π Based in Singapore | π farath.com | πΌ LinkedIn | π° Tech Job Drop
I am a DevSecOps & Application Security Engineer with over 11 years of experience securing software delivery pipelines, architecting cloud infrastructure, and embedding security directly into modern software engineering workflows. My core mission is shifting security left without compromising developer velocity.
- π‘οΈ Core Focus: Application Security (AppSec), Static Code Analysis (SAST), DAST, SCA, IaC Scanning, Pipeline Hardening & Cloud Governance.
- βοΈ Author @ Tech Job Drop: Curating high-signal engineering opportunities and insights across DevOps, DevSecOps, and Cloud Security.
| Domain | Tools & Technologies |
|---|---|
| AppSec & Code Analysis | SAST, DAST, SCA, Snyk, SonarQube, Semgrep, Trivy, Checkov, OWASP ZAP |
| DevOps & CI/CD Pipelines | GitHub Actions, Bitbucket Pipelines, GitLab CI, ArgoCD, Jenkins |
| Cloud & Infrastructure | AWS, Docker, Kubernetes, Terraform, Helm, Infrastructure as Code (IaC) |
| Scripting & Automation | Python, Bash, Go, Node.js / TypeScript |
| Observability & SRE | Datadog, Prometheus, Grafana, ELK Stack |
- [Tech Job Drop]: A curated weekly Substack newsletter featuring vetted job openings in DevOps, Security, and Cloud Architecture.
- Local AI & Automation: Experimenting with local LLM workflows, Model Context Protocol (MCP) integrations, and developer tooling.
- Portfolio / Website: farath.com
- LinkedIn: linkedin.com/in/farathshba
- Newsletter: farath.substack.com
"Automate Security. Empower Developers. Ship Confident Code."




