Mohamed MEDDAH
Cloud Security Engineer & Infrastructure Specialist
Final-year Cybersecurity Engineering student Bac+5 · EQF Level 7 with hands-on experience in cloud security architecture, adversary simulation, and web application penetration testing. Active bug bounty researcher with confirmed critical findings on production targets.
Expertise
Cloud Security
Azure CSPM, Defender for Cloud, Entra ID, Conditional Access, AWS GuardDuty, Security Hub, IAM least-privilege architecture.
Offensive Security
Web & API penetration testing, SSRF, IDOR/BOLA, OAuth exploitation, AD attacks, NTLM relay, ADCS abuse, and active bug bounty research.
Detection & GRC
SIEM engineering with Sentinel & Wazuh, KQL threat hunting, STRIDE threat modeling, ISO 27001 ISMS documentation, DORA & NIS2 alignment.
Network Infrastructure
BGP, OSPF, EVPN/VXLAN fabric design, pfSense, Site-to-Site VPN, GNS3 lab environments. CCNA/CCNP level Wireshark analysis.
Featured Projects
Adversary Simulation & Detection Engineering Lab
5 end-to-end attack chains across 13 MITRE ATT&CK techniques — phishing-to-domain compromise, Entra ID identity attacks, on-prem-to-cloud lateral movement via PRT abuse. Full KQL detection coverage map in Sentinel.
DevSecOps CI/CD Security Pipeline
Secure SDLC pipeline integrating SAST (Semgrep), DAST (OWASP ZAP), secrets scanning (truffleHog), and container image scanning (Trivy). Gates reject builds on critical CVEs.
Zero-Trust Distributed Storage System
Mini-IPFS with client-side AES-256-GCM encryption, Merkle DAG integrity, 3-node replication, Attribute-Based Encryption access control, and JWT Ed25519 PoP anti-replay.
EVPN/VXLAN Spine-Leaf Datacenter Fabric
Full EVPN/VXLAN overlay on GNS3 using FRRouting (BGP EVPN, OSPF underlay) with native attack surface documentation including BGP route poisoning vectors.
Bug Bounty Research Write-ups →
redirect_uri bypass on GitLab SSO — 1-click account takeover via authorization code grant misconfiguration