As a CISSP-certified Information Security Manager with deep DevOps and DevSecOps experience, I help organizations secure their systems without slowing delivery. I combine strategic security leadership with hands-on technical execution across cloud infrastructure, CI/CD pipelines, and modern application stacks.
My approach bridges security, engineering, and operations, ensuring security is built into how teams design, deploy, and operate systems—not bolted on later.
SERVICES OFFERED
Security Assessments & Risk Management
• Conduct in-depth security assessments, threat modeling, and risk analyses
• Identify vulnerabilities across cloud infrastructure, applications, CI/CD pipelines, and networks
• Prioritize remediation aligned with real business and engineering impact
DevSecOps & Secure SDLC
• Integrate security into CI/CD pipelines (GitHub Actions, GitLab CI, etc.)
• Implement automated controls for SAST, DAST, dependency scanning, secrets management, and IaC security
• Define and operationalize secure SDLC practices without reducing developer velocity
Cybersecurity & Cloud Security Strategy
• Design and implement programs aligned with ISO 27001, SOC 2, PCI-DSS, and NIST
• Secure AWS, Azure, and GCP using least privilege, logging, monitoring, and defense-in-depth
• Build scalable architectures that support growth
Incident Response & Operational Security
• Lead and support incident response and breach handling
• Coordinate containment, recovery, and root-cause analysis
• Improve logging, alerting, and detection
Compliance & Audit Readiness
• Prepare organizations for SOC 2, ISO 27001, HIPAA, PCI-DSS, and GDPR
• Translate compliance requirements into practical technical controls
• Produce audit-ready documentation and evidence
Endpoint, Network & Platform Security
• Implement endpoint protection and device hardening
• Design secure network architectures and zero-trust patterns
• Improve identity and access management across cloud and SaaS
Security Training & Engineering Enablement
• Provide practical security training for engineering and DevOps teams
• Run phishing simulations and awareness programs
• Help teams understand why controls exist
WHY WORK WITH ME
• CISSP-certified with hands-on DevOps and cloud security experience
• Practical, production-ready security controls
• Experience with startups through enterprise environments
• Direct, clear communication with no unnecessary complexity
Let’s build a secure, scalable, and audit-ready environment that supports engineering teams and protects your business as it grows.
Eugene d. earns an estimated $15k/mo. That's 10× the typical freelancer and more than 99.95% of everyone we track.