Syed Amjad Ali

Cloud Native Security Engineer

I build security controls that enforce themselves.

I automate security policy across Linux fleets and cloud platforms — firewall governance at scale, CIS hardening, Kubernetes admission control, service mesh zero-trust, and signed software supply chains. Four years building and running this in production on AWS and Azure.

The through-line

Default-deny with an explicit, reviewable allowlist — whether that's an iptables chain, a Kubernetes admission webhook, or a service mesh authorization policy. Same discipline, different layer of the stack.

I care about controls that can be verified, not just asserted. If I say something is blocked, I can show you it being blocked.

Get in touch →