Leonard Kachi - Cloud Security Architect

Obidiegwu Onyedikachi Henry

Cloud Security Architect | DevOps Engineer

About Me

I'm a Cloud Security Engineer & Architect who builds systems that don't just run - they defend, adapt, and scale. My focus is on secure cloud design, automated defense, and intelligent threat response across AWS, Azure, and hybrid environments. I merge DevSecOps principles, Zero Trust frameworks, and AI-driven security analytics to transform cloud infrastructures into resilient ecosystems.

Every architecture I design follows one core rule: security must move faster than risk. From IaC blueprints to real-time anomaly detection, my work blends engineering precision with strategic foresight. I'm fluent in automation, observability, and compliance engineering, and I continuously evolve systems to stay ahead of emerging threats including quantum-era risks.

Technical Proficiency

AWS Security
95%
Zero Trust Architecture
90%
Python Automation
88%
Terraform/IaC
92%
DevSecOps
85%
Threat Detection
87%

What I Do

  • Architect multi-cloud security infrastructures using Terraform, CloudFormation, and Ansible
  • Implement Zero Trust and least-privilege frameworks with IAM, SSO, and adaptive access control
  • Automate threat detection, incident response, and compliance validation using Python, Lambda, and SIEM systems
  • Develop AI-assisted defense systems for anomaly detection, data protection, and predictive analytics
  • Integrate security in CI/CD pipelines using GitHub Actions, Jenkins, and ArgoCD for end-to-end DevSecOps
  • Design serverless and containerized architectures hardened for scalability and resilience
  • Apply NIST, ISO 27001, SOC 2, and CIS frameworks to engineer compliance into every deployment

Complete Technical Toolkit

AWS (IAM, EC2, S3, Security Hub, GuardDuty, CloudTrail) Azure Security Center Google Cloud Platform Kubernetes Docker
Zero Trust Architecture SIEM (Splunk, ELK, AWS Security Hub) Identity & Access Management NIST 800-53 ISO 27001 / SOC 2 CIS Benchmarks GDPR & Data Privacy
Python Bash/Shell Go JavaScript PowerShell SQL YAML
Terraform Ansible CloudFormation GitHub Actions Jenkins ArgoCD CI/CD Security Container Hardening
Wireshark Nmap Burp Suite OpenVAS Metasploit OSINT Threat Modeling
CloudWatch Azure Monitor Prometheus Grafana Snort Suricata Splunk Enterprise
AI Security Automation Machine Learning for Threat Prediction Quantum-Resistant Cryptography Blockchain Security Serverless Security (Lambda, API Gateway) Cross-Region Replication Systems

Featured Projects

AWS Three-Tier Web Architecture

AWS Three-Tier Web Architecture

Engineered a production-grade, highly available three-tier web application on AWS, implementing a complete cloud infrastructure with VPC networking, autoscaling, load balancing, and multi-AZ database deployment.

Amazon VPC EC2 Auto Scaling Application Load Balancer Aurora MySQL S3 CloudWatch
View Details
Fuel Finder Nigeria Platform

Fuel Finder Nigeria

Currently designing and architecting a scalable fuel discovery platform aimed at helping drivers locate nearby fuel stations based on real-time availability, pricing, queue status, and route proximity. The project is in active development, focused on addressing fuel scarcity challenges in Nigeria through live data ingestion, community reporting, and intelligent routing.

React.js (PWA) AWS (Lambda, API Gateway, ECS) Google Maps API DynamoDB & Aurora Terraform
View Details
The Bibliotheca - Digital Literary Curator
Archival Preview

The Bibliotheca: Digital Literary Curator

Architected a sophisticated serverless API for curating literary collections. Leverages AWS Lambda to interface with Google Books Archive, featuring intelligent keyword discovery, temporal filtering, and paginated archival responses. Implements a vintage-inspired interface with real-time curation capabilities.

AWS Lambda DynamoDB Terraform Google Books API
View Archival Documentation
AWS Security Architecture

AWS Zero Trust Architecture

Designed and implemented a Zero Trust security model for AWS environments using IAM, SCPs, and network segmentation.

AWS IAM Terraform Python
View Demo
Threat Detection System

AI-Powered Threat Detection

Developed a machine learning model to detect anomalous behavior in cloud logs with 94% accuracy.

Python AWS Lambda TensorFlow
View Demo
Compliance Automation

Compliance Automation Framework

Automated CIS benchmark compliance checks across AWS accounts, reducing audit time by 70%.

AWS Config Python Serverless
View Details
Drauig BMS

Drauig BMS (Border Monitoring System)

Worked on the Development of an AI-driven border monitoring system that analyzes trade data, detects anomalies, and helps prevent smuggling and illicit activities in real-time.

Python AI/ML Streamlit
View Details
AWS Security Monitor

AWS Security Monitor

Developed a Python-based tool that automates security checks across AWS environments, identifying misconfigurations and compliance issues to enhance cloud security posture.

Python Boto3 AWS Security Hub
View Details
AI Trading Bot

AI Trading Bot

Built an AI-driven trading bot that integrates real-time news analysis and machine learning algorithms to make informed trading decisions in dynamic market conditions.

Python Machine Learning News API
View Details

Cloud Security Lab

Interactive demonstrations of cloud security concepts and attack simulations

IAM Policy Simulator

Test cloud IAM policies against sample API actions to understand access control patterns and least privilege principles.

IAM Policy

Test Actions

Results

Real-time Attack Simulation

Simulate common cloud attack patterns and see how security controls can prevent them.

Zero Trust Architecture

Explore how Zero Trust principles apply to cloud environments with this interactive demo.

Core Principles

🔐
Verify Explicitly

Authenticate and authorize every request based on all available data points

📉
Least Privilege

Grant just-in-time and just-enough-access with risk-based adaptive policies

🔄
Assume Breach

Minimize blast radius and segment access to prevent lateral movement

🔍
Continuous Monitoring

Real-time analysis of all network traffic and access patterns

🧩
Microsegmentation

Divide networks into secure zones with individual access controls

🤖
Automated Response

Implement AI-driven threat detection and automated remediation

📜
Policy Enforcement

Consistent security policies across all environments and devices

🔗
Encryption Everywhere

Data encryption in transit and at rest by default

Network Security

Visualize security groups and network ACLs in a cloud environment.

VPC Architecture

Public Subnet
Web Server
NAT Gateway
Private Subnet
App Server
Database

Security Group Details

Click on an instance to view its security group rules

Latest Articles

Certifications

Professional Resume

Testimonials

"Kachi implemented a comprehensive security framework for our AWS infrastructure that helped us achieve SOC 2 compliance. His expertise in IAM and network security was invaluable."

Anne Usang

Anne Usang

Solutions Architect, Neo Cloud Technologies

"The threat detection system Kachi designed reduced our incident response time by 60%. His ability to explain complex security concepts to our team was exceptional."

Jerry Brown

Jerry Brown

Chief Information Security Officer (CISO), Neo Cloud Technologies

"Kachi led the implementation of our Zero Trust model with remarkable precision. His strategic vision significantly boosted our cloud security posture."

Godstime Edet

Godstime Edet

Lead Software Engineer, Neo Cloud Technologies

"From automating our AWS security monitoring to tightening IAM controls, Kachi delivered results that saved us time and prevented multiple vulnerabilities."

Adenike Aromolaran

Adenike Aromolaran

Cloud Solutions Architect, Neo Cloud Technologies

"Kachi's expertise in SIEM integration and threat intelligence helped us gain real-time visibility across our cloud environments. Truly transformative."

Kokori Farouk

Kokori Farouk

COO & Head of Strategic Intelligence, Drauig Nigeria LMT

"Kachi's input and technical guidance during our Solutions Architect internship program were invaluable. He has a gift for teaching and leading by example."

Glory Ugochukwu

Glory Ugochukwu

DevOps Engineer, Neo Cloud Technologies

"Kachi's commitment to advancing cybersecurity standards is commendable. His contributions have significantly bolstered our initiatives at Drauig."

ThankGod Ofem

ThankGod Ofem

CEO, CTO & Founder, Drauig Nigeria LMT

Get In Touch

Contact Information

Have a project in mind or want to discuss cloud security? Reach out through the form or directly via email.

+2348142795186
Lagos, Nigeria