Jake Francois
Email: jakefrancois15@gmail.com | Location: Fort Mill, SC 29715 | LinkedIn
Work Experience
Cyber Security Engineer
Foot Locker Inc. - July 2019 - Present | Milwaukee, WI | Remote
HashiCorp Vault Expertise:
Led the architectural design and deployment of HashiCorp Vault on Kubernetes, achieving seamless secrets management and machine identity authentication across the enterprise. Created CI/CD pipelines and reusable modules for streamlined management, ensuring high adoption and adherence to best practices.Application Security Architecture:
Architected an automated SAST process across all GitHub organizations, improving security workflows and increasing code compliance. Provided a seamless developer experience without the need for manual uploads or custom workflows.Solutions Architecture:
Designed the transition from a legacy double-hop authentication system to native Entra ID authentication for PeopleSoft SSO on F5 BIG-IP. Created detailed architecture diagrams and ensured alignment with modern security practices, improving peak-load stability and user experience.IAM Architecture Leadership:
Orchestrated lifecycle automation for tens of thousands of user accounts. Integrated SSO, privileged access, and secrets management into a cohesive IAM framework. Designed a role-based access system aligned with business needs.
Achievements
- Designed and implemented inactive account management processes to reduce compliance risk (PCI, SOX).
- Built end-to-end automation for frontline worker accounts, minimizing manual errors.
- Integrated acquired entities using scalable tools (Cloud Sync, SSPR).
- Cut manual workload by 65% through integrations and automation.
- Architected a system to enforce InfoSec Policy acknowledgments using IAM and automation—achieved 100% compliance.
Programming and Development
- Built a self-service Python web app integrated with Entra ID SSO and MFA.
- Created custom system connectors when COTS options were unavailable.
Security System Integration
- Integrated SIEM and SOAR tools with existing systems for automated monitoring and onboarding/offboarding.
- Designed microservices for scalable PKI certificate provisioning.
Identity and Access Management
Brookdale Senior Living - August 2018 - June 2019 | West Allis, WI
- Learned and applied IAM concepts, SSO app configuration, and automated access workflows.
- Practiced Agile/Scrum methodologies for iterative delivery.
Education
Milwaukee Area Technical College
Associate of Science - May 2018
Skills & Traits
Technical Skills
- Python, PowerShell, Go, Terraform, Bash, C#, Kubernetes, *NIX systems, Microsoft Identity Manager
- Relational database design, MSSQL, web development, DevOps practices
Cloud Platforms
- Azure (strong expertise)
- GCP (IAM policy experience)
Security Tools & Domains
- HashiCorp Vault, Palo Alto Cortex XSOAR, Okta
- SIEM, SOAR, PAM/PIM, AppSec, NetSec, Secrets Management
Professional Traits
- Leadership: Experience leading cross-functional teams and aligning technical and business goals
- Strategic Thinking: Designs scalable, future-ready architectures
- Problem-Solving: Analyzes and solves complex security challenges
- Communication: Clear communicator with technical and non-technical audiences
- Collaboration: Encourages team alignment and project success
- Adaptability: Quickly learns and applies emerging technologies
- Growth Mindset: Constant learner and mentor
- Empowerment: Builds teams with ownership and pride
Certifications
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
- CompTIA Security+