Skip to content
View leeclay95's full-sized avatar

Block or report leeclay95

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
leeclay95/README.md

Offensive Security Engineer & GRC Engineering Practitioner

Offensive security engineer and GRC engineering practitioner with close to 10 years of experience in private and public sectors. I have performed testing on UAS, cloud infrastructure, and web applications, and I build the compliance automation, policy-as-code controls, and security architecture that GRC engineering requires, not just assess them from the outside. My other areas of experience include custom tool development and command and control development.

Currently building out hands-on infrastructure labs that pair offensive security with GRC engineering.

Skills

Offensive security

Penetration Testing Red Team Operations C2 Development

GRC engineering

RMF Consulting Policy as Code Compliance Automation

Cloud & infrastructure

AWS Azure GCP DevOps Kubernetes Terraform Argo CD

Certifications

A+ Security+ CySA+ CASP+ GCIH GPEN GCPN GRTP CGE-P

Featured labs

Project Summary Stack
Kubernetes GRC Engineering Automated k3d cluster with layered controls: OPA Gatekeeper admission control, tfsec/kubesec/trivy scanning, and ESO-injected secrets, reconciled continuously by Argo CD. Terraform · k3d · Argo CD · OPA Gatekeeper · ESO
IAM Privilege Escalation Lab A self-contained AWS IAM misconfiguration lab proving a full attack chain end to end (overpermissive Lambda role → unscoped iam:PassRole), then closed with OPA/tfsec policy and fixed Terraform. Terraform · AWS IAM · Lambda · OPA/Rego · tfsec
Azure GRC Evidence Pipeline Terraform-built GRC pipeline on Azure: discovers configuration drift, collects Defender for Cloud findings into an owned evidence store, and generates POA&M/SAR mapped to NIST 800-53 Rev. 5 and CSF 2.0. Terraform · Azure Policy · Defender for Cloud · Cosmos DB

Popular repositories Loading

  1. iam_lab iam_lab Public

    Local Identity Lab to Test GRC Engineering

    Shell 3 2

  2. Estig_tool Estig_tool Public

    Python based program to assist in the Answer File creation to support ESTIG scanning

    Python 1 1

  3. k3s-security-lab k3s-security-lab Public

    Kubernetes security lab: OPA Gatekeeper admission control, kubesec static analysis, ESO secret injection, LocalStack AWS — automated with Terraform

    Shell 1 1

  4. Useful-scripts- Useful-scripts- Public

    PowerShell

  5. fakenotepad.exe fakenotepad.exe Public

    C++

  6. RMF-SCRIPTS RMF-SCRIPTS Public

    Scripts for RMF Course

    PowerShell