At Capgemini, I review cloud security findings across AWS, Azure, and GCP, then coordinate remediation with application and infrastructure teams. My work includes identifying misconfigurations, exposed resources, vulnerable workloads, and identity risks.
I strengthen AWS IAM governance through access reviews, permission analysis, and least-privilege recommendations. I also develop Terraform-based security baselines for identity, storage protection, encryption, and logging.
I integrate security validation into CI/CD workflows using tools such as Snyk, Checkov, and Trivy, and create Python automation for evidence collection and remediation tracking. My work supports security practices aligned with CIS, NIST, ISO 27001, SOC 2, and GDPR.

