Skip to content
View beltagyy's full-sized avatar
🗺️
Working from home
🗺️
Working from home

Block or report beltagyy

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
beltagyy/README.md

Mohamed Beltagy

Cloud Security Engineer · DevOps Architect · Backend & Cloud-Native Builder

I build secure cloud platforms, automate delivery, and explore better ways to protect modern infrastructure.

LinkedIn Email GitHub

About me

I work where cloud engineering, backend automation, and security meet. My focus is designing infrastructure and delivery systems that are secure by default, observable in production, and straightforward for teams to operate.

I enjoy turning security controls into repeatable engineering workflows: policy as code, hardened Kubernetes platforms, supply-chain checks, GitOps delivery, and useful automation in Python and Go.

My engineering bias: automate the guardrails, keep the platform observable, and make the secure path the easiest path.

What I work on

Area Focus
Cloud & platforms AWS, Azure, GCP, Kubernetes, Docker, Helm, Talos Linux
Security engineering Container security, IAM/RBAC, secrets, vulnerability management, policy as code
Delivery & infrastructure Terraform, Ansible, GitHub Actions, GitOps, Argo CD, CI/CD architecture
Backend & automation Python, Go, APIs, event-driven workflows, operational tooling
Reliability Prometheus, Grafana, logging, incident response, resilience and cost awareness

Research & experiments

My current engineering lab explores practical questions around cloud-native defense and platform reliability:

  • Kubernetes hardening — testing secure-by-default cluster patterns, RBAC boundaries, admission controls, and CIS-aligned configurations.
  • Software supply-chain security — exploring image provenance, dependency and IaC scanning, SBOMs, signing, and policy enforcement in CI/CD.
  • AI-assisted cloud security — experimenting with agents that turn cluster signals and misconfigurations into useful, explainable remediation guidance.
  • GitOps safety — investigating how policy gates, drift detection, and progressive delivery can reduce operational risk without slowing teams down.
  • Runtime visibility — learning how eBPF and cloud-native telemetry can improve threat detection and incident investigation.

These are active experiments and evolving notes—not finished research claims. I share useful implementations as they become ready.

Selected projects

A hands-on platform lab for deploying and operating a Talos Kubernetes cluster with infrastructure as code, networking, storage, observability, and GitOps workflows.

A Python automation service that turns job discovery into a focused personal digest—an experiment in practical workflow automation and useful signal extraction.

A TypeScript product demo for an AI-assisted job-search experience, connecting backend automation with a clear user-facing workflow.

My fork and experimentation space for an AI-powered Kubernetes security agent, focused on understanding cluster risk and actionable remediation.

Toolbox

Kubernetes Docker Terraform Ansible Argo CD GitHub Actions Python Go Prometheus Grafana

Open to collaboration

I am interested in cloud security, platform engineering, Kubernetes, DevSecOps, and open-source security tooling. If you are working on something in that space, connect with me on LinkedIn or send me an email.

Pinned Loading

  1. job-digest job-digest Public

    Personal job digest bot

    Python 3

  2. job-digest-demo job-digest-demo Public

    Frontend demo website for Job Digest - showcase AI-powered job search

    TypeScript 1

  3. kubesentinel kubesentinel Public

    Forked from jaydenaung/kubesentinel

    An AI-Powered Kubernetes Security Agent

    Python 1

  4. gitops gitops Public

    This repository contains the complete deployment manifests & IaC for deploying and managing a **Talos Kubernetes cluster** with a comprehensive platform stack including networking, storage, observa…

    HCL 1

  5. bridgecrewio/checkov bridgecrewio/checkov Public

    Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.

    Python 9k 1.4k

  6. SEMOSS/Semoss SEMOSS/Semoss Public

    Java 55 17