Cloud Security & Identity Engineer · Chicago, IL
I secure identities, and the cloud they live in: least-privilege access on AWS and Azure, hybrid identity across Active Directory, Entra ID and Okta, secrets in HashiCorp Vault, and the detection that catches what slips through. Then I write it down so someone else could rebuild it.
nobleantwi.com · LinkedIn · Email
| Project | What it is |
|---|---|
| Enterprise IAM Lab | Hybrid identity for a fictional regulated bank: AD with a tiered admin model, federated to Okta and Entra ID over SAML, OIDC and SWA, with network-aware conditional access. |
| Enterprise Security Homelab | Six-VLAN default-deny network on pfSense and Proxmox, Windows Server 2025 domain, Wazuh SIEM; every rule justified and mapped to NIST. |
| Cloud Security Posture Dashboard | Terraform-deployed misconfigurations scanned by Prowler and ScoutSuite, 500+ checks normalised into one findings schema. |
| AWS Cost Optimizer | Read-only CLI that finds idle EC2, unattached EBS, old snapshots, unused EIPs and idle RDS from CloudWatch metrics. |
CCSP AWS Security Specialty SC-300 Okta Certified Professional Okta Certified Administrator AWS SysOps AWS Solutions Architect CompTIA Security+ KCNA Google Cloud Cybersecurity and more, all verifiable.
M.S. Cybersecurity & Digital Forensics, Illinois Institute of Technology.
Lab notes and study logs at nobleantwi.com/writing, longer pieces on Medium.
