I design and secure systems across cloud, code, and containers, automating defense, challenging assumptions, and building trust by default. I work at the junction of entropy and architecture, crafting living digital ecosystems beneath sky and earth.
- DevSecOps: Embedded security across CI/CD (AWS, Azure, GitHub Actions)
- Offensive Security: Vulnerability assessments, custom tooling, red team automation
- Cloud Security: Secure architecture reviews, container hardening, IAM strategy
- Detection Engineering: Threat modeling, log analysis, custom rules & alerts
- Governance: Policy enforcement, compliance (ISO 27001, SOC 2, GDPR, EU AI Act)
Security
π οΈ Nmap, Burp Suite, Wireshark, Metasploit, Splunk, Osquery
π Sigma, YARA, Suricata, Zeek, Alien Vault OTX
π¦ SAST/DAST (Semgrep, SonarQube), Threat Modeling (OWASP, MITRE, STRIDE)
Cloud & Infrastructure
βοΈ AWS (IAM, GuardDuty, Security Hub), Azure Defender
π Docker, Kubernetes, Terraform, Ansible
π GitHub Actions, GitLab CI, OPA, HashiCorp Vault
Software Engineering
π» Python, TypeScript, JavaScript, Bash, SQL
βοΈ React, Next.js, Node.js
π¨ CSS, HTML, Figma, Locofy.ai, Notion
Data & Automation
π JSON, YAML, Regex, API design, scripting for automation & security
Fragments β design, forensics, philosophy, and cybernetic futures.
π Medium: @Paulinhx
- Secure by design, not by patch
- Ethics before tools
- Free software is sovereign software
βTo defend a system, you must understand what it dreams of becoming.β
Letβs connect β collabs, audits, or make music!