Skip to content
View robertwhite37's full-sized avatar
  • Fannie Mae
  • Reston, VA

Block or report robertwhite37

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
robertwhite37/README.md

Cybersecurity Logo

Hi there, I'm Robert White πŸ‘‹

πŸš€ Cybersecurity Engineer | Application Security | Penetration Testing | DecSecOps | Cloud Security

With 10+ years of experience in software development and 10+ years in cybersecurity, I bring a unique ability to bridge security and engineering. My deep understanding of software architecture, secure coding, and application security allows me to design and implement robust, scalable, and secure systems. Experienced in threat modeling, vulnerability assessments, DevSecOps, penetration testing, and cloud security, I ensure security is not just an afterthought but a core part of the development lifecycle. Passionate about solving complex security challenges, mentoring teams, and driving a security-first culture while maintaining high-performance software solutions.!

πŸ” Expertise

  • Programming Language: Python, TypeScript, JavaScript, Shell Scripting
  • Threat Modeling & Risk Assessment: Microsoft Threat Modeling Tool, OWASP Threat Dragon
  • Vulnerability Management: Nessus, OpenVAS, Qualys
  • Incident Response: Splunk, Sentinel, IBM QRadar, Security Onion
  • Secure Coding Practices: SonarQube, Checkmarx, Synk, Nessus (library repo)
  • Identity and Access Management (IAM): AWS IAM, Okta, Microsoft Azure Active Directory
  • Encryption and Cryptography: OpenSSL, AWS Key Management Service (KMS), HashiCorp Vault
  • Patch Management: WSUS, Qualys Patch Management, SCCM
  • Penetration Testing: Burp Suite, Metasploit, OWASP ZAP, Kali Linux
  • Cloud Security: AWS Security Hub, Azure Security Center
  • Security Automation: Ansible, Terraform, Jenkins, GitLab CI, GitHub Actions
  • SAST: OWASP Dependency-Check, Snyk, Black Duck, Fortify, AppScan
  • DAST: OWASP Zap Proxy, BurpSuite, Qualys Web Application Scanning (WAS)
  • Mobile App Security: NowSecure, MobSF
  • Compliance and Policy Development: NIST CSF, ISO/IEC 27001, CIS Controls, GDPR
  • Security Audits: AuditScripts, Nessus, OpenSCAP
  • Log Management: Sumo Logic, Mix Panel
  • Database Monitoring: Sentry One, Datadog, Prometheus, Grafana

πŸ“Œ Certifications

Security Certifications

  • πŸ† CompTIA Security+ – CompTIA - 2022
  • πŸ† CompTIA Pentest+ - CompTIA – 2023
  • πŸ† CompTIA CASP+ - CompTIA - 2024
  • πŸ† CompTIA Network+ - CompTIA- 2022
  • πŸ† CompTIA CNVP (Network Vul. Assessment) – CompTIA - 2023
  • πŸ† IBM QRadar SIEM Foundation – IBM - 2021
  • πŸ† Splunk Core Certified User – Splunk 2022
  • πŸ† Palo Alto – Networks Academy Cybersecurity Foundation - 2019
  • πŸ† Falcon Responder, Crowdstrike - 2022

Cloud & DevOps Certifications

  • πŸ† SAA-C02 (AWS Solutions Architect), AWS
  • πŸ† CJE (Certified Jenkins Engineer)- Cloud Bees
  • πŸ† DOP-C01 (AWS Certified DevOps Engineer), AWS

Programming Certifications

  • πŸ† OCA (Java Developer 8 Programmer) - Oracle
  • πŸ† PCAP (Certified Professional Python Programming) - Python Institute
  • πŸ† PCEP (Certified Entry Level Python Programming) - Python Institute

Testing Certifications

  • πŸ† CTFL-AT (Agile Tester) – ISTQB
  • πŸ† CTFL (Certified Tester Foundation Level) – ISTQB
  • πŸ† Gatling Pro Performance Testing - Gatling

πŸ›  Tech Stack & Tools

  • Languages: Python, JavaScript, TypeScript, Bash
  • Security Tools: Burp Suite, OWASP ZAP, Nmap, Metasploit, Wireshark, Nessus, Kali Linux
  • Cloud: AWS Security Hub, AWS IAM, Azure Security Center
  • DevSecOps: GitHub Actions, Docker Security, Kubernetes Security, Terraform Security

πŸ“ Sample Projects

πŸ“« Let's Connect!

⚑ Fun Fact: Cybersecurity is not just about breaking things, it's about securing them before others do! πŸ”₯

Popular repositories Loading

  1. api_testing api_testing Public

    Rest API Framework with TestNG Framework

    Java 13 2

  2. OracleExam808_809 OracleExam808_809 Public

    Oracle IZ0-808 and IZ0-809 Java Developer Exam Questions & Answers

    Java 12 5

  3. Java_Database_Connection Java_Database_Connection Public

    Java 11 1

  4. SauceLabsTesting SauceLabsTesting Public

    Java 10

  5. AppiumBDDFramework_POM AppiumBDDFramework_POM Public

    HTML 3

  6. SoapUIProjects SoapUIProjects Public

    SoapUI Test Projects

    2