You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
ForgeMT is a secure, scalable GitHub Actions runner platform for ephemeral workloads. Designed for multi-tenant environments, it automates isolated runner provisioning on Kubernetes or EC2, with built-in OIDC, IAM, cost optimization, and deep observability.
This GitHub Action runs Checkov against infrastructure-as-code, open source packages, container images, and CI/CD configurations to identify misconfigurations, vulnerabilities, and license compliance issues.
A small Terraform project that shows good IAM and security habits in AWS—things like using roles, scoped policies, and reusable modules. It also demonstrates policy-as-code with Checkov to enforce rules beyond Terraform itself.
🌐 NetSentinel: A modular platform delivering IP geolocation, reputation scoring, and lightweight threat intelligence, with modular Terraform, Docker-based DevSecOps pipelines, and full observability via Grafana, Prometheus, and Loki.
End-to-end portfolio for the Microsoft SC-100 Cybersecurity Architect exam - Zero-Trust landing zones, Policy-as-Code, AKS guard-rails, FinOps budget controls, and AI-powered Sentinel playbooks. All projects are IaC-driven (Terraform / Bicep) and mapped directly to the four SC-100 skill domains.
Infra-as-Code for Google Cloud generated using Claude Sonnet 4. Reviewed and continuing to work on. To be used as an open source template for smaller dev teams who could use a jump-start with creating a repeatable cloud environment. Please test and verify everything before pushing to production!!!
TerraGoat is Bridgecrew's "Vulnerable by Design" Terraform repository. TerraGoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.
Detects risky actions (like creating users or disabling logging) and runs serverless log analysis with AWS Lambda and then send real-time email alerts via SNS
Universal K8s template – from local k3s to GKE Autopilot, with dev/staging/prod pipelines powered by Terraform, Helmfile, Argo CD, GitHub Actions, Devbox + Mise, and full security/observability tooling.