Lead security operations for a 650+ user, 2,000+ endpoint healthcare environment (HITRUST R2 + SOC 2 Type II). Own vulnerability management — 40%+ YoY reduction. Run internal penetration testing on a near-daily cadence. Focus on Zero Trust identity controls, DLP, and insider threat detection.
About
I'm a Junior Information Security Administrator at the Medical Review Institute of America — a HITRUST R2 + SOC 2 Type II healthcare org with 650+ users and 2,000+ endpoints.
I own our vulnerability management program (40%+ YoY reduction in confirmed vulnerabilities) and run internal penetration testing at a near-daily cadence. Outside of work I build software under the grubwire.io studio banner and maintain a homelab for ongoing experimentation.
Experience
Escalated IT support for 650+ users via Jira. Administered user accounts and access in Entra ID. Streamlined equipment audit processes. Acted as liaison between help desk and security teams.
First-level technical support for hardware, software, and access requests in a dynamic healthcare setting. Maintained SLA compliance throughout. Built foundational knowledge in identity management and endpoint troubleshooting.
Led a 20-agent team — daily operations, training, and scheduling. Achieved Top Store designation two consecutive years through the Best Buy Achievers program. Consistently exceeded KPIs.
Performed advanced diagnostics and repairs on computers, mobile devices, and consumer electronics. Mentored junior agents — leadership work that propelled promotion into management.
Primary client-facing technician in a high-volume retail environment. Translated complex technical concepts for clients and consistently met sales/service attachment targets.
Bachelor of Applied Arts and Sciences with a concentration in information security.
Associate of Arts; transferred to UNT.
Skills
- Endpoint, cloud, and identity protection
- Vulnerability management
- Internal penetration testing
- Incident response
- Zero Trust / identity governance
- HITRUST R2
- SOC 2, Type II
- HIPAA Security Rule
- NIST SP 800-53 r5
- PowerShell
- Active Directory / Entra ID
- Jira
- Linux / homelab
Certifications
Projects
Independent software studio — the umbrella brand for games and apps. Vanilla HTML/CSS, Cloudflare Workers, zero dependencies.
grubwire.io ↗A mobile app for crafters who sell. Track your stash, cost projects, price commissions, and manage orders — all in one place.
grubwire.io/stashmate ↗Multiplayer strategy set in a world of ember and ash. Build kingdoms, forge alliances, outlast everyone.
play.grubwire.io ↗Cozy sorting game. You work the night shift at a small-town lost & found — tag, shelve, and uncover the stories behind what people leave behind.
grubwire.io ↗Contact
- Email contact@nicolasjpsanchez.com
- LinkedIn @nicolasjpsanchez
- GitHub @nicolasjpsanchez02
- City Dallas, TX