Experience

Roles across application security, backend engineering, and identity-focused platform work — with emphasis on OAuth2/OIDC, APIs, and secure delivery.

Application Security Engineer

RxBenefitsBirmingham, AL

July 2025 – Present

  1. Led application security efforts across internally developed services and APIs, partnering directly with engineering teams to identify and remediate vulnerabilities early in the SDLC.
  2. Implemented and operationalized Snyk for SAST, dependency, and container scanning, integrating findings into GitHub workflows and Jira-based remediation processes.
  3. Established risk-based vulnerability triage processes, prioritizing remediation based on exploitability, data sensitivity, and business impact.
  4. Conduct secure design and code reviews, providing actionable guidance aligned with OWASP Top 10 and API Security Top 10.
  5. Act as a security advisor to development teams, improving secure coding practices and reducing repeat vulnerability patterns across services.

Software Engineer II

RxBenefitsBirmingham, AL

January 2024 – July 2025

  1. Led backend development of a custom API Gateway microservice in Go to mediate traffic between distributed systems.
  2. Integrated Auth0 for OAuth 2.0 authentication and authorization with custom RBAC validation logic.
  3. Designed and implemented secure JWT claim injection using Node.js serverless functions (Auth0 Actions).
  4. Worked across languages and SaaS tools to deliver cohesive portal experiences tailored to distinct authenticated audiences.
  5. Contributed to SCIM-based provisioning workflows to automate identity synchronization with third-party applications.
  6. Developed Dockerized PostgreSQL services for user permissions and access logs.

Software Engineer

RxBenefitsBirmingham, AL

January 2023 – January 2024

  1. Built custom REST APIs with validation, routing, OpenAPI docs, database migrations, and Helm configuration.
  2. Refactored services for performance and expanded AWS usage, including EventBridge-triggered Lambda jobs.
  3. Contributed to frontend work with Next.js and React.

Security Administrator

RxBenefitsBirmingham, AL

January 2021 – December 2022

  1. Built PowerShell and Python automation for user lifecycle, workstation decommissioning, and SOC 2 auditing, using AWS Lambda where appropriate.
  2. Led Keeper Password Manager rollout: POC, SSO, Azure SCIM provisioning/deprovisioning, RBAC, and MFA-based device approval.
  3. Improved vulnerability tracking and remediation workflows in Jira.

Education

CompTIA Security+ certification