Skip to content
View tltaylor1's full-sized avatar

Sponsoring

@tiangolo

Block or report tltaylor1

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
tltaylor1/README.md

Terry Taylor

I am a security engineer and architect in Seattle, working in cloud and identity security for regulated and federal environments. I have taken two organizations from gap assessment through Cybersecurity Maturity Model Certification.

This profile is new on purpose. After ten years on an earlier account, I started this one with a single focus, security, and everything current lives here.

Most of the repositories below form control-plane, a security engineering program built in public with a governed coding agent: every change agent-proposed, human-reviewed, signed, and gated, with the decisions and the failure record kept on purpose. The diagrams and study repositories stand on their own.

If you like the project (control-plane) or the main app (role-call), please give them a ⭐ and let me know!

Featured program

Repository Details
control-plane The program the repositories form: phases fixed before building, monitoring and recovery documented with drills that expire, and the agent governed by gates it cannot route around.
role-call Inventory and governance for non-human identities, the roles, service accounts, and access keys nobody offboards. State derives from observed history rather than being stored, and the tool amplifies a human decision rather than acting on its own. Complete through its version one scope.
build-guidelines The standards every project here starts from, organized by layer. Each rule names what enforces it and the incident that produced it; what no tool can check is named as a human attestation with an expiry.

Demo repositories

Repository Details
secure-expense-mvp A small learning demo expense application, finished and hardened: object-level authorization, tokenized values, audit logging, a security-gated pipeline. Complete on purpose.
sample-diagrams Hand-drawn architecture and process diagrams, drawn in Visio, kept as illustration-only examples of design work

Study repositories

Repository Details
aws-azure-security-mapping Ninety-nine AWS security concepts mapped to the closest Azure comparable, including the seven with no clean equivalent. A study aid from certification work, open to corrections.
anki-decks Seven Anki decks, 1,262 cards across PowerShell, Python, KQL, Bicep, cybersecurity, the AWS Security Specialty, and compliance frameworks. Each folder ships an apkg and a CSV twin so card changes diff line by line.

CISSP · Terraform Associate · CCNA · Microsoft Expert x3

Toolset

Pinned Loading

  1. role-call role-call Public

    Inventory and governance for non-human identities: derived state, enrichment over automation, nothing acts on its own judgment. AWS first. Phase 1, building.

    Python 2 1

  2. build-guidelines build-guidelines Public

    Standards, enforcement, and verification procedures every project starts from.

    Shell 1

  3. sample-diagrams sample-diagrams Public

    Hand-drawn architecture and process diagrams, kept as point-in-time illustrations.

    1

  4. secure-expense-mvp secure-expense-mvp Public

    A small expense submission and approval application, built security-first with each control recorded against the threat it addresses.

    Python 1

  5. tltaylor1 tltaylor1 Public

    Profile README.

    1

  6. tltaylor1.github.io tltaylor1.github.io Public

    A security engineering program, built in public: the map of its parts, the method they share, and the documents that span them.

    HTML 1