Skip to content
View nagasesank's full-sized avatar
🏠
Working from home
🏠
Working from home

Block or report nagasesank

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
nagasesank/README.md

Surya Naga Sesank M

Cloud Security Engineering | Security Architecture | DevSecOps

Cloud security engineer with 10+ years in cybersecurity, focused on security architecture, Infrastructure as Code, identity, governance, detection, incident response, and security automation across AWS and Google Cloud.

Portfolio | LinkedIn | Engineering Writing

Security Engineering Focus

  • Cloud security architecture across AWS and Google Cloud
  • Terraform, Infrastructure as Code, and Git workflows
  • IAM, permission boundaries, SCPs, and Zero Trust
  • Multi-account governance, CloudTrail, GuardDuty, and EventBridge
  • Detection and incident response engineering
  • AWS WAF, Google Cloud Armor, and network security
  • DevSecOps, security automation, controlled validation, remediation, revalidation, and engineering evidence
  • Framework-aware engineering context: NIST, ISO 27001, HIPAA/HITRUST-aligned engineering, PCI DSS, and SOC 2. These references describe engineering context, not organizational compliance, certification, or attestation.

Flagship Engineering Projects

Project Focus Status Links
Enterprise Multi-Cloud WAF Evaluation Platform Terraform-led comparison of AWS WAF and Google Cloud Armor with repeatable validation. Validated Repository · Case Study
AI-Powered Polycloud Security Incident Response Platform AWS-first, event-driven incident-response architecture moving through Terraform implementation. Amazon Bedrock integration and attack simulation are planned. In Progress Repository · Case Study
AWS Multi-Account Zero-Trust Architecture Lab Engineering lab for Organizations, SCPs, IAM boundaries, audit logging, GuardDuty, isolation, and control validation. Active Engineering Repository · Case Study
HIPAA/HITRUST-Aligned Healthcare Security Engineering Platform Terraform-led security engineering for a synthetic healthcare workload: segmentation, IAM, logging, controlled validation, remediation, revalidation, and teardown evidence. In Progress Repository · Case Study

Cloud Security Capability Stack

Cloud Platforms

AWS · Google Cloud

Infrastructure Engineering

Terraform · Infrastructure as Code · Git workflows

Identity & Zero Trust

IAM · Permission Boundaries · SCPs · Zero Trust

Detection & Incident Response

CloudTrail · GuardDuty · EventBridge · Investigation

Application & Edge Security

AWS WAF · Google Cloud Armor · Network Security

Security Architecture & Governance

Multi-account architecture · Governance controls · NIST · ISO 27001 · HIPAA/HITRUST-aligned engineering · PCI DSS · SOC 2

Engineering Practice

DevSecOps · Security Automation · Controlled Validation · Remediation · Revalidation · Evidence and Documentation

Engineering Approach

Design → Infrastructure as Code → Deploy → Validate → Controlled failure where applicable → Investigate → Remediate → Revalidate → Capture evidence → Cleanup / destroy. This workflow keeps implementation state, validation, limitations, and evidence reviewable.

Credentials

  • ISO 27001 Lead Auditor
  • AWS Certified Solutions Architect – Associate
  • EC-Council Certified Ethical Hacker (CEH)
  • AWS Well-Architected Proficient

See the portfolio credential record for supporting certification and training information.

Security Labs & Writing

Friday Security Projects is a seven-part hands-on security engineering series. The writing hub centralizes public work across Hashnode, Medium, DEV, and LinkedIn.

Connect

Portfolio · LinkedIn · GitHub

Pinned Loading

  1. hipaa-hitrust-healthcare-security-project hipaa-hitrust-healthcare-security-project Public

    Production-style multi-cloud healthcare security engineering platform aligned with HIPAA Security Rule and HITRUST CSF objectives, using AWS as the primary implementation and GCP for control-equiva…

    HCL

  2. multicloud-waf-platform multicloud-waf-platform Public

    Enterprise Multi-Cloud Web Application Firewall Evaluation Platform built with Terraform, AWS WAF, and Google Cloud Armor.

    HCL

  3. AI-Powered-Polycloud-Security-Incident-Response-Platform AI-Powered-Polycloud-Security-Incident-Response-Platform Public

    HCL

  4. aws-zero-trust-org-lab aws-zero-trust-org-lab Public

    HCL