Majed Saeed

Hi, I'm Majed Saeed.

Cloud Engineer · Cybersecurity · Cloud Security · Automation

Focused on building secure AWS environments, improving visibility through monitoring, and automating operational security tasks.

  • Focused on AWS and cloud infrastructure
  • Interested in cloud security and monitoring
  • Building hands-on labs and automation projects
  • Working with Linux, Python, and GitHub
Open to cloud and security roles.
About

My path into cloud began with networking and Linux. That foundation shapes how I work now — I reason about systems from the network and the operating system up, which is what matters when the goal is to secure them.

Most of what I know comes from building and breaking things in hands-on labs: standing up AWS environments, hardening them, monitoring for what actually matters, and automating the steps that shouldn't be manual. I publish the work openly, and I'm focused on cloud engineering and cloud security roles. More about me →

Selected work

Cloud Misconfiguration Auto-Remediation

An event-driven security platform that continuously detects AWS misconfigurations and auto-remediates them — public S3 buckets, over-permissive IAM policies, open security groups — with SNS alerting and CloudWatch monitoring.

AWS Config, Lambda, EventBridge, SNS, IAM, S3, CloudWatch, Python

EC2 SSH Disaster Recovery

Recovered a locked-out EC2 instance by detaching and remounting the root EBS volume on a rescue instance, repairing SSH configuration, and restoring access with zero data loss.

EC2, EBS, Linux, SSH, Incident Response

Linux Auth Monitoring with Splunk

Engineered a Splunk SIEM lab ingesting Linux auth logs with search queries and alerts to detect SSH brute-force attempts and anomalous login patterns — SOC-style threat detection.

Splunk, SIEM, Linux, Syslog, Log Analysis

Secure AWS VPC with NAT Gateway

Built end-to-end AWS infrastructure with a segmented VPC — public and private subnets, NAT gateway, least-privilege IAM — following Well-Architected best practices.

VPC, NAT Gateway, Subnets, Route Tables, IAM, EC2
Technical expertise
Cloud & AWS
IAM, VPC, EC2, S3, AWS Config, Lambda, EventBridge, CloudWatch, SNS
Security & Detection
Splunk, Wazuh, Snort IDS, SIEM, malware analysis, system hardening
Linux & Automation
Ubuntu, Bash, Python, Nginx, UFW, Fail2Ban, SSH hardening, Certbot / TLS
Networking
OSPF, EIGRP, static routing, VLANs, NAT / PAT, Layer 2 security, Cisco IOS
Certifications

Google Cybersecurity Professional Certificate

Google, issued via Coursera. Details →

AWS certification is the next milestone, currently in progress.

Activity
Contributions over the past yearLess More
Writing

Automating S3 misconfiguration fixes with Lambda

How a Config rule, an EventBridge trigger, and a small Python function close a public-bucket gap on their own.

Draft

Rescuing a locked-out EC2 instance

The EBS volume-rescue method, written so it can be followed under pressure.

Draft

Reading SSH auth logs in Splunk

From raw /var/log/auth.log to a brute-force detection you can rely on.

Draft
Contact

Open to cloud engineering and cloud security roles. The work is the clearest summary of how I approach problems — if it looks like a fit, get in touch.