Cloud Security Engineer

Joseph Nathan
Mpoyi

MDR Analyst  ·  AWS Cloud Security  ·  Bilingual EN/FR

From enterprise operations to the front lines of cybersecurity, now building toward cloud security engineering. A deliberate career built on precision, structure, and an unrelenting drive to go deeper.

Scroll to explore
01

About

My career did not start in cybersecurity. It started in people and operations. As a Bilingual HR Coordinator at Pratt & Whitney supporting a workforce of 10,000+ employees, and as an Order Administrator managing cross-functional workflows under strict compliance requirements, I built a foundation in data integrity, process discipline, and working within high-stakes environments where errors have real consequences.

That foundation carried me into cybersecurity. I completed the Level Effect Cyber Defense Analyst programme, earned the CDCP certification through a live one-week SOC assessment, and moved into active security operations. Most recently I worked as an MDR Analyst at an MSSP, investigating and triaging security events across endpoint, identity, email, and network telemetry for multiple enterprise clients using CrowdStrike, Microsoft Sentinel, Proofpoint, and Palo Alto.

The next move is deliberate. I am transitioning into cloud security engineering, enrolled in the Digital Cloud Training Cloud Security Engineer pathway building toward AWS Solutions Architect Associate, AWS Security Specialty, and Terraform certifications. My goal is to move from monitoring cloud environments to designing and securing them from the ground up, combining active threat detection experience with deep cloud architecture knowledge.

3+
Years in Security Operations
10+
Event Types Triaged Daily
EN/FR
Bilingual Professional
AWS
Cloud Security Pathway
02

Experience

MDR Tier 1 Analyst
GoSecure  ·  MSSP  ·  Toronto, ON
Dec 2025 — May 2026

Investigating and triaging 10+ security event types daily across endpoint, identity, email, and network telemetry for multiple enterprise clients using CrowdStrike, Microsoft Sentinel, Proofpoint, and Palo Alto. Analysing phishing emails, conducting threat intel enrichment using IPAbuse, Flare, and VPN Detect, performing post-compromise threat hunting, and producing structured client-facing escalation reports with findings and recommendations per investigation.

Cyber Defense Analyst
Level Effect Security Operations Centre  ·  Remote
2023 — Feb 2025

Worked as a SOC analyst performing hands-on detection, investigation, and response across endpoint, network, and cloud telemetry. Investigated 9+ attack scenarios including malware infection, lateral movement, credential abuse, persistence mechanisms, and network intrusion. Performed memory forensics, malware analysis, and network traffic analysis using Wireshark, Sysinternals, Velociraptor, and CyberChef. Passed the CDCP certification via live one-week SOC assessment requiring full intrusion investigation and formal report submission.

Bilingual Apple Support Specialist
Teleperformance (Contracted to Apple)  ·  Montreal, QC
Dec 2024 — Aug 2025

Resolved 50+ daily bilingual technical support cases via phone, live chat, and messaging, diagnosing hardware and software issues across Mac OS, iPhone, iPad, and Apple ecosystem products. Escalated complex cases to engineering and specialist teams with structured problem summaries, and maintained full audit trails in ticketing systems within SLA standards.

Bilingual Order Administrator
Burlodge  ·  Toronto, ON
Jan 2024 — Oct 2024

Processed 20–30 daily orders coordinating across finance, sales, and warehouse under strict SLA pressure, maintaining accurate ERP data entry and compliance. Proposed and implemented process improvements that reduced cross-departmental delays and improved order fulfilment efficiency.

Bilingual HR Coordinator
Pratt & Whitney  ·  Toronto, ON
Oct 2021 — Oct 2023

Supported HR operations for a workforce of 10,000+ employees, managing onboarding, employee records, compensation data, and access provisioning with strong attention to data integrity and compliance. Maintained accurate records across HR systems and coordinated cross-functional workflows under strict data handling requirements.

03

Technical Skills

☁️
Cloud & Identity
Microsoft Azure Microsoft 365 Active Directory AWS IAM VPC EC2 S3 Lambda CloudTrail CloudWatch
🛡️
Security Tools
CrowdStrike Falcon Microsoft Sentinel Microsoft Defender Proofpoint Palo Alto Splunk ELK Stack FortiSIEM FortiSOAR
🔬
DFIR & Analysis
Wireshark Velociraptor Sysinternals CyberChef any.run Nmap IPAbuse Flare Memory Forensics
🌐
Networking
TCP/IP DNS DHCP VPN IPSec RADIUS LAN/WAN Firewall
📋
Frameworks
MITRE ATT&CK NIST CIS Controls Cyber Kill Chain ISO 27001
💻
Platforms & Automation
Windows Server Linux macOS ServiceNow Python (in progress) Terraform (in progress) CloudFormation
04

Certifications

🏅
CompTIA Security+
CompTIA
Active
🔐
Cyber Defense Certified Professional
Level Effect
Active
☁️
AWS Solutions Architect Associate
Amazon Web Services
In Progress
🛡️
AWS Security Specialty
Amazon Web Services
In Progress
🤖
AWS AI Practitioner
Amazon Web Services
In Progress
⚙️
Terraform Associate
HashiCorp
In Progress
05

Education & Training

Cloud Security Engineer Pathway
Digital Cloud Training  ·  AWS Bootcamp
2025 — Present
In Progress
Cyber Defense Analyst Programme
Level Effect  ·  Security Operations Centre
2023 — 2025
Completed
Splunk: A SIEM Tool Bootcamp
Splunk  ·  Certificate of Participation
Sept 2025
Completed
Associate Degree — Network Administration & Security
Houston Community College  ·  Houston, TX
2018 — 2019
Completed
Associate Degree — Network & System Administration
Kirkwood Community College  ·  Iowa City, IA
2015 — 2017
Completed
06

Projects

AWS · Cloud Infrastructure
Personal Brand Website on AWS

Designed and deployed a secure static website on AWS using S3, CloudFront, ACM, and Route 53. Implemented Origin Access Control to restrict direct S3 access, enforced HTTPS via ACM certificate provisioned in us-east-1, and configured CloudFront edge caching for global performance. S3 bucket policy allows CloudFront OAC only, blocking all direct public access.

Amazon S3 CloudFront ACM Route 53 OAC IAM
Coming Soon · AWS
Secure VPC Architecture

Multi-tier VPC deployment with public and private subnets across multiple availability zones, NAT Gateway for private subnet internet access, Security Groups and NACLs following least privilege, and Session Manager for secure instance access without SSH exposure.

VPC EC2 RDS NAT Gateway Systems Manager CloudFormation
Coming Soon · AWS Security
Cloud Security Monitoring Dashboard

Centralised security monitoring using CloudTrail, GuardDuty, Security Hub, and CloudWatch. Real-time alerting on critical security events including IAM changes, root account usage, and security group modifications, with logs shipped to OpenSearch for investigation.

CloudTrail GuardDuty Security Hub CloudWatch OpenSearch SNS
Coming Soon · Serverless
Serverless Security Automation

Event-driven security response pipeline using Lambda, EventBridge, and Step Functions. Automatically detects misconfigurations, isolates compromised resources, revokes credentials, and notifies the security team. Built with Python and Boto3.

Lambda EventBridge Step Functions Python Boto3 IAM

Let's build something
secure together.

Open to cloud security engineering roles, contract work, and meaningful conversations about securing cloud infrastructure. Based in Toronto, available for remote and hybrid opportunities.

Send a Message →