×
Jędrzej Leszczyński

Jędrzej Leszczyński

IT Security Engineer

Gniezno, PL
English, Polish, French

Background


About

About

Growth-driven IT professional with passion for automation, systems and cybersecurity

Work Experience

Work Experience

  • IT Security Engineer, Egnyte

    Nov, 2022 - Present

    Served as SME in Enterprise Identity and Access Management (IAM) architecture, implementation & threat detection spanning Active Directory, Okta, Google Workspace & Microsoft EntraID

    • Increased adoption of phishing-resistant authentication methods (FIDO2 security keys, TouchID, Windows Hello) for production cloud deployments and critical administrative interfaces from 21% to 100% across Google Cloud, Azure, and Okta by designing, documenting, communicating, implementing, and enforcing robust IAM policies.

    • Reduced IT and security teams' time spent on manual IAM reviews by 8 man-hours per month by delivering a custom, automated, centralized reporting solution using Python, Docker, Cloud Run, and the Google Sheets API.

    • Boosted CSPM coverage for production deployments in secondary cloud services (Azure, AWS) from 15% to 100% by automating CSPM deployments through Azure Policies and AWS StackSets.

    • Reduced Mean Time to Acknowledge (MTTA) for IAM threat alerts related to critical identity systems to an average of 48 hours by implementing and fine-tuning detection and alerting capabilities across Okta, Google Workspace, and EntraID using Wiz.

  • IT Systems and Security Administrator, mTab LLC, Poznań, Poland

    Oct, 2021 - Nov, 20221 year 1 month

    Lead sysadmin, driving modernization in IAM, EDR and Network Security

    • Provided end-to-end on-prem systems administration services such as: management, monitoring and configuration of 60 virtual Windows and Linux Servers, 15 physical Hyper-V servers, 3 NAS backup servers,10 managed L2 and L3 network devices

    • Leveraged automation and systems integration in wide range of projects such as monitoring & alerting ( Zabbix, Slack, SMTP), patch management and vulnerability management (Ansible, Nessus, Powershell, Bash, Slack), log aggregation, company-wide Duo MFA, network separation, automated software deployment, air-gapped backup

    • Designed and managed IAM policies and RBAC for Active Directory, Atlassian & Google Workspace

    • Deployed and managed Fortinet Security Fabric including Fortigate firewalls, managed APs, VPN Clients, endpoint management server and FortiAnalyzer log aggregator

    • Designed, deployed and managed systems backup solutions with the use of Acronis, Python and Powershell

    • Assisted QA and Dev teams in maintaining existing CI/CD pipelines in Jenkins

  • IT Support Specialist, mTab LLC, Poznań, Poland

    Jul, 2020 - Oct, 20211 year 3 months

    • Provided end-to-end IT technical support such as workstation and equipment setup, user account management, hardware, software and network troubleshooting

    • Managed and maintained Windows servers hosting various workstation management, patching and managed antivirus systems

    • Automated Windows 10 workstation setup including Active Directory user creation, OS installation, domain join and software pre-installation with Windows Powershell

  • Customer Support Technician, TEKLYNX International, Milwaukee, WI, USA

    Mar, 2019 - Jul, 20201 year 3 months

    • Provided client-facing technical desktop support in barcode labeling process and database integration for TEKLYNX software customers

    • Provided support for software end users, distributors and software resellers

    • Documented customer support processes and identified sales leads, tested and reported software issues

Skills

Skills

  • Identity and Access Management ⬤⬤⬤⬤⬤◯

    Okta

    Google Workspace

    Active Directory

    Entra

    RBAC

    PKI

  • Network Security ⬤⬤⬤⬤◯◯

    TCP/IP

    HTTPS

    LDAPS

    Kerberos

    SFTP

    SSH

    RDP

    ZTNA

    VPN

    WAF

  • Scripting ⬤⬤⬤⬤◯◯

    Python

    PowerShell

    Bash

  • Compliance Frameworks ⬤⬤⬤⬤◯◯

    NIST

    ISO27001

    FedRAMP

    CIS Benchmarks

  • Operating Systems ⬤⬤⬤⬤◯◯

    Linux

    Windows Server

    Hyper-V

  • Cloud Providers ⬤⬤⬤⬤◯◯

    Google Cloud Platform

    Azure

    AWS

  • DevOps ⬤⬤⬤⬤◯◯

    GitOps

    Docker

    Terraform

    CI/CD

  • Business-Oriented Security ⬤⬤⬤⬤◯◯

    Business Threat Modeling

    Security ROI Analysis

    Risk Prioritization

    Strategic Security Planning

  • People skills

    Working with a team

    Effective communication

    Critical Thinking

    Problem-solving

  • Certifications

    Okta Certified Professional

    Professional Google Workspace Administrator

    Google Cloud Certified Associate Cloud Engineer

    Fortinet Network Security Expert Level 2

Education

Education

  • Informatics and Econometrics, Master's, Poznań University of Economics and Business

    Jan, 2020 - Dec, 2022

    Master's thesis: Context-driven and Risk-driven Multi-Factor Authentication as a Usable Method of Securing Access to Business Applications

  • Computer Science and International Business Double Major, Bachelor, Cardinal Stritch University

    Dec, 2016 - Dec, 2020

    Class of 2020 Valedictorian

    Minor in Mathematics

Certificates

Certificates

Interests

Interests

  • Hobbies

    BasketballVideo GamesCloud Technologies