Career Summary

I am a Cloud Security Engineer focused on AWS-native security operations. My current work centers on standardizing security services such as GuardDuty, Security Hub CSPM, and WAF as Terraform code across a large multi-account environment, and on designing and operating an Elastic-based cloud SIEM/SOAR stack with MITRE ATT&CK-based detection rules validated through breach and attack simulation.
Earlier in my career I built cloud security products covering CSPM, CIEM, and Zero Trust integrations in Go, and developed threat intelligence data platforms including dark web collection pipelines, on-premise DevOps environments, and Elasticsearch-based systems. My research background in automotive and cloud intrusion detection led to a journal publication and several patent applications.
I am most interested in where data engineering, anomaly detection, and security automation meet.

Professional Experience

Hyundai AutoEver 현대오토에버

클라우드보안기술팀 | Cloud Security Engineer
2024. 12. - Present
Hyundai AutoEver is an IT service company that provides comprehensive solutions across various industries including automotive, manufacturing, and finance. As part of the Cloud Security Team, I specialize in AWS native security implementation and enhancement, focusing on developing robust security monitoring systems and automated incident response solutions for enterprise cloud environments.
AWS 네이티브 보안 서비스의 코드 기반 표준화 및 전사 계정 확대 운영
GuardDuty 탐지 이벤트를 심각도별 Teams 채널에 실시간 전달하는 알림 체계 구축
다수의 멀티 어카운트·멀티 리전 환경으로 GuardDuty 위협 탐지 커버리지 확대
Security Hub CSPM·GuardDuty의 계정·리전 단위 Terraform 모듈 코드화
신규 계정 온보딩 시 보안 기준선이 자동 적용되는 중앙 관리 체계 확보
AWS WAF 표준 정책(Managed Rule Group 기반)과 룰 네이밍 규칙 정립
AWS WAF Web ACL 점검·차단 로그 분석 도구 개발로 오차단 초동 대응 시간 단축
클라우드 SIEM·SOAR 체계 설계·구축 및 탐지-대응 운영 프로세스 수립
BAS(Breach and Attack Simulation) 실제 공격 시나리오 실행 기반 SIEM 플랫폼 검증 및 Elastic 선정
Elastic 기반 클라우드 로그 통합 관제 아키텍처 설계·운영
AWS 네이티브 보안 로그를 전용 로그 아카이브 계정으로 중앙화하는 수집 체계 설계
계정별 분산 보안 이벤트의 단일 플랫폼 가시화
MITRE ATT&CK 기반 탐지 규칙 수립 및 동일 BAS 시나리오 재실행으로 탐지 여부 검증
SIEM 탐지 규칙 연동 SOAR 플레이북 구현, 고위험 IAM 자격증명 자동 회수 등 초동 대응 자동화
GuardDuty 탐지 시 인스턴스를 자동 격리하고 포렌식 조사 계정으로 분리하는 워크플로우 설계 및 검증
탐지 이벤트 수신→초동 분석→담당자 소명 요청→조치 확인의 대응 프로세스와 유관 부서 R&R 정립
MTTD·MTTA 기반 운영 목표 지표 설정 및 대응 현황 관리
사내 생성형 AI 도입 과정의 보안 체계 수립 기여
Amazon Bedrock 기반 서비스의 보안 요구사항 검토 및 생성형 AI 샌드박스 계정 보안 아키텍처 설계
Amazon Macie S3 PII 스캔과 Bedrock Guardrails 입·출력 필터링을 연계한 민감정보 탐지 파이프라인 구현
샌드박스 보안 인프라·탐지 파이프라인 Terraform 코드화로 보안 설정 표준화 및 배포 자동화
멀티 계정·멀티 리전 보안 운영을 위한 Cloud Center of Excellence (CCoE) 활동
컨테이너 및 Kubernetes(EKS) 보안 베이스라인 수립
클러스터 접근 관리 및 컨테이너 레벨 로깅 기준 정의
2023. 8. - 2024. 12.
Tatum Security is a B2B startup that develops and sells cloud security automation software (both on-premises and SaaS-based), with a focus on creating solutions for establishing a secure cloud environment. We target the entire spectrum of cloud security, from CSPM (Cloud Security Posture Management) for diagnosing both domestic and international security compliance, to CIEM (Cloud Infrastructure Entitlement Management) for managing permissions in the cloud, CWPP (Cloud Workload Protection Platform) for securing cloud workloads, and KSPM (Kubernetes Security Posture Management) within Kubernetes environments, ultimately aiming to cover all aspects of CNAPP (Cloud Native Application Protection Platform).
Zero Trust 실현을 위한 DevSecOps 기반 클라우드 보안 연구개발
CNCF 보안 프로젝트 기반의 클라우드 보안 솔루션 개발 (Go 언어 기반)
멀티 클라우드 유효 권한 가시성 확보를 위한 CIEM 연구개발
다중 클라우드를 위한 자원 간 관계도 생성 장치 국내특허출원
Relationship generating device for multiple clouds
CNAPP를 위한 코드 기반 CSPM(Cloud Security Posture Management) 연구개발
AWS, GCP, Azure를 기본으로 NCP, NHN, KT와 같은 국내외 클라우드를 대상으로 한 CSPM 연구 및 개발
CIS, NIST, DoD, ISO 등의 보안 컴플라이언스를 위한 클라우드 보안 감사 조치 자동화 연구 및 개발
AWS Security Hub 의 Best Practices 직접 구현을 통한 제품 고도화 (Go 언어 기반)
금융 보안 컴플라이언스(금융보안원) 자동화를 위한 Prowler, Powerpipe 오픈소스 검토 및 적용
VMware ESXi, vSphere 및 XenServer 등의 하이퍼바이저 환경에 대한 보안 취약점 자동 진단 및 보안 연구
vSphere 및 Proxmox 기반 온프레미스 환경 구축, 운영 및 분석
Zero Trust Segmentation 실현을 위한 외부 보안 제품 API 연계 솔루션 연구개발
Akamai Guardicore Segmentation API 연동
Palo Alto Networks Prisma Cloud 가시성 통합

S2W Inc. ((주)에스투더블유)

Big Data Platform Group | Security Engineer
2022. 1. - 2023. 6.
S2W is specializing in cybersecurity data analysis for cyber threat intelligence.
다크웹·텔레그램 등 은닉 채널의 위협 데이터 수집·분석 파이프라인 개발
On-premise DevOps CI/CD 파이프라인 도입을 위한 환경 구축 및 테스트
GitOps 기반 서비스 운영 자동화 및 배포
MSA 기반 서비스 컨테이너화 가이드라인 제공
  • MicroK8s
  • Rancher
  • MetalLB
  • Jenkins
  • Harbor
  • ArgoCD
On-premise 구축형 Elastic Search 기반 정보수집체계 개발 및 유지보수
시스템 내부 Data Backup & Restore Solution 개발
Spring Boot 기반 B2G 검색엔진 솔루션 Backend 개발 및 유지보수
온라인 위협 데이터 저장 서버 및 이의 실행 방법 국내특허출원
Online Threat Data Saving Server and Method Performing Thereof
프라이빗 채널에 대한 위협 데이터 검색 및 이를 실행하는 서버 국내특허출원
Method of Searching Threat Data on Private Channel and Server Performing Thereof
공격표면 관리(ASM, Attack Surface Management) 솔루션용 Port Scanner 개발
스캔 결과 대용량 데이터 가공 및 처리

고려대학교 정보보호대학원

2021. 2. - 2021. 12.
Full-time Master's Student Researcher
2021학년도 1학기 장학금 수혜
Journal of Cloud Computing
27 September 2024
2021. 3. - 2021. 12.
NLP 기반 사이버 위협 인텔리전스 시스템 연구 ( 관련기사 - aitimes.kr)
Samsung SDS · Samsung Research 협력 과제
2021. 4. - 2021. 12.
자율주행차량의 차세대 내부 네트워크의 보안 및 초고속 무결성 부여 기술 개발
정보통신기획평가원(IITP) 과제
CAN 메시지 분석과 신경망 모델을 이용한 경량화된 실시간 이상 탐지 방법 해외특허출원
PCT/KR2022/017082
2022. 11. 3.
Lightweight Real-Time Anomaly Detection Method Using CAN Message Analysis and Neural Network Model
차세대보안 분야 챌린지 R&D 총괄 과제 (정보통신기획평가원, IITP)
2021. 8. - 2021. 12.
차량용 인포테인먼트 시스템(AGL, Automotive Grade Linux) 대상 취약점 검증 대회 운영
참가팀용 IDS 개발·검증 대회 인프라 구축 및 운영

LSware Inc. (엘에스웨어(주))

2020. 3. - 2020. 12.

R&D그룹 주임 연구원 (Security Engineer)
2020. 6. - 2020. 12.

지능형 허니팟 기반 랜섬웨어 차단·복구 기술 개발 (중소벤처기업부 과제)
랜섬웨어 감염 대비 데이터 백업 및 복구 자동화 기술 연구개발
머신러닝 기반 비정상 행위 탐지 기술 연구개발
저작권 보호를 위한 익명 네트워크 실명화 기술 연구개발 (한국저작권위원회 과제)
다크웹, 토르 네트워크 패킷분석 테스트베드 구축
토르 네트워크에 접속되어 있는 PC 및 서버의 추적 기술 연구개발
2020 한국정보보호학회 동계학술대회 (CISC-W'20)
2020. 11.
랜섬웨어 대비 자동 백업 리눅스 커널 모듈과 암호화 파일 탐지를 위한 Grayscale 이미지 분류
Automated Backup Linux Kernel Module (LKM) Against Ransomware & Classification of Grayscale Images for Encrypted File Detection
한국정보과학회 2020 한국소프트웨어종합학술대회 (KSC2020)
2020. 12. 22.
딥러닝을 활용한 악성코드 분류 문제 고찰과 회색조 이미지 변환을 통한 암호화 파일 탐지 ( 발표자료)
A Study on the Malware Classification Using Deep Learning and the Detection of Encrypted Files through the Transformation of Grayscale Images

IT서비스개발그룹 QA (Software Quality Assurance) Intern
2020. 3. - 2020. 6.

보안취약점 진단 솔루션 및 접근제어 시스템 기능 테스트 진행
오픈소스를 활용한 기능자동화 접근제어시스템 분석
통합계정 관리 시스템 기능 검증
품질 모니터링 시스템 개발
정합성 점검 자동화툴 개발 개선

S-OIL 본사(마포구) IT운영센터

HNTC 에이치앤티(주)
2018. 11. - 2019. 2.
사무자동화(OA, Office Automation) 지원 업무

육군

정보체계운용/정비 175103
2017. 1. - 2018. 10.
공개SW역량강화교육 (OSS, Open Source Software)
2018. 7.
Course Title: C++, Python, JavaScript, AI(Artificial intelligence)

Experience

비정형 텍스트 데이터의 토픽 분석의 정확도 향상을 위한 형태소 연결 기법 연구 ( 발표자료)
Development of Incomplete Morpheme Connection Method for Topic Analysis of Unstructured Text Data
데브옵스와 대용량 로그 수집을 활용한 침해사고 대응 자동화 기법 연구
A Study on the Automated Security Incident Response Using DevOps and Large Log Collection
Google Cloud - Architecting with Google Kubernetes Engine (Coursera.org)
2019. 6.
네이버 웨일 브라우저 확장앱 - 인기영화(TMDB) 제작
2018. 12.
영화 검색 사이드바 확장앱 (2022. 6. 기준 사용자 수 12,944 / 다운로드 수 14,145)
네이버 웨일 확장앱 콘테스트 본선 진출 ( Twitter)
2018. 10. - 2018. 12.
정보처리기능사 (한국산업인력공단)
2008. 9.
컴퓨터활용능력 2급 (대한상공회의소)
2008. 9.
워드프로세서 1급 (대한상공회의소)
2007. 6.
3급 (2006. 2.) / 2급 (2006. 6.)

Activities

과학기술정보통신부 주최 차세대 보안리더 양성 프로그램
┗ 1~3기: 한국정보기술연구원(KITRI) 주관 / 4기(2026~): 한국인터넷진흥원(KISA) 주관
가상화(컨테이너 보안 실무) 과목 담당 (4기~, 구 VMware & Hyper-V 과목)
ELK 기반 SIEM(Security Information and Event Management) 설계 및 구축 강의
kind 기반 Kubernetes 클러스터 구축 및 운영 기초 강의
(3기) "OCSF 기반 보안 로그 통합 분석 연구" 프로젝트 & 논문 지도
강원대학교 재학생 대상 '정보보안 특강' 강의
2024. 1.
강원대학교 빅데이터-융합보안사업단
EKS JAM for App Modernization
개발자와 디자이너를 위한 IT 커뮤니티
넥스터즈 22기 활동 ( Instagram)
2023. 1.
넥스터즈 21기 활동 ( Instagram)
2022. 8.
넥스터즈 개발자 컨퍼런스 연사 발표 ( Instagram)
2022. 8. 6.
넥스터즈 18기 활동
2020. 12.
제4회 한국코드페어 (KCF) 해커톤 멘토링
2022. 9.
과학기술정보통신부 주최, 한국지능정보사회진흥원 주관
Participant in the Microsoft Student Partners (MSP) program
Rebranded as Microsoft Learn Student Ambassadors on July 20, 2020
HackaLearn Korea 2021 Staff
2021. 8.
1차 심사 합격자 대상 멘토링 지원
네이버 클라우드 플랫폼 - 서버 관리 자동화 실습 참여 ( GitHub)
2020. 7. 30.
#IaC #AWX #Ansible #Terraform
2020 KPMG Ideathon 국내 본선 진출 ( GitHub)
2020. 2.
인공지능기술을 활용하여 낭비되는 시간을 대폭 줄여줄 수 있는 아이디어 및 프로토타입 개발
네이버 커넥트재단 부스트코스 대학생 서포터즈 BOOSTER 2기
2020. 1. - 2020. 3.
Microsoft Ignite The Tour Seoul 2020 ( Instagram)
2020. 1.
2019 소프트웨어 개발보안 시큐어코딩 해커톤 본선 진출 (onoffmix.com) ( Instagram)
2019. 8.
Java 또는 Python 언어를 선택하여 주제에 맞는 안전한 소프트웨어 개발
2019 CodeEngn Conference 16 참가
2019. 7. 20.
2019 7th. NULI Seminar 참가
2019. 6. 25.
만들면서 이해하는 PWA 코드랩 참여 (Speaker: 조은) ( 코드랩 가이드라인 - medium.com)
2019. 6. 8.
FIDO Hackathon 참여 - FIDO Alliance 한국워킹그룹 ( 관련기사 - boannews.com)
2019. 5.
한국외대 MS AI 게이밍 해커톤 참여 (festa.io)
2019. 5.
Microsoft Azure cognitive service와 AiGaming 플랫폼을 이용하여 카드뒤집기 봇 개발
Global Azure Bootcamp 2019 Seoul 참가 ( Instagram)
2019. 4.
(MSP Evangelism) 처음 시작하는 강화학습 with OpenAI Gym 참여
2019. 3.
Microsoft Azure DevOps Community Launch 참가
2019. 3.
머신러닝 워크숍 (NHN Toast Forward) 참여
2019. 2.
WebRTC (HTML5융합기술포럼 WebRTC 분과) 참가
2019. 2.
Samsung SDS 프로그래밍 멘토링 참가
2019. 2.
Google GCP Brunch (Google for Startups Campus, 삼성역) 참가
2019. 2.
대학연합 리눅스 유저 그룹 동아리 'ULUG' 참여
2015.

Focus Areas

  • #CloudSecurity
  • #DevSecOps
  • #SIEM
  • #SOAR
  • #SecurityAutomation
  • #ThreatIntelligence
  • #DataDrivenSecurity
  • #AnomalyDetection
  • #SecurityResearch

Awards

  • Junction Asia 2023 in Busan 트랙 2등 (JAKA Robotics)
    2023. 8.
  • 6회 9oormthon in JEJU 1등 대상 (카카오대표이사상)
    2023. 7.
  • 9회 IT 커뮤니티 연합 해커톤 UNITHON 우수상
    2022. 9.
  • SK Broadband Cloud CAM API 아이디어 공모전 우수상
    2019. 3.
  • 대학생 블록체인 인턴십 연계 매칭 프로그램 우수상 (Founders 2019)
    블록체인기반 녹음 파일 신뢰성 확보 플랫폼 'RECOBLOC'
    2019. 1.
  • 국제 학생 창의력 올림피아드(DI) Destination Imagination 한국대회 장려상
    2013. 2.
  • 컴퓨터 꿈나무 표창 (경기도수원교육지원교육청 교육장)
    2010. 12.

Education

  • Graduate Coursework in Information Security
    Korea University
    2021 - 2023
  • B.S. in Computer and Electronic Systems Engineering
    Minor in Information and Communication Engineering
    Hankuk University of Foreign Studies
    2015 - 2021