Sofiya Ansari
Details
Skills
• Cloud Security: GCP, Azure, AWS
• IaC/PaC Tools: Terraform, Rego, Styra, Sentinel
• DevOps & CI/CD: Git, Jenkins, GitHub Actions, Docker
• Security Operations: Vulnerability Management, Threat Detection, SIEM, IDS/IPS
• Standards: NIST CSF, ISO 27001, CIS Benchmarks
• Tools: Splunk, CrowdStrike, Microsoft Defender, Qualys, Rapid7
• Programming: Python, Bash, YAML
• Methodologies: Agile, CNAPP, Risk Assessment
About
Cybersecurity professional in protecting enterprise networks, deploying cloud security controls, and
responding to cyber incidents. Skilled in infrastructure-as-code (Terraform), policy-as-code (Rego, Styra), and
cloud security for GCP, Azure, and AWS. Adept in working across DevOps pipelines, securing cloud
workloads, conducting vulnerability assessments, and aligning with industry frameworks like NIST and ISO
27001.