Eric Lee

Cybersecurity & Enterprise Architect | 20+ Years Securing Critical Infrastructure | Banking, Energy & Government | CISSP SABSA

Greater Melbourne Area

About

I have more than 20 years of experience in Security and Information Technology. This experience encompasses security product specialties, consultancy, enterprise security architecture and strategies. This combination, together with experience with security vendors, large enterprises, and government sectors, can drive positive project and strategic outcomes. This experience was across Singapore and Australia, in addition to managing resources in India.I supported Data Center, Private and Public Cloud Reference Architectures as a Security Architect in ANZ Bank. Within that function, it comes with the responsibility of validating security designs and influencing strategic decisions. I have then leveraged his extensive background to assist large Victorian energy retailers and leading financial institutions with improvements such as certifications, consultations, designing security patterns, security enterprise and solution architectures, along with assessing these organisations against industry frameworks. My consultation ultimately influenced the strategic security direction of these organisations and helped shape the road maps to uplift their organisational security posture and reduce their risk exposures. Summary of my experience: • 20+ years in Security/Network space • 15+ years Enterprise Security Consultant/Designer - Banking/Financial Services • 4 years Pre-Post Sales Security Product Specialist • 2 years Pre-Sales Security EngineerRelated Professional Certificates - 2026: Building AI Strategy Certificate 2022-2025:Google Cloud and Azure Badges 2021: AWS Security Specialist Certified SCS-C01 2019: SABSA Foundation SCF 2017: Palo Alto Firewall PAN-ACE 8.0. Trained in Panorama and Advanced debugging. 2013: EXIN Information Security based on ISO/IEC 27002 (ISFS 27002), Certified Ethical Hacker v7 (ECC030735) 2012: Check Point Certified Security, Administrator NGX (R75), McAfee Certified Product Specialist for IPS 2007: CISSP - Certified Information Systems Security Professional (113590), Aventail Certified Professional 2006: CCNP (BSCI), Routing ModuleSymantec Certified Technical Architect (Gateway Security) 2002: Bachelor in Business Information Technology(Honors Class Two, Division One) - University of Central England, Birmingham, UK Presentation - https://mk809quadcore.github.io/CVPresentation/index.html Live Badges - https://www.credly.com/users/ker-ping-lee.eaeb526c/badges#credly https://learn.microsoft.com/en-us/users/ericlee-7957/

Experience

  • Enterprise Architect at Orro Group
    Mar 2026 - Present · 4 mos

    Mar - Aurizon OT Migration (UTC DTC investigation and recommendations.) May - Splunk Presales Advisory

  • Enterprise Security Architect at Hume City Council
    Feb 2025 - Mar 2026 · 1 yr 2 mos

    ESA role update endorsed by Head of Security 1. Security Domain Advisory 2. Security Architecture Socialization 3. Security Architecture Documentation build per security domain and system category. (20) 4. ESA build - TOGAF SABSA deliverables map - Security Principles - Layers of Isolation - Security Domain Model - Trust Framework - Security Patterns 5. Strategy and adoption - MFA enforcement - passwordless, phish resistant - Purview DLP - Airlock Digital Application control - SOC/SIEM Architecture 6. Security governance and compliance advisory. 7. Entra reviewer and remediation. 8. Security and technical guidance for Essential Eight Maturity 2 compliance 9. Created AI Agents to for threat modelling with zero-trust framework, domains, enclaves and access matrix. 10. Authored Azure Cloud Adoption Security Strategy

  • Security Architect at UniSuper
    May 2024 - Dec 2024 · 8 mos

    2024 - approved stage 1 work packages for security architecture foundations based on TOGAF ADM and Open ESA - SaaS patterns

  • Senior Security Architect at Astralas
    Aug 2022 - May 2024 · 1 yr 10 mos

    2022 Aug - Shell Strategic Security Initiatives Planning Sep - AGL Trusted Third Party OT Access Pattern AGL Service Accounts Management Architectural Guide Information Handling Standards Tableu Online SaaS design security review Service Certification Guardrails for Azure - Container Instance, Service Endpoint, Private Endpoint, Bastion, Functions, App Services, API-M, Firewall, Key Vault, Virtual Machines, Service Bus, Queue Storage, Table Storage, Blob Storage, Application Gateway. Cloud Re-zoning and Segmentation Reference Architecture Cyber Security Delegate for Cloud and Data Design Authority Cyber Security Delegate for Consumer Markets Design Authority Cyber Security Architecture Forum Member Security Architect for Consumer Data Rights 2023 Authored AGL Network Perimeter Security Reference Architecture First Draft Part of a team uplift of AGL policy and standards 2024 Transurban Security Architect OWASP SAMM v2.0 Application Security Framework Digital strategy build 2025 Cybersecurity strategy build 2025

  • Cloud Security Architect Specialist Senior Manager at Deloitte
    May 2021 - Aug 2022 · 1 yr 4 mos

    2021 May - Jemena Cloud Security Enterprise Recommendation June - NAB Bank GCP Vertex AI Machine Learning Environment Threat Risk Assessment. July - ANZ Bank Service Controls Blueprint Assessment for GCP and AWS. Oct - Jemena Enterprise Security Architecture Patterns Creation for the following, Container Security Applications Security Public Web Ingress Secrets Management Operations Technology Environment Access 3rd Party Access Interactive Single Sign on to SaaS Privileged Access Management 2022 Feb - Bendigo Bank AWS/GCP Security Controls Review Mar - Jemena AWS IAM review May - Australia Post enterprise banking remediation architecture and strategy for cryptography and dlp July - Vicinity Cloud Security Policy and Control Library definitions