Hi, I'm

Andoche Géro
LOHOUNME

DevSecOps Engineer.

ISO 27001 certified DevSecOps Engineer specializing in automated Shift-Left security across CI/CD pipelines, Azure Cloud, and Kubernetes clusters. No critical vulnerabilities identified within the tested scope, hardened software supply chain, NIST & ISO 27001 compliance.

Secured CI/CD Pipelines · Cloud & K8s Hardening · SAST / SCA / IaC / DAST · NIST · ISO 27001 · GDPR

Contact Me
Andoche Géro LOHOUNME

05. Technical Scope & Skills

CI/CD Security & Shift-Left

  • Automated vulnerability detection prior to production: SAST (Semgrep), SCA (Snyk), Secret Scanning (Gitleaks)
  • Blocking CI/CD pipelines on GitHub Actions: no critical vulnerabilities detected within the tested scope prior to production

Cloud & Kubernetes Security

  • Hardened Infrastructure as Code using Terraform with automated Checkov policy scans
  • Kubernetes (AKS) hardening via Kyverno Admission Control, strict security contexts, and DAST scans (OWASP ZAP)

Supply Chain & Threat Modeling

  • Software supply chain security: SPDX SBOM (Syft) and container image signing (Cosign/Sigstore)
  • Risk analysis and threat modeling using the STRIDE framework with formal countermeasures

Compliance & System Delivery

  • Alignment with global standards: NIST SP 800-190, CIS Benchmarks (Docker/K8s), ISO 27001, GDPR/APDP
  • Full-stack design and secure delivery of modern web/mobile applications (Node.js, PostgreSQL, Flutter, Next.js)