Cybersecurity Engineer | CISSP | CCSP | Building security infrastructure and compliance automation
15+ years designing, implementing, and securing enterprise systems — from aircraft carrier combat systems to production cloud infrastructure. Currently building CyberReadyLabs, a cybersecurity consulting firm delivering fractional CISO services and security assessments for small and mid-sized businesses.
- Deployed enterprise Wazuh SIEM across a segmented network — triaged 2,337 vulnerabilities including 8 critical findings
- Implemented centralized logging, file integrity monitoring, and active response with NIST 800-53 control mapping
- Repo: homelab-configs/wazuh
- Built compliance policies as code using OPA (Rego), Chef InSpec, and HashiCorp Sentinel
- Automated CIS benchmark validation, container security enforcement, and continuous compliance reporting
- Repo: policy-as-code
- Production infrastructure with defense-in-depth: Traefik reverse proxy, CrowdSec threat detection, Authentik SSO, network segmentation across isolated VLANs
- GitOps workflow with automated dependency updates (Renovate), container monitoring (Diun), and version-controlled configurations
- Repo: homelab-configs
- n8n automation platform for security operations, content publishing, and business process orchestration
- Integrated with Telegram for approval workflows and real-time alerting
Security: Wazuh SIEM | CrowdSec | Authentik SSO/MFA | pfSense/OPNsense | Pi-hole DNS Filtering
Infrastructure: Proxmox VE | Docker | Traefik | Cloudflare | Unraid
Compliance: NIST 800-53 | NIST CSF | RMF | ISO 27001 | SOC 2 | PCI-DSS
Automation: n8n | Renovate | Diun | GitOps workflows
Policy-as-Code: Open Policy Agent (Rego) | Chef InSpec | HashiCorp Sentinel
- CISSP — Certified Information Systems Security Professional (ISC2)
- CCSP — Certified Cloud Security Professional (ISC2)
- CC — Certified in Cybersecurity (ISC2)
- Lean Six Sigma Green Belt
- M.Eng., Cybersecurity Policy and Compliance — George Washington University (4.0 GPA, 2026)
- U.S. Navy — 15+ years, Senior Electronics Technician, Department Information Systems Security Officer (DISSO) aboard USS Nimitz (CVN-68)
- Launching CyberReadyLabs — fractional CISO services and the CyberReady Snapshot security assessment
- Policy-as-Code framework for automated compliance validation
- MITRE ATT&CK detection coverage mapping for Wazuh
- M.Eng. capstone research in cybersecurity policy
- Website: cyberreadylabs.com
- LinkedIn: linkedin.com/in/john-codis