Anand Basu – Cloud Security Architect
Cloud Security Architect - AWS & Kubernetes

I design secure, observable, and compliance-ready cloud platforms using automation, policy-driven controls, and feedback loops. Proven delivery across AWS environments under real production constraints.

Cloud Security Architecture AWS Security Kubernetes / OpenShift Security Automation NIST / Compliance Engineering
About

What I Do

I design and govern cloud security architectures that are secure-by-default, and audit-ready at scale. I use NIST CSF / RMF to translate security and compliance requirements into policy-driven guardrails, with continuous monitoring, and closed-loop detection, thereby reducing operational risk.

Now

Bangalore (India) : targeting India / EU remote roles. Currently focused on cloud security architecture, automated governance, and observability-driven risk reduction across AWS environments. Preparing for EU-remote Cloud Security Architect roles.

Featured Projects & Impact

EdTech Infra Turnaround

Inherited severely mismanaged infra; stabilized and rebuilt to compliance-ready state. Built ELK observability. Enabled cyber-insurance audit pass.

RBAC CIS ELK Windows & Linux

Security Incident Response

Neutralized multiple crypto-mining compromises. Root-caused, cleaned, killed interdependent processes, and hardened systems without downtime spillover.

Incident Management Threat Hunting Automation

SIEM Platform (Wazuh + TheHive)

Designed and deployed SIEM on AWS EC2 with TheHive, integrated with QuickSight for estate analytics; ML classifier planned for correlation and YARA generation.

Wazuh TheHive QuickSight AWS
Education Media Manufacturing
Active Certifications

Completed certifications demonstrate operational capability in cloud security, governance, and compliance frameworks.

Coursera Logo

NIST Cybersecurity & Risk Management Specialization - Packt (Coursera) | Sept 2025

Verify

Aligns AWS security controls with NIST CSF audits and enterprise risk reporting. NIST CSF + RMF frameworks bridge technical implementation to board-level governance.

Coursera Logo

Certified Cloud Security Practitioner (Coursera) | Aug 2025

Verify

Structured coverage of cloud security domains across identity, data protection, and incident response—vendor-neutral foundation for multi-cloud operations.

Coursera Logo

Data Security & Information Privacy - MacQuarie University (Coursera) | Aug 2025

Verify

Baseline for privacy principles, anonymization, and data handling practices that make compliance frameworks technically enforceable.

Currently Building

AI-SecOps Lite - Vendor-Neutral, Production-Grade SOC Prototype

  • Detection → Decision → Adaptation: Suricata + Wazuh + DuckDB + MLflow + n8n pipeline with explainable ML (IsolationForest, Prophet, SHAP) and automated SOAR feedback loops.
  • Governance & Compliance: Built-in model lineage, pseudonymization, human-in-loop controls aligned with NIS2/GDPR/EU AI Act.
  • Future-Ready: Reinforcement agents for adaptive playbooks, federated DuckDB for MSPs, and sandboxed simulations for risk and policy testing.

Contact

Let's talk

Available for EU MSSP/MSP CloudSec roles (€50 to €80K).
Contact me directly.

Signal in one glance

  • Infra turnaround: 40 - 60% regression drop
  • ₹50L+ downtime losses prevented
  • SIEM delivery with ML roadmap
  • AWS Security → Multi-Cloud transition