Cybersecurity Analyst | GRC Specialist | AWS Certified
I am a **Cybersecurity and GRC specialist** focused on building secure, compliant, and resilient cloud infrastructures. My expertise lies in translating complex regulatory requirements (like SOC 2, ISO 27001) into practical, automated controls, particularly within the **Amazon Web Services (AWS)** ecosystem.
This portfolio highlights my work in **risk assessment, policy development, security automation (SecOps)**, and designing secure network architectures in the cloud. I leverage tools like Terraform, Python, and AWS native services to drive security maturity.
Designed and deployed an automated AWS baseline using **Terraform and AWS Config** to enforce CIS standards, significantly reducing security configuration drift.
Developed and tested a simulated **cloud-native incident response plan** for an AWS environment utilizing **AWS GuardDuty and Lambda** for automated remediation.
Created a system using **Python and Nmap/Tenable** to schedule scans, parse results, and generate executive reports, improving remediation efficiency by 30%.
Architected a **Highly Available and Secure AWS VPC** with private/public subnets, NAT Gateways, and strict Security Group/NACL policies for zero-trust segmentation.