Skip to content

I protect businesses by building the security they can't afford to get wrong.

I'm Darius. 15+ years building and shipping software, and securing the systems that people and businesses depend on. I've been a contributor, a team lead, and an engineering manager. I build tools from scratch, automate processes, and work across teams to understand problems and solve them. I write code and I explain it to people who don't.

15+

years in software, IT, and security

IC & Lead

individual contributor and team leader

DLP + GRC

data protection and policy management

FedRAMP & SOC 2

compliance environment experience

South Side

Chicago born, raised, and still building

Southside CHI

consulting for local small businesses

Started building young. Never stopped.

I grew up on the south side of Chicago. Started fixing computers at CPS and started freelancing in my early teens. I've been a contributor, a team lead, and an engineering manager. I build tools, automate processes, and work across teams to understand problems and solve them.

I write code and I explain it to people who don't. That's what makes the work land.

Where I'm strongest

Cloud Security & Hardening

I harden cloud environments, reduce standing access, improve identity controls, retire abandoned infrastructure, and build guardrails that prevent risky changes before they become incidents.

AWSIAMGuardDutySecurity HubSCPsTerraformGovCloud

Detection Engineering & Response

I build and tune detection pipelines, reduce alert noise, write triage playbooks, and improve on-call response with real operational context.

Detection-as-codeEventBridgeSNSLambdaSlack AlertsEDRRunbooks

Incident Response & Readiness

I lead security incident response from containment through lessons learned, with focus on preserving evidence, reducing blast radius, and improving repeatability.

IRTabletop ExercisesEDR ContainmentIdentity LockdownForensics-first Workflows

DLP & Data Protection

I implement and manage data loss prevention controls, classify sensitive data, build policies that prevent leakage across endpoints, cloud storage, and AI tools, and make sure the rules match how people work.

DLPData ClassificationEndpoint DLPCloud DLPAI Data LeakagePolicy Enforcement

GRC & Policy Management

I build and maintain governance, risk, and compliance programs that connect policy to real controls. FedRAMP, SOC 2, risk assessments, audit evidence, and security policies that teams can follow without a lawyer.

GRCFedRAMPSOC 2Risk AssessmentPolicy ManagementAudit EvidenceVanta

AWS Architecture & Operations

I design, operate, secure, and document cloud infrastructure so engineering teams can build fast and ship with confidence.

Event-Driven ArchitectureMicroservicesCost OptimizationLambdaECS / EKSMulti-Account AWS

Communication & Technical Leadership

I can sit in a room with stakeholders, translate technical risk into business language, and get alignment without hiding behind jargon. The work only matters if people understand it.

Stakeholder CommunicationTechnical TranslationRequirements AnalysisSpeakingCross-Team Collaboration

AI/LLM Security & Automation

I use AI carefully to accelerate triage, documentation, detection logic, and security operations while accounting for prompt injection, data leakage, and misuse risk.

AI SecurityLLM WorkflowsPrompt InjectionSecure AI AdoptionTriage Acceleration

Selected work

Cloud Security / Detection Engineering

Cloud Detection & Alerting Pipeline

Built and tuned a cloud detection and alerting workflow that connected cloud security findings to actionable notifications while reducing low-value noise.

AWSTerraformDetection EngineeringSecurity Automation

View case study →

Incident Response / Security Automation

Automated Incident Response & Escalation

Built automated incident response workflows that escalated security events to the right teams via PagerDuty and Slack, reduced manual triage, and preserved forensic evidence automatically.

Incident ResponsePagerDutySecurity AutomationAWSPython

View case study →

Security Tooling / AI Security

AI-Assisted Code Review & Vulnerability Auditing

Built AI-assisted workflows that helped scale code review, vulnerability auditing, and detection logic authoring beyond what a small security team could do manually.

AI SecurityCode ReviewSecurity ToolingCI/CDPython

View case study →

Incident Response / Security Operations

Incident Response Runbooks & Tabletop Program

Created practical triage runbooks, severity guidance, escalation paths, and tabletop scenarios based on real operational gaps.

Incident ResponseRunbooksTabletop ExercisesSecurity Operations

View case study →

Cloud Security / IAM

Cloud Security Hardening & Access Reduction

Improved cloud security posture by reducing standing access, strengthening identity controls, and shrinking attack surface from unused infrastructure.

AWSIAMSSOCloud SecurityLeast Privilege

View case study →

GRC / Cloud Security

Security Assurance & Compliance Evidence

Translated cloud and security control implementation into clear evidence for enterprise and regulated environments.

FedRAMPSOC 2GRCComplianceCloud Security

View case study →

Projects

The work isn't done when the code runs.

It's done when the people responsible for the system understand it, trust it, and can operate it. That's the bar I hold myself to.