Cloud Security Engineer focused on secure infrastructure, threat detection, and resilient systems

Experience in cloud security engineering at SMBC and security operations at Pomona College. Focused on detection engineering, compliance alignment (NIST/PCI), and infrastructure security.

What I Do

Cloud Security

Designing and analyzing secure cloud environments with a focus on access control, system hardening, and real world security operations in enterprise settings.

Threat Detection & Log Analysis

Building and scripting security-focused tools using Python, Bash, and Docker to improve visibility, automate workflows, and support CI/CD environments.

Secure Systems & Automation

Analyzing security logs using tools like Microsoft Defender, Duo, and SIEM workflows to identify threats, investigate anomalies, and support rapid mitigation.

Featured Projects

Cloud Security

Global Financial Institution

Embedded within the cloud security function of a global financial institution, contributing to security infrastructure, operational process improvement, and organizational risk strategy. Delivered executive-level analysis on AI security and regulatory compliance, translating technical findings into prioritized recommendations for senior leadership. Designed automation tooling to enforce consistent security baselines across testing environments.

Threat Detection & Log Analysis

Quantum Security Startup

Engineered a Python-based monitoring application to track and visualize real-time performance metrics across CI/CD pipeline processes, improving operational visibility for the engineering team. Implemented containerization workflows using Docker to support scalable, repeatable software deployments. Contributed to defense-focused research on post-quantum cryptographic technologies, supporting grant initiatives aligned with NATO dual-use security priorities.

Secure Systems & Automation

Higher Education Institution

Performed ongoing analysis of endpoint and authentication logs to detect anomalous activity and potential threats across institutional systems. Produced structured IOC-based reports translating technical findings into actionable security recommendations for stakeholders. Developed a compliance crosswalk mapping PCI and NIST 800 controls to streamline regulatory alignment and optimize resource allocation across frameworks. Designed and deployed a Kali Linux-based toolset using Bash scripting and Nmap to audit and remediate file share permission vulnerabilities.