Available for contract or permanent work

Securing the cloud, without slowing you down.

I'm Sebastine — a Cloud Security Engineer with 8+ years across AWS, Azure, and GCP. I build security into the pipeline rather than bolting it on: Terraform modules and policy gates that enforce secure defaults at deploy time, hardened EKS clusters, and SOC 2 / ISO 27001 evidence that generates itself.

8+Years in IT
6+IT certifications
23+Engineers mentored

    
Tools & platforms I work in daily
AWSTerraformKubernetes / EKSGuardDutySecurity HubGitHub ActionsPythonn8n
What I do

Four disciplines, one goal: cloud you can prove is secure.

From pipeline gates to audit evidence, I build the controls that hold up under both attack and audit.

Cloud Security Engineering

Posture assessment and hardening across AWS, Azure, and GCP — triaging Security Hub, GuardDuty, and Config findings and driving remediation with the teams who own the code.

DevSecOps & CI/CD Security

Shift‑left controls that run at build time: reusable Terraform modules, policy‑as‑code deployment gates, and container image scanning in GitHub Actions, GitLab CI, Jenkins, and ArgoCD.

Incident Response & Detection

Alert triage and correlation, threat hunting, IOC enrichment, and the playbooks and escalation workflows that make a 3 a.m. page survivable.

GRC & Compliance

SOC 2, ISO 27001, GDPR, and PCI DSS translated into engineering work — gap assessments, control mapping, DPIAs, and audit evidence that generates itself.

Sebastine Nnanemere, Cloud Security Engineer
About

I build the controls rather than buying them.

I'm a security engineer with 8+ years across cloud security, DevSecOps, GRC, incident response, and IAM governance. Working full remote across Europe (Schengen), I currently own the security lifecycle at OGA SABI — from triaging findings to embedding policy gates in CI/CD to producing the evidence auditors actually accept. I work in English and Italian, across engineering, legal, and compliance teams.

The clearest signal of how I work is what I've built. ciso.ikenga.ng is a GRC platform I designed to make policy generation and risk assessment legible to non‑technical stakeholders — I use it live in advisory engagements. Ikenga Academy is a full‑stack LMS delivering free English and cybersecurity training to asylum seekers across Italy. Alongside those, I've shipped a container scanner, an IOC correlation engine, and a self‑hosted automation stack. I've also trained and mentored 23+ engineers through Springboard.

  • Policy‑as‑code & secure‑by‑default pipelines
  • Zero Trust architecture across cloud & on‑prem
  • EKS hardening: RBAC, network policies, PSA
  • Automated audit evidence & control monitoring
  • Vendor & third‑party risk assessment
  • Translating technical risk for non‑technical teams
AWS Security – Specialty AWS Solutions Architect – Associate (ISC)² CC CompTIA Security+ Azure Security Fundamentals Fortinet NSE 1–3
Toolbox

Skills & technologies

A practical stack built for assessment, defense, and scale.

Cloud & Infrastructure as Code

AWSAzureGCPTerraformAnsibleOracle Cloud

DevSecOps & CI/CD

GitHub ActionsGitLab CIJenkinsArgoCDPolicy‑as‑codeImage scanning

Containers & Kubernetes

EKSRBACNetwork PoliciesPod Security AdmissionOPA / GatekeeperDocker

Detection & Response

Security HubGuardDutyAWS ConfigThreat huntingIOC correlationPlaybook design

GRC & Compliance

SOC 2ISO/IEC 27001GDPRPCI DSSNISTDPIAsGap assessments

Automation & Scripting

PythonBashJavaScriptn8nLinuxWindows
Selected work

Platforms and tools I've designed, built, and operate.

Not side projects — these run in production and I use several of them in client engagements.

GRC Platform

ciso.ikenga.ng

A GRC platform combining policy generation, risk assessment, and compliance tracking for non‑technical stakeholders. Directly analogous to vendor questionnaire and Trust Center workflows — and a live differentiator in my advisory work.

Visit ciso.ikenga.ng →
Education

Ikenga Academy

A full‑stack LMS I designed and operate independently, delivering free English language and cybersecurity training to asylum seekers across Italy.

Visit ikenga.ng →
Container Security

Ofonet

A container security and vulnerability assessment tool that scans Kubernetes and Docker images inside CI/CD pipelines — catching what shouldn't ship before it ships.

Threat Intel

IP‑Dibia

An IP intelligence and threat‑enrichment engine that automates IOC correlation for SIEM and alert workflows, cutting the manual lookups out of triage.

Incident Response

Ikenga

A lightweight IP threat triage utility built to shrink manual investigation time during incident analysis.

Automation

Self‑hosted automation stack

n8n running on Oracle Cloud ARM, powering personal and professional workflow automation — including a media pipeline stitching together Telegram, MEGA, Cloudflare R2, and FFmpeg.

Experience

Eight years, from network segmentation to cloud security ownership.

A track record of measurable reduction in risk, not just activity.

Cloud Security Engineer — OGA SABI Ltd Jun 2024 – present

Own the full security lifecycle: triaging Security Hub, GuardDuty, and Config findings; embedding Terraform modules and policy gates into CI/CD; automating SOC 2 and ISO 27001 evidence with Python, Bash, and n8n; and acting as the translation layer between engineering, compliance, and the business.

GRC Advisor (independent) — Self‑employed 2024 – present

ISO 27001 gap assessments and GRC advisory for startups and small businesses, delivered on my own platform. Run several client accounts concurrently, with competing deadlines and very different levels of technical fluency.

Cloud Security Mentor & SecOps Practitioner — Springboard 2023 – 2025

Trained and mentored 23+ engineers on cloud security architecture, Kubernetes security, and CI/CD security integration in an international cohort, building the repeatable training materials behind it.

Solutions Engineer, Cloud Security & IAM — Elate LLC 2024

Designed secure‑by‑default architectures across GCP and AWS on Zero Trust principles, and ran GDPR and PCI DSS posture assessments for enterprise clients.

Cloud Security Specialist — Soft Solutions S.R.L 2023 – 2024

Built automated vulnerability scanning pipelines feeding a central security metrics dashboard, and led ISO 27001 control implementation and GDPR work — data flow mapping, DPIAs, risk assessments — with legal and engineering.

Security Engineer, Infrastructure & Cloud — Hardcore Biometric Systems 2020 – 2023

Hardened EKS clusters (RBAC, network policies, Pod Security Admission, CI/CD image scanning) and deployed Zero Trust across cloud and on‑prem — cutting unauthorised access and critical‑vulnerability remediation time by 40% each, and lifting AWS Config compliance adherence by 30%.

Testimonials

What people say after working together.

Colleagues and clients from infrastructure, security and delivery roles.

Sebastine’s ability to configure and troubleshoot complex IT systems was outstanding, and he always went the extra mile to ensure that everything was running smoothly. Sebastine’s attention to detail and commitment to quality were key factors in ensuring the success of our IT infrastructure projects.

He was hardworking and always collaborated effectively with others to resolve any issues that arose. He was a valuable asset to our team and made a significant contribution to our success.

Caleb Isaac

DevOps · IT Infrastructure Engineer

Sebastine is one individual everyone would definitely like to work with, apart from being proficient in what he does coupled with good work ethics based on industry standard, he’s resilient mindset and approachableness makes him the go-to person when you need something done ASAP, he’s more proactive than reactive in terms of security measures. Working with him I gained some experience in Networking, Security and IT in general. one fun fact , he taught me how to choose the most secured password ever . I highly recommend him.

Samuel Erowele

Software Engineer

Myself and Sebastine worked in the same team at Hardcore Biometric systems for almost a year. We designed robust and reliable security and infrastructure solutions for the organization. In my time with Sebastine, I never knew anyone better at taking on impossible tasks, with limited resources. I can say that Sebastine is inspired only by challenges; while others give up, Sebastine finds a way to make it work. I highly recommend him for any infrastructure and security role as he is a highly skilled professional who is not afraid of challenges and consistently demonstrates his resourcefulness in finding solutions.

Samson Idowu

Infrastructure Engineer · DevOps Engineer

I have worked with Sebastine and I can attest to his understanding of IT Infrastructure. He has a good grasp of Network and security and has admirable knowledge of numerous operating systems and tools. One thing I admire about him is his commitment to getting things done. He is smart and time conscious even when delivering on result-oriented projects. I fully recommend him for any company wishing to have the best of experience, skills and character.

Olive C.

Project Manager · ClickUp Expert

As a colleague at Hardcore Biometric Systems, Sebastine served diligently in his capacity as an IT Infrastructure Engineer. He was an exemplary employee who maintained the best business practices within our organization. He portrayed competence, discipline, willingness to learn, and problem-solving skills. He is a reliable individual who is always ready and willing to get the job done. I therefore recommend him as a valuable employee, and a worthy addition to any organization.

Ravella Mukoro

Legal And Administrative Expert

In the fields of networking and security, Sebastine has continually shown himself to be a forward-thinking and creative engineer. In addition, he has a thorough understanding of the technologies used to manage, transfer, and safeguard information.

Moyosere Omoniyi

Software Engineering

Journal

Recent writing

Notes on security, infrastructure, and defending Nigerian businesses online.

Have infrastructure that needs securing?

Let's talk about your environment — I'll help you find the gaps before someone else does.