Python developer. Information security background.
I build tools that automate the tedious parts of security work: detection pipelines, compliance pre-audits, log-based incident analysis, and infrastructure hardening checks.
Stack
Python 3.11 FastAPI Pydantic v2 pytest SQLite PyYAML
Playwright aiosqlite Docker Nginx React 18 TypeScript Vite
Featured projects
| Project | What it does | Tests |
|---|---|---|
| mini-siem-detection-lab | SIEM-like detection lab: 4 log sources, normalization, 9 detection rules, alert lifecycle, incident grouping, FastAPI, CLI, Markdown/JSON reports | 113 |
| pd-scanner-152fz | Async crawler that classifies personal data collection, maps third-party processors, and outputs structured 152-FZ evidence reports | 303 |
| Log-incident-analyzer | CLI analyzer for auth.log / nginx / syslog — detects brute-force, scanning, anomalous access, and credential stuffing patterns | 58 |
| security-config-audit-lab | Docker lab (Nginx + Flask + PostgreSQL) with automated security config checks, severity scoring, and before/after reports | 72 |
What I'm looking for
Open to junior Python backend / security tooling / information security roles.
Contact