Tyler Burke - IT & Cybersecurity Professional

Tyler Burke's Portfolio.

IT & Cybersecurity Professional

About Me

Cybersecurity professional with a strong interest in Identity and Access Management (IAM), access control, and security operations. Currently working in a Tier 1 networking role supporting enterprise network operations through ticket management, connectivity troubleshooting, session monitoring, and routine system maintenance within a fast-paced operational environment. Former U.S. Army Intelligence Analyst with a Bachelor's Degree in Information Systems focused in Cybersecurity. Passionate about continuously learning and growing within cybersecurity, with a particular interest in IAM, security governance, and protecting organizational systems through secure identity and access management practices.

Projects

Discord Role-Based Access Control & Community Administration (2022–Present)

Discord | Personal Project
  • Designed, configured, and maintained Discord communities using role-based access control (RBAC) to manage user permissions and channel access.
  • Implemented automated role assignment using reaction-role bots, enabling users to self-select interests and gain appropriate channel access.
  • Configured bot integrations to automate notifications, moderation tasks, and community management workflows.
  • Managed user access controls, permission structures, and server organization to improve usability, security, and operational efficiency.

Full-Stack Password Security Lab — SecureVault™

React, Node.js, Express, PostgreSQL, bcrypt, Vercel, Render | GitHub | Live Demo
  • Built a full-stack authentication system demonstrating password security vulnerabilities and ethical password cracking techniques for educational purposes in a controlled environment.
  • Developed a React frontend with custom animations and glassmorphic UI design, connected to a Node.js/Express REST API backend, deployed on Vercel and Render with PostgreSQL database.
  • Implemented bcrypt password hashing (salt rounds: 10) with environment variable configuration for secure deployment across development and production environments.
  • Created an admin panel to export password hashes for penetration testing with John the Ripper and Hashcat, demonstrating dictionary attacks and brute-force resistance of modern hashing algorithms.
  • Showcases purple team methodology: understanding both offensive (password cracking) and defensive (secure authentication) techniques to improve overall security posture.

Honeypot Submission Portal — "Bug in My Eye"

HTML, CSS, Formspree, GitHub Pages | Live Demo
  • Designed and developed a honeypot submission portal hosted at Bug Eyed Technologies, built to safely collect and analyze suspicious user submissions for security assessment.
  • Implemented secure form handling using Formspree for backend processing without storing sensitive data client-side, ensuring privacy and data integrity within a static GitHub Pages environment.
  • Created a platform allowing individuals and organizations to report potential security issues or anomalies for personalized IT consulting and threat analysis.
  • Demonstrates understanding of honeypot concepts and secure data collection practices for cybersecurity intelligence gathering.

Consent-Based Phishing Awareness Campaign

GoPhish, Kali Linux, Social Engineering | Personal Project
  • Conducted an ethical, consent-based phishing simulation using GoPhish to evaluate user awareness and response to potential phishing threats in a controlled environment.
  • Designed realistic phishing email templates mimicking common attack vectors including credential harvesting, malicious attachments, and urgency-based social engineering tactics.
  • Analyzed campaign metrics including open rates, click-through rates, and data submission rates to identify vulnerability patterns and training opportunities.
  • Delivered actionable insights and recommendations to improve cybersecurity awareness training and organizational defensive posture through data-driven analysis.

Linux & Virtualization Security Lab

VirtualBox, Kali Linux, Cisco CSR1000v, GRUB, Rufus, Bash | CIAT Coursework & Personal Projects
  • Configured a multi-VM lab environment using VirtualBox, including DEVASC-LAB and Cisco CSR1000v virtual router, implementing internal networking and host-only adapters verified through ICMP testing and route configuration.
  • Modified GRUB bootloader configuration to extend boot timeout and gained hands-on experience with single-user mode access for system recovery, applying physical security concepts around boot-level access controls.
  • Created a portable Kali Linux penetration testing environment on USB using Rufus with an encrypted persistence partition, enabling secure storage of reconnaissance data and custom tools across reboots.
  • Demonstrates end-to-end Linux system administration: virtualization, bootloader configuration, partition management, system recovery, and building isolated lab environments for security testing.

AWS IAM User Provisioning, Privilege Escalation & Remediation Lab

AWS IAM, Amazon S3, RBAC, Least Privilege | Personal Project
  • Provisioned AWS IAM user accounts, security groups, and a custom IAM policy to simulate an enterprise onboarding workflow using Role-Based Access Control (RBAC) and the principle of least privilege.
  • Executed a controlled privilege escalation scenario in which a misconfigured HR group policy allowed a standard user to self-add to the S3 Admins group, gaining unauthorized access to create and modify S3 buckets.
  • Validated escalated access by confirming the affected user could view, create, and upload objects to Amazon S3 resources beyond their originally assigned permissions.
  • Performed full remediation by revoking elevated group memberships, removing the misconfigured policy from the HR group, and deleting the custom privilege escalation policy to restore least-privilege access controls.
  • Reinforced core IAM security principles including access validation, regular policy auditing, and the operational risk of excessive permissions leading to privilege creep.

Cloud IAM Architecture — Microsoft Entra ID (Phase 1)

Microsoft Entra ID, RBAC, MFA, Group Nesting, Enterprise SSO | Personal Project
  • Designed and implemented a simulated mid-sized enterprise IAM environment in Microsoft Entra ID, provisioning 32 user accounts across multiple departments and 13 security groups representing distinct organizational roles.
  • Applied RBAC principles through group-based access assignments and implemented nested security groups for management tiers, improving scalability and reducing administrative overhead compared to direct user permission assignment.
  • Integrated 6 enterprise applications representing business functions including HR, CRM, ITSM, and cloud infrastructure, assigning access based on group membership to enforce least-privilege access.
  • Enabled Security Defaults to enforce MFA across privileged accounts, working within licensing constraints to maintain a strong identity security baseline.
  • Documented a multi-cloud IAM roadmap for Phase 2, which will federate Entra ID with AWS IAM Identity Center via SAML to enable centralized identity governance across both platforms.

Work Experience

NOC Operations Analyst

Acuative | April 2026 - Present
  • Monitored enterprise network infrastructure and system alerts to identify connectivity issues, service degradation, and critical outages in real time.
  • Performed initial incident response and troubleshooting for network-related alerts by validating device availability, conducting connectivity testing, and escalating unresolved incidents when necessary.
  • Utilized out-of-band management connections to remotely access affected network devices and verify operational status during outages or service interruptions.
  • Investigated BFD (Bidirectional Forwarding Detection) session failures and restored connectivity by clearing OMP sessions and validating routing recovery procedures.
  • Documented incidents, troubleshooting actions, and recovery steps while coordinating with internal teams to maintain network uptime and operational continuity.

Delivery Driver

Romito's Pizza | November 2024 - April 2026
  • Supported kitchen operations by effectively preparing ingredients, contributing to smooth meal production and time management under pressure.
  • Ensured accurate and timely deliveries, consistently meeting customer expectations for speed and reliability while maintaining attention to detail.
  • Delivered exceptional customer service, fostering positive client interactions and repeat business through professional communication.

AT&T Marketing Salesman

AT&T | August 2024 - September 2024
  • Technical Skills: System navigation, troubleshooting mobile devices, understanding network architecture, and explaining mobile security features to customers.
  • Security Experience: Fraud prevention, identity verification, PII protection, and detecting social engineering attacks during customer interactions.
  • Transferable Competencies: Provided user training on device security, managed access controls for account modifications, documented incidents, and ensured compliance with company policies.
  • Soft Skills: Communicated complex technical concepts to non-technical users, resolved problems efficiently under time constraints, and maintained composure during high-pressure situations.

Produce Delivery Driver

Cleveland Fish and Seafood | May 2022 - November 2022
  • Safely transported seafood products to customers while maintaining proper handling procedures and accurate delivery documentation.
  • Protected sensitive business and customer information by following data privacy and security best practices during transactions and recordkeeping.
  • Communicated clearly with dispatchers, customers, and team members to resolve delivery issues promptly and professionally.

Contact Tracer

Maxim Health Services | January 2021 - March 2022
  • Monitored health incidents using epidemiological tools and maintained HIPAA-compliant documentation of sensitive medical information.
  • Conducted confidential interviews with exposed individuals, assessed exposure risk levels, and escalated high-priority cases for rapid response coordination.
  • Leveraged data entry systems and real-time reporting platforms to assist with outbreak containment strategy for Cuyahoga County Health Department.
  • Demonstrated ability to handle sensitive information securely while working under pressure during public health emergencies.

Security Guard

MGM Northfield Park | May 2021 - August 2021
  • Conducted regular patrols of casino property to detect suspicious activity and unauthorized access, with focus on identifying security vulnerabilities and potential breaches.
  • Ensured access control at entrances and employee areas, verifying credentials and screening individuals for potential threats, applying principles of identity and access management.
  • Assisted in enforcement of security policies including credential verification, monitoring surveillance systems, and responding to security incidents.
  • Recognized and reported social engineering attempts and security vulnerabilities to management, demonstrating security awareness and threat detection capabilities.

Amazon Delivery Driver

Lance Global Logistics | August 2020 - January 2021
  • Documented delivery incidents, delays, and customer feedback following internal reporting guidelines with attention to accuracy and detail.
  • Followed security protocols to protect sensitive customer information stored on delivery devices and within Amazon's logistics system.
  • Troubleshot mobile devices and delivery applications to ensure accurate package tracking and route optimization for efficient operations.
  • Identified and reported security risks or unusual activities during deliveries, including potential fraud or suspicious customer interactions.

All-Source Intelligence Analyst

U.S. Army | January 2019 - August 2020
  • Monitored multiple secure enterprise networks (JWICS/SIPR) to identify anomalous activity, adversary indicators, and potential cyber or electronic threats in real time.
  • Conducted structured analysis of multi-source data (OSINT, SIGINT, HUMINT) to correlate indicators, reduce false positives, and assess risk severity.
  • Identified indicators of compromise (IOCs) and emerging threat patterns, escalating findings to senior leadership for decision-making.
  • Produced concise written intelligence products (INTSUMs / GRINTSUMs) comparable to incident reports and executive security briefings.
  • Supported operational risk assessments by analyzing adversary cyber capabilities, infrastructure, and tactics, techniques, and procedures (TTPs).
  • Collaborated with cross-functional teams under time-sensitive conditions to maintain situational awareness and operational readiness.
  • Maintained strict operational security (OPSEC) and compliance with classified data handling procedures in high-availability environments.

Education

Bachelor of Science in Information Systems

California Institutes of Applied Science | 2022 - 2026

Focus on Cybersecurity and Networking

Associate's of Science in Information Technology

California Institutes of Applied Technology | 2022 - 2024

Military All-source Intelligence

Cochise College | 2019 - 2020

Completed coursework towards an Associate's degree

Certifications

  • ISC2 Certified in Cybersecurity (CC) — Provisionally Passed 6/12/2026
  • CompTIA Security+ (SY0-601)
  • CompTIA IT Fundamentals (ITF+) View Badge
  • AWS Academy Graduate - Cloud Foundations View Badge
  • AWS Academy Graduate - Cloud Architecting View Badge
  • AWS Academy Graduate - Cloud Security Foundations View Badge
  • TryHackMe Advent of Cyber
  • Fortinet Certified Fundamentals - Cybersecurity View Badge
  • Fortinet Certified Associate - Cybersecurity View Badge

Technical Skills

Security & Analysis

  • Vulnerability Assessment
  • Network Security
  • Threat Intelligence
  • Password Cracking
  • Social Engineering

Programming & Scripting

  • Python
  • JavaScript
  • Bash Scripting
  • C/C++
  • SQL

Web Development

  • React.js
  • Node.js & Express
  • HTML/CSS
  • REST APIs
  • PostgreSQL/NoSQL

Tools & Platforms

  • Kali Linux
  • Wireshark
  • John the Ripper
  • GoPhish
  • VirtualBox
  • Git/GitHub
  • Vercel/Render