// DevSecOps Engineer
Bridging the gap between Software Quality Assurance and Cloud Infrastructure Security — delivering flawless, secure, and compliant software at scale.
01 — About Me
I'm Nurul Faiyaz, a DevSecOps Engineer currently pursuing my BSc in Computer Science & Engineering at East West University, Dhaka.
My expertise lives at the intersection of Software Quality Assurance and Cloud Infrastructure Security. From architecting test automation frameworks to enforcing Zero Trust policies in FinTech and Healthcare environments, I translate complex security challenges into robust engineering solutions.
I believe that security and quality aren't constraints — they're competitive advantages embedded into every line of code and every pipeline stage.
02 — Competencies
03 — Work History
FinTech / Enterprise Domain
Directed end-to-end SDLC/STLC processes across multi-disciplinary engineering teams. Integrated static (SAST) and dynamic (DAST) security scanners into CI/CD pipelines, achieving a measurable reduction in post-deployment vulnerabilities. Championed shift-left security practices and led monthly threat modelling workshops.
Healthcare / Enterprise Domain
Managed daily cloud security posture across AWS and Azure environments. Hardened Linux server configurations and ERP systems against CVEs. Ensured continuous compliance with PCI-DSS and HIPAA standards through automated audit pipelines and real-time vulnerability dashboards.
Critical Infrastructure
Architected scalable test automation frameworks for mission-critical emergency networks requiring 99.9% uptime SLAs. Conducted rigorous functional, regression, performance, and security testing cycles. Collaborated with cross-functional teams under strict Agile/Scrum governance.
East West University, Aftabnagar, Dhaka
04 — Gallery
05 — Let's Connect
Whether you're looking for a DevSecOps engineer, a security automation specialist, or just want to talk tech — my inbox is always open.
Send Me an Email