Shift-Left Security: Integrating SAST, DAST, and SCA in GitLab CI/CD
How we reduced critical vulnerabilities by 70% by embedding security scanning directly into the development pipeline—without slowing engineers down.
Security & Data Engineer
From securing systems to processing data at scale — end to end.
End-to-end security from penetration testing and purple team exercises to SOC operations, SIEM deployment, and regulatory compliance.
Scalable data pipelines and ML-powered analytics — medallion architecture, Airflow orchestration, and explainable AI for financial institutions.
Security-first CI/CD pipelines with automated SAST/DAST/SCA scanning, GitOps workflows, and hardened container deployments.
Secure, cost-optimised multi-cloud architectures on AWS and GCP, built with Terraform IaC, Kubernetes, and auto-scaling policies.
Articles on cybersecurity, DevSecOps, and data engineering.
How we reduced critical vulnerabilities by 70% by embedding security scanning directly into the development pipeline—without slowing engineers down.
After auditing a dozen production clusters, the same misconfigurations appear again and again. Here are the controls that have the highest impact-to-effort ratio.
How we implemented Bronze-Silver-Gold layers with Apache Airflow and Delta Lake for a West African financial institution — what worked, what we'd do differently.
Structured guides, cheat sheets, and certification prep.
DevSecOps & DevOps
GitLab CI/CD, pipeline security, SAST/DAST, shift-left practices.
Linux Administration
Shell fluency, process management, networking, and hardening.
Containers & Kubernetes
K8s architecture, workloads, security hardening, and CIS benchmarks.
Cloud Platforms
AWS and GCP — IAM, networking, security posture, and cost control.