+
Skip to content
View Paulinhx's full-sized avatar
🎛️
Research
🎛️
Research

Block or report Paulinhx

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Paulinhx/README.md

Security and software engineer with a strong focus on ethical hacking, DevSecOps, and sustainable digital solutions.

My portfolio highlights:

  • DevSecOps Pipeline Implementation – Integrating security automation within CI/CD workflows on AWS
  • Vulnerability assessments and penetration testing
  • Cloud security assessments
  • Custom scripts for vulnerability scanning and policy enforcement
  • Certifications and THM training walkthroughs

👉 View Full Portfolio on Notion


🛠️ Tech Stack

💻 Programming: CSS, HTML, Python, JavaScript, TypeScript, Bash, SQL, BASIC ( ... )

🌐 Web Development & Design: React, Next.js, Node, Locofy.ai, Figma

🔒 Cybersecurity: OSINT, Ethical Hacking, Digital Forensics, Quantum Cryptography

☁️ Cloud & DevSecOps: AWS, Azure, Docker, Kubernetes, CI/CD, SAST/DAST, GitHub Actions

📜 Compliance & Security: ISO 27001, GDPR, SOC2, EU AI Act


✍️ Writing & Research

I write and curate articles on cybersecurity, ethical hacking, and design.
📖 Read my latest work on Medium


  • Passionate about Threat Detection & Defense, Risk & Compliance,and Digital Health.
  • Strong advocate for ethical hacking, cybersecurity awareness, and open-source contributions.

💬 Feel free to reach out for collaborations, discussions, or just to say hi!


Pinned Loading

  1. aegisflow aegisflow Public

    AegisFlow is a threat-aware CI/CD pipeline that integrates real-time threat intelligence (AlienVault OTX), MITRE ATT&CK-based static analysis, and SBOM-driven CVE detection to automate secure softw…

    Python 2

  2. secure-ci-pipeline secure-ci-pipeline Public

    Security-First CI/CD Pipeline: Automated static and infrastructure security checks using Terraform, Checkov, OPA, Semgrep, Trivy, and GitHub Actions.

    Python 1

  3. secure-sbom-supplychain secure-sbom-supplychain Public

    End-to-end supply chain security demo using Flask, Syft (SBOM), Cosign (image signing), and GitHub Actions.

    Python 1

  4. soc-dashboard soc-dashboard Public

    An hybrid Security Operations Center (SOC) dashboard built with Next.js, featuring real-time security event monitoring, AWS integration, and Cognito authentication.

    TypeScript 1

  5. Python-Nmap-Scanner Python-Nmap-Scanner Public

    This Python script provides a custom implementation of a port scanner using the nmap library.

    Python

  6. Python-Cipher Python-Cipher Public

    This Python script offers a custom implementation of the Caesar cipher, a cornerstone of classical cryptography.

    Python

点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载