ryan@rlwilliamson.dev: ~
RW Ryan Williamson
available
8+
years at Deloitte
3
cloud providers
100s
Azure subscriptions
12+
years in regulated environments

experience

Lead DevOps Engineer, Deloitte Technology US (DT-US), iCMS Tax DevOps Team

Senior engineer providing Azure DevOps and platform engineering for Deloitte's Tax application. Click to expand.

  • Embed DevSecOps controls (secret scanning, policy-as-code with Azure Policy, least-privilege RBAC, secrets management via Key Vault, and security gates) directly into Azure DevOps and GitHub Actions pipelines.
  • Operate under Deloitte's rigorous standards for client data integrity and regulatory compliance, treating security and governance as first-class engineering concerns rather than late-stage afterthoughts.
  • Provision and manage Azure environments end-to-end (resource group design, networking with NSGs and private endpoints, identity through Entra ID and RBAC, and platform observability).
  • Build Azure CI/CD pipelines, infrastructure-as-code (Bicep, ARM, Terraform), and release engineering practices keeping mission-critical tax applications running reliably and securely.
AzureBicepARMTerraform DevSecOpsCI/CDKey Vault Azure PolicyEntra IDRBAC

Lead Systems Administrator, Deloitte Technology US (DT-US), iCMS POP DevOps Team

Core contributor on a multi-year data center migration to Azure, AWS, and GCP. Hundreds of subscriptions. Click to expand.

  • Partnered with security and compliance teams to apply DevSecOps controls (IAM, threat and vulnerability management, Key Vault-backed secrets, Azure Policy, and least-privilege RBAC) across new cloud workloads.
  • Designed and operated Azure environments at scale (hundreds of subscriptions), including resource group strategy, network segmentation with NSGs and private endpoints, and identity via Entra ID and RBAC.
  • Core contributor to a multi-year data center migration moving Deloitte's on-premises infrastructure to a multi-cloud footprint across Azure, AWS, and GCP, including workload assessment, network and identity planning, lift-and-shift execution, and post-migration optimization.
  • Replaced manual server provisioning, patching, and configuration management with PowerShell, ARM/Bicep, and Azure DevOps pipelines, moving day-to-day operations toward a cloud-first, automation-driven model.
  • Implemented production observability with Dynatrace and Azure Monitor, giving the team end-to-end visibility into application performance and infrastructure health across cloud and on-prem workloads during the migration.
Multi-cloudData center migrationAzureAWSGCP DynatraceSREPowerShellBicep Disaster RecoveryHigh Availability

Senior Systems Administrator, Deloitte Technology US (DT-US), iCMS POP DevOps Team

Windows Server, Active Directory, Group Policy, PowerShell automation. Earliest cloud-adoption work. Click to expand.

  • Owned incident response and change management for production systems supporting tax compliance workflows, with hands-on involvement in critical-period readiness for regulatory deadlines.
  • Administered Windows Server, Active Directory, and supporting infrastructure for the CMS POP team's portfolio, ensuring high availability for the platforms the team supported.
Windows ServerActive DirectoryGroup PolicyDNS PowerShellHybrid networkingIncident response

Operations Supervisor, FedEx Supply Chain (CFS L2/L3)

Promoted to supervise two parallel production lines at FedEx Supply Chain's Lebanon facility, Dell's contracted partner for custom system configurations, OEM solutions, and white-labeling across the US. Up to 35 technicians across both lines. Click to expand.

  • Contributed to the practices, documentation, and routine audits that kept the facility's ISO 9001 quality management certification in good standing. ISO 9001 was the framework the whole facility operated within. The daily SOP and 5S work was how we lived it.
People leadershipOperations managementProduction schedulingISO 9001 OSHA / MSDS compliance5SJob Safety AnalysisPerformance management Inventory controlDell EMR / CFS workflowsOEM solutionsWhite-labeling BIOS configurationCustom imagingCross-functional coordination

Lead EMR Tech, FedEx Supply Chain (CFS L3)

Hands-on technical lead on CFS Line 3 at FedEx Supply Chain's Lebanon facility, Dell's national hub for custom configurations, OEM solutions, and white-labeling. 15 technicians, supervisor's right hand for the technical work. Click to expand.

  • Operated within the facility's ISO 9001 quality management framework. Followed the certified procedures, documented repair actions in production logs, and maintained a clean, 5S-compliant workspace as a non-negotiable on the heaviest production days.
Dell hardwareBIOS / UEFISystem imagingHardware troubleshooting Automated etchingISO 9001OSHA / MSDS compliance EMR / CFS production workflowsOEM customizationWhite-labeling Burn processRecovery grade dispositioningOn-the-job training

projects

Azure Cloud Resume · the website you're on right now!

rlwilliamson.dev · github.com/rlwilliamson-dev/azure-resume

This resume.Personal site and resume platform at rlwilliamson.dev. Static site on Azure Static Web Apps, Python Azure Function backed by Cosmos DB serverless, Bicep IaC, GitHub Actions CI/CD with pytest-gated deploys, custom domain with DigiCert-issued SSL via Namecheap DNS. Deployed end-to-end at zero monthly cost.Zero monthly cost.

Browser rlwilliamson.dev Azure Static Web Apps Free tier · /api proxy Python Function /api/counter Static Frontend resume · /now · /uses · /whoami · /404 /blog Astro 6 static · tags · RSS Cosmos DB serverless

D3CYPH3R · terminal-based security training for DevOps and SRE

d3cyph3r.com · github.com/rlwilliamson-dev/d3cyph3r

A browser-based terminal that teaches infrastructure engineers to find security exposure in systems they have inherited, and to write up what they find in the language of control frameworks. Built for DevOps engineers, SREs, and sysadmins who already run production systems and need the security half of the job. Every level is a realistic inherited system: an offboarded consultant's laptop, a production bastion, a seized workstation image, a cloud account mid-migration. Commands are evaluated rather than answer-matched, so a correct SQL injection payload runs for real and a malformed one returns the genuine MySQL error. Each level ends with a written post-mortem tracing the finding to CWE weaknesses, NIST 800-53 controls, MITRE ATT&CK techniques, and the regulatory regime governing that client. 24 levels across 7 tracks, 135 player-callable commands, no backend and no accounts. Vanilla ES modules with no build step, deployed on Azure Static Web Apps behind a Playwright suite that gates every merge.A browser-based terminal teaching infrastructure engineers to find security exposure in inherited systems and write it up in control-framework language. 24 levels across 7 tracks, each ending in a post-mortem tracing the finding to CWE weaknesses, NIST 800-53 controls, MITRE ATT&CK techniques, and the governing regulatory regime.

Browser desktop only Azure Static Web Apps d3cyph3r.com · ES modules Command modules 30 modules · 135 commands Terminal Engine SSH · lobby · dispatch · progress Levels 24 levels · 7 tracks Virtual FS tree walker

skills

Cloud Security & Identity

DevSecOps, IAM, least-privilege RBAC, Entra ID, cloud security, NSGs and private endpoints, Key Vault secrets management, threat and vulnerability management, pipeline security gates

Governance, Risk & Compliance

Policy-as-code enforcement (Azure Policy), access governance, compliance-driven delivery in regulated environments, ISO 9001 quality management (certified-facility operations, documentation, and routine audits)

Network Defense & Monitoring

Network security monitoring, IDS/IPS deployment and tuning (Suricata), firewall policy design (pfSense), DNS-layer filtering (pfBlockerNG), zero-trust remote access (WireGuard), log analysis, perimeter hardening

Cloud Platforms

Microsoft Azure (Resource Manager, Static Web Apps, Functions, Cosmos DB, Storage, Key Vault, Entra ID, NSGs, Private Endpoints, Azure Policy, Azure Monitor), AWS, GCP

DevOps & CI/CD

Azure DevOps Services, GitHub Actions, CI/CD pipeline development, release engineering, environment management, change management, DevOps engineering

Infrastructure as Code

Bicep (current focus), ARM templates, Terraform, PowerShell DSC, configuration management, automation

Cloud Migration & Architecture

Data center migration, multi-cloud architecture (Azure / AWS / GCP), enterprise platform management, on-prem infrastructure, hybrid networking, workload assessment, lift-and-shift, post-migration optimization

Reliability & Operations

Site Reliability Engineering (SRE), incident management, disaster recovery, high availability architecture, patch management, root-cause analysis, on-call response, production operations management, process improvement

Leadership & Process

Technical leadership as a sSenior individual contributor, peer review, mentorship, cross-functional collaboration with engineering and operations stakeholders, change management, Agile/Scrum; people leadership and direct supervision (hiring, onboarding, performance management) in production operations at FedEx Supply Chaina prior operations role

certifications

contact

Let's build something together.

Open to technical security, risk, and assessment roles alongside senior DevOps and platform engineering work, full-time and contract.

ryan@rlwilliamson.dev LinkedIn