Skip to content
View NishaNagendra's full-sized avatar

Block or report NishaNagendra

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
NishaNagendra/README.md

Hi, I'm Nisha 👋

Cloud Security Engineer transitioning from automotive/embedded security into AWS cloud security — building production-style, end-to-end security architectures and documenting what's real vs. simulated in every project.

Currently focused on: IAM/IRSA, Kubernetes security (PSS, NetworkPolicies, RBAC), automated threat detection & remediation (GuardDuty → EventBridge → Lambda), and Infrastructure as Code with Terraform.

🎓 Certifications: AWS Certified Solutions Architect – Associate · AWS Certified Cloud Practitioner

🔧 Background: ~1.5 years in automotive/embedded security — WiFi pentesting on ECUs, UART fuzzing, MITM attacks, cryptographic API development in Python, Splunk/SIEM.

📌 Featured projects (see pinned repos below):

  • EKS Security Pipeline — 7-layer AWS EKS security architecture: private-subnet nodes, IRSA, Pod Security Standards, Trivy CI scanning, RBAC privilege-escalation simulation, and automated GuardDuty→Lambda remediation
  • Secure Web App on AWS — Defense-in-depth deployment behind WAF/ALB with real OWASP ZAP validation
  • GuardDuty Auto-Remediation — Real-time threat detection with automated Lambda-based incident response

📫 Connect: LinkedIn

Pinned Loading

  1. eks-security-pipeline eks-security-pipeline Public

    Production-style EKS security architecture on AWS — IRSA, Pod Security Standards, CI vulnerability scanning, RBAC privilege-escalation simulation, and automated GuardDuty→EventBridge→Lambda remedia…

    HCL

  2. secure-webapp-aws secure-webapp-aws Public

    Defense-in-depth web app deployment on AWS — private-subnet EC2 behind ALB with WAF and ACM/HTTPS, least-privilege IAM, encrypted storage, and validated with a real OWASP ZAP scan (before/after rem…

  3. guardduty-auto-remediation guardduty-auto-remediation Public

    Real-time AWS threat detection and automated incident response — GuardDuty, CloudTrail, CloudWatch, EventBridge, and Lambda auto-remediation for recon scans, IAM policy changes, and high-severity f…