Principal Mobile Security Architect at PayPal
San Francisco Bay Area
Principal Mobile Security Architect at PayPal
San Francisco Bay Area
• Over 18 years of extensive software development experience, designing, developing, deploying and verifying complex software application and infrastructure of varying scales.
• Experienced practitioner of hardware-based, end-to-end, and holistic security techniques.
• In-depth expertise in software and hardware security, verification, cryptography, identity management, information protection, vulnerability assessment, threat modeling and analysis.
• Expert ability in conceptualizing, performing proof-of-concept, and devising creative solutions using effective security technologies to accelerate time to market efficiently.
• Extensive Systems Engineering experience. I understand the customer pain when a solution is difficult to use; because of this, providing a smooth usage experience is part of my philosophy.
• An energetic, solution-oriented analytical thinker and creative problem solver with significant coordination abilities and proven capability to manage multiple assignments simultaneously.
• Excellent communicator and effective technical presenter to customers and in seminars who works efficiently under stressful situations and delivers successful results.
*Java, C, *Software/Hardware & Enterprise Security & threat analysis *Software Architecture *J2EE/EJB/Servlet *PKCS, PKI, JCE, JAAS, Java Security *HTTP/S, LDAP *MySQL, PostgreSQL *WebLogic, Oracle AS/OC4J *Ant, Hibernate, JBoss, Log4j, Struts, Velocity, XDoclet *Apache, iPlanet *Solaris, Linux (RedHat, MontaVista, Gentoo) *Working knowledge of JDeveloper, JBuilder, IDEA, Eclipse *Strong technical mentoring abilities *Excellent oral, written, presentation and demonstration skills.
(Public Company; ebay; Internet industry)
January 2009 — Present (7 months)
Defining, designing, architecting, and heading the implementation of PayPal mobile initiatives: mobile payment, contactless payment (NFC, proximity, etc.) with specific focus on security.
(Public Company; 10,001 or more employees; ebay; Internet industry)
June 2008 — Present (1 year 2 months)
Member of Info. Sec. team, in charge of eBay Inc.'s application and stack security.
(Privately Held; 51-200 employees; Computer Software industry)
May 2006 — May 2008 (2 years 1 month)
Chief Security Architect in charge of strategy, architecture, proof of concept, and implementation aspects of MontaVista Software embedded Linux product lines, i.e. Carrier Grade, Professional and Mobilinux.
(Public Company; SNDK; Semiconductors industry)
June 2005 — February 2006 (9 months)
Principal Security Engineer, leading security architecture and strategies for SanDisk products in Emerging Mobile Market business unit.
(Public Company; 10,001 or more employees; MOT; Computer Software industry)
March 2004 — May 2005 (1 year 3 months)
Security Working Group Implementation Lead for Motorola next-generation SmartPhone platform based on Java/Linux.
(Privately Held; 51-200 employees; Computer Software industry)
April 2003 — March 2004 (1 year)
Member of technical staff, focusing on security architecture and components' implementation of Zaplet product.
(Government Agency; 201-500 employees; Computer Software industry)
April 2002 — April 2003 (1 year 1 month)
Architected, designed and implemented the security modules for California Department of Justice SINS (Statewide Investigative Networking Systems) migration project.
(Public Company; 10,001 or more employees; SUNW; Computer Software industry)
December 1999 — April 2002 (2 years 5 months)
Design and implementation, iPlanet (an alliance of Sun Microsystems and Netscape Communications), iPlanet Portal Server.
(Public Company; 5001-10,000 employees; NSCP; Computer Software industry)
February 1998 — December 1999 (1 year 11 months)
Sustaining development on Netscape Enterprise Server (NES), Netscape Application Server (NAS) and PublishingXpert (PubX) products.
(Public Company; 501-1000 employees; ACTU; Computer Software industry)
June 1996 — February 1998 (1 year 9 months)
Development in performance, High Availability, as well as web components of Actuate Software reporting engine.
(Privately Held; 11-50 employees; Computer Software industry)
September 1994 — April 1996 (1 year 8 months)
Performed development on various software automation solutions contracted by the company.
Member ISSA (Information Systems Security Association)
Member IEEE (Institute of Electrical and Electronics Engineers)
Member CSI (Computer Security Institute)