Shift-Left Security: Integrating SAST, DAST, and SCA in GitLab CI/CD
How we reduced critical vulnerabilities by 70% by embedding security scanning directly into the development pipeline—without slowing engineers down.
DevOps, Platform and Security Engineer
From securing systems to processing data at scale, end to end.
Security-first CI/CD pipelines with automated SAST/DAST/SCA scanning, GitOps workflows, and hardened container deployments.
End-to-end security from penetration testing and purple team exercises to SOC operations, SIEM deployment, and regulatory compliance.
Secure, cost-optimised multi-cloud architectures on AWS, Azure, GCP and OpenStack, built with Terraform IaC and Kubernetes.
Scalable data pipelines and ML-powered analytics: medallion architecture, Airflow orchestration, and explainable AI for financial institutions.
Articles on cybersecurity, DevSecOps, and data engineering.
How we reduced critical vulnerabilities by 70% by embedding security scanning directly into the development pipeline—without slowing engineers down.
Comment nous avons réduit les vulnérabilités critiques de 70 % en intégrant les analyses de sécurité directement dans le pipeline de développement, sans ralentir les ingénieurs.
After auditing a dozen production clusters, the same misconfigurations appear again and again. Here are the controls that have the highest impact-to-effort ratio.
Structured guides, cheat sheets, and certification prep.
DevSecOps & DevOps
GitLab CI/CD, pipeline security, SAST/DAST, shift-left practices.
Linux Administration
Shell fluency, process management, networking, and hardening.
Containers & Kubernetes
K8s architecture, workloads, security hardening, and CIS benchmarks.
Cloud Platforms
AWS and GCP — IAM, networking, security posture, and cost control.