Skip to content
View LF3551's full-sized avatar
:atom:
Focusing
:atom:
Focusing

Block or report LF3551

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
LF3551/README.md

header

Typing SVG


Portfolio LinkedIn Medium Cloud Skills Boost

profile views

👋 About Me

Senior Platform Security Engineer with 12+ years of experience designing, securing, and operating cloud-native platforms in enterprise environments. My work sits at the intersection of platform engineering, cloud security, and software engineering — building delivery foundations that are secure by default, predictable under change, and easy for engineering teams to operate at scale.

Currently working at T-Digital by Deutsche Telekom, designing and operating production GCP platforms with a focus on IAM architecture, Zero Trust, Kubernetes security, and cloud-native observability.

Recognition

Ambassador GCP Product Expert Security Champion CCSK CCZT AWS


💪 Strengths

🏗️ Platform & Cloud Engineering

Cloud-native platforms on GKE & GCP — secure-by-default foundations, multi-region deployment patterns, GitOps promotion workflows, and standardized IaC across environments.

🔐 Security-First Delivery

Zero Trust with Workload Identity Federation, Binary Authorization for supply-chain integrity, Cloud Armor WAF tuning at scale, secrets management, and policy enforcement via OPA/Kyverno.

📊 Reliability & Observability

Practical SLI/SLO design, structured alerting with clear ownership, incident runbooks, and dashboards that surface signal rather than noise.

⚙️ Automation & Enablement

Reusable IaC modules, CI/CD templates, and deployment patterns that reduce drift, lower change risk, and help teams ship without reinventing the wheel.

🐍 Software Engineering

Internal tooling, security automations, and developer-facing services in Python, Go & TypeScript — including merged contributions to official Google Cloud open-source repositories.

☁️ Google Cloud Depth

Multi-region GKE, IAM architecture, VPC/network security, FinOps at org level, and AI infrastructure on Vertex AI — with 1,000+ hands-on labs and Diamond League on Cloud Skills Boost.

🛠️ Tech Stack

☁️  Cloud & Infra
⚙️  DevOps & CI/CD
🔐  Security & Net
💻  Languages
🗄️  Data & AI
🌐  Web

✍️ Latest Writing


📈 GitHub Stats


streak
activity graph

Buy Me A Coffee

footer

Pinned Loading

  1. Open-IPv8-Lab Open-IPv8-Lab Public

    Open-IPv8-Lab is an experimental Python userspace IPv8 research toolkit for address parsing, packet building, routing simulation, PCAP/Wireshark integration, Docker testbeds, and draft-thain-ipv8 e…

    Python 9

  2. human-risk-graph human-risk-graph Public

    Quantitative model for measuring organizational security risk caused by human dependencies, decision concentration, and bus-factor effects.

    Python 1

  3. ClawSec ClawSec Public

    Modern, secure, and minimalist encrypted network tool. Strong encryption , cross-platform, and easy to use.

    C 3

  4. yandex-serverless-aiogram-bot yandex-serverless-aiogram-bot Public

    Simple Telegram bot example on aiogram framework using Yandex Cloud with Webhook (full detailed guide)

    Python 8 1

  5. Apple-Music-Playlist-Scraper Apple-Music-Playlist-Scraper Public

    Python script for scraping song data from Apple Music's "Today's Hits" playlist.

    Python 6

  6. yandex-serverless-slack-bot yandex-serverless-slack-bot Public

    Simple Slack bot example using Yandex Cloud (full detailed guide)

    Python 1