Lucas Mancini

Infrastructure & Security Highlights

  • TrueNAS + Zero Trust deployment Designed and deployed a TrueNAS SCALE storage platform secured with an NGINX reverse proxy and Cloudflare Zero Trust tunnels, enabling authenticated remote access to NAS services while masking internal network exposure and enforcing identity-based access controls.
  • Zero Trust architecture implementation Implemented a layered Zero Trust access model using Cloudflare WARP, device posture checks, and DNS-level filtering to protect internal and externally exposed services across the homelab environment.
  • Enterprise network transition support Supported production network infrastructure upgrades during fulfillment-center environment transitions, contributing to hardware lifecycle deployment and service continuity with zero operational downtime.
  • Cybersecurity CTF and incident response work Completed Capture-the-Flag cybersecurity exercises and developed structured incident response reports analyzing attack vectors, detection methods, and mitigation strategies as part of undergraduate cybersecurity training.

Skills

  • Network & Security
    VLANs, Routing, Firewalls
    Cloudflare Zero Trust, NGINX, Docker
    DNS Management, TCP/IP, VPN, DHCP
    Network Hardening, Encryption
    Threat Detection & Incident Response
    Vulnerability & Patch Management
    Access Control & Security Policies
  • Cloud PlatformsAWS Fundamentals (Compute, Networking, Storage)
    Cloud Security Concepts
    Cloud Operations Basics
  • Operating SystemsWindows, Linux, MacOS
    Mobile Platforms: iOS, Android
  • Software & ToolsActive Directory, SCCM, ServiceNow
    Bomgar Remote Support, AirWatch MDM
    HTML Documentation Platforms
  • Operations & DocumentationTechnical Writing
    Process Documentation
    Troubleshooting
    Project Coordination
    Stakeholder Communication

Certifications & Training

  • ACMT (Apple Certified Mac Technician)
  • CompTIA A+ (completed; credential expired)
  • ServiceNow Administrative Fundamentals
  • Switch/Router Essentials (CCNA coursework)
  • AWS Cloud Fundamentals Training
  • Ethical Hacking (coursework)
  • OSHA-10

Projects

TrueNAS SCALE + Cloudflare Zero Trust Implementation

  • Migrated production NAS from TrueNAS Core to SCALE, strengthened containerization and cloud security.
  • Deployed NGINX reverse proxy with Docker-managed, encrypted Cloudflare Tunnel to mask services behind HTTPS and protect sensitive, confidential data while reducing public attack surface.
  • Implemented Cloudflare Zero Trust Access with WARP and device posture checks.
  • Integrated AdGuard Home for DNS-level data protection and malware filtering.
  • Automated encryption (SSL/TLS) using Cloudflare API, ensuring secure communication.
  • Conducted vulnerability management through Nessus scanning, port audits, firewall hardening, and secure configurations to safeguard sensitive, confidential data.
  • Strategically planned and initiated Zero Trust architecture project improving cloud security posture.

Academic Security Projects (UMGC)

  • Capture the Flag (CTF) Log Analysis: Identified 180,000+ user entries across log files, demonstrating skills in log monitoring, pattern recognition, and cybersecurity troubleshooting.
  • Security Strategy for Sifers-Grayson: Designed layered security architecture (DMZ, IDPS, SIEM, IAM) and recommended tools to enhance access control, threat detection, and regulatory compliance.
  • Incident Response Plan: Developed and led end-to-end IR reporting for simulated breaches including malware, phishing, and insider threats; implemented comprehensive containment and recovery strategies.
  • Security Posture Enhancement: Recommended adoption of EDR/MDR, MFA, Zero Trust, SIEM, security policies, and Security Awareness Training to strengthen organizational defenses.

Cybersecurity Virtual Experience Programs (Forage) – June 2025

  • Completed simulations with Mastercard, AIG, Tata, ANZ, Datacom, and Deloitte; gained hands-on experience in IAM, phishing detection, threat analysis, packet inspection, Python scripting, risk assessment, and incident response; delivered executive reports and training strategies to improve cybersecurity posture.

Professional Experience

Technical Support; Build & Deployment Engineer

Amazon
Jul 2021 - Feb 2026
  • Maintained enterprise network systems across multiple MDF/IDF environments, supporting high-availability operations.
  • Led migration of legacy networks to modern FFN architecture with zero downtime, optimizing security and performance.
  • Managed backbone devices and validated end-to-end connectivity for resilient, protected operations.
  • Diagnosed and resolved complex hardware, software, and network issues to ensure business continuity.
  • Spearheaded cross-functional IT and security initiatives across teams to advance infrastructure and incident response.
  • Mentored and coached 10+ technicians, authored technical documentation, and accelerated resolution times by 30%.

IT Support Specialist

Amazon
Oct 2018 - Jul 2021
  • Provided IT support for network operations, account management, and enterprise systems across a 24/7 environment.
  • Resolved high-priority incidents impacting productivity, ensuring operational continuity for business-critical functions.
  • Deployed new hardware/software for teams, projects, and infrastructure upgrades.
  • Introduced new process improvements with cross-functional teams to enhance service delivery and operational efficiency.
  • Built trusted partnerships across departments by delivering consistent, reliable technical support.

IT Equipment Coordinator & Inventory Specialist

Amazon
Sep 2017 - Oct 2018
  • Managed IT equipment inventory and provisioning to support operational demands across Amazon Robotics environments. Oversaw hardware and software deployment for new and replacement systems, ensuring readiness for immediate use.
  • Performed hands-on technical troubleshooting for hardware and software issues, minimizing downtime and supporting productivity across multiple teams.
  • Coordinated vendor repairs (RMA process), tracked equipment status, and maintained accountability through accurate records and process improvements.
  • Built foundational experience in IT systems, hardware lifecycle management, and technical support — contributing to career growth into IT Support Specialist and Build & Deployment Engineer roles.

Education

University Of Maryland Global Campus

December 2025

of Science in Cybersecurity & Technology

University of Maryland Global Campus

December 2023

of Arts in Computer Networks & Cybersecurity

Academic Achievements

Contact Me

Open to Opportunities

Security Analyst & Infrastructure Security Roles

I’m a cybersecurity-focused IT professional with 7+ years of experience supporting infrastructure and systems in enterprise environments, with a growing specialization in Zero Trust and cloud security. I’m open to roles in Security Operations, Cloud Security, and advanced IT support.

  • 7+ years in IT infrastructure and support
  • B.S. in Cybersecurity & Technology
  • AWS, Cloudflare Zero Trust, Docker, NGINX, TrueNAS
  • Hands-on security and homelab project experience

Contact

📧 Email: lucas@backyardcloud.net

📞 Phone: 413-284-2086

🔗 LinkedIn: linkedin.com/in/mancinil

🌐 Location: Massachusetts/Connecticut, United States

🎯 Target: Security Analyst • SOC Analyst • Cloud Security • Infrastructure Security