I build secure cloud infrastructure, automate threat detection, and ship production-grade security platforms that work against real infrastructure, not sandboxes.
I got into cloud security through curiosity about how things break. While studying Computer Science, I started exploring how misconfigured AWS environments could be exploited, which led me to build tools that detect and fix those exact issues in production.
My experience spans cloud security engineering, DevOps, and infrastructure automation. I have worked as a DevOps Engineer at Bincom.dev, interned in cloud security at Cyblack, and spent time as a cybersecurity instructor at both NIIT and AFROSHIELDAI, where I trained engineers on AWS, Terraform, Docker, and Kubernetes.
What keeps me going is the challenge of building security systems that are automated, scalable, and actually catch real threats. Every project I ship gets deployed against live AWS infrastructure with real findings, not demo data.
Grouped by domain. Click any category to expand.
All deployed against live AWS infrastructure. Real findings, real fixes.
A full-stack cloud security posture management platform with 15 AWS security rules spanning IAM, S3, EC2, CloudTrail, VPC, EBS, and RDS. Each rule is mapped to a MITRE ATT&CK technique with context explaining exactly how the misconfiguration enables that technique. The remediation engine runs two tiers: auto-execute for critical findings, SNS approval workflow for high severity. Compliance reports map findings to CIS, NIST, SOC 2, and PCI DSS.
A Python CLI and FastAPI tool that automatically discovers privilege escalation paths, lateral movement opportunities, cross-account attack chains, and exposed sensitive resources across AWS environments. Built with an SCP-awareness engine that traverses the full AWS Organizations OU chain to eliminate false positives, plus a condition key evaluator that checks IAM policy conditions to classify paths as EXPOSED, CONDITIONAL, or BLOCKED.
8-microservice SOAR normalising alerts from Security Hub, GuardDuty, CrowdStrike Falcon, Splunk ES, and Wiz Cloud. Sliding-window IoC correlation, MITRE ATT&CK auto-mapping, Step Functions response playbooks. Deployed on EKS with Terraform IRSA and Helm.
Event-driven detection pipeline using GuardDuty, EventBridge, Lambda, CloudTrail, DynamoDB, and SNS. MITRE ATT&CK mapping, dynamic blast radius scoring, severity-tiered auto-remediation. Captured a real Severity 8 UnauthorizedAccess finding during development.
Live stats from GitHub.
Looking for cloud security engineering and detection engineering positions where I can build security automation at scale. Fully available for remote and global opportunities.