whoami

Tristan Wallace

DevSecOps Engineer | Security Researcher

About

I do security engineering at a NYC real-estate tech company — building infrastructure, automating defenses, and breaking things politely. Off the clock: tools, OSINT, and puzzles hidden in plain sight.

Skills

Cloud & Infrastructure

AWS • GCP • Azure • Terraform • Kubernetes • Docker • CI/CD Pipelines

Security Tools

SIEM • Vulnerability Scanning • Penetration Testing • Threat Modeling • IDS/IPS

Development

Python • Go • Bash • API Security • Secure Code Review

Compliance

SOC2 • NIST • ISO 27001 • Security Audits • Risk Assessment

Security Research

Vulnerability Research • Reverse Engineering • CTF • Malware Analysis

Projects

SecFeeds [LIVE]

Curated security news — government advisories, research, and vendor intel, aggregated and distilled into one feed.

Lab [LIVE]

Client-side security tools — ciphers, hashing, JWT inspection, secret generation. Everything runs in your browser; nothing is transmitted.

This site [YOU ARE HERE]

Static, no trackers, hardened headers. The source rewards a close read.