Advanced Threat Detection Techniques
Why antivirus and firewalls alone aren't enough — and the ten techniques (behavioral analytics, EDR, deception tech, and more) that are.
Read the post →I'm Sebastine — a Cloud Security Engineer with 8+ years across AWS, Azure, and GCP. I build security into the pipeline rather than bolting it on: Terraform modules and policy gates that enforce secure defaults at deploy time, hardened EKS clusters, and SOC 2 / ISO 27001 evidence that generates itself.
From pipeline gates to audit evidence, I build the controls that hold up under both attack and audit.
Posture assessment and hardening across AWS, Azure, and GCP — triaging Security Hub, GuardDuty, and Config findings and driving remediation with the teams who own the code.
Shift‑left controls that run at build time: reusable Terraform modules, policy‑as‑code deployment gates, and container image scanning in GitHub Actions, GitLab CI, Jenkins, and ArgoCD.
Alert triage and correlation, threat hunting, IOC enrichment, and the playbooks and escalation workflows that make a 3 a.m. page survivable.
SOC 2, ISO 27001, GDPR, and PCI DSS translated into engineering work — gap assessments, control mapping, DPIAs, and audit evidence that generates itself.
I'm a security engineer with 8+ years across cloud security, DevSecOps, GRC, incident response, and IAM governance. Working full remote across Europe (Schengen), I currently own the security lifecycle at OGA SABI — from triaging findings to embedding policy gates in CI/CD to producing the evidence auditors actually accept. I work in English and Italian, across engineering, legal, and compliance teams.
The clearest signal of how I work is what I've built. ciso.ikenga.ng is a GRC platform I designed to make policy generation and risk assessment legible to non‑technical stakeholders — I use it live in advisory engagements. Ikenga Academy is a full‑stack LMS delivering free English and cybersecurity training to asylum seekers across Italy. Alongside those, I've shipped a container scanner, an IOC correlation engine, and a self‑hosted automation stack. I've also trained and mentored 23+ engineers through Springboard.
A practical stack built for assessment, defense, and scale.
Not side projects — these run in production and I use several of them in client engagements.
A GRC platform combining policy generation, risk assessment, and compliance tracking for non‑technical stakeholders. Directly analogous to vendor questionnaire and Trust Center workflows — and a live differentiator in my advisory work.
Visit ciso.ikenga.ng →A full‑stack LMS I designed and operate independently, delivering free English language and cybersecurity training to asylum seekers across Italy.
Visit ikenga.ng →A container security and vulnerability assessment tool that scans Kubernetes and Docker images inside CI/CD pipelines — catching what shouldn't ship before it ships.
An IP intelligence and threat‑enrichment engine that automates IOC correlation for SIEM and alert workflows, cutting the manual lookups out of triage.
A lightweight IP threat triage utility built to shrink manual investigation time during incident analysis.
n8n running on Oracle Cloud ARM, powering personal and professional workflow automation — including a media pipeline stitching together Telegram, MEGA, Cloudflare R2, and FFmpeg.
A track record of measurable reduction in risk, not just activity.
Own the full security lifecycle: triaging Security Hub, GuardDuty, and Config findings; embedding Terraform modules and policy gates into CI/CD; automating SOC 2 and ISO 27001 evidence with Python, Bash, and n8n; and acting as the translation layer between engineering, compliance, and the business.
ISO 27001 gap assessments and GRC advisory for startups and small businesses, delivered on my own platform. Run several client accounts concurrently, with competing deadlines and very different levels of technical fluency.
Trained and mentored 23+ engineers on cloud security architecture, Kubernetes security, and CI/CD security integration in an international cohort, building the repeatable training materials behind it.
Designed secure‑by‑default architectures across GCP and AWS on Zero Trust principles, and ran GDPR and PCI DSS posture assessments for enterprise clients.
Built automated vulnerability scanning pipelines feeding a central security metrics dashboard, and led ISO 27001 control implementation and GDPR work — data flow mapping, DPIAs, risk assessments — with legal and engineering.
Hardened EKS clusters (RBAC, network policies, Pod Security Admission, CI/CD image scanning) and deployed Zero Trust across cloud and on‑prem — cutting unauthorised access and critical‑vulnerability remediation time by 40% each, and lifting AWS Config compliance adherence by 30%.
Colleagues and clients from infrastructure, security and delivery roles.
Sebastine’s ability to configure and troubleshoot complex IT systems was outstanding, and he always went the extra mile to ensure that everything was running smoothly. Sebastine’s attention to detail and commitment to quality were key factors in ensuring the success of our IT infrastructure projects.
He was hardworking and always collaborated effectively with others to resolve any issues that arose. He was a valuable asset to our team and made a significant contribution to our success.
DevOps · IT Infrastructure Engineer
Sebastine is one individual everyone would definitely like to work with, apart from being proficient in what he does coupled with good work ethics based on industry standard, he’s resilient mindset and approachableness makes him the go-to person when you need something done ASAP, he’s more proactive than reactive in terms of security measures. Working with him I gained some experience in Networking, Security and IT in general. one fun fact , he taught me how to choose the most secured password ever . I highly recommend him.
Software Engineer
Myself and Sebastine worked in the same team at Hardcore Biometric systems for almost a year. We designed robust and reliable security and infrastructure solutions for the organization. In my time with Sebastine, I never knew anyone better at taking on impossible tasks, with limited resources. I can say that Sebastine is inspired only by challenges; while others give up, Sebastine finds a way to make it work. I highly recommend him for any infrastructure and security role as he is a highly skilled professional who is not afraid of challenges and consistently demonstrates his resourcefulness in finding solutions.
Infrastructure Engineer · DevOps Engineer
I have worked with Sebastine and I can attest to his understanding of IT Infrastructure. He has a good grasp of Network and security and has admirable knowledge of numerous operating systems and tools. One thing I admire about him is his commitment to getting things done. He is smart and time conscious even when delivering on result-oriented projects. I fully recommend him for any company wishing to have the best of experience, skills and character.
Project Manager · ClickUp Expert
As a colleague at Hardcore Biometric Systems, Sebastine served diligently in his capacity as an IT Infrastructure Engineer. He was an exemplary employee who maintained the best business practices within our organization. He portrayed competence, discipline, willingness to learn, and problem-solving skills. He is a reliable individual who is always ready and willing to get the job done. I therefore recommend him as a valuable employee, and a worthy addition to any organization.
Legal And Administrative Expert
In the fields of networking and security, Sebastine has continually shown himself to be a forward-thinking and creative engineer. In addition, he has a thorough understanding of the technologies used to manage, transfer, and safeguard information.
Software Engineering
Notes on security, infrastructure, and defending Nigerian businesses online.
Why antivirus and firewalls alone aren't enough — and the ten techniques (behavioral analytics, EDR, deception tech, and more) that are.
Read the post →How a site‑to‑site VPN links branch offices to a central network — and when it's the right call for your organization.
Read the post →Why cybercrime is rising in Nigeria, the tactics attackers use, and the practical steps that actually help.
Read the post →Let's talk about your environment — I'll help you find the gaps before someone else does.