๐ฝ U.S. and ๐ Canada -only clients โ๏ธ Upwork Expert-Vetted ๐ | 100% Job Success โ | 10,000+ hours ๐ป on 200+ projects
Hi there! ๐ Iโm an Upwork veteran with over 10,000 hours delivered, 200+ successful projects, and $1M+ earned helping U.S. companies secure and scale their cloud and hybrid environments.
โ๏ธ I specialize in Azure, Microsoft 365, and security-focused systems โ delivering:
โข Secure infrastructure using Zero Trust, IaC (Terraform/Bicep), and DevSecOps pipelines
โข Incident response, forensics, and breach containment across regulated industries
โข Compliance-ready solutions aligned to SOC 2, HIPAA, ISO 27001, and NIST 800-53
As a certified consultant, I work directly with technical teams to deliver secure cloud transformation, implement controls, and respond to threats โ fast. I also collaborate with Microsoftโs internal dev teams, giving me early-access insights and practical fixes 3โ4 release cycles ahead of public rollout.
Why Choose Me?
โ $1M+ in security projects delivered across healthcare, fintech, crypto, and gov sectors
๐ Architected Azure landing zones, GitOps pipelines, and zero trust cloud environments
๐จ Led incident response and forensic investigations for Fortune 500 and defense clients
๐ Built compliance workflows and policy-as-code enforcement for audit success
๐ช Secured crypto CI/CD pipelines and smart contract environments with GitHub, Checkov, GHAS
๐ง Career Highlights:
โช Delivered security modernization and audit readiness for global government contractors and Fortune 500 companies
โช Led compliance remediation and data protection initiatives across healthcare, fintech, and public sector clients
โช Migrated global users to Microsoft 365 with security-first design โ Exchange, Purview, Intune, Defender
โช Built hybrid identity strategies (Entra ID, ADFS, GoDaddy 365, Azure AD B2C, custom policy support)
โช Managed VMware-to-Azure hardening with conditional access, audit enforcement, and security baselines
๐ง Solutions I Deliver:
โข Azure Infra Security: Terraform, Bicep, Azure Policy, RBAC, Defender for Cloud
โข DevSecOps: GitHub Actions, tfsec, Checkov, Trivy, GHAS, pipeline reviews
โข Microsoft 365 Hardening: Defender, Purview, Compliance Center, Intune, Exchange
โข Compliance & Audits: SOC 2, ISO 27001, HIPAA, GDPR, NIST, CIS Benchmarks
โข Incident Response & Forensics: Malware analysis, reverse engineering, breach recovery
โข Crypto Security: CI/CD for smart contracts, wallet infra hardening, Web3 audits
โข Reverse-engineered malware to identify attack vectors and harden systems post-breach
โข Hardened Microsoft Exchange Online and Defender for Email in phishing-prone orgs
โข Integrated Azure Sentinel analytics with dashboards for cross-cloud visibility
๐ค Retainer & Advisory Support:
โข Ongoing guidance for CISOs, security architects, and compliance teams
โข Monthly retainers for SOC 2 evidence collection, security tool reviews, and policy automation
โข Rapid-response engagements for forensics, malware recovery, and breach root cause analysis
๐งฐ Platforms & Tools:
โข Azure, Microsoft 365, Azure Sentinel, Microsoft Defender (all modules), Intune
โข Terraform, Bicep, GitHub, Azure DevOps, GitOps, GHAS
โข Splunk, FTK, EnCase, Wireshark, Autopsy, Cisco ASA/Firepower
โข Checkov, Trivy, Aqua Security, smart contract security tooling
โข Compliance: SOC 2, HIPAA, ISO 27001, CIS, NIST, GDPR
๐ Letโs set up a free 30-minute consultation to explore how I can help you with security transformation, compliance readiness, or urgent recovery โ no fluff, just fast, proven results.
I bring the calm in chaos โ whether you're planning secure growth or cleaning up after a breach, Iโll steady the course and deliver results.
๐ Helped a fintech client pass SOC 2 in under 60 days
๐ Responded to ransomware, restored 95% of systems in 48 hours
๐ Hardened crypto wallet infra securing $100M+ in assets
Thanks again for stopping by. You can invite me to your job post or simply send a message to arrange a quick discovery call โ I respond fast, and weโll keep everything inside Upwork.
โ Nandy Bo
๐ฃ๏ธโ ๐๐ฉ ๐๐๐จ ๐๐๐๐ฃ ๐ ๐ฅ๐ก๐๐๐จ๐ช๐ง๐ ๐ฉ๐ค ๐ฌ๐ค๐ง๐ ๐ฌ๐๐ฉ๐ ๐๐๐ฃ๐๐ฎ ๐๐ช๐ง๐๐ฃ๐ ๐ฉ๐๐ ๐ฉ๐ง๐๐ฃ๐จ๐๐ฉ๐๐ค๐ฃ ๐ค๐ ๐พ๐๐ก๐ก๐๐ค๐ข. ๐๐๐ฃ๐๐ฎ ๐๐จ ๐ซ๐๐ง๐ฎ ๐๐๐ฃ๐ช๐๐ฃ๐, ๐๐ค๐ฃ๐๐จ๐ฉ ๐๐ฃ๐ ๐๐๐ก๐ฅ๐๐ช๐ก ๐๐ฃ ๐ฃ๐๐ฉ๐ช๐ง๐. ๐๐ ๐๐ก๐จ๐ค ๐๐๐จ ๐ ๐ซ๐๐ง๐ฎ ๐๐ฃ-๐๐๐ฅ๐ฉ๐ ๐ ๐ฃ๐ค๐ฌ๐ก๐๐๐๐ ๐ค๐ ๐๐ ๐ฌ๐๐๐ก๐ ๐ข๐๐๐ฃ๐ฉ๐๐๐ฃ๐๐ฃ๐ ๐ ๐ซ๐๐ง๐ฎ ๐๐ง๐ค๐๐ ๐ฅ๐ง๐ค๐๐ก๐๐ข-๐จ๐ค๐ก๐ซ๐๐ฃ๐ ๐ค๐ช๐ฉ๐ก๐ค๐ค๐ . ๐๐๐๐จ๐ ๐๐๐๐ฉ๐ช๐ง๐๐จ ๐ข๐๐ ๐ ๐๐๐ข ๐ฃ๐ค๐ฉ ๐ค๐ฃ๐ก๐ฎ ๐ ๐ฅ๐ก๐๐๐จ๐ช๐ง๐ ๐ฉ๐ค ๐ฌ๐ค๐ง๐ ๐ฌ๐๐ฉ๐ ๐๐ช๐ฉ ๐๐ก๐จ๐ค ๐ซ๐๐ง๐ฎ ๐๐ฃ๐จ๐ฅ๐๐ง๐๐ฉ๐๐ค๐ฃ๐๐ก. โ
โ ๐ ๐ค๐ง๐๐ค๐ฃ ๐ฝ๐๐ก๐ก - ๐๐๐ฃ๐๐๐๐ฃ๐ ๐ฟ๐๐ง๐๐๐ฉ๐ค๐ง - ๐พ๐๐ก๐ก๐๐ค๐ข ๐๐ฃ๐ฉ๐๐ง๐ฃ๐๐ฉ๐๐ค๐ฃ๐๐ก
Solution Architecture Consultation
Cloud Implementation
Information Security
Cloud Security
Microsoft Endpoint Manager
Risk Assessment
Cloud Engineering Consultation
Microsoft Azure
Office 365
Email Security
Microsoft Exchange Online
Digital Forensics
Incident Response Readiness Assessment
Information Security Audit
Ekanem E.
Calabar, Nigeria
$10/hr
5.0
43 jobs
+10 Years of Experience Helping Client & Business: Develop Software, Manage & Consult
๐ Top Rated Freelancer / 100% Job Success
๐ Software Guru 100% Delivery Speed on Both Complex & Difficult Tasks
๐ AWS Cloud Solutions Architect Certified
๐ AWS DevOps Engineer Certified
๐ Built Highly Secure Cloud Architectures for Apache Kafka Applications
๐ Developed Amazon Lex Chatbot for Multi-Language Support
๐ Delivered Kubernetes-Orchestrated Solutions for Scalability
๐ Implemented AWS Lambda for Serverless Application Architectures
๐ Executed ECS Projects for High-Performance Containerized Workloads
๐ Enhanced AWS Cloud Cyber Security Infrastructure
With over 10 years of IT expertise in DevOps Engineering, Cloud Architecture, Cyber Security, and Infrastructure Automation, I bring a proven ability to deliver secure, scalable, and efficient cloud-based solutions tailored to business-critical applications.
Key Skills & Expertise
Amazon Lex Chatbot Development:
Designed and implemented a multi-language Amazon Lex chatbot for customer engagement, supporting English and Spanish interactions.
Container Management and Orchestration:
Delivered containerized workloads using Amazon ECS for high-performance applications.
Deployed Kubernetes for managing scalable containerized microservices, ensuring robust and reliable production environments.
Serverless Architectures:
Developed AWS Lambda-based serverless applications integrated with API Gateway and DynamoDB, enabling cost-efficient and event-driven solutions.
Highly Secure Cloud Architecture:
Built and implemented highly secure cloud architectures for mission-critical applications, including an Apache Kafka-based streaming platform.
Enhanced AWS Cloud Cyber Security posture by implementing best practices such as IAM policies, security groups, VPC NACLs, encryption, and AWS WAF for web application security.
CI/CD and Infrastructure as Code (IaC):
Automated multi-account AWS deployments using Terraform and optimized CI/CD pipelines with Jenkins, SonarQube, and Maven.
Monitoring and Observability:
Implemented Prometheus, Grafana, and New Relic for real-time monitoring and end-to-end application observability.
Disaster Recovery and High Availability:
Executed a failover recovery plan between on-premises servers and AWS EC2 Reserved Instances to achieve zero downtime during critical operations.
Cyber Security and Compliance:
Strengthened AWS Cloud security by implementing IAM policies, fine-tuning security groups, ensuring secure container deployments, and following security best practices for applications and data.
Recent Highlights
Amazon Lex Chatbot: Developed a bilingual chatbot with Amazon Lex, enabling seamless client communication and automating booking workflows.
Apache Kafka Secure Deployment: Built a highly secure cloud architecture to support an Apache Kafka streaming application, ensuring optimal performance and security.
ECS and Kubernetes: Delivered containerized solutions using Amazon ECS for high-throughput workloads and orchestrated Kubernetes deployments for scalable applications.
AWS Lambda Projects: Designed and implemented serverless solutions leveraging AWS Lambda, API Gateway, and DynamoDB for cost-efficient, event-driven architectures.
Cyber Security: Enhanced AWS Cloud Cyber Security infrastructure by implementing robust security configurations across all deployed services.
DevOps Engineering
Python
Amazon Web Services
App Development
Web Development
Azure DevOps
Terraform
Kubernetes
Linux System Administration
Docker
Ansible
CI/CD
Cloud Computing
Automated Workflow
Network Security
Bhakti V.
Pune, India
$30/hr
4.8
412 jobs
Iโm a Computer Engineer by degree and a writer by passion, and I've tackled everything from whitepapers and blogs to academic theses and business proposals. If it needs to be written (especially on cybersecurity), Iโm your go-to!
Iโm all about staying organized, diving deep into research, and hitting deadlines like theyโre going out of style. Expect your projects done with time to spareโgiving you plenty of room for feedback. I take real pride in delivering polished, top-quality work. Letโs get things done!
Project Risk Management
PCI
Technical Writing
Policy Writing
Disaster Recovery
Information Security
Cloud Security
ISO 27001
Website Copywriting
Editing & Proofreading
Robotics
Vulnerability Assessment
Network Penetration Testing
Web App Penetration Testing
Network Security
Blockchain
Artificial Intelligence
Amazon Web Services
Wafa A.
Islamabad, Pakistan
$15/hr
5.0
27 jobs
๐ช Top Rated
I help startups, SaaS companies, and enterprises identify security vulnerabilities before attackers do. With 5+ years of cybersecurity experience, I specialize in manual penetration testing, application security, API security, cloud security, compliance assessments, and privacy audits.
I have worked with organizations across the United States, United Kingdom, Germany, and Canada, delivering security assessments aligned with international standards and industry best practices. My assessments have uncovered critical vulnerabilities including Account Takeover, Remote Code Execution (RCE), IDOR, Authentication & Authorization flaws, Business Logic vulnerabilities, SSRF, XSS, CSRF, SQL Injection, Sensitive Data Exposure, Security Misconfigurations, and Insecure API Implementations.
My Services
Penetration Testing
โข Web Application Penetration Testing (OWASP Top 10)
โข Mobile Application Security Testing (Android & iOS)
โข REST & GraphQL API Security Testing
โข External & Internal Network Penetration Testing
โข Authentication & Authorization Testing
โข Business Logic Testing
โข Secure Code Review (SAST)
โข Cloud Security Assessments (AWS, Azure & GCP)
Privacy & Tracking Audits
I perform non-destructive privacy and tracking audits to evaluate how websites collect, process, and share user data without making any changes to production environments.
My privacy audits include:
โข Tracking & Analytics Review (Google Analytics, Meta Pixel, LinkedIn Insight Tag, etc.)
โข Cookie & Consent Compliance Assessment
โข Third-Party Script & Tag Analysis
โข Privacy & Data Collection Review
โข Browser Storage Review (Cookies, Local Storage & Session Storage)
โข Sensitive Data Leakage Detection
โข Tracking Request Analysis
โข GDPR Privacy Assessment
โข Actionable Privacy & Security Recommendations
Important: I do not modify, delete, or update website code, tracking configurations, analytics settings, or production systems. My work is strictly read-only and results in a detailed report highlighting privacy concerns, security risks, and practical recommendations for improvement.
Compliance & Security Frameworks
โข CASA Tier 2 Security Testing
โข CMMC Level 2
โข NIST SP 800-171
โข NIST SP 800-53
โข ISO 27001
โข SOC 2
โข GDPR
Security Automation
I develop custom security automation solutions that help organizations reduce manual effort and improve their security posture.
Automation services include:
โข Vulnerability Management Automation
โข Security Testing Automation
โข Compliance Reporting Automation
โข Security Workflow Automation
โข Custom Security Scripts & Tools
Technical Toolkit
Security Tools
โข Burp Suite Professional
โข OWASP ZAP
โข Nmap
โข Nessus
โข Metasploit
โข SonarQube
โข Veracode
โข Appknox
โข Bandit
Infrastructure & Cloud Security
โข Cloudflare
โข Imperva WAF
โข Firewall Configuration
โข Identity & Access Management (IAM)
โข Access Control Management
โข Database Security
Programming & Automation
โข Python
โข Bash
โข Node.js
โข Java
Why Clients Hire Me
โ 5+ Years of Professional Cybersecurity Experience
โ Manual Security Testing Not Just Automated Scanner Reports
โ Clear, Actionable Reports with Risk Ratings and Remediation Guidance
โ Independent Security Consultant (No Agency, No Subcontracting)
โ Strong Communication Throughout the Engagement
โ Flexible Across Multiple Time Zones (Including EST Overlap)
Deliverables
Every assessment includes:
โข Executive Summary
โข Technical Findings with Evidence
โข Risk Severity (CVSS/OWASP where applicable)
โข Step-by-Step Reproduction
โข Screenshots & Proof of Concept
โข Practical Remediation Recommendations
โข Optional Re-Testing After Fixes
Due to client confidentiality, I do not publicly share full penetration testing reports. However, I can demonstrate redacted professional reports during a screen-sharing meeting or after an NDA is signed.
Whether you need a comprehensive penetration test, a privacy and tracking audit, an application security assessment, or compliance guidance, I'm here to help you strengthen your security posture and reduce risk.
Let's discuss your project.
Computer Network
Information Security
Network Penetration Testing
Penetration Testing
Testing
Software Testing
Malware Removal
Digital Forensics
Web App Penetration Testing
Security Testing
Cloud Testing
Cloud Security
Compliance
SOC 2
IT Compliance Audit
AI Compliance
GDPR Compliance Review
SOC 2 Report
Compliance Consultation
Hien N.
Padova, Italy
$39/hr
5.0
3 jobs
LLM Security Engineer | AI Security | AppSec | DevSecOps | Cloud Security
I help startups, SaaS companies, and enterprises secure modern AI systems, web applications, cloud infrastructure, and digital assets โ from development to production.
My work covers:
AI & LLM Security
โข LLM application security assessments
โข Prompt injection and jailbreak testing
โข RAG pipeline security reviews
โข Agentic workflow security
โข Model abuse and data leakage testing
โข AI threat modeling (STRIDE, MITRE ATLAS, OWASP LLM Top 10)
โข Secure API integrations (OpenAI, Anthropic, vector databases)
Application & API Security
โข Web application penetration testing
โข API security assessments
โข Authentication & authorization testing
โข Business logic testing
โข Secure architecture reviews
โข Vulnerability discovery and remediation guidance
Incident Response & Malware Removal
โข WordPress malware cleanup and security hardening
โข Backdoor detection and persistence analysis
โข Reinfection root cause analysis
โข Webshell investigation
โข Redirect/spam injection cleanup
โข Post-compromise hardening and monitoring
DevSecOps & Cloud Security
โข Secure CI/CD pipelines
โข Infrastructure as Code (IaC) security
โข Container and supply chain security
โข Secrets management
โข AWS & GCP security reviews
โข Runtime detection engineering
โข Security automation and secure SDLC improvements
Compliance & Security Governance
โข Security assessments aligned with OWASP, NIST, ISO 27001, PCI DSS, GDPR, and SOC 2
โข Threat modeling and risk analysis
โข Security control validation
โข Security architecture reviews
My background combines 7+ years of hands-on cybersecurity experience across application security, penetration testing, cloud security, DevSecOps, threat modeling, detection engineering, and adversarial machine learning research.
I work with clients across:
AI/ML platforms, SaaS, FinTech, E-commerce, Healthcare, Telecom, CMS/WordPress, and cloud-native environments.
Whether you need to secure your AI product, audit your application, clean a compromised website, or strengthen your cloud security posture, I can help you identify risks and implement practical fixes.
Available for short-term audits, incident response, and long-term security consulting.
Cybersecurity Management
Information Security
Python
NIST Cybersecurity Framework
Splunk
PCI DSS
Cloud Security
Vulnerability Assessment
Security Analysis
Kubernetes
Amazon Web Services
Security Assessment & Testing
CI/CD
Governance, Risk & Compliance Software
Information Security Audit
Kunal N.
Pune, India
$20/hr
5.0
4 jobs
๐ 11+ Years of Experience | โ Penetration Tester | ๐ 80+ projects outside Upwork | ๐ Quick Response Time | ๐ On-Time Delivery | ๐ก๏ธ Post Contract Support
I help SaaS companies, and enterprises identify critical security vulnerabilities before they become costly breaches, compliance issues, or business disruptions.
As an Application Security Consultant and Penetration Tester, I specialize in uncovering real-world security weaknesses across web applications, APIs, network infrastructure, cloud environments, and modern technology platforms. My goal is not only to identify vulnerabilities but also to help organizations understand their security risks, prioritize remediation efforts, and strengthen their overall security posture.
I have worked on security assessments involving enterprise applications, banking platforms, healthcare systems, cloud infrastructures, and business-critical applications. My experience includes identifying authentication flaws, access control weaknesses, business logic vulnerabilities, network misconfigurations, cloud security gaps, API security issues, and attack paths that automated scanners frequently miss.
Core Security Services
โข Web Application Penetration Testing (OWASP Top 10 & Business Logic Testing)
โข API Security Testing (REST & GraphQL)
โข Network & Infrastructure Security Testing
โข Cloud Security Assessments (AWS)
โข Red Team Operations & Adversary Simulation
โข AI / LLM Security Testing
โข Vulnerability Assessment & Risk Analysis
โข Security Architecture Review
โข Email Security Implementation (SPF, DKIM & DMARC)
What You Can Expect
โข Comprehensive Manual Security Testing
โข Detailed Vulnerability Reports
โข Proof-of-Concept Validation
โข Risk-Based Prioritization
โข Clear Remediation Guidance
โข Remediation Validation & Retesting
โข Executive and Technical Reporting
Tools & Technologies
โข Burp Suite Professional
โข Nmap
โข Metasploit Framework
โข Nessus
โข OWASP ZAP
โข Wireshark
โข SQLMap
โข AWS Security Tools
โข Kali Linux
Long-Term Security Partnership
Many organizations engage me beyond a single penetration test. I work with clients on recurring security assessments, monthly security reviews, remediation verification, secure development guidance, and continuous security improvement initiatives.
Whether you need a one-time security assessment or a long-term security partner, I focus on delivering actionable security insights that help protect your applications, infrastructure, customers, and reputation.
If you are looking for a security professional who can think like an attacker and provide practical, business-focused security recommendations, I would be happy to discuss your project.
Penetration Testing
Web Application Security
Vulnerability Assessment
Ethical Hacking
OWASP
API Testing
Network Penetration Testing
Metasploit
Cloud Security
Cybersecurity Tool
Security Testing
Network Security
Application Security
Red Team Assessment
Information Security
How it works
Post a job for freePost a job
Tell us what you need. Create your own job post or generate one with AI then filter talent matches.
Hire top talent fast
Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.
Collaborate easily
Use Upwork to chat or video call, share files, and track project progress right from the app.
Payment simplified
Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.
Don't just take our word for it
โUpwork provides an umbrella-level of security. I can see a talentโs work history and ratings. I can hold payments in escrow. I can communicate through Upwork Messages instead of working through my email address.โ
KD
Kim Darling
Emerald Tiger
โUpwork is the best platform to hire skilled professionals when we're not looking for a full-time employee. All the companies in our portfolio use Upwork to find talent across a wide range of fields.โ
DM
David Merry
Kinetic Investments
โOur very specific requirements can be a challengeโWith Upwork, weโre able to access a bigger community to ensure the success of our projects.โ
KK
Katja Krohn
Summa Linguae
How do I hire a Amazon Cyber Security Engineer on Upwork?
You can hire a Amazon Cyber Security Engineer on Upwork in four simple steps:
Create a job post tailored to your Amazon Cyber Security Engineer project scope. Weโll walk you through the process step by step.
Browse top Amazon Cyber Security Engineer talent on Upwork and invite them to your project.
Once the proposals start flowing in, create a shortlist of top Amazon Cyber Security Engineer profiles and interview.
Hire the right Amazon Cyber Security Engineer for your project from Upwork, the worldโs largest work marketplace.
At Upwork, we believe talent staffing should be easy.
How much does it cost to hire a Amazon Cyber Security Engineer?
Rates charged by Amazon Cyber Security Engineers on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.
Why hire a Amazon Cyber Security Engineer on Upwork?
As the worldโs work marketplace, we connect highly-skilled freelance Amazon Cyber Security Engineers and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Amazon Cyber Security Engineer team you need to succeed.
Can I hire a Amazon Cyber Security Engineer within 24 hours on Upwork?
Depending on availability and the quality of your job post, itโs entirely possible to sign up for Upwork and receive Amazon Cyber Security Engineer proposals within 24 hours of posting a job description.