Infrastructure & Code

Production-ready security automation tools

A collection of validated Python scripts, PowerShell modules, and Terraform configurations built to enforce continuous compliance and secure cloud identity.

Core Disciplines

Hardened by design

Identity Governance
Cloud Hardening
Vulnerability Ops

IAM Auditing

Secure IaC

Scan Pipelines

Automated PowerShell and Python scripts to continuously scan Microsoft Entra ID and Active Directory for privilege creep.

Terraform templates pre-configured for AWS and Azure environments, aligning infrastructure deployments directly with SOC 2 and PCI DSS compliance requirements.

Custom integration scripts designed to ingest vulnerability scan data, prioritize critical findings, and trigger automated remediation alerts across engineering teams.

Macro screenshot of a terminal output running a Python security script, clean monospaced JSON output highlighted in cyan, dark ambient studio lighting
Macro screenshot of a terminal output running a Python security script, clean monospaced JSON output highlighted in cyan, dark ambient studio lighting
Close-up of a terminal interface displaying PowerShell execution results, green and cyan success indicators, dark high-contrast theme
Close-up of a terminal interface displaying PowerShell execution results, green and cyan success indicators, dark high-contrast theme
Codebases

Featured repositories

These production-ready repositories feature clean software architecture, comprehensive setup guides, and verified terminal outputs for rapid deployment.

PYTHON / AWS
POWERSHELL / AD

Cloud IAM Auditor

Active Directory Defender

An automated auditing tool that maps AWS IAM policies against SOC 2 identity controls, continuously generating structured JSON reports for security teams.

A robust PowerShell suite designed to actively detect Active Directory trust misconfigurations, weak Kerberos delegation, and orphaned high-privilege administrative accounts.

Need custom security tooling?

Let's connect to discuss how we can automate your cloud infrastructure hardening, identity governance, and continuous compliance pipelines.