Skip to content
View hrkh1990's full-sized avatar

Block or report hrkh1990

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
hrkh1990/README.md
Hamidreza Khazaie, network and cloud security consultant. Secure networks, calm changes.

Hi, I’m Hamidreza 👋

I help companies design, secure and change their networks and cloud with confidence. For 12+ years I’ve worked on firewalls, AWS, VPNs and segmentation for banks, ports, airlines and SaaS platforms. I care as much about the plan and the handover as about the configuration.

Based in Rome, working with teams across Europe. Currently available for new projects.

How I can help

Zero Trust access Remote and admin access that checks who and what device, with nothing exposed to the internet.
Segmentation Critical systems split into zones, so one compromised server can’t reach your data.
Firewall migration New firewalls or vendors with a reviewed rule base, a tested cutover and a way back.
Hybrid cloud Offices, data centre and AWS connected over encrypted tunnels with one place to control access.
Audit readiness Monitoring, controls and evidence in place before the SOC 2 auditor arrives.

How I work

01 Look → 02 Draw → 03 Change → 04 Hand over

I’d rather spend an extra day planning than an extra night rolling back.

Open source

fwmigrate: convert a Cisco ASA configuration to FortiGate, including NAT to VIPs, routing-based egress interfaces and ASA's implicit security-level permits, with a report of everything that still needs a human.

$ fwmigrate convert asa-running.cfg --map interfaces.map
✓ 12   policies         → config firewall policy
+ 1   implicit security-level permits made explicit
⚠ 2    items need review (see report.md)

Platforms I work with

Cisco Firepower / ASA FortiGate Juniper SRX Palo Alto AWS Cloudflare ZTNA Wazuh SD-WAN

Certified: AWS Solutions Architect – Associate · Fortinet FortiOS 7.6 Administrator

Get in touch

secureops.it · LinkedIn · Malt · info@secureops.it

@hrkh1990's activity is private