Each project applies what I'm studying in cloud and security coursework to a real, working setup.
Modeled least-privilege IAM policies for a multi-account setup, then intentionally broke them to document common misconfigurations.
Built a VPC with public/private subnets, route tables, and NAT gateways to practice core networking fundamentals.
Set up endpoint and network monitoring to practice detection and incident response fundamentals.
A serverless resume site on S3, CloudFront, Lambda, and DynamoDB, with an automated CI/CD pipeline.
A set of Boto3 scripts automating routine AWS account hygiene and tagging enforcement.
Containerized a legacy internal tool, documenting multi-stage builds and image hardening.