I will implement devsecops best practices and harden your AWS environment

United Kingdom

I speak English

Senior DevOps Engineer

I am a dynamic and results-driven DevOps Engineer with over 6 years of experience in optimising cloud infrastructure and automating workflows. I have expertise in AWS cloud solutions and Infrastructur...
About this Gig

Security can't be bolted on at the end. If you're shipping infrastructure without security guardrails baked in from the start, you're building on borrowed time.


I work with teams to shift security left embedding it into the pipeline and infrastructure, not just ticking a compliance box.


What Transform DevOps covers in this engagement:

  • AWS account hardening (IAM least privilege, SCPs, MFA enforcement)
  • Security Hub, GuardDuty, Config Rules, and CloudTrail setup
  • Secrets management with AWS Secrets Manager or HashiCorp Vault
  • Static IaC security scanning (Checkov, tfsec, cfn-nag)
  • Pipeline security gates SAST, SCA, container image scanning
  • VPC security - security groups, NACLs, private subnet architecture
  • CIS AWS Foundations Benchmark alignment
  • Help working towards security certification (ISO 27001, SOC 2, PCI)


Delivered with a clear findings report and remediation guide your whole team can reference.

Tools:

Docker

GitLab

Jenkins

GitHub

CircleCI

BitBucket

Frameworks:

Npm

Terraform

Pulumi

Ansible

Puppet

Cloud Provider:

Amazon Web Services

Programming language:

Bash

JavaScript

PHP

Python

Ruby

Expertise:

Installation

Migration

Configuration