Hi, I'm Majed Saeed.
Focused on building secure AWS environments, improving visibility through monitoring, and automating operational security tasks.
- Focused on AWS and cloud infrastructure
- Interested in cloud security and monitoring
- Building hands-on labs and automation projects
- Working with Linux, Python, and GitHub
My path into cloud began with networking and Linux. That foundation shapes how I work now — I reason about systems from the network and the operating system up, which is what matters when the goal is to secure them.
Most of what I know comes from building and breaking things in hands-on labs: standing up AWS environments, hardening them, monitoring for what actually matters, and automating the steps that shouldn't be manual. I publish the work openly, and I'm focused on cloud engineering and cloud security roles. More about me →
Cloud Misconfiguration Auto-Remediation
An event-driven security platform that continuously detects AWS misconfigurations and auto-remediates them — public S3 buckets, over-permissive IAM policies, open security groups — with SNS alerting and CloudWatch monitoring.
EC2 SSH Disaster Recovery
Recovered a locked-out EC2 instance by detaching and remounting the root EBS volume on a rescue instance, repairing SSH configuration, and restoring access with zero data loss.
Linux Auth Monitoring with Splunk
Engineered a Splunk SIEM lab ingesting Linux auth logs with search queries and alerts to detect SSH brute-force attempts and anomalous login patterns — SOC-style threat detection.
Secure AWS VPC with NAT Gateway
Built end-to-end AWS infrastructure with a segmented VPC — public and private subnets, NAT gateway, least-privilege IAM — following Well-Architected best practices.
- Cloud & AWS
- IAM, VPC, EC2, S3, AWS Config, Lambda, EventBridge, CloudWatch, SNS
- Security & Detection
- Splunk, Wazuh, Snort IDS, SIEM, malware analysis, system hardening
- Linux & Automation
- Ubuntu, Bash, Python, Nginx, UFW, Fail2Ban, SSH hardening, Certbot / TLS
- Networking
- OSPF, EIGRP, static routing, VLANs, NAT / PAT, Layer 2 security, Cisco IOS
Google Cybersecurity Professional Certificate
Google, issued via Coursera. Details →
AWS certification is the next milestone, currently in progress.
Automating S3 misconfiguration fixes with Lambda
How a Config rule, an EventBridge trigger, and a small Python function close a public-bucket gap on their own.
Rescuing a locked-out EC2 instance
The EBS volume-rescue method, written so it can be followed under pressure.
Reading SSH auth logs in Splunk
From raw /var/log/auth.log to a brute-force detection you can rely on.
Open to cloud engineering and cloud security roles. The work is the clearest summary of how I approach problems — if it looks like a fit, get in touch.