I'm Turkish, based in Melbourne π¦πΊ. Second-year ICT Security student, and I spent years as a progress-payment specialist, mechatronics technician, and QC data analyst before circling back to code.
That mixed background is my angle: I like building security automation shaped by a real domain and put behind a proper pipeline β not generic tooling.
I use this space to share what I'm building and how I'm learning. Reach out anytime.
π« sudo@sedataras.com β π sedataras.com
π‘οΈ Security Automation & DevSecOps: Building CI/CD pipelines that catch problems early β SAST, SCA, secret scanning, container hardening β and shaping them into tools other teams can pick up (see ShieldScan).
π€ AI in Security: Adding LLM layers where they earn their keep β scanner-output triage, honeypot deception, alert summarisation. Not AI for its own sake; AI as a force multiplier for security work.
π Domain-Specific Tooling: Bringing prior-life expertise into code. My progress-payment project turns Turkish construction-payment know-how into a FastAPI system that keeps a human in the loop for anything ambiguous.
βοΈ Cloud Security: AWS β running production honeypots on EC2 Spot (sentinel-vx), thinking about VPC design (secure-vpc-architecture), building on the AWS Cloud Practitioner foundation.
βοΈ Offensive Practice: Working through HTB and CPTS. This isn't the deliverable β it's the lens. You can't defend what you don't understand how to break.


