// SEC_ENG

I think like an adversary. I build like
an engineer.

Endpoint hardening, cloud architecture, detection engineering, CI/CD security — full-stack defense, because threats don't respect architecture boundaries.

View Work
PACKETS_RX: 0000
BLOCKED: 0000
DEFENSE: IDLE
MODE: MONITOR
THREAT_ACTOR
RELAY_01
RELAY_02
RELAY_03
TARGET

Context // 01

Security engineering isn't one discipline — it's every layer, and every layer has assumptions worth questioning. I work across the full stack not because I have to, but because the gaps between domains are exactly where things go wrong. Operational reality informs everything I build — controls that look right on paper and hold under real pressure aren't the same thing.

Projects // 02

A selection of engagements — not everything, but the ones worth talking about.

#PRJ-01 cloud_done

Cloud Security Controls

Designed and implemented security controls across a cloud environment — access policies, logging pipelines, and centralized alerting.

CSPM IAM Cloud
#PRJ-02 shield

Endpoint Hardening & Detection

Hardened endpoints across multiple OS platforms against a security baseline. Built detection coverage for host-level threats and enforced configuration at scale.

NIST EDR Detection
#PRJ-03 code

Web Application Security

Worked closely with a development team to find and close security gaps before they hit production. Covered threat modeling, code review, and hands-on testing.

AppSec Code Review PenTest
#PRJ-04 account_tree

CI/CD Hardening & SIEM/SOAR

Secured CI/CD pipelines against supply chain risks, built logging pipelines feeding into SIEM, and authored SOAR playbooks to automate operations.

CI/CD SIEM SOAR

Domains // 03

01. Web Application Security
02. Cloud Security
03. SIEM Engineering
04. Endpoint Hardening
05. SOAR & Automation
06. Digital Forensics
07. IAM & OAuth
08. AI Security
09. Scripting (Python/Bash/PowerShell)
10. CI/CD Hardening
11. Vulnerability Management
12. Penetration Testing

Credentials // 04

OSCP+ Offensive Security Certified Professional+
verified
CEH Certified Ethical Hacker
verified
GCIH GIAC Certified Incident Handler
verified
Security+ CompTIA Security+
verified
Linux+ CompTIA Linux+
verified