Projects

My Projects

Click a project to jump to its details on this page.

Security Operations Center

SOC Case

Project Summary

For this project, I built a small Security Operations Center environment to protect and monitor a production system. The goal was to detect attacks, visualize alerts, automate incident handling and send notifications to an external channel.

My Contribution

I set up the production system with a Wazuh Agent and Suricata, used Wazuh Manager and Dashboard as the SIEM, and integrated Shuffle as a SOAR platform. Alerts were enriched with VirusTotal and forwarded to Discord through an automated workflow.

Result

The SOC detected test attacks such as SSH brute force with Hydra and Atomic Red Team activity based on MITRE ATT&CK techniques. This project gave me practical experience with detection, alert enrichment, automation and incident response workflows.

AWS IaC Challenge

BookStack AWS IaC

Project Summary

This team project focused on deploying BookStack to AWS using Infrastructure as Code. The goal was to create a GitLab CI/CD pipeline that could provision a complete web application stack with a frontend, backend database and public access through AWS.

My Contribution

I worked on the infrastructure and deployment flow. The setup used Terraform, GitLab CI/CD and AWS services such as ECS Fargate, an Application Load Balancer, RDS MySQL, VPC networking, public and private subnets, NAT Gateway, Security Groups and AWS Secrets Manager.

The pipeline was designed to validate infrastructure code, deploy the test environment, run basic infrastructure tests, send pipeline status notifications to Discord or Teams and support manual promotion to production.

Result

The result was a rebuildable AWS environment for BookStack with separate application and infrastructure responsibilities. The project improved my understanding of Infrastructure as Code, cloud networking, secret management, ECS deployments, RDS data persistence and CI/CD automation.

CI/CD and Infrastructure

ICARUS Platform

Project Summary

ICARUS was a team project for Cloudway, focused on building an integration platform that combines AI processing, backend services and cybersecurity controls. The platform allows users to create integrations, send requests through an AI pipeline, monitor logs and view system metrics.

My Contribution

My main responsibility was the CI/CD and infrastructure side of the project. I worked on the cloud architecture, deployment pipeline and infrastructure automation using AWS services, OpenTofu/Terraform concepts and GitLab CI/CD.

The infrastructure included components such as CloudFront, S3, an Application Load Balancer, ECS Fargate tasks, RDS PostgreSQL, AWS WAF, Cognito, Secrets Manager and CloudWatch monitoring. The pipeline included security and quality gates such as secret scanning, IaC validation, vulnerability checks and deployment promotion.

Result

The result was a documented infrastructure design with separate development and production environments, automated deployment steps, monitoring and cost-control considerations. This project strengthened my understanding of cloud infrastructure, secure CI/CD, state management, observability and the importance of reliable deployment workflows.

Skill Integration Semester 2

Web Hosting Platform

Project Summary

As part of a team project, we designed a platform that made it easier to deploy and manage PHP projects. The goal was to create a more structured deployment flow with backend services, database integration and infrastructure automation.

My Contribution

I worked on the backend setup with FastAPI and MySQL and gained experience configuring Kubernetes namespaces through Ansible automation.

Result

The project strengthened my understanding of backend services, infrastructure automation and the importance of clear configuration when deploying applications.