and delivering complex projects from Management and Architectural perspective including but not limiting to:
Important Clients
BS, IT Science
PU Paisii Hilendarsky
BSc, eng. in Aeronautic
TU Sofia
Certifications
2016
SAFe4
2009
CISA
2015
PMP
2012
TOGAF foundation
ITIL Lifecycle and Capability (ITIL® ATO Accredited Trainings)
Profile
A highly skilled and results-driven DevSecOps Engineer with over 6 years of experience in cloud security, application security, and automation across both on-premises and cloud environments (Google Cloud Platform and Azure). Adept at integrating security into every phase of the SDLC, from development to production, using a shift-left approach and CI/CD pipelines. Proficient in securing containerized applications with Kubernetes, managing secrets with HashiCorp Vault, and automating infrastructure with Terraform. Experienced in monitoring cloud environments with Google Cloud Security Command Center, Azure Sentinel, and implementing runtime security with tools like Falco and Sysdig.
A proactive advocate for best security practices, skilled in driving secure DevOps workflows through GitLab, ArgoCD, and Helm. Expertise in leveraging SAST, DAST, and IaC security tools to detect vulnerabilities early and remediate issues promptly. Proven ability to collaborate effectively in Agile environments, driving secure application delivery within SAFe and Scrum frameworks. Strong communicator, adept at bridging gaps between security, development, and operations teams to foster a security-first culture.
Adept in IT Service Management, with a proven track record of interfacing with external suppliers to manage support services, enforce Service Level Agreements (SLAs), and maintain compliance with company policies and security standards. Skilled in capacity planning, anticipating infrastructure needs, and providing operational support for security management functions.
Strong background in providing IT user support, with a collaborative approach to resolving complex technical issues. Committed to maintaining detailed service and application documentation, fostering knowledge sharing, and ensuring the continuous improvement of IT processes. Known for a proactive, problem-solving mindset and the ability to deliver high-quality results in dynamic, fast-paced environments. Seeking to leverage my technical expertise and strategic vision to contribute to a forward-thinking organization.
Known for a strategic mindset and meticulous attention to detail, they effectively led cross-functional teams to deploy secure systems that enhanced organizational resilience. Career marked by continuous learning and adaptation, as security architect consistently delivered solutions that met and exceeded client expectations. Help leading organizations use technology to drive greater bottom-line impact, increase agility, navigate business change, and transform IT so that it can respond to changing demands, to selects and develops general control activities over technology and to support the achievement of objectives.
Skills
OPERATING SYSTEMS, UTILITIES & VIRTUALIZATION TOOLS
Windows, Linux, OpenShift, VMware ESX SRM, Kubernetes (SUSE CaaSP), RedHat OpenShift , Pivotal PKS, Docker,( AKS, ARO, ECS, EKS, Faregate), Platform Virtualization (Hyper-V & ESX), SDDC, Software defined networks & Service meshes, etc.
NETWORK SYSTEMS & TECHNOLOGIES
Password Vaults, PKIs KMS, HSMs, FIDO, Yubikey, Windows Hallo, Zscaler, VPNs (IPsec) , TCP/IP, SNMP, DNS, Syslog (Time Seriees and Event Driven architecture) , Azure Virtual Network (Virtual Network (VNet), Virtual WAN, ExpressRoute, VPN Gateway, NAT Gateway, Azure DNS, Peering service, Azure Virtual Network Manager, Route Server, and Azure Bastion), Azure - Load Balancer, Private Link, DDoS protection, Firewall, Network Security Groups(NSG), Web Application Firewall, and Virtual Network Endpoints, Private links), Content Delivery Network (CDN), Azure Front Door Service, Traffic Manager, Application Gateway, Internet Analyzer, and Load Balancer. BGP, GRE, OSPF, IS-IS, NSX-V/T etc, and equivalent AWS and GCP service,
DATABASE MANAGEMENT SYSTEMS
Kafka Oracle, PostgreSQL, MySQL, MariaDB, MongoDB, Azure (Cosmos DB, Azure SQL Database), AWS (DynamoDB, Aurora, Elasticash, Timeseries Redis, etc.)
COMMERCIAL SOFTWARE
CyberArc, Beyond Trust, Zscaler, SAP ECC, SAP s4 Hana, Office 365, DLP, Pureview, SAP GRC, Jira, Confluence, MIRO, MS Visio, etc.
METHODOLOGIES & STANDARDS
SANS, MITRE, OWASP10, ISO 23167:2020, ISO 23188:2020, ISO 27799, ISO/IEC 80001, ISO 23029:2020, ISO27001/2, NIST CSF ? SPs, NIST 500, NIST 800, HIPAA/HITECH, GxP , HiTRUST, FedRAMP, RMF DoD, FDA, 21CFR820, CIS, PFMI, TOGAF, SABSA, Octave, EBIOS, CRAMM, and COBIT
Additional IT Experience
10/2019 - 11/2019As Technology Partner in FIS Global I am responsible for building and developing the Digital Identity Practice as part of Cyber Security services. The Digital Identity practice consists of PAM (Privileged Access Management), IGA (Identity Governance and Administration) and CIAM (Customer IAM). The current toolset in use for the following topics are as follows: IGA ? SailPoint IIQ, OMADA, MIM 2016, PAM ? CyberArk, CIAM ? ForgeRock and Transmit Security Microsoft Based Security ? On-Premise and Azure Cloud As part of the company leadership team, I am responsible for building, developing and administrating a team of 20+ people across Central and Eastern Europe. Daily, I am taking management and architectural role in various projects covering services such as assessment, design, implementation, and managed service across Europe with the technology stacks mentioned above. I have experience in various industries and expert knowledge in IAM/PAM best practices and compliance standards across widely regulated and non-regulated businesses. In the past 10+ years I have been involved in projects taking various roles from Implementation Engineer to Solution Architect for businesses in any size ? from small to large global companies spanned across the globe. My expertise and understanding of the overall IT Infrastructure and in-depth knowledge in Authorization, Authentication and Security allowed me to successfully deliver all those projects regardless of the project complexity, timeline, location or size. My strongest features are my devotion to work and desire to solve complex challenges with the highest quality, ability to lead teams and coordinate activities, ability to consult and discuss on every level from top management level through enterprise architecture down to in-depth technical discussions and low-level solution specific conversations with developers and engineers. In my current role, my main responsibilities include driving the line of business forward by developing new client relationships and delivering complex projects from Management and Architectural perspective including but not limiting to:
Important Clients
BS, IT Science
PU Paisii Hilendarsky
BSc, eng. in Aeronautic
TU Sofia
Certifications
2016
SAFe4
2009
CISA
2015
PMP
2012
TOGAF foundation
ITIL Lifecycle and Capability (ITIL® ATO Accredited Trainings)
Profile
A highly skilled and results-driven DevSecOps Engineer with over 6 years of experience in cloud security, application security, and automation across both on-premises and cloud environments (Google Cloud Platform and Azure). Adept at integrating security into every phase of the SDLC, from development to production, using a shift-left approach and CI/CD pipelines. Proficient in securing containerized applications with Kubernetes, managing secrets with HashiCorp Vault, and automating infrastructure with Terraform. Experienced in monitoring cloud environments with Google Cloud Security Command Center, Azure Sentinel, and implementing runtime security with tools like Falco and Sysdig.
A proactive advocate for best security practices, skilled in driving secure DevOps workflows through GitLab, ArgoCD, and Helm. Expertise in leveraging SAST, DAST, and IaC security tools to detect vulnerabilities early and remediate issues promptly. Proven ability to collaborate effectively in Agile environments, driving secure application delivery within SAFe and Scrum frameworks. Strong communicator, adept at bridging gaps between security, development, and operations teams to foster a security-first culture.
Adept in IT Service Management, with a proven track record of interfacing with external suppliers to manage support services, enforce Service Level Agreements (SLAs), and maintain compliance with company policies and security standards. Skilled in capacity planning, anticipating infrastructure needs, and providing operational support for security management functions.
Strong background in providing IT user support, with a collaborative approach to resolving complex technical issues. Committed to maintaining detailed service and application documentation, fostering knowledge sharing, and ensuring the continuous improvement of IT processes. Known for a proactive, problem-solving mindset and the ability to deliver high-quality results in dynamic, fast-paced environments. Seeking to leverage my technical expertise and strategic vision to contribute to a forward-thinking organization.
Known for a strategic mindset and meticulous attention to detail, they effectively led cross-functional teams to deploy secure systems that enhanced organizational resilience. Career marked by continuous learning and adaptation, as security architect consistently delivered solutions that met and exceeded client expectations. Help leading organizations use technology to drive greater bottom-line impact, increase agility, navigate business change, and transform IT so that it can respond to changing demands, to selects and develops general control activities over technology and to support the achievement of objectives.
Skills
OPERATING SYSTEMS, UTILITIES & VIRTUALIZATION TOOLS
Windows, Linux, OpenShift, VMware ESX SRM, Kubernetes (SUSE CaaSP), RedHat OpenShift , Pivotal PKS, Docker,( AKS, ARO, ECS, EKS, Faregate), Platform Virtualization (Hyper-V & ESX), SDDC, Software defined networks & Service meshes, etc.
NETWORK SYSTEMS & TECHNOLOGIES
Password Vaults, PKIs KMS, HSMs, FIDO, Yubikey, Windows Hallo, Zscaler, VPNs (IPsec) , TCP/IP, SNMP, DNS, Syslog (Time Seriees and Event Driven architecture) , Azure Virtual Network (Virtual Network (VNet), Virtual WAN, ExpressRoute, VPN Gateway, NAT Gateway, Azure DNS, Peering service, Azure Virtual Network Manager, Route Server, and Azure Bastion), Azure - Load Balancer, Private Link, DDoS protection, Firewall, Network Security Groups(NSG), Web Application Firewall, and Virtual Network Endpoints, Private links), Content Delivery Network (CDN), Azure Front Door Service, Traffic Manager, Application Gateway, Internet Analyzer, and Load Balancer. BGP, GRE, OSPF, IS-IS, NSX-V/T etc, and equivalent AWS and GCP service,
DATABASE MANAGEMENT SYSTEMS
Kafka Oracle, PostgreSQL, MySQL, MariaDB, MongoDB, Azure (Cosmos DB, Azure SQL Database), AWS (DynamoDB, Aurora, Elasticash, Timeseries Redis, etc.)
COMMERCIAL SOFTWARE
CyberArc, Beyond Trust, Zscaler, SAP ECC, SAP s4 Hana, Office 365, DLP, Pureview, SAP GRC, Jira, Confluence, MIRO, MS Visio, etc.
METHODOLOGIES & STANDARDS
SANS, MITRE, OWASP10, ISO 23167:2020, ISO 23188:2020, ISO 27799, ISO/IEC 80001, ISO 23029:2020, ISO27001/2, NIST CSF ? SPs, NIST 500, NIST 800, HIPAA/HITECH, GxP , HiTRUST, FedRAMP, RMF DoD, FDA, 21CFR820, CIS, PFMI, TOGAF, SABSA, Octave, EBIOS, CRAMM, and COBIT
Additional IT Experience
10/2019 - 11/2019