Security Engineering

Secure by design. Scalable by default.

Security Capabilities

πŸ›‘οΈ   Threat modeling & risk assessments

πŸ“‹   Compliance readiness (ISO27001, PCI-DSS)

πŸ”   Secrets & identity management automation

🚨   Incident response & breach readiness

πŸ“ˆ   Vulnerability lifecycle management

πŸ§ͺ   Security testing integration (DAST/SAST)

🧰   Secure development lifecycle (S-SDLC)

πŸ”   Supply chain & third-party risk review

🧡   Attack surface monitoring & alerting

πŸ”§   Developer enablement & training

Recent Security Projects
Government Β· Identity

ScotAccount Identity Platform

Led the security architecture and incident readiness for Scotland’s digital identity system. Embedded threat modeling, secure coding practices, and secrets automation across services.

Finance Β· Compliance

PCI-DSS Secure Mobile App

Architected the security controls for a mobile payment platform, including TLS pinning, Vault integration, network hardening, and pipeline enforcement in a regulated environment.

DevSecOps Β· Automation

Secrets Rotation at Scale

Built and deployed AWS Secrets Manager-based rotation pipelines, integrated with Terraform and GitHub Actions. Supported zero-downtime deployments and audit trail validation.

Cloud Security Β· Observability

Vulnerability Management Pipeline

Automated vulnerability scanning using Trivy, Snyk, and GitHub Dependabot. Prioritized alerting and remediation with custom Slack integration and JIRA ticketing.

Security Tooling & Stack

πŸ”   HashiCorp Vault / AWS Secrets Manager

πŸ”   Trivy / Snyk / Checkov / Dependabot

βš™οΈ   GitHub Actions / Terraform / Terragrunt

πŸ“¦   OIDC / Auth0 / Cognito

🧠   SPDA / OWASP / NCSC guidance

πŸ“ˆ   Prometheus / Grafana / CloudWatch

🚦   AWS WAF / GuardDuty / Inspector

πŸ“Š   JIRA / Notion / Slack integrations

πŸ§ͺ   K6 / DAST pipelines

🧰   Custom Confluence security patterns

Need Security Leadership?

From secure development pipelines to compliance strategy β€” Cipherer helps you ship fast, stay secure, and sleep well.

Get In Touch