Cloud Security Portfolio · 2026

Cloud Secure
Cloud Systems

My cloud security portfolio documenting hands-on learning in cloud identity security, cloud detection and response, container security, and infrastructure hardening. I share this work to track my growth and encourage others to learn Cloud Security.

> Paul Turner Cloud Security Portfolio
8+
Cloud Projects
4
Cloud Tracks
8
Month Roadmap
12
Guided Cloud Modules
mission_statement.sh
$ cat mission.txt
Mission: Build strong Cloud Security skills and share what I learn.
Method: Learn → Build Labs → Break Safely → Defend → Share.
Goal: Build credible portfolio evidence and help others learn Cloud Security through practical examples.

$ ls cloud_tracks/
cloud-iam/ cloud-siem/
container-security/ cloud-threat-modeling/

$ git log --oneline -3
a3f9c12 feat: LLM prompt injection defense toolkit v0.1
7b2e841 feat: AI-powered log analyzer with RAG pipeline
c19d007 docs: adversarial attack playground README

Four Core Cloud Security Tracks

Four connected tracks covering cloud attack surfaces from IAM and networking to runtime detection and incident response.

All Research Areas →

Featured Cloud Security Projects

Project-based learning across IAM defense, cloud detection engineering, container security, and cloud threat modeling.

Phase 1 In Progress

Cloud IAM Misconfiguration Defender

A toolkit that audits risky IAM policies, detects privilege escalation paths, and recommends least-privilege remediations.

Python AWS IAM Policy Analysis Least Privilege
Phase 3 Planned

Cloud Incident Response Simulation Suite

A repeatable lab environment for practicing cloud incident response with realistic alerts, investigation playbooks, and post-incident reporting.

Cloud IR Playbooks Detection Automation
Phase 3 Planned

Cloud SOC Analyst Assistant

A workflow assistant that summarizes cloud alerts, suggests triage steps, and helps students practice SOC analysis with cloud-focused context.

Cloud Monitoring SOC Automation Alert Triage Incident Response
All Cloud Projects →

8-Month Build
Plan

A structured sequence of projects covering cloud IAM, cloud detection engineering, container security, and threat modeling, documented at every step for student learning.

Full Roadmap →

Months 1–2

Phase 1 · Core Foundations

Cloud IAM Misconfiguration Defender + cloud log analysis labs with practical alert triage.

Months 3–5

Phase 2 · Container Security & Platform Hardening

Container security labs, Kubernetes hardening patterns, and cloud baseline enforcement templates.

Months 6–8

Phase 3 · Portfolio + Community Learning Outcomes

Cloud IR simulation suite, cloud SOC assistant workflows, and reproducible notes prepared to help others learn faster.

Recent Writeups

All Notes →
Apr 02, 2026 Experiment

Benchmarking AWS IAM Privilege Escalation Detection Rules Across 200 Test Cases

I tested multiple IAM detection approaches against a custom escalation dataset and documented which rules produced strong signal with manageable noise.

Read →
Mar 24, 2026 Reproduction

Reproducing a Cloud Incident Timeline: From Initial Access to Containment

A step-by-step reconstruction of a cloud incident workflow showing how telemetry, alert triage, and containment decisions fit together in practice.

Read →
Mar 15, 2026 Analysis

Cloud Threat Modeling Walkthrough: Mapping Real Attack Paths in a Multi-Account Environment

A practical walkthrough of cloud threat modeling using realistic misconfiguration and privilege abuse paths across shared cloud infrastructure.

Read →

Cloud Security Portfolio

Follow My Cloud Security Journey

I am documenting projects, writeups, and experiments as I learn Cloud Security. Use these examples for your own study and share your learning progress too.

Connect With Me Explore Cloud Projects