Skip to content
View richardndungu94's full-sized avatar
💭
Rome🏌️
💭
Rome🏌️

Block or report richardndungu94

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
richardndungu94/README.md

Richard Ndung'u — DevSecOps / AppSec Cybersecurity Engineer

LinkedIn Medium Profile Views


About Me

I am a Cybersecurity Engineer specializing in DevSecOps, Application Security, Cloud Security, SOC Operations, Threat Intelligence, and Infrastructure as Code Security.

With a background in Telecommunication Engineering, I now focus on securing applications, CI/CD pipelines, and cloud environments (AWS & Azure), while building automated security controls across the SDLC.

I enjoy uncovering vulnerabilities, automating detections, and creating secure-by-design systems.


Objective

To design, build, and automate secure systems by integrating security into every stage of the development lifecycle.

I work across:

  • DevSecOps & AppSec
  • SOC & Incident Response
  • Threat Intelligence & Automation
  • Cloud Security (AWS & Azure)
  • Secure IaC & Terraform

GitHub Statistics

GitHub Stats GitHub Streak

Top Languages

Contribution Graph


Skills Overview

Skill Description
DevSecOps Secure CI/CD pipelines, automated security tools
AppSec SAST, DAST, SCA, threat modeling, code security
Cloud Security AWS & Azure IAM, monitoring, infrastructure hardening
Security Automation Python/Node automation, detection engineering
Threat Intelligence IOC analysis, attacker behavior research
SOC & IR Log analysis, threat hunting, detection techniques
IaC Security Terraform secure deployments, cloud security posture

Tools & Technologies

Network Security

Endpoint Security & DFIR

SIEM Platforms


DevSecOps & AppSec

Programming & Frameworks

Security Tools

CI/CD & Containers

Cloud & Infrastructure

Supporting Tools


Certifications


Featured Projects

DevSecOps & Cloud Security

DevSecOps Pipeline
A comprehensive CI/CD security pipeline integrating automated security scanning tools.
View Project →

Terraform — S3 Static Website
Infrastructure as Code for deploying secure static websites on AWS S3.
View Project →

Terraform — AWS Webserver
Automated AWS webserver deployment with security best practices.
View Project →

Terraform — AWS IAM Multi-User Management
Scalable IAM user and group management using Terraform modules.
View Project →

Application Security

Intentionally Vulnerable Auth API
Educational project demonstrating common authentication vulnerabilities and secure coding practices.
View Project →


Connect With Me


Building secure systems, one commit at a time

Popular repositories Loading

  1. Devsecops Devsecops Public

    Create secure SDLC Pipeline

    JavaScript 1

  2. AWS-IAM-Multi-User-Management-with-Terraform AWS-IAM-Multi-User-Management-with-Terraform Public

    A centralised IAM management using Terraform

    HCL 1

  3. terraform-secrets_manager terraform-secrets_manager Public

    HCL 1

  4. AWS-IAM-CompleteAuto-Terraform AWS-IAM-CompleteAuto-Terraform Public

    AWS-IAM-CompleteAutomation-Terraform

    HCL 1

  5. AWS-Vpc-terraform AWS-Vpc-terraform Public

    1

  6. terraform-cloudtrail terraform-cloudtrail Public

    HCL 1