Security Engineer · DevSecOps & Detection Engineering
I'm a security-conscious software engineer with 5+ years of experience designing scalable backend systems, coordinating enterprise integrations, and hardening API endpoints. My focus is on strengthening system integrity through threat-aware architecture, workflow automation, and platform security improvement, with active work in detection engineering, secure SDLC, and cloud security.
Coming from a production engineering background gives me a unique angle on defensive security: I've been the one who built the systems that need defending. I understand where integration seams crack under load, where IAM gets sloppy, and how the operational pressure that ships code also creates the vulnerabilities I'm now learning to detect and remediate. Committed to building resilient, high-availability systems that reduce risk and protect mission-critical infrastructure.
Security & Detection
Incident response · Log analysis · Vulnerability management · Risk assessment · Secure SDLC
Cloud & DevSecOps
AWS services: EC2 · IAM · Elastic Beanstalk · DynamoDB
Languages
Frameworks & Frontend
Databases
A three-VM blue-team lab built on Wazuh, with 5 custom Sigma detection rules mapped to MITRE ATT&CK techniques and validated against Atomic Red Team simulations. Detection coverage spans credential dumping, PowerShell abuse, and scheduled task persistence — each rule shipped with adversary context and hardening guidance.
Stack: Wazuh · Sigma · Atomic Red Team · MITRE ATT&CK / D3FEND · Ubuntu · Bash
API-based integration workflows between simulated enterprise systems, demonstrating secure API design at scale. JSON/XML transformation pipelines with input validation, error handling, and reusable transformation logic — patterns drawn from 13+ production integrations shipped at Aries Worldwide Logistics.
Stack: Mulesoft · REST APIs · JSON/XML · Secure-by-default API patterns
Backend services for inventory and supplier workflows built with a Dallas Software Developers cohort—RESTful APIs and real-time operational data processing, deployed in an Agile team environment.
Stack: Node.js · TypeScript · REST APIs · Cloud deployment
Always open to conversations about detection engineering, DevSecOps practices, AWS security, or breaking into security from a software background. If you're hiring, building, or just want to compare notes:



