┌─[neolace@github]─[~/profile]
└──╼ whoami
Senior Application Security Engineer
Software engineer building secure cloud-native systems,
developer tooling and resilient application platforms.
I work at the intersection of software engineering, application security and cloud architecture.
My focus is turning security from a final checkpoint into a native part of how software is designed, built, deployed and operated.
- Application security and secure software architecture
- AWS cloud engineering and infrastructure automation
- Security testing, threat modelling and DevSecOps
- TypeScript, Python and backend platform development
- Cybersecurity education and community development
| Application Security | Cloud Engineering | Software Development | DevSecOps |
|---|---|---|---|
| Threat modelling | AWS architecture | TypeScript | CI/CD security |
| Secure code review | Serverless systems | Python | SAST and DAST |
| OWASP testing | Infrastructure as Code | Node.js | Dependency security |
| API security | Containers | Backend systems | Security automation |
|
A collection of tools and automation for application security testing, secure code analysis and vulnerability management. Focus
|
Cloud infrastructure patterns built around security, observability, encryption and repeatable deployments. Focus
|
|
A modern full-stack platform using TypeScript, Nuxt, Fastify, PostgreSQL, Redis and containerized infrastructure. Stack
|
Practical cybersecurity material designed to help learners progress from fundamentals to advanced hands-on security work. Topics
|
Replace the four repository links above with your strongest individual project URLs.
role:
primary: Senior Application Security Engineer
secondary: Software Development Engineer
currently_building:
- Secure cloud-native applications
- AWS infrastructure automation
- Application security tooling
- Cybersecurity learning resources
currently_exploring:
- Security-focused developer experience
- Automated cloud governance
- Software supply-chain security
- AI-assisted security engineering
principles:
- Build security into the architecture
- Automate repeatable controls
- Prefer evidence over assumptions
- Make secure choices easy for developersSecurity should not live at the end of the pipeline.
It should exist in the architecture,
the source code,
the deployment process,
the infrastructure
and the decisions engineers make every day.



