Henry Igbozurike

Henry Igbozurike

About

Detail

Nigeria

Contact Henry regarding: 
work
Full-time jobs
Starting at USD30/hour
Flexible work
Starting at USD30/hour
id_card
Internships
Open to unpaid internships
person_search
Finding candidates
Finding co-founders
groups
Networking

Timeline


work
Job
school
Education
folder
Project

Résumé


Jobs verified_user 0% verified
  • U
    Security Architect (Freelance)
    Upwork, USA
    Jan 2025 - Current (1 year 5 months)
    • Led security architecture design for cloud-based environments (AWS, GCP, Microsoft Azure), implementing security controls such as IAM, VPC, and encryption in line with industry best practices and compliance standards. • Developed security roadmaps and advised clients on application and infrastructure security, reducing vulnerabilities by 30% within 3 months. • Led end-to-end security program planning, ensuring secure configurations and ongoing compliance throughout development and operational cycles. • Communicated actionable security requirements to senior stakeholders and development teams, ensuring seamless integration of security within business processes. • Conducted targeted social engineering assessments (phishing simulations, pret
  • X
    Security Architect & DevSecOps Engineer
    Xapic Technologies, Nigeria
    Jan 2024 - Current (2 years 5 months)
    • Designed and implemented Zero Trust security architectures for cloud-based applications, ensuring secure configurations for IAM and encryption, and leveraging expertise in cloud security, identity and access management (IAM), and Zero Trust principles to safeguard sensitive data and access. • Integrated security into CI/CD pipelines using tools like GitHub Actions, reducing vulnerabilities by 40% and streamlining secure development practices across teams through robust DevOps and CI/CD processes. • Led the operational implementation of security controls and continuous monitoring processes to ensure system integrity and availability, utilizing Grafana and Prometheus for comprehensive security monitoring and observability. • Provided proact
  • X
    DevOps Engineer
    Xapic Technologies
    Dec 2023 - Current (2 years 6 months)
    DevOps Engineer • Embedded security throughout the full software development lifecycle, performing in-depth security code reviews and hardening on C#/.NET back-end services, addressing injection vulnerabilities, authentication flaws, and secure data handling. • Guided teams on securing AI/ML features, protecting training data pipelines, model-serving APIs, and implementing defenses against adversarial attacks. • Integrated automated Python-based security scanning directly into the CI/CD pipelines, reducing application vulnerabilities by 40%. • Enabled the secure, reliable deployment of both C#-based enterprise services and AI-driven capabilities in production, directly equipping me to contribute to AI, back-end, and full-stack projects. • U
  • F
    Data Science Practitioner
    Freelance Independent Projects – Remote
    Jan 2023 - Current (3 years 5 months)
    Data Science Practitioner Performs end-to-end data analysis, including data gathering, cleaning, validation, and preprocessing of large, heterogeneous datasets from multiple sources. Built and maintained data pipelines for collection, transformation, and quality assurance to support analytics and machine learning workflows. Conducted exploratory data analysis, statistical evaluation, and visualization to identify patterns, trends, and actionable insights. Supported AI and machine learning initiatives through data preparation, feature engineering, dataset curation, and model performance evaluation. Collaborated with technical teams to ensure data quality, documentation, and compliance with relevant licensing and usage policies. Managed high
  • F
    Data Science Practitioner
    Freelance Independent Projects – Remote
    Jan 2023 - Current (3 years 5 months)
    Performed end-to-end data analysis, including data gathering, cleaning, validation, and preprocessing of large, heterogeneous datasets from multiple sources. Built and maintained data pipelines for collection, transformation, and quality assurance to support analytics and machine learning workflows. Conducted exploratory data analysis, statistical evaluation, and visualization to identify patterns, trends, and actionable insights. Supported AI and machine learning initiatives through data preparation, feature engineering, dataset curation, and model performance evaluation. Collaborated with technical teams to ensure data quality, documentation, and compliance with relevant licensing and usage policies. Managed high volumes of structured and
  • V
    Security Engineering & Compliance Analyst (Intern)
    Virtually Testing Foundation, USA
    May 2022 - Aug 2022 (4 months)
    • Contributed to the implementation of ISO 27001 frameworks, ensuring compliance and continuous monitoring of information security practices. • Utilized Splunk for real-time threat detection and collaborated with stakeholders to ensure ongoing compliance with security policies. • Leveraged foundational knowledge of software engineering principles, including secure code practices, code reviews, and the implementation of security controls within the SDLC, which has since evolved into an ability to drive secure coding best practices and build custom security automation tools. • Analyzed and hardened containerized environments, identifying misconfigurations, runtime vulnerabilities, and supply-chain risks, which has developed into deep expertis
  • F
    Document Sourcing and Compliance Specialist public Remote experience
    Freelance & Contract, Remote
    Mar 2022 - Current (4 years 3 months)
    - Sourced and evaluated publicly available documents and datasets from government archives, academic repositories (SEC EDGAR, arXiv, Kaggle, GitHub), open datasets, and licensed open-source platforms. - Reviewed, verified, and documented licensing types for each sourced document, ensuring strict compliance with requirements including CC0, CC-BY, MIT, Apache 2.0, and equivalent licenses. - Logged detailed metadata for all sourced materials, including source URLs, license information, and usage restrictions using designated tracking tools. - Identified and flagged documents with ownership issues, unclear licensing, paywalled content, or non-commercial restrictions; collaborated with data engineering and compliance teams to resolve ambiguities
  • B
    Penetration Tester
    Bugcrowd, USA
    Jan 2022 - Dec 2023 (2 years)
    • Conducted comprehensive penetration tests across cloud, web, mobile, and IoT platforms, identifying over 300 vulnerabilities and leading remediation efforts with a 98% success rate. • Implemented automated workflows to speed up vulnerability detection and remediation, improving response times by 40%. • Delivered detailed security reports, aligning findings with OWASP Top 10 and regulatory compliance requirements, ensuring actionable insights for clients. • Performed in-depth security assessments of modern application stacks, including services built with Rust, to identify exploitable vulnerabilities in high-performance, security-critical backend services and data platforms. • Conducted targeted penetration tests on Rust-based components,
  • H
    Penetration Tester
    HackerOne, USA
    Jan 2020 - Dec 2023 (4 years)
    • Secured cloud environments on AWS and GCP, implementing access controls and encryption protocols, addressing infrastructure security challenges for clients. • Developed custom Python scripts for automated security monitoring, enhancing response times by 30%. • Conducted security assessments on IoT and medical systems, ensuring compliance with HIPAA and other healthcare regulations. • Leveraged extensive experience in social engineering, including conducting hundreds of security assessments at HackerOne (USA) where social engineering was a frequent component of realistic, end-to-end attack simulations. • Executed targeted social engineering campaigns such as phishing, credential harvesting, and pretexting, both independently and in conjunc
  • C
    Software Engineer
    CypherCrescent Limited,
    Sep 2019 - Nov 2022 (3 years 3 months)
    Software Engineering • Developed and optimized software solutions for complex, data-intensive environments within the energy sector, contributing to systems that process large-scale engineering datasets for predictive modeling. • Implemented evaluation frameworks to validate model accuracy, robustness, and performance under real-world conditions, including uncertainty quantification, sensitivity analysis, and iterative refinement of simulation models. • Integrated backend services using Node.js and TypeScript with data pipelines that feed into and evaluate analytical models. • Applied expertise in model evaluation, mirroring needs in cutting-edge AI infrastructure such as rigorous testing of model behavior, performance benchmarking, edge-c
Education verified_user 0% verified
  • U
    B.Sc. Civil and Environmental Engineering
    University of Port Harcourt, Port Harcourt, Nigeria.
    Jan 2016 - Nov 2022 (6 years 11 months)
  • (
    Certified Information Systems Security Professional (CISSP)
    (ISC)²
    Jan 2026 - Current (5 months)
    (in view)
  • Offensive Security
    Offensive Security Certified Professional (OSCP)
    Offensive Security
    Aug 2025 - Current (10 months)
    (in view)
  • EC Council
    Certified Network Security Specialist
    EC Council
    Jan 2022 - May 2023 (1 year 5 months)
  • Google Cloud
    Google Cloud Engineering (GCP)
    Google Cloud
    Jan 2020 - Aug 2021 (1 year 8 months)
Projects (professional or personal) verified_user 0% verified
  • S
    Security Architecture Design for SaaS Platform
    Jan 2025 - Current (1 year 5 months)
    Developed and implemented a robust Zero Trust Architecture for a multi-tenant, cloud-native, API-first SaaS platform on GCP, prioritizing data protection through stringent Identity and Access Management (IAM) controls and comprehensive encryption strategies. Throughout a 5+ year career as a SecOps and Application Security leader, I have consistently designed secure architectures for complex SaaS environments. This expertise includes building defence-in-depth controls aligned with OWASP Top 10, CWE, and zero-trust principles. To validate these designs and identify potential weaknesses, I have personally led and executed end-to-end penetration testing programs. This hands-on testing directly addressed vulnerabilities such as broken access con
  • P
    Penetration Testing for HealthTech IoT Device
    Jan 2023 - Dec 2025 (3 years)
    Identified and mitigated critical vulnerabilities in a medical IoT device, ensuring HIPAA compliance and addressing major security risks. • Conducted in-depth security assessments on complex, embedded systems, performing expert-level secure code reviews to identify vulnerabilities such as Command Injection, SQL Injection, Broken Access Control, IDOR, and Deserialization flaws. • Collaborated directly with engineering teams to remediate identified vulnerabilities, driving secure coding best practices across the full software development lifecycle. • Tested container configurations, runtime security, image vulnerabilities, and supply-chain attacks in containerized backends, edge computing, and cloud orchestration environments (Docker/Kubernet
  • S
    Security Roadmap for a FinTech Startup
    Jan 2023 - Dec 2024 (2 years)
    Designed and implemented a comprehensive security roadmap for a fast-growing FinTech startup, focusing on cloud infrastructure and web application security, which resulted in a 35% reduction in vulnerabilities within 3 months. • Spearheaded the design and implementation of a complete Zero Trust security architecture on GCP to protect sensitive customer data and support rapid scaling. • Led security design and implementation across infrastructure and application layers. • Conducted detailed security assessments and hardening of their Go-based backend services and microservices, including reviewing Go code for common vulnerabilities, implementing secure authentication patterns, enforcing least-privilege principles in API endpoints, and integr