I’m a senior Linux and network security engineer with 10+ years of experience securing production servers and building tightly controlled firewall architectures. My focus is on default-deny egress environments, iptables/nftables rulesets, traffic analysis, and practical validation using CLI tools and scripting. I’ve supported enterprise teams that require auditable, minimal, and well-documented security controls. I move fast, communicate clearly, and prioritize solutions that are both secure and operationally simple.

I’m a senior Linux and network security engineer with 10+ years of experience securing production servers and building tightly controlled firewall architectures. My focus is on default-deny egress environments, iptables/nftables rulesets, traffic analysis, and practical validation using CLI tools and scripting. I’ve supported enterprise teams that require auditable, minimal, and well-documented security controls. I move fast, communicate clearly, and prioritize solutions that are both secure and operationally simple.

Available to hire

I’m a senior Linux and network security engineer with 10+ years of experience securing production servers and building tightly controlled firewall architectures. My focus is on default-deny egress environments, iptables/nftables rulesets, traffic analysis, and practical validation using CLI tools and scripting. I’ve supported enterprise teams that require auditable, minimal, and well-documented security controls. I move fast, communicate clearly, and prioritize solutions that are both secure and operationally simple.

See more

Experience Level

Expert
Expert
Expert
Expert
Expert
Expert

Work Experience

Principal Software Engineer at Salesforce
November 1, 2018 - November 1, 2025
Analyzed and optimized outbound network traffic to boost application performance by 30% using tcpdump and Wireshark. Implemented a secure, minimal iptables ruleset with a default DROP policy to enforce strong server security. Led the development of a Python-based command line prototype to validate system functionalities at scale. Collaborated with cross-functional teams to document and deploy robust firewall rules for enterprise environments. Migrated infrastructure from Google Cloud Platform (GCP) to Amazon Web Services (AWS), improving cloud security posture and reducing costs by 20%. Improved code quality with 80% test coverage using React Testing Library.
Senior Director of Engineering at Nanjing SkyData InfoTech Ltd.
July 1, 2017 - October 1, 2018
Directed analysis of network traffic and implemented secure egress controls for real-time data visualization platforms. Engineered a secure authentication workflow with Auth0 and JWT, integrating with enterprise security protocols. Developed and maintained complex microservices ensuring high security and scalability for financial applications. Executed blockchain operations securely, managing dynamic endpoints with Cloudflare infrastructure. Enhanced system performance, reducing latency by 25% through optimized network configurations and load balancing. Produced detailed documentation for technical and non-technical stakeholders to support audits and maintenance.
Senior Software Engineer at Salesforce
November 1, 2010 - December 1, 2016
Designed secure backend schemas and optimized a GraphQL microservice for scalable data retrieval. Developed dynamic, customer-facing web applications using React and TypeScript, improving user interaction by 40%. Integrated telephony services with real-time notifications, driving revenue growth and customer engagement. Implemented AWS CloudWatch for analytics services, ensuring system stability and rapid incident response. Created secure network configurations and maintained egress controls to safeguard data transmission.
Software Engineer Intern at Salesforce
December 1, 2008 - October 1, 2009
Assisted in developing secure web applications using React and TypeScript, focusing on usability and security. Collaborated with teams to integrate frontend components with secure backend services. Optimized and developed new RESTful services, achieving a 30% reduction in response times through code and network traffic analysis. Monitored application performance and resolved incidents to meet SLA requirements using Azure Monitor. Gained hands-on experience with CI/CD pipelines, contributing to secure deployments.

Education

Bachelor of Science, Computer Science at Nanjing University
September 1, 2002 - April 1, 2006

Qualifications

Add your qualifications or awards here.

Industry Experience

Software & Internet, Professional Services, Financial Services, Media & Entertainment