Skip to content
View anshumaan-10's full-sized avatar

Block or report anshumaan-10

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
anshumaan-10/README.md

Hi 👋, I'm Anshumaan Singh

DevSecOps Engineer | Application Security Specialist

Coding


🔐 About Me

I'm a passionate DevSecOps Engineer and Application Security Specialist based in Bengaluru, India, with a focus on secure SDLC, threat modeling, and security automation across cloud-native environments.

🎓 Graduated from Vellore Institute of Technology (VIT), Chennai in Electronics and Communication Engineering, and currently working at ZEE Entertainment Enterprises Ltd on embedding security within DevOps.


🚀 Key Expertise

  • DevSecOps Transformation | Cloud Security Engineering
  • Application Security (AppSec): DAST, SAST, SCA, secret scanning, threat modeling
  • Container & Kubernetes Security: Runtime security, image scanning, RBAC, CIS benchmarking
  • CI/CD Pipeline Hardening: GitHub Actions, CircleCI, Jenkins, GitLab
  • Infrastructure as Code (IaC) Security: Terraform, Helm, Kubernetes manifests
  • Security Automation: Python & Bash scripting, YAML-based pipeline automation
  • SBOM & Compliance: License checks, GHAS, IriusRisk, tfsec

🧰 Tools, Technologies & Platforms

☁️ Cloud & Infrastructure

AWS Azure GCP Terraform Helm Ansible

🔒 Security Tools

Prisma Cloud PingSafe Trivy Strobes Rapid7 SonarQube IriusRisk

📦 Containerization & Orchestration

Docker Kubernetes Kubeaudit KubeHunter

🛠 CI/CD & Dev Tools

GitHub Actions Jenkins CircleCI Git Jira

🧪 DAST / SAST / SCA

  • OWASP ZAP, Burp Suite Pro
  • SonarCloud, Semgrep, Snyk
  • Dependabot, CodeQL, GHAS

🏅 Certifications

CKA GCP PCA Terraform Associate


🌱 Currently Learning

  • 🔐 GCP Cloud Security and GKE Policy Enforcement
  • 📊 Governance, Risk & Compliance (GRC)
  • Certified Kubernetes Security(CKS) - In Progess
  • Google Cloud Professional Cloud Security Enginner - In Progess
  • ☁️ Advanced threat modeling & SOC integrations

📫 Connect with Me


📌 Featured Projects

  • 🔐 DevSecOps Pipeline – SAST, DAST, Secrets Scanning, Trivy, Image Tagging, and CD to GKE
  • 🧪 OWASP Top 10 Audit – For enterprise web/mobile apps with ZAP + Burp + custom Python scripts
  • ☁️ GCP Security Hardening – Google SCC, audit logs, compliance dashboards

📄 Want to learn more?

👉 View Resume (PDF)
📬 Or email me

Profile views


Pinned Loading

  1. Boardgame-Pipeline Boardgame-Pipeline Public

    HTML 2

  2. netflix-clone netflix-clone Public

    TypeScript 1

  3. 2-tier-flask-app 2-tier-flask-app Public

    HTML

  4. Microservice Microservice Public

    Forked from jaiswaladi246/Microservice