Compliance, Identity, and Cryptographic Engineering for an Enterprise Cloud Platform
Confidential enterprise clientDelivered
SiegePal supported a large enterprise's cloud-based data analytics platform across three connected areas. The first was a formal gap assessment against FedRAMP and PCI-DSS control frameworks. Controls were mapped against required baselines and verified against live infrastructure, not documentation alone. The second was building a centralized identity federation service. It enabled authentication with external identity providers through SAML 2.0 and OIDC, along with SCIM provisioning and multi-protocol authentication. The third was a data security suite covering dynamic data masking, column-level encryption, and key management across multiple cloud providers. Where gaps were found, SiegePal implemented remediation directly within the platform.
- Technologies / Frameworks
- FedRAMP (NIST 800-53), PCI-DSS, SAML 2.0, OIDC, SCIM, JWT, Kerberos, TLS 1.2/1.3, PKI, FIPS 140-2, AWS KMS, Azure Key Vault, Google Cloud KMS, HashiCorp Vault
- Key capabilities
- Control-by-control verification, federated identity architecture, encryption at scale