Skip to content
View syed-hassan7's full-sized avatar
:shipit:
Pretending I can code
:shipit:
Pretending I can code

Highlights

  • Pro

Block or report syed-hassan7

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
syed-hassan7/README.md
ZARAK_OS Operator Gateway — Syed Zarak Hassan

I work where customer trust, compliance evidence, and security tooling overlap.

LinkedIn Portfolio ZARAK_OS Email

> whoami --brief

name: Syed Zarak Hassan
location: Nottingham, United Kingdom

current_role:
  title: Compliance Analyst
  company: Thrive Learning

education:
  - MSc Cyber Security, Nottingham Trent University
  - BSc Software Engineering, Iqra National University

focus:
  - vendor risk and due diligence
  - customer trust and security assurance
  - compliance operations and process design
  - security tooling and workflow automation

currently_building:
  - VenderScope
  - ContraAI
  - ZARAK_OS

> impact.log

[THRIVE]    Manage a 50+ vendor portfolio across onboarding, risk reviews,
            due diligence, and account health.

[DPA]       Redesigned the company-wide DPA tracking process and reduced
            time-to-approval by 70%.

[ISO 9001]  Built six process flows from scratch to support a successful
            Stage 1 audit and make ownership clearer for non-technical teams.

[MDM]       Led a Kandji migration across 250+ endpoints with zero downtime
            and reduced IT support tickets by 40%.

[TRUST]     Support RFIs, security questionnaires, and customer-facing
            technical assurance work.

[NEXIQUE]   Owned 15+ client accounts end-to-end across onboarding,
            delivery, communication, and relationship management.

> ls ./products

Product Why it exists Stack
VenderScope Built from the pain of handling vendor risk manually across 50+ vendors. Designed to turn point-in-time reviews into continuous vendor risk intelligence. JavaScript
ContraAI AI-assisted contract review platform built to make clause analysis faster, clearer, and more structured. Next.js · Claude API
ZARAK_OS Cyber-noir portfolio OS built to present my work like an interactive environment rather than a static site. TypeScript · Three.js

> cat ./operator-profile.txt

I am interested in work that sits between:

- customer trust
- compliance evidence
- security operations
- technical onboarding
- process design
- useful internal tooling

That usually means taking something messy,
understanding the people stuck with it,
and building a cleaner way through.

> cat ./stack.txt

Security, Trust & Compliance

ISO 27001 SOC 2 GDPR Cyber Essentials Vendor Risk Due Diligence Customer Trust Security Questionnaires

Tools & Platforms

Vanta Jira Kandji Pulseway Splunk Chronicle Bitdefender

Building With

JavaScript TypeScript Python SQL Next.js Claude API Vercel Linux


> ./snake.sh

contribution trail · evidence grid · updated every 12h



GitHub contribution snake eating through the contribution grid

Building at the intersection of security, compliance, customer trust, and product. Open to GRC, customer trust, InfoSec, and compliance engineering roles in the UK.

Pinned Loading

  1. zarak-os zarak-os Public

    ZARAK_OS is more than a portfolio; it's a digital experience featuring a custom window manager, functional terminal, and interactive 3D desktop. It abandons generic web patterns for a technical, "s…

    TypeScript 2

  2. venderscope venderscope Public

    VenderScope provides 24/7 passive risk intelligence for GRC teams. It replaces annual reviews with real-time threat monitoring and secure authentication to surface risk drift as it happens.

    Python 1

  3. red-team-desk red-team-desk Public

    Sentinel Red — authorized static security + GRC readiness skill for Cursor, Claude, and Codex (skill id: red-team-desk)

    Python 1