Skip to content
View HN168's full-sized avatar

Block or report HN168

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 250 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
HN168/README.md

πŸ‘‹ Hi, I'm Huy Ngo - AI Security & Cloud Security

🌐 Cloud Security Engineering | πŸ€– AI Agent Engineering | πŸ›‘οΈ GIAC x8, CISSP, AWS SAA


πŸ”­ Current Focus

Exploring AI-driven security automation to improve SOC efficiency, detection accuracy, and compliance readiness.

πŸš€ Projects

  • SOC Alert Enrichment System Pipeline for AWS GuardDuty alerts using Security Hub, VirusTotal, and Slack/Jira integrations. Target: reduce triage time from ~15 minutes to <5 minutes.

  • Cloud AI Security Assessment Toolkit (Research) PyRIT-based testing methodology for AWS Bedrock and Azure OpenAI, aligned to OWASP LLM Top 10.

  • AI Governance Automation Platform (Upcoming) Implements NIST AI RMF controls with automated evidence collection and audit reporting.

  • Secure AI Integration Reference Architecture (Capstone) (Planned) Containerized SOC platform combining enrichment, intel, remediation, and IR automation using MCP, Docker, and multi-LLM backends.


⚑ Tech Stack & Tools

AI/ML: LangChain, CrewAI, AutoGen, Hugging Face, Pinecone/Weaviate

Cloud Security: AWS GuardDuty, Security Hub, IAM Analyzer, VirusTotal API

Automation: Python, FastAPI, Docker, AWS ECS, Lambda

Governance & Frameworks: NIST AI RMF, OWASP LLM Top 10, MITRE ATT&CK/ATLAS


πŸ† Recent Highlights

BlackHat 2025 – Building LLM-based AI Agents for Security | Breaking GenAI - Offensive AI

DEF CON 2025 – AI SecureOps: Attacking & Defending AI

GIAC Certified x8 – Cloud, DevSecOps, Web App, SOC Operations

MSISE – SANS Technology Institute, Information Security Engineering

πŸ“ Let's connect: πŸ”— LinkedIn

Popular repositories Loading

  1. HN168 HN168 Public

  2. SOC-alert-enrichment-system SOC-alert-enrichment-system Public

    Automated enrichment pipeline for AWS GuardDuty findings using threat intelligence APIs.