DevSecOps Security Scanning Pipeline
A public Secure SDLC and DevSecOps boilerplate for running repeatable security checks with SAST, secret scanning, dependency scanning, container scanning, SBOM generation, and IaC policy validation.
Case studies and labs that show how I approach Secure SDLC, CI/CD security, backend services, Kubernetes, and practical automation.
Every project in one place, across DevSecOps, backend, cloud, security, and other work.
A public Secure SDLC and DevSecOps boilerplate for running repeatable security checks with SAST, secret scanning, dependency scanning, container scanning, SBOM generation, and IaC policy validation.
A rootless Kubernetes DevSecOps lab that combines GitOps, service mesh, secrets management, network policy, and the DevSecOps Security Scanning Pipeline as part of a controlled Secure SDLC practice environment.
A Linux security reporting project that turns periodic host checks into repeatable text and HTML reports with optional email delivery.
Security automation, Secure SDLC, and pipeline-focused portfolio work
A public Secure SDLC and DevSecOps boilerplate for running repeatable security checks with SAST, secret scanning, dependency scanning, container scanning, SBOM generation, and IaC policy validation.
A rootless Kubernetes DevSecOps lab that combines GitOps, service mesh, secrets management, network policy, and the DevSecOps Security Scanning Pipeline as part of a controlled Secure SDLC practice environment.
Backend services, APIs, secure coding, and implementation experiments
A Linux security reporting project that turns periodic host checks into repeatable text and HTML reports with optional email delivery.