Lawal.

Platform Security Engineer / DevSecOps

Infrastructure as Code|Kubernetes|Cloud Security|Applied AI

Australia · Remote

I build secure platforms and harden cloud-native infrastructure at scale. My work sits across infrastructure as code, Kubernetes security, and applied AI workload protection. I bring depth from AWS, research from two funded master's degrees, and hands-on work from production environments.

5+

Certifications

3+

Peer-reviewed publications

2

Funded master's degrees

How a change reaches production

Plan it, sign it, scan it, then prove the cluster agrees. Nothing ships unverified.

lawal@hypdev zsh

lawal@hypdev:~$pipeline

planReviewed before anything is applied. Nothing is changed by hand in a console.

signAn image without verifiable provenance does not reach the cluster.

scanGated on CRITICAL. Zero is the only number that passes.

enforceThe cluster proves the policy holds. I do not assume that it does.

Tab completes, Up and Down recall history.

Commands

How I think about security

Four layers, in the order I reason about them on every platform I build.

Perimeter

WAF, network firewall, zero trust access. Threats are rejected before they reach compute.

blast radius first

Identity

Least-privilege IAM, IRSA, RBAC. Overly broad roles are the most common breach vector.

least privilege

Data protection

KMS, Secrets Manager, Vault. Key management is where real security judgment lives.

encryption at rest

Detection

GuardDuty, Falco, CloudTrail, Security Hub. Prevention always fails. Detection speed is the metric.

MITRE ATT&CK mapped

Tech stack

Tools and platforms I run in production.

CLOUD & INFRA

AWS
Azure
Terraform
Kubernetes
Docker

CI/CD & AUTOMATION

Jenkins
GitHub Actions
ArgoCD
Ansible

LANGUAGES & DEV

Python
C++
Bash
PowerShell