Cybersecurity Specialist with expertise in Cloud Security and Application Security
Get in Touch
I am a cybersecurity professional with extensive experience in Purple Teaming, Cloud Security (CloudSec), Security Operations Centers (SOC), and DevSecOps. With a solid background in AWS and Azure, I specialize in offensive security, secure development lifecycles, and web application code reviews. My focus is on enhancing security postures for financial services and global enterprises in multi-cloud environments. I leverage various technologies, including IBM QRadar, HashiCorp Vault, SonarQube, Rapid7’s toolset (AppSpider, InsightVM, InsightCloudSec), Endpoint Detection and Response (EDR) solutions, and more. In my free time, I engage in cybersecurity challenges such as Capture The Flag (CTF) competitions and Hack The Box exercises, and I develop applications primarily using Python and Go. I also enjoy watching football and playing video games.
Developed a solution to retrieve risky detections (e.g., password leaks, atypical travel) through an enterprise app in Azure, securely sending the data to a SIEM solution via syslog. Implemented with Docker and HashiCorp Vault for secure authentication
GitHub ProjectDeveloped a tool to monitor and secure sensitive information indexed by Google using a defined set of Google dorks, alerting SIEM solutions when unauthorized data exposure is detected
GitHub ProjectReceived an award for identifying a critical vulnerability in Nokia' s infrastructure (October 2020)
Nokia responsible-disclosureYou can reach out via LinkedIn.