~/ryanshannon.com
Ryan Shannon
Staff Security Engineer · network security, identity, and Zero Trust for corporate environments
# main.tf resource "person" "ryan_shannon" { role = "staff security engineer" focus = ["network security", "iam", "zero trust"] region = "us-east" off_call = ["homelab", "3d printing", "beekeeping"] }
about
I started in network engineering: switches, wireless, VoIP, and multi-site networks across education, healthcare, and legal environments. That background still shapes how I approach security: understand how a system is built and how traffic flows through it before trying to lock it down.
Today I work in corporate security engineering with a defense in depth mindset: SASE and Zero Trust network access at the edge, identity and access management built around least privilege, privilege reduction and hardening on the endpoint, and security platforms managed as code with Terraform. Layered controls that back each other up, so no single point of failure becomes an incident.
focus
- network.security
- Firewalls, segmentation, SASE/ZTNA, and multi-site network architecture, from design through installation.
- identity.access
- SSO, MFA, RBAC, and identity lifecycle automation, with app integrations over OIDC, SAML, and SCIM.
- endpoint.zerotrust
- Privilege reduction, device trust, hardening baselines, and endpoint policy managed as code.
credentials
CISSP·CCNP·CASP+·Fortinet NSE7·HashiCorp Terraform Associate
B.S. Cybersecurity
contact