At Link Holdings, I built and run security for a regulated fintech mobile platform using palm biometric authentication across AWS and GCP. I rebuilt IAM around least privilege, led the Cloudflare migration, and hardened EKS with mTLS, network policies, runtime detection, and admission controls.
I embed security into delivery by integrating SAST, SCA, DAST, container scanning, and secrets detection into CI/CD, cutting exploitable vulnerabilities by 30% in 12 months. I also built a cloud-native SIEM and automated detection and containment workflows to drive MTTD and MTTR below 10 minutes.

