Rich Karus

Staff Security Engineer

A seasoned engineer with over a decade of extensive technical experience, I currently serve as a Staff Security Engineer in the Okta CIC (Auth0) Engineering team. In this role, I lead the technical direction for backend API systems and tooling within Platform Security. Additionally, I mentor senior engineers to support their professional development and foster a positive organisational culture.


Work Experience

Staff Security Engineer

Okta | 2024 - Present

As a Staff Security Engineer, I serve as the technical lead for my team and contribute to the technical direction of our internal Go, Python, and JavaScript API services, which provide essential security capabilities for our engineering teams. My responsibilities also include code contribution for an internal vulnerability management system, enhancing the security posture of our Kubernetes clusters’ ingress and egress using service mesh technologies and acting as a code gatekeeper for Tier 0-3 services.

  • Technical Leadership for internal core security services alongside cloud hardening on AWS & Azure
  • CTF enthusiast and team leader for extra-curricular security events

Staff Database Engineer

Okta | 2021 - 2024

Specialising in tooling initiatives, I predominantly focus on developing solutions in Go for Kubernetes orchestration tooling, with a particular emphasis on optimising environments across AWS and Azure platforms. In this role, I am also an Auth0 Security Ambassador and Security Champion for Platform Engineering within Okta, putting my security knowledge and best-practices to use helping secure Auth0.

  • Reliability engineering that includes metrics, logging, tracing via DataDog, fluentbit, Opensearch,
  • On-call responsibilities for incidents pertaining to: MongoDB, PostgreSQL, RabbitMQ, Kafka, AWS, Azure, Linux + Kubernetes, Security.

Sr. DevOps (MSE) Engineer

Auth0 | 2020 - 2021

As a Senior Managed Service Engineer, I operated remotely within a global team, contributing technical expertise in AWS, Linux, Python, Ruby, and Terraform. I managed AWS cloud infrastructure via Terraform, mainly focusing on Linux environment deployments. I demonstrated proficiency in automation using Python and Ruby, contributing to the enhancement of system reliability through efficient scripting.

  • Served as a Manager for a period of time, overseeing team activities and fostering a collaborative environment to achieve organisational objectives.
  • On-call responsibilities for incidents or out-of-hour customer requests, particularly with: MongoDB, PostgreSQL, AWS, Networking and Linux

Linux System Engineer

Clearwater Analytics | 2018 - 2020

As a System Engineer in EMEA, I had the responsibility for managing thousands of development and production systems for both internal and external clients.

  • On-call and responsible for incidents pertaining to: MSSQL, RabbitMQ, Apache Tomcat, Python microservices, Linux systems.
  • Contributing to internal deployment tooling via Python & Puppet.

Sr. System Administrator

Broadridge | 2017 - 2018

As a Senior System Administrator, I oversaw the deployment of >500 hybrid environments for Private SaaS customers. My role encompassed extensive technical responsibilities with Red Hat Linux, Oracle databases, BMC, WebsphereMQ, Perl, Ruby and C#. Additional responsibilities included team leading, mentoring and service delivery.

    Systems Engineer

    Realise | 2016 - 2017

    As a Linux Systems Engineer, I was tasked with maintaining and overseeing hundreds of customer SaaS environments. My responsibilities included network administration, facilitating hybrid deployments, and engaging in a wide variety systems engineering tasks across both Linux and Windows environments.

      System Administrator

      Broadridge | 2014 - 2016

      As a Systems Administrator, I oversaw internal development systems, manage Oracle databases, administer SAN arrays, handle network configurations & deployments and engage in system engineering tasks across *nix and Windows environments.

        Projects

        1Password SDK

        Open Source | Python

        Creation of an open-source SDK to connect and use 1Password in Python seamlessly through native integrations, e.g Biometrics

        Ranger

        Open Source | Go

        Automation commander for home environments written in Go. Ranger CLI interfaces with a deployable API 'petal'

        Events

        Scotland Hacks

        Hackathons | 2014 - 2021

        Founding member and infrastructure architect of security hackathons (e.g. CTF, King of the Hill) based in Glasgow, Scotland.

        RHoKSec

        Hackathons | 2013 - 2016

        Member of Random Hacks of Kindness, creating security hackathons around real products like `riak`. Collaboration with Geeks Without Bounds (GWOB) for Humanitarian hacks, e.g. Tarrifa, JB Morgan Code for Good