I am a multi-disciplinary technology professional specializing in Cloud & DevOps Engineering, AI-Driven Automation, Cybersecurity Operations, and Malware Analysis. My work bridges scalable cloud architecture with intelligent automation and advanced security practices — helping organizations run infrastructure that is resilient, self-optimizing, and secure by design.
I design cloud-native systems, build agentic and LLM-powered automation pipelines, harden environments against real-world threats, and reverse-engineer malicious software to produce actionable intelligence. Every system I ship is built with the same standard: automated, observable, and secure by default.
engineer:
name: "Muhammad Ahmad"
focus: ["Cloud Infrastructure", "AI Automation", "Cybersecurity", "Malware Analysis"]
philosophy: "Security and automation are not trade-offs — they are force multipliers."
currently_building: "Agentic pipelines that monitor, defend, and self-heal cloud environments"
open_to: ["Cloud Security roles", "AI Automation projects", "Threat Research collaboration"]|
Design, deployment, and management of scalable, highly available, cost-optimized cloud infrastructure. Infrastructure-as-Code, containerization, CI/CD pipelines, cloud networking, and multi-cloud architecture across AWS and Azure. |
Development of intelligent automation systems using LLMs, agentic frameworks, and RAG pipelines. Applications in security workflow automation, threat intelligence enrichment, and autonomous decision support. |
|
Security operations spanning threat modeling, penetration testing, vulnerability assessment, and identity governance (Entra ID, Okta). Aligned with NIST, MITRE ATT&CK, and CIS frameworks. |
Static and dynamic analysis of ransomware, trojans, and APT tooling. Reverse engineering, behavioral analysis, and production of actionable Indicators of Compromise (IOCs). |
Cloud Platforms & Infrastructure
Identity, Security & DevSecOps
| Domain | Frameworks & Standards |
|---|---|
| ☁️ Cloud & Security | CIS Benchmarks · AWS Well-Architected Framework · Azure Security Benchmark |
| 🛡️ Cybersecurity | MITRE ATT&CK · NIST CSF · OWASP Top 10 · ISO/IEC 27001 |
| 🦠 Malware Analysis | STIX/TAXII · OpenIOC · MalwareBazaar · VirusTotal Intelligence |
| 🤖 AI & Automation | LLM Orchestration · RAG Pipelines · Agentic AI Frameworks · n8n Workflows |
| 🔑 Identity & Access | Microsoft Entra ID · Okta SSO/MFA · Conditional Access · SAML/OAuth2 |
| Repository | Focus |
|---|---|
| 🔑 entra-id-iam-automation | Identity & access automation for Microsoft Entra ID |
| 🛡️ aws-secure-vpc-waf-network-firewall | Hardened AWS network perimeter with WAF & Network Firewall |
| 📡 wazuh-siem-project | SIEM deployment for threat detection & monitoring |
| 🧬 ioc-threat-intel-mapper | Threat intelligence enrichment & IOC correlation |
| 🤖 enterprise-rag | Retrieval-augmented generation pipeline for enterprise use |
| 🦠 advanced-dynamic-malware-analysis | Dynamic analysis & behavioral profiling of malware samples |


