Skip to content
View alfredgamulo's full-sized avatar
🦄
🦄

Block or report alfredgamulo

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
alfredgamulo/README.md

👋 Hi, I'm Alfred!

I am a Principal Engineer with a deep-rooted obsession for security across cloud infrastructure, compliance, and application domains. I don’t just write code: I build tools that keep the digital world a little safer.

🛡️ What I Do

My journey has taken me through some incredible security challenges. Here is a snapshot of my focus areas:

  • Cloud Security: I've spent years securing AWS environments, from contributing to Cloud Custodian to developing cloud-native HSMs at AWS CloudHSM.
  • Vulnerability Management: At AWS Inspector, I built the backbone data store that tracks security flaws in EC2 hosts and Lambda containers.
  • Infrastructure & FinOps: Most recently at Take-Two, I bridged the gap between security and operations by building a custom CMDB solution to oversee cloud-deployed assets.
  • System Engineering: I enjoy building and maintaining my own computing environment, QuantumQat, which is my custom-tailored, immutable operating system.
  • SaaS Delivery: I overcome the challenge of account provisioning and product delivery pipelines, especially when they empower users to understand their own compliance.

🚩 The "Hacker" Side

When I am not at my desk, I am usually deep in the security community. I believe in continuous learning and giving back to the scene:

  • Community Leader: I serve as an organizer and Discord Moderator for RVAsec and help co-author the conference-wide cryptography contest for ShmooCon.
  • Active Member: For the last decade, I have been a member of NovaHackers and the HackerAssociation, sharing talks and trading knowledge.
  • CTF Competitor: I love the thrill of the hunt. I have taken 1st place in both Wireless and Embedded CTFs at DEF CON.

🏆 Hall of Fame


🛠️ Tech Stack

Domain Platforms, Technologies & Capabilities
Cloud AWS (HSM, Inspector, Custodian), Cloud Infrastructure
Security CSPM, Encryption, IoT Hacking, Vulnerability Research
DevOps Account Provisioning, Product Pipelines, SaaS Delivery

📫 Let's Chat

I am always looking for new puzzles to solve and security objectives to tackle. If you want to chat about cloud-native security or exchange CTF tips, let's connect!

🌐 Socials:

LinkedIn

📊 GitHub Stats:



Pinned Loading

  1. advent_of_code advent_of_code Public

    Python 2

  2. quantumqat quantumqat Public

    🐈‍⬛

    Shell

  3. CTFdeets CTFdeets Public

    Python

  4. zenyatta zenyatta Public

    🧘

    C++