Cloud Security Engineer specializing in multi-cloud security architecture and Infrastructure as Code.
Cloud Security Engineer with expertise in designing and implementing secure cloud architectures across AWS, Azure, and GCP. Focused on security automation, Infrastructure as Code, and establishing security baselines for enterprise cloud environments.
Responsible for designing secure cloud architectures and implementing security controls across multi-cloud environments. Work includes security baseline development, threat detection automation, and compliance framework implementation.
Key Deliverables:
- Secure cloud architecture design and implementation
- Security baseline development and enforcement
- Automated threat detection and response systems
- Security assessments and compliance audits
- Infrastructure as Code security automation
Selected Projects:
- Implemented security baselines across AWS accounts using Terraform
- Deployed automated threat detection with AWS GuardDuty and Security Hub
- Designed zero-trust IAM architecture for enterprise workloads
- Built multi-cloud security monitoring and alerting infrastructure
AWS Security Services
- AWS Security Hub, GuardDuty, IAM, KMS, Secrets Manager
- AWS WAF, Shield, Network Firewall
- AWS Config, CloudTrail, CloudWatch, EventBridge
Azure Security Services
- Azure Security Center, Sentinel, Key Vault, Defender
- Azure Policy, Monitor
GCP Security Services
- Security Command Center, Cloud Armor, IAM, KMS
- Cloud Security Architecture
- Identity and Access Management
- Threat Detection and Incident Response
- Network Security and Data Protection
- Security Compliance and Auditing
Tools: Terraform, AWS CloudFormation, Ansible, Chef
Scripting: Python, PowerShell, Bash
CI/CD: Jenkins, GitLab CI, GitHub Actions
PCI-DSS, SOC 2, ISO 27001, HIPAA, GDPR, NIST Cybersecurity Framework, CIS Benchmarks
Location: Ho Chi Minh City, Vietnam
Email: khavan.work@gmail.com
LinkedIn: linkedin.com/in/vanhoangkha
Website: cloudjourney.awsstudygroup.com
