π Security Engineer | π©πͺ Living in Germany π Specializing in Application Security, DevSecOps, and Cloud Security
I'm a security-focused engineer passionate about building and securing modern applications across web, mobile, and cloud platforms. With hands-on experience in automating security controls and integrating them into CI/CD workflows, I help teams shift security left without compromising speed.
I'm currently working as a DevSecOps Engineer at Nexontis and actively contributing to sec-m8 β a project focused on practical security automation.
- π Python
- π₯οΈ Bash
- π³ Docker
- βΈοΈ Kubernetes
- βοΈ Azure
- βοΈ Cloudflare
- βοΈ SAP BTP
- π§ GitLab CI/CD
- π§ Bitbucket CI/CD
- π SAST / DAST
- π΅οΈ Secret Scanning
- π§ͺ Penetration Testing
- π Threat Modeling
- π οΈ DevSecOps Practices
- π§ͺ Secure Design
- π§© SAP Security Concepts
- π§ Email: hojjat.sajjadinia@nexontis.com
- πΌ LinkedIn: linkedin.com/in/hojjatsajjadinia
- βοΈ Medium: medium.com/@hojjatsajjadinia
- π sec-m8: Security automation tools and integrations
- π§ͺ AndRoPass: Tool to check the strength of Android root and emulator detection
- π΅ XposedFrameworkOffline: Xposed Installer and Framework for offline use contains Android 5.0 to 8.0 support.
- π©οΈ OPA-Security-Rules: A series of OPA rules for the static analysis of Docker and Kubernetes configuration files, aimed at enhancing security.
βSecurity is not a checklist. It's a mindset.β
Thanks for visiting my profile! Feel free to connect β always open to collaborations around secure DevOps, cloud-native security, and open-source tools.


