I am a resourceful Security Architect and lifelong learner with a proven track record of securing enterprise cloud, AI, and application ecosystems. I work across diverse tech stacks and nurture a mindset that no security gap is outside my scope, which has driven measurable improvements like a 98.9% enhancement in global MDM security and $720,000 in annual AWS savings. I lead purple team engagements—simulating APTs to test defenses and then partnering with teams to harden response capabilities. I also serve as a trusted advisor to senior leadership on AI governance, secure architecture, and emerging threats, bridging strategy with hands-on execution while fostering transparency, integrity, and empathy. Beyond incident response and architecture, I analyze data across disparate systems to modernize security programs and maximize ROI from existing tools. I combine strategic vision with practical vulnerability mitigation, and I’m committed to cultivating a culture of security-minded collaboration across engineering, product, and leadership.

Eva Weichien Lee

I am a resourceful Security Architect and lifelong learner with a proven track record of securing enterprise cloud, AI, and application ecosystems. I work across diverse tech stacks and nurture a mindset that no security gap is outside my scope, which has driven measurable improvements like a 98.9% enhancement in global MDM security and $720,000 in annual AWS savings. I lead purple team engagements—simulating APTs to test defenses and then partnering with teams to harden response capabilities. I also serve as a trusted advisor to senior leadership on AI governance, secure architecture, and emerging threats, bridging strategy with hands-on execution while fostering transparency, integrity, and empathy. Beyond incident response and architecture, I analyze data across disparate systems to modernize security programs and maximize ROI from existing tools. I combine strategic vision with practical vulnerability mitigation, and I’m committed to cultivating a culture of security-minded collaboration across engineering, product, and leadership.

Available to hire

I am a resourceful Security Architect and lifelong learner with a proven track record of securing enterprise cloud, AI, and application ecosystems. I work across diverse tech stacks and nurture a mindset that no security gap is outside my scope, which has driven measurable improvements like a 98.9% enhancement in global MDM security and $720,000 in annual AWS savings. I lead purple team engagements—simulating APTs to test defenses and then partnering with teams to harden response capabilities. I also serve as a trusted advisor to senior leadership on AI governance, secure architecture, and emerging threats, bridging strategy with hands-on execution while fostering transparency, integrity, and empathy.

Beyond incident response and architecture, I analyze data across disparate systems to modernize security programs and maximize ROI from existing tools. I combine strategic vision with practical vulnerability mitigation, and I’m committed to cultivating a culture of security-minded collaboration across engineering, product, and leadership.

See more

Experience Level

Expert
Expert
Expert
Expert
Expert
Expert
Expert
Expert
Expert
Expert
Expert
Expert
Expert
Expert
See more

Language

English
Fluent
Chinese
Advanced

Work Experience

Security Architect for Attack Surface, Cloud, and AI at RealPage Inc.
June 1, 2024 - January 1, 2025
Acted as the principal security advisor to senior leadership, product owners, and internal engineering and business teams across 220 customer-facing applications and APIs (C#, .NET, Java, Python, JavaScript, PHP, Ruby) including generative AI. Led purple team engagements on Microsoft Azure and 365, identified exploitable vulnerabilities, and implemented guardrails and secure architectures to improve overall security posture and cost efficiency.
Application Security Engineer (Contract) at RealPage Inc.
September 1, 2023 - March 1, 2024
Performed manual and automated code reviews of 85 SaaS products across varied stacks; fine-tuned DAST baseline configuration, collaborated with PortSwigger Burp Enterprise on templates, and led onboarding. Conducted root cause analyses and reverse engineering to remediate false positives and complex vulnerabilities.
Solutions Consultant at Tony Hsieh
March 1, 2019 - November 1, 2020
Advised on emerging technologies and secure serverless architectures, enabling faster technology adoption while reducing costs. Led research into next-generation security and RPA/NLP/ML use cases to improve organizational efficiency and security.
Solutions Engineering Consultant at Nerdpower LLC
January 1, 2018 - September 1, 2023
Conducted vulnerability assessments and penetration testing for networks and applications, including Fortune 500 environments. Led secure hybrid cloud SaaS MVP development, implementing encryption, sandboxing, data lifecycle management, and secure microservices with micro-segmentation to reduce risk and cost.
Patent Agent at Law Office of George G.C. Tseng LLP
January 1, 2012 - December 1, 2015
Coordinated client dockets, prepared patentability opinions, and managed domestic and foreign prosecutions for computer security, networking, and related technologies.
Security Architect - Attack Surface, Cloud, and AI at RealPage Inc.
June 1, 2024 - January 31, 2025
Acted as the principal security advisor to senior leadership, product owners, and internal engineering teams across 220 customer-facing applications and APIs. Led comprehensive purple-team engagements across enterprise systems, identifying and remediating exploitable vulnerabilities in Microsoft Azure and 365, and implementing security controls to reduce risk and improve resilience. Achievements include a 98.9% improvement in global MDM security, a ~90% reduction in security-related alerts for GCP, and the design of new security guardrails for Palo Alto, CrowdStrike, Microsoft Defender, Proofpoint, Elastic, and other tooling. Conducted holistic OSI layer 1-7 penetration testing, reverse engineering, and security automation. Created custom offensive security tools (Rust, Bash, Python) to automate multi-stage attack simulations and streamline remediation.
Application Security Engineer at RealPage Inc.
September 1, 2023 - March 31, 2024
Manual and automated code reviews of 85 SaaS products; SME for internal engineering and business teams; tuned DAST configuration (Burp Enterprise) and led onboarding; performed root cause analysis and reverse engineering to remediate false positives; reduced AWS compute costs by $60K per month; revitalized the Security Champion Program, boosting participation 400%; conducted OSI layers 1-7 pentesting and built custom offensive security tools.

Education

Certificate at University of California, Berkeley Extension
August 1, 2020 - January 1, 2021
Coursework in Computer Science at Harvard University / Harvard Extension
May 1, 2015 - June 1, 2018
Certificate in Computer Science at University of California, Berkeley Extension
August 1, 2020 - January 31, 2021
Computer Science at Harvard University/Harvard Extension
May 1, 2015 - June 1, 2018

Qualifications

CISSP
January 11, 2030 - January 21, 2026
AWS Solutions Architect – Associate
January 11, 2030 - January 21, 2026
IBM z/OS Mainframe Practitioner
January 11, 2030 - January 21, 2026
Fortinet NSE 2 Network Security Associate
January 11, 2030 - January 21, 2026
Cisco Ethical Hacker
January 11, 2030 - January 21, 2026
FedVTE Cyber Supply Chain Management (Public Version)
January 11, 2030 - January 21, 2026
Amazon Web Services Solutions Architect Associate
January 11, 2030 - January 21, 2026
Certified Information Systems Security Professional (CISSP)
January 11, 2030 - January 21, 2026
Cisco Ethical Hacker
January 11, 2030 - January 21, 2026
Fortinet NSE 2 Network Security Associate
January 11, 2030 - January 21, 2026
Certified in Cybersecurity (CC)
January 11, 2030 - January 21, 2026
IBM Data Fundamentals
January 11, 2030 - January 21, 2026
AWS Certified Solutions Architect
January 11, 2030 - January 21, 2026

Industry Experience

Software & Internet, Professional Services, Government, Computers & Electronics