Skip to content
View alfredgamulo's full-sized avatar
🦄
🦄

Block or report alfredgamulo

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
alfredgamulo/README.md

👋 Hi, I'm Alfred!

I am a Principal Engineer with a deep-rooted obsession for security across cloud infrastructure, compliance, and application domains. I don’t just write code: I build tools that keep the digital world a little safer.

🛡️ What I Do

My journey has taken me through some incredible security challenges. Here is a snapshot of my focus areas:

  • Cloud Security: I've spent years securing AWS environments, from contributing to Cloud Custodian to developing cloud-native HSMs at AWS CloudHSM.
  • Vulnerability Management: At AWS Inspector, I built the backbone data store that tracks security flaws in EC2 hosts and Lambda containers.
  • Infrastructure & FinOps: Most recently at Take-Two, I bridged the gap between security and operations by building a custom CMDB solution to oversee cloud-deployed assets.
  • System Engineering: I enjoy building and maintaining my own computing environment, QuantumQat, which is my custom-tailored, immutable operating system.
  • SaaS Delivery: I overcome the challenge of account provisioning and product delivery pipelines, especially when they empower users to understand their own compliance.

🚩 The "Hacker" Side

When I am not at my desk, I am usually deep in the security community. I believe in continuous learning and giving back to the scene:

  • Community Leader: I serve as an organizer and Discord Moderator for RVAsec and help co-author the conference-wide cryptography contest for ShmooCon.
  • Active Member: For the last decade, I have been a member of NovaHackers and the HackerAssociation, sharing talks and trading knowledge.
  • CTF Competitor: I love the thrill of the hunt. I have taken 1st place in both Wireless and Embedded CTFs at DEF CON.

🏆 Hall of Fame


🛠️ Tech Stack

Domain Platforms, Technologies & Capabilities
Cloud AWS (HSM, Inspector, Custodian), Cloud Infrastructure
Security CSPM, Encryption, IoT Hacking, Vulnerability Research
DevOps Account Provisioning, Product Pipelines, SaaS Delivery

📫 Let's Chat

I am always looking for new puzzles to solve and security objectives to tackle. If you want to chat about cloud-native security or exchange CTF tips, let's connect!

🌐 Socials:

LinkedIn

📊 GitHub Stats:



Pinned Loading

  1. advent_of_code advent_of_code Public

    Python 2

  2. quantumqat quantumqat Public

    🐈‍⬛

    Shell

  3. CTFdeets CTFdeets Public

    Python

  4. zenyatta zenyatta Public

    🧘

    C++