Babatunde Ojo
> Cloud Security Engineer
I secure hybrid AWS and Azure environments in regulated industries, and I write down how.
Security engineer with 5+ years across infrastructure, cloud security, identity, detection and endpoint, working in HIPAA and HITRUST environments. I build AWS security controls from the ground up, wire detections into SIEM/XDR, and automate the repetitive parts in Python.
cat impact.log
in infrastructure and security, across AWS and Azure
endpoints patched and remediated through Python and Automox automation
Microsoft Secure Score across identity and endpoint
compliance frameworks supported: HITRUST, HIPAA, SOC 2
ls -lt writeups/
Phishing lab: credential harvesting with the Social-Engineer Toolkit
A lab walkthrough of how a credential-harvesting phishing page is built with SET in an isolated environment, to understand what defenders and users are up against.
Threat assessment: APT29 and APT41
A threat intelligence report profiling two state-linked actors: attribution, campaigns from the DNC intrusion to SolarWinds, TTPs mapped to MITRE ATT&CK, and defensive recommendations.
Network vulnerability assessment with Nessus
A full vulnerability assessment report for a lab organization: scope, CVSS scoring methodology, critical through medium findings, and a prioritized remediation plan.
Capture the Flag: Linux, web, hidden flags, hash cracking and Nmap
A seven-part TryHackMe CTF worked end to end: Linux user management, file system and web flags, steganography-style hidden flags, hash cracking, and an Nmap scan report with remediation.
history --career
- 2024-07 → now
Security Engineer, Cloud & Infrastructure
@ Smart Data Solutions
- Led AWS security architecture for enterprise migration work: IAM, logging, monitoring and network segmentation.
- Own hybrid cloud security across AWS and Azure for systems that handle PHI and PII.
- Built SIEM/XDR integrations and alert automation pipelines that cut response time.
- Designed and enforced Zero Trust access models; configured SAML SSO for AWS WorkSpaces.
- 2023-03 → 2024-07
SOC Analyst (Contract)
@ Masterschool
- Triaged and investigated alerts with Splunk and endpoint telemetry.
- Hunted through logs and packet captures for IOCs and lateral movement.
- 2021-07 → 2024-07
IT Support Engineer I
@ Amazon Web Services
- Supported enterprise infrastructure across Linux, Windows and macOS.
- Handled identity operations, access control, patching and first-line incident triage.
- 2022-03 → 2022-12
Security Research Engineer (Contract)
@ Northeastern University
- Ran vulnerability assessments with Nessus, OpenVAS and Qualys and prioritized fixes by risk.
cat stack.yml
- cloud:
- AWS IAMCloudTrailGuardDutySecurity HubVPC securityAzure Entra ID
- detection:
- SIEM/XDRSplunkDetection engineeringIncident response
- identity:
- Conditional AccessSAML SSORBACOktaZero Trust
- endpoint:
- IntuneSentinelOneCrowdStrikeAutomox
- vuln-mgmt:
- Rapid7QualysNessus
- automation:
- PythonAutomox workletsWorkflow automation
ls certs/
- AWS Certified Solutions Architect – AssociateAWS · 2024
- CompTIA Security+CompTIA · 2023
- Network Defense Essentials (NDE)EC-Council · 2023
- Ethical Hacking Essentials (EHE)EC-Council · 2023
Hiring for security engineering?
I'm looking for security engineer and cloud security roles where I can own controls end to end: design them, build them, and prove they work. Reach me on LinkedIn or by email.