tmarktg/ato-in-a-pipeline
DoD-style DevSecOps software factory: hard-blocking CI security gates, signed images + SBOMs, Kyverno-enforced K8s, NIST 800-53 evidence matrix
4 repositories
DoD-style DevSecOps software factory: hard-blocking CI security gates, signed images + SBOMs, Kyverno-enforced K8s, NIST 800-53 evidence matrix
MSc Cyber Security coursework (COMM065, University of Surrey): AWS Infrastructure-as-Code automation with CloudFormation, cloud-init, Kubernetes (Minikube) and Grafana — my contribution to a group cloud automation project.
CodeGuard AI is an enterprise-grade security tool designed to detect GDPR violations, Cloud Security risks, and PII leaks directly in the source code. Powered by Google's Gemini 2.0 Flash LLM, it acts as a Senior Security Auditor, providing context-aware analysis and auto-remediation code fixes.
An enterprise-grade, cloud-native DevSecOps and GitOps monorepo platform featuring fully automated CI/CD safety gating, vulnerability scanning, and declarative continuous delivery using GitHub Actions, SonarCloud, Trivy, and ArgoCD