HIPAA // Assessment // Practice Scenario
Keystone Family Dental
A sample engagement walking through a 7-person dental practice with critical HIPAA violations, including no MFA, shared credentials, no access controls, and no security policies. A realistic look at how I'd assess, remediate, and document an environment like this.
HIPAAM365 SecurityIAMPolicy DevelopmentHealthcare
Read Full Case Study →
Python // AWS // HIPAA
HIPAA AWS Compliance Checker
An automated Python tool that scans AWS environments for HIPAA security compliance gaps. It generates reports identifying violations along with prioritized remediation steps, built from real healthcare security knowledge.
PythonAWSHIPAAAutomation
github.com/markthedev12 →
AWS // IAM // S3 // KMS
AWS Secure S3 Lab
I architected and deployed a security hardened S3 environment implementing IAM least privilege policies, KMS server side encryption, restrictive bucket policies, and full public access blocking.
AWSIAMS3KMSBucket Policies
github.com/markthedev12 →
Python // IAM Governance // Automation
IAM Access Review Bot
An automated access certification tool that compares real access exports against defined role baselines, flagging excess access, stale entitlements, and privilege violations, then compiles the results into a certification-ready HTML report with risk scoring and recommended actions.
PythonIAM GovernanceAutomationAccess Certification
github.com/markthedev12 →
Terraform // AWS RDS // Python
AWS RDS Secure PostgreSQL Tier
Provisioned an isolated, encrypted PostgreSQL tier with Terraform: a private Multi-AZ subnet group, ingress limited to the VPC, and KMS encryption at rest with zero public exposure, then validated the deployed posture with a custom Python/boto3 compliance audit script.
TerraformAWS RDSPythonIaC
github.com/markthedev12 →
Terraform // AWS EC2 // DevSecOps
AWS EC2 DevSecOps Lab
Built an Infrastructure as Code pipeline that provisions an EC2 web server which bootstraps itself via Terraform user_data, then audits the deployed Security Groups with a Python/boto3 script to flag any public internet exposure.
TerraformAWS EC2PythonDevSecOps
github.com/markthedev12 →
Terraform // Route 53 // High Availability
AWS Route 53 DNS Failover
Designed a DNS failover architecture in Terraform with an active and passive endpoint pair, using automated health checks to reroute production traffic to the backup endpoint the moment the primary fails.
TerraformRoute 53High Availability
github.com/markthedev12 →
HTML // CSS // Netlify
This Website
Designed and built from scratch with no templates and no site builders, just pure code. It has a custom cyberpunk aesthetic, is fully responsive, and is deployed on Netlify. This is the site you're looking at right now.
HTML/CSSDesignNetlify
You're already here →
VMware // Windows Server // Kali
Enterprise IAM Home Lab
A personal cybersecurity lab built to mirror enterprise healthcare IT, using Windows Server AD, Kali Linux for attack simulation, and hybrid Azure AD integration. I use it to break things on purpose so I understand how they actually work.
Active DirectoryKali LinuxAzure ADVMware
Follow progress →
Security Consulting // Live Application
AphoriaApp.com Security Implementation
I served as security consultant for Aphoria, a consumer productivity web application. I conducted a security architecture review, implemented data protection principles, advised on secure authentication practices, and delivered security awareness guidance to the founding team throughout the platform's development.
Security ArchitectureWeb SecurityOWASPConsultingLive App
aphoriaapp.com →