Senior Systems Engineer

Cristian
Cuda

Senior Systems Engineer
Infrastructure Architect
Security Practitioner
Identity & Access Specialist

A Senior Systems Engineer with over a decade building resilient infrastructure, hardened security programs, and enterprise-grade networks in private equity environments — where uptime, discretion, and precision are non-negotiable.

10+ Years in IT
3 Certifications
PE Industry
Current Time — Los Angeles
––:––:–– ––
Scroll
01 — About

Engineering with
purpose and precision.

I'm Cristian Cuda — a Senior Systems Engineer with a B.S. in Computer Science from California State University, San Bernardino. I've been in IT since I was 15, driven by genuine curiosity about how systems connect, break, and can be made to hold.

My career has been built in high-trust, high-stakes environments. In private equity, there is no tolerance for ambiguity in infrastructure — security controls are real, uptime expectations are absolute, and the cost of failure is significant. That context has sharpened how I think, design, and operate.

Beyond the stack: mountain biking, piano, hiking, and a sincere appreciation for good beer.

Current Role
Senior Systems Engineer
Private Equity — Los Angeles, CA
2022 – Present
Education
B.S. Computer Science
Cal State San Bernardino
Focus Areas
Infrastructure · Network Design · Enterprise Security
Identity & Access · Systems Reliability
Networking
Cisco Meraki Zscaler AnyConnect Dual-ISP HA
Security & Identity
SAML / SSO MFA SIEM DLP MSSP Pen Testing
Systems & Platform
Windows Server Jamf Storage Infra Cloud Security UPS / ATS
02 — Experience Highlights

Work that moved
the needle.

Engineering initiatives led across infrastructure, security, identity, and operational continuity.

01
Infrastructure · Networking
Network Redundancy & HA Architecture
Designed enterprise-grade redundant network environments using dual ISP connectivity and high-availability firewall configurations. Layered failover strategies reduced single points of failure and aligned network posture with PE-grade operational expectations.
02
Security Operations
Security Program Modernization
Led MSSP transition efforts and drove maturity across the security program — DLP and SIEM-related initiatives, cloud security visibility improvements, and coordination of third-party penetration testing with full remediation planning and tracking.
03
Identity & Access Management
SAML / SSO Enterprise Integration
Implemented SAML-based single sign-on integrations across enterprise platforms, strengthening secure access controls, simplifying authentication, and reducing credential-related risk surface across the organization.
04
Remote Access · Travel Security
Secure VPN for High-Risk Travel
Engineered a hardened remote access solution for high-risk travel scenarios using Cisco AnyConnect with SAML authentication, MFA enforcement, and full-tunnel policy — ensuring zero unprotected internet exposure for traveling personnel.
05
Power & Continuity
Redundant Power Infrastructure
Designed and implemented redundant power strategy incorporating UPS systems and automatic transfer switches, improving operational resilience and bringing power continuity in line with enterprise uptime requirements.
03 — Credentials

Certifications.

Professional certifications grounding engineering practice in networking, systems, and security.

I
CCNA

Cisco Certified Network Associate

Enterprise networking fundamentals — routing protocols, switching technologies, network security architecture, and WAN connectivity design.

View Certificate
II
MCSA

Microsoft Certified Solutions Associate

Windows Server 2016 — server infrastructure, Active Directory identity services, Hyper-V, and enterprise system administration.

View Certificate
III
CompTIA S+

CompTIA Security+

SY0-601 — security architecture and design, threat management, cryptography, network security controls, and identity protection frameworks.

View Certificate
04 — Projects

Selected Work.

Engineering projects across infrastructure, security, and enterprise continuity.

01
Cisco Meraki HA Firewall

Dual ISP High-Availability Network

Designed and deployed a resilient network architecture using dual internet providers with automatic failover. High-availability firewall pair and layered redundancy strategy eliminated single points of failure and ensured uninterrupted enterprise connectivity.

02
AnyConnect SAML MFA

High-Risk Travel VPN Architecture

Built a secure remote access solution for personnel traveling in high-risk regions. Full-tunnel enforcement via Cisco AnyConnect with SAML-based authentication and MFA ensures all traffic is protected before internet access is permitted.

03
SIEM DLP MSSP

Security Operations Maturity Program

Drove security control maturity through MSSP transition planning, DLP and SIEM deployment, and cloud security visibility improvements. Coordinated external pen testing, managed remediation tracking, and hardened email gateway controls.

04
Storage Platform Continuity

Enterprise Platform Modernization

Led full-stack infrastructure upgrade including storage improvements, server lifecycle refresh, and power redundancy design. Brought the enterprise platform to current-generation standards while minimizing operational disruption.

05 — Contact

Let's build something
that holds.

Interested in discussing infrastructure, security architecture, or anything at the intersection of enterprise systems and operational reliability — reach out.

info@cristiancuda.com