Ken Brigham — Security Engineer

Security engineer focused on cloud, DevSecOps, and automation. Detection tooling, hardened pipelines, and IaC for regulated environments.

Download as .zip Download as .tar.gz View on GitHub
Ken Brigham - Security Engineer

Ken Brigham

Security Engineer — Cloud, DevSecOps, and Automation

Sponsored for a U.S. government security clearance, currently in adjudication

Open to remote and hybrid security engineering roles

$ whoami

Ken Brigham — Security Engineer

$ focus --areas

Cloud Security · DevSecOps · Detection & Response · Automation

$ clearance --status

U.S. government — sponsored, in adjudication

$ contact --method=email

kenbrigham777@gmail.com

$ _

Selected Work

Projects

Grouped by capability so each piece of work speaks to a specific part of the security engineering stack.

Detection & Response

SOC tooling, telemetry pipelines, host artifacts, and adversary tradecraft.

IR · Desktop Featured

Quick Incident Triage Toolkit

Offline desktop app for rapid system diagnostics — real-time monitoring, host artifact collection, and JSON export for handoff to IR teams.

RustTauriReactIR Tooling
View Project
SOC · Azure Featured

Home SOC on Azure

A working personal SOC built on Azure Monitor, Log Analytics, and Sentinel — ingesting telemetry from a home lab and detecting simulated threats end-to-end.

Azure SentinelLog AnalyticsKQLSIEM
View Details
Red Team · PoC

'RogueSpeared' Tool

Red-team PoC creating polyglot WAV+Python files that play audio but execute encrypted payloads when run as scripts.

Red TeamPythonPolyglot
View Project
Blue Team · Lab

TryHackMe SOC Level 1

Blue-team training notes and lab walkthroughs from the TryHackMe SOC Level 1 path — SIEM, threat intel, and IR fundamentals.

SOCBlue TeamSIEM
View Notes

Cloud Security Engineering

IaC, hardened workloads, and AWS-native automation patterns.

Cloud · IaC Featured

AWS 3-Tier Web App

Production-style Node.js 3-tier app deployed to AWS Fargate with PostgreSQL and an ALB — fully provisioned via Terraform with Docker containerization.

AWS FargateTerraformDockerPostgreSQL
View Project
Drift · Go

AWS IaC Drift Detector

A Go-based CLI tool that detects configuration drift between Terraform-managed infrastructure and live AWS resource state.

GoTerraformAWS
View Project
Serverless · Backup

AWS Smart Vault

Backup management for EBS snapshots using EventBridge and Lambda — with audit logs and cleanup automation.

LambdaEBSEventBridge
View Details
Serverless · Scale

AWS Silent Scalper

Serverless AWS pipeline that triggers processing on file upload with autoscaling — no idle compute.

LambdaS3EventBridge
View Details

DevSecOps & Automation

Hardened pipelines, security gates, and platform-level automation.

CI/CD · Security

Security Scan CI/CD Pipeline

GitHub Actions pipeline integrating Trivy, Checkov, Bandit, and OWASP Dependency-Check with SARIF reporting to GitHub Security.

GitHub ActionsTrivyCheckovSARIF
View Project
Azure · CI/CD

Azure DevOps Pipeline

Terraform deployments at scale using Azure DevOps, Service Principals, and secured CI/CD pipelines.

Azure DevOpsTerraformCI/CD
View Project
EKS · Jenkins

Chatbot UI on EKS

OpenAI Chatbot UI deployed with Jenkins, EKS, and Terraform — built with DevSecOps practices baked in.

JenkinsEKSTerraform
View Project
Kubernetes · Microservices

KubeCart (AWS / GCP)

Containerized Flask microservice deployed on EKS with a live Swagger UI for API interaction.

KubernetesFlaskSwagger
View Project

AI / ML Security

LLM tooling and adversarial AI tradecraft.

LLM · App

AWS PartyRock: JargonBridge

An LLM-powered app that translates technical jargon to plain English and back, built on Amazon PartyRock / Bedrock.

PartyRockLLMBedrock
View App
Credential · AI Red Team

HTB & Google AI Red Teamer

Joint HackTheBox & Google credential covering adversarial ML, prompt injection, model evasion, and AI system attack surfaces.

AI Red TeamAdversarial MLPrompt Injection
View Credential

Verified Credentials

Certifications

30+ industry certifications across security, cloud, and DevOps.

CompTIA Security+

CompTIA — Aug 2024

CompTIA Network+

CompTIA — Feb 2025

HTB & Google AI Red Teamer

HackTheBox + Google — May 2025

Microsoft Azure Fundamentals (AZ-900)

Microsoft — Mar 2025

Show all certifications
Google Cloud Digital Leader

Google — Apr 2025

Google IT Support Professional

Google — Nov 2023

Fortinet FortiGate 7.4 Operator

Fortinet — May 2025

Blockchain Security

Infosec — May 2025

AI Security

Infosec — May 2025

AI Infrastructure and Operations

NVIDIA — May 2025

Databricks Fundamentals Certified

Databricks — Apr 2025

Databricks Generative AI Fundamentals

Databricks — Apr 2025

Scrum Fundamentals Certified (SFC)

SCRUMstudy — Apr 2025

Scrum for Ops & DevOps (SODFC)

SCRUMstudy — Apr 2025

Agile with Atlassian Jira

Atlassian — May 2025

Coursework & Programs

Education

AI Strategy and Governance

The Wharton School, UPenn — May 2025

Advanced System Security Design — CS 6910

University of Colorado, Colorado Springs — June 2025

Continuous Delivery & DevOps

Darden School of Business, UVA — May 2025

DevOps, DataOps, MLOps

Duke University — May 2025

Intro to AI for Cybersecurity

Whiting School of Engineering, JHU — June 2025

Introduction to DevSecOps

Whiting School of Engineering, JHU — May 2025

DevOps Culture and Mindset

UC Davis — May 2025

Elements of AI

University of Helsinki — May 2025

DevOps with Kubernetes

University of Helsinki — Apr 2025

Get in touch

Let's connect

Open to remote and hybrid security engineering roles — particularly where cloud, DevSecOps, and automation intersect.