Available · Immediate Joiner

Designing security
for real cloud systems

I’m Sree Surya Naga M, a senior cybersecurity engineer with 8+ years across cloud, network, and security operations, focused on practical, automation-first security that works in production.

I design, secure, and automate cloud platforms — across identity, network, detection, and compliance — with a focus on systems that scale, pass audits, and survive real incidents.

Sree Surya Naga M
8+
Years Experience
50+
Vulnerabilities Fixed
40%
Risk Reduction
90%
Auto Remediation
EXPERTISE

What I Bring to the Table

A deep skill set across cloud security, network defense, and security operations — built over years in the field.

☁️

AWS Cloud Security

IAM, EC2, VPC, WAF, GuardDuty, CloudTrail, Security Hub — full-stack AWS protection.

🌐

Network Defense

Palo Alto (PCNSE), Cisco (CCNP), Juniper, IDS/IPS, VPN, Zero Trust architecture design.

⚙️

DevSecOps

Infrastructure as Code with Terraform & Ansible, CI/CD pipeline security, Python & Bash automation.

🔍

Pen Testing & Vuln Mgmt

End-to-end penetration testing, OWASP Top 10, RCE, SQL injection identification and remediation.

🤖

GenAI Security

Securing AI/ML pipelines using MITRE ATLAS frameworks — an emerging and critical specialization.

📜

Compliance & GRC

ISO 27001, HIPAA, HITRUST, CIS Benchmarks — end-to-end governance, risk, and compliance.

CAREER

Work Experience

A steady progression from hands-on network engineering to leading cloud-native security operations.

Feb 2025 Sep 2025

Senior Cybersecurity Engineer (AWS Cloud)

CitiusTech · Hyderabad

Architected Zero Trust IAM policies for AWS healthcare platforms ensuring 100% HIPAA/HITRUST compliance. Engineered centralized threat detection reducing MTTD by 35%. Automated 90% of infrastructure remediation via Terraform & Ansible. Led escalation for complex incidents and mentored junior engineers.

Aug 2021 Feb 2025

Security Researcher – Vulnerability Management

Loginsoft · Hyderabad

Conducted end-to-end penetration testing on web applications and APIs, fixing 50+ critical vulnerabilities. Built CIS-based hardening baselines reducing attack surface by 25%. Audited Cisco & Juniper configurations and delivered risk-prioritized reports.

May 2020 Sep 2021

Security Analyst

Mitigater · Bhubaneswar

Monitored enterprise security alerts across firewalls and IDS/IPS. Performed access reviews via Active Directory enforcing least privilege.

Jun 2018 Jul 2019

Security Engineer

CRM Enterprise Pvt. Ltd. · Visakhapatnam

Implemented perimeter security controls using enterprise firewalls. Executed baseline hardening and remediated audit findings.

Apr 2017 May 2018

Desktop & Network Engineer

Flash Forge Pvt. Ltd. · Visakhapatnam

Managed 100+ endpoints with secure config & patching. Maintained 99.9% uptime across LAN/WAN/VPN

PROJECTS

Technical Projects

Real-world builds that put theory into practice at scale.

01

AWS Cloud Security Automation

Automated VPC & Security Group provisioning using Terraform and Python with least-privilege IAM baked in from day one.

02

Network Lab Automation

Used GNS3 and Ansible to fully automate network lab deployments — slashing manual setup time by 70%.

03

Device Vulnerability Assessment

Deep-packet analysis of firewall rules and routing policies to eliminate all exposed services across the estate.

CREDENTIALS

Certifications

Industry-recognized badges that back up the expertise.

AWS

Solutions Architect

AWS Certified

PALO ALTO

PCNSE

Network Security Engineer

EC-COUNCIL

CEH

Certified Ethical Hacker

CISCO

CCNA & CCNP

Networking Certifications

MICROSOFT

MCSE

Systems Engineer

UDEMY

GenAI Cybersecurity

OWASP Top 10 & MITRE ATLAS

WRITING

Latest Blog Posts

Recent writing on cloud security, Zero Trust, detection engineering, and AWS.

HASHNODE

🔐 Project 5: Zero-Trust EC2 Access in AWS Using IAM, SSM, CloudTrail, and GuardDuty

Introduction SSH has been the default way to access Linux servers for decades. In cloud environments like AWS, however, SSH introduces unnecessary risk: static keys, open network ports, weak identity attribution, and poor auditability at scale. In th...

2/1/2026 Read →
HASHNODE

🔐 Project 4: Eliminating SSH with AWS Systems Manager — IAM-Controlled, Auditable EC2 Access

SSH-based access to cloud workloads remains common, but it introduces unnecessary attack surface: open inbound ports, long-lived credentials, key sprawl, and limited auditability. Modern AWS environments do not require SSH for interactive access to E...

1/24/2026 Read →
HASHNODE

🔐 Project 3: Implementing and Testing Security Controls in a Real Cloud Environment

📌 Why This Project Matters Security controls appear perfect on paper — until real-world traffic, misconfigurations, and human errors expose the gaps. In Project 3, I focused on implementing core cloud security controls and then actively testing them...

1/17/2026 Read →
CONTACT

Let’s Connect

Open to new roles, consulting, and collaboration. Let’s build something secure together.

✉️
Email nagasesank@gmail.com
📞
Phone +91 96181 98811
🔗
LinkedIn linkedin.com/in/nagasesank
💻
GitHub github.com/nagasesank