Cloud Security Engineer

Elijah Agnew
Securing the cloud,
one policy at a time.

Cloud Security Engineer specializing in multi-cloud security controls, Infrastructure as Code enforcement, Kubernetes automation, and enterprise CSPM/SIEM integrations.

loc // Virginia Beach, VA
org // Humana
edu // Purdue '24 · NYU (M.S.)

Who I am

I'm a Cloud Security Engineer at Humana focused on securing multi-cloud environments across Azure, AWS, and GCP. I work closely with application teams to review their infrastructure as code for security and compliance — making sure things are built right from the start, not patched after the fact.

My career started on the offensive side — breaking into systems as a penetration tester to understand how they fail. That perspective now drives how I build the defensive systems that prevent those failures in production: CSPM policies, automated remediation at scale, container workload protection, and supply chain hardening through our internal container registry.

I'm currently pursuing an M.S. in Cybersecurity at NYU while engineering full-time — always learning, always building.
Location Virginia Beach, VA
Role Cloud Security Engineer
Company Humana
Focus Multi-Cloud & IaC Security
Education Purdue BS · NYU MS

What I do

[ IaC ]

Infrastructure as Code

Partner with application teams to review their Terraform, CloudFormation, Bicep, and ARM modules — ensuring infrastructure is secure and compliant from the start through Prisma Cloud RunTask integrations enforcing IaC policies across all clouds.

Terraform CloudFormation Bicep ARM
[ K8s ]

Kubernetes & Container Security

Deploy container workload protection policies, build secure containerized applications, and drive container registry standardization — reducing external image usage and hardening the software supply chain.

Kubernetes KEDA CWP Docker
[ CSPM ]

Cloud Security Posture Mgmt

Implement Prisma Cloud CSPM policies across multi-cloud environments, improving visibility and reducing non-compliant resources through automated detection of misconfigurations.

Prisma Cloud Azure AWS GCP
[ SIEM ]

Security Monitoring & Automation

Integrate Prisma Cloud with Splunk SIEM to centralize audit logs and remediation events, enabling real-time compliance dashboards. Build automated remediation CLIs to correct non-compliant resources at scale.

Splunk Azure DevOps PowerBI CI/CD

Experience

JUNE 2024 — PRESENT
Cloud Security Engineer
Humana — Full-Time
  • Partner with application teams to review Terraform, CloudFormation, Bicep, and ARM modules for security and compliance, enforcing IaC policies across Azure, AWS, and GCP through Prisma Cloud RunTask integration
  • Implemented Prisma Cloud CSPM policies across multi-cloud environments, improving visibility and reducing non-compliant resources
  • Built automated remediation CLIs to correct non-compliant cloud resources, reducing manual intervention and accelerating compliance
  • Built Azure DevOps pipelines to automate Terraform workspace metrics for IaC policy compliance
  • Integrated Prisma Cloud with Splunk SIEM for centralized audit logs and real-time compliance dashboards across hundreds of resources
  • Signifigantly contributed to the Humana Container Registry (HCR) initiative, reducing external container image usage
  • Developed secure containerized applications using Python and Bash, deployed via Kubernetes with KEDA for event-driven scaling
MAY 2023 — JUNE 2024
Cloud Security Engineering Intern
Humana
  • Developed and deployed PowerShell automation through Azure DevOps pipelines for resource tagging cleanup
  • Created PowerBI metric dashboards to display policy exceptions and expiration tracking
  • Learned and applied fundamentals of Infrastructure as Code in a production environment
AUG 2022 — MAY 2023
IT Risks & Compliance Intern
Humana
  • Drafted bi-weekly reporting metrics for organizational controls monitoring and Issues & Opportunities tracking
  • Created VBA automation scripts in Excel to streamline the bi-weekly reporting process
MAY 2022 — AUG 2022
Penetration Testing Intern
Humana
  • Participated in full lifecycle penetration testing for internal and external resources
  • Conducted web application penetration tests using Burp Suite to identify vulnerabilities
  • Reviewed source code for security weaknesses and communicated findings to remediation teams
AUG 2022 — MAY 2024
Teaching Assistant — Sys. Admin
Purdue University
  • Oversaw and taught labs in networking configurations covering IP and DNS
  • Provided instruction, graded assignments, and led office hours for students

Certifications

AZ-900
Azure Fundamentals
AZ-104
Azure Administrator
Terraform Associate
HashiCorp Certified
KCNA
Kubernetes & Cloud Native Assoc.
Security+
CompTIA
Splunk Core
Certified User
CKA
Certified Kubernetes Admin

Education

Purdue University
B.S. in Cybersecurity · Minor in Forensic Science
GPA 3.69 Graduated May 2024
New York University
M.S. in Cybersecurity
GPA 4.0 Expected 2027–28

Tech Stack

elijah@cloud-sec ~ %
$ cat --languages
PowerShell · Python · C · C# · HCL · Bicep · YAML

$ cat --iac
Terraform · CloudFormation · ARM Templates · Bicep

$ cat --cloud-platforms
Azure · AWS · GCP

$ cat --security-tools
Prisma Cloud · Splunk · Burp Suite · Azure DevOps

$ cat --containers
Kubernetes · KEDA · Docker · Container Registries

$ cat --other
PowerBI · Git · CI/CD Pipelines · Policy-as-Code

$ _

Projects

Coming Soon
In Progress
Currently working on a personal project to showcase hands-on cloud security and automation skills. Stay tuned.
TBD
Coming Soon
Planned
More projects on the way. Check back or follow along on GitHub.
TBD