Skip to content
View obashofemi's full-sized avatar

Block or report obashofemi

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
obashofemi/README.md

πŸ‘‹ Hi, I'm Gbenga Sodipo

☁️ Senior Cloud Security Engineer | Cloud Security Architect

Empowering secure cloud adoption across AWS, Azure, and GCP


πŸ”Ž About Me
I'm a results-driven Cloud Security Architect with over a decade of experience delivering enterprise-grade cloud security solutions across multi-cloud environments. I specialize in designing secure architectures, embedding security into DevOps pipelines, and aligning cloud governance with global standards such as NIST CSF, ISO 27001, PCI DSS, and GDPR.

  • πŸ›‘οΈ CISSP | CCSP | CISM | AWS Security Specialty | Azure & GCP Security Certified
  • ☁️ Multi-cloud expert: AWS | Azure | GCP | Aviatrix | Terraform | Kubernetes
  • βš™οΈ Passionate about Zero Trust, CSPM, IAM, DevSecOps, and Compliance-as-Code
  • 🎯 Proven success securing workloads in finance, manufacturing, and telematics sectors

🧠 Core Competencies

Cloud Security Architecture:
  - AWS, Azure, GCP, Aviatrix, Zero Trust, Multi-cloud Governance
Identity & Access Management:
  - IAM, SSO, Entra ID, OAuth 2.0, SAML, MFA, Key Lifecycle Management
Security Engineering:
  - SIEM (Sentinel, Splunk, QRadar), EDR/XDR, Prisma Cloud, Microsoft Defender
DevSecOps:
  - Terraform, AWS CDK, Serverless Framework, GitHub Actions, Jenkins, CI/CD
Threat Management:
  - Threat Modeling, Incident Response, Threat Hunting, SOC Optimization
Compliance & Frameworks:
  - NIST CSF, ISO 27001, PCI DSS, GDPR, HIPAA, CIS Benchmarks
Automation & Monitoring:
  - Prometheus, Grafana, ELK Stack, tfsec, Checkov, SonarQube

πŸš€ Professional Experience Snapshot

  • 2ndWatch (Ollion)
    Automated vulnerability management pipelines and enforced policy-as-code across multi-cloud environments.

  • Cepheid / Danaher
    Designed and implemented compliance-as-code pipelines, cloud-native controls, and audit-ready dashboards.

  • Maintech Inc.
    Enhanced endpoint protection, SIEM integrations, and threat hunting workflows for improved SOC maturity.

  • Swifthub Services LLC
    Architected secure cloud migrations, implemented Zero Trust models, and led stakeholder security training.

For full experience details, please visit my LinkedIn.


πŸ“« Let’s Connect


πŸ§ͺ Currently Exploring

  • 🧬 Post-quantum cryptography and its application in KMS and cloud key rotation
  • πŸ” Open-source tools for continuous security testing and compliance drift detection
  • πŸ›‘οΈ Zero Trust enforcement in hybrid enterprise infrastructure

🧱 Pinned Repositories (Coming Soon)

Stay tuned for open-source contributions in Terraform modules, cloud security baselines, and incident response automation.

Popular repositories Loading

  1. windows-event-forwarding windows-event-forwarding Public

    Forked from palantir/windows-event-forwarding

    A repository for using windows event forwarding for incident detection and response

    Roff

  2. sysmon-modular sysmon-modular Public

    Forked from olafhartong/sysmon-modular

    A repository of sysmon configuration modules

    PowerShell

  3. Complete-Python-3-Bootcamp Complete-Python-3-Bootcamp Public

    Forked from Pierian-Data/Complete-Python-3-Bootcamp

    Course Files for Complete Python 3 Bootcamp Course on Udemy

    Jupyter Notebook

  4. DetectionLab DetectionLab Public

    Forked from clong/DetectionLab

    Automate the creation of a lab environment complete with security tooling and logging best practices

    HTML

  5. devops-directive-terraform-course devops-directive-terraform-course Public

    Forked from sidpalas/devops-directive-terraform-course

    Companion repo for complete Terraform course

    HCL

  6. packer-windows packer-windows Public

    Forked from StefanScherer/packer-windows

    Windows Templates for Packer: Windows 11, Windows 10, Windows Server 2022, 2019, 2016, also with Docker

    PowerShell