~/ryanshannon.com

Ryan Shannon

Staff Security Engineer · network security, identity, and Zero Trust for corporate environments

# main.tf
resource "person" "ryan_shannon" {
  role     = "staff security engineer"
  focus    = ["network security", "iam", "zero trust"]
  region   = "us-east"
  off_call = ["homelab", "3d printing", "beekeeping"]
}

about

I started in network engineering: switches, wireless, VoIP, and multi-site networks across education, healthcare, and legal environments. That background still shapes how I approach security: understand how a system is built and how traffic flows through it before trying to lock it down.

Today I work in corporate security engineering with a defense in depth mindset: SASE and Zero Trust network access at the edge, identity and access management built around least privilege, privilege reduction and hardening on the endpoint, and security platforms managed as code with Terraform. Layered controls that back each other up, so no single point of failure becomes an incident.

focus

network.security
Firewalls, segmentation, SASE/ZTNA, and multi-site network architecture, from design through installation.
identity.access
SSO, MFA, RBAC, and identity lifecycle automation, with app integrations over OIDC, SAML, and SCIM.
endpoint.zerotrust
Privilege reduction, device trust, hardening baselines, and endpoint policy managed as code.

credentials

CISSP·CCNP·CASP+·Fortinet NSE7·HashiCorp Terraform Associate
B.S. Cybersecurity

contact