Cloud Security Engineer | GRC Engineering | Security Automation
I'm a cybersecurity professional specializing in bridging compliance frameworks with cloud security automation. I build security controls as code, automate vulnerability remediation, and implement policy-driven security architectures in AWS and Azure environments.
Currently: Senior Cyber Security Engineer supporting cloud-hosted systems | CISSP | AWS Solutions Architect Associate
π LinkedIn | π Technical Blog | π Personal Page
- π Building container security scanning pipelines with GitHub Actions & Trivy
- βοΈ Implementing AWS Config auto-remediation for security group misconfigurations
- π Studying for AWS Security Specialty certification
- π± Exploring policy-as-code with OPA and compliance automation frameworks
Cloud Security & Automation
- AWS Security Architecture (VPC, IAM, Config, CloudTrail, GuardDuty)
- Infrastructure as Code (Terraform, CloudFormation)
- Container Security (Docker, Kubernetes, ECR scanning)
- CI/CD Security Integration (GitHub Actions, security gates)
GRC & Compliance Engineering
- RMF/ATO Process (NIST 800-53, FISMA, FedRAMP)
- Vulnerability Management (Tenable Nessus, ACAS, automated remediation)
- eMASS Authorization Workflows
- Policy-to-Code Translation (compliance automation)
Security Operations
- SIEM Analytics (Splunk, Azure Sentinel)
- Network Security (Zero Trust, micro-segmentation, firewalls)
- Threat Detection & Incident Response
- Penetration Testing & Red Team Operations
|
π Container Security Scanning Pipeline
|
βοΈ AWS Config Auto-Remediation
|
|
ποΈ 3-Tier AWS VPC with Terraform
|
π Zero Trust Network Architecture
|
| Project | Technology Stack | Description |
|---|---|---|
| Terraform AWS Configs | Terraform, AWS, GitOps | Automated dev environment provisioning with security controls |
| Terraform Azure Configs | Terraform, Azure, ARM | Azure infrastructure deployment with compliance baselines |
| AWS Security Projects | AWS, Python, Lambda | Security automation and serverless architectures |
| Azure Security Projects | Azure, PowerShell, Sentinel | Cloud security monitoring and SIEM integration |
- OpenVAS Vulnerability Assessment - Complete vulnerability analysis workflow with remediation tracking
- Nmap Network Scanning - Automated network discovery and security posture assessment
- Network Traffic Analysis - Packet capture analysis for threat hunting
- Azure Sentinel Live Attack Map - Real-time threat visualization and geo-mapping
- Incident Handling with Splunk - End-to-end incident response workflows
- Splunk Universal Forwarder Setup - Log aggregation and centralized monitoring
- Active Directory Penetration Testing - Full AD attack chain lab environment
- Hack the Box Walkthroughs - CTF solutions and exploitation techniques
- TryHackMe Labs - Security challenges and skill development
- Penetration Testing Notes - Comprehensive offensive security reference
- Azure Firewall Manager - Secured virtual hub with centralized policy management
- Palo Alto Firewall Projects - Enterprise firewall configurations and security policies
- CISSP - Certified Information Systems Security Professional
- AWS Solutions Architect Associate
- GDSA - GIAC Defendable Security Architecture
- CompTIA Security+ (Instructor)
- π― Currently studying: AWS Certified Security - Specialty
- π©βπ« CompTIA Security+ Study Group - Teaching exam prep courses
- π€ WiCyS Professional Mentorship Program - Active mentor
- π‘ GRC Engineering Club - Member & contributor
- π DevSec Blueprint Community - Technical participant
I'm always interested in discussing cloud security automation, GRC engineering practices, and building security controls as code. Feel free to reach out!
"Building bridges between compliance frameworks and cloud security automation, one Terraform module at a time."