• File

Костянтин

GRC Analyst

Age:
20 years
City of residence:
Lviv
Ready to work:
Remote

Contact information

The job seeker has entered a phone number and email.

Name, contacts and photo are only available to registered employers. To access the candidates' personal information, log in as an employer or sign up.

Uploaded file

Quick view version

This resume is posted as a file. The quick view option may be worse than the original resume.

Kostiantyn Yagusevych
GRC Analyst
[open contact info](look above in the "contact info" section) | [open contact info](look above in the "contact info" section) | [open contact info](look above in the "contact info" section) | github.com/kiurakku | hackerone.com/cloud9s |
Lviv, Ukraine

Profile
Cybersecurity-trained engineer with hands-on IAM, CI/CD security, and offensive security research
(HackerOne) experience, transitioning into IT Risk & Compliance. Turns technical controls into auditable,
documented processes.
Skills
Access & Controls: RBAC administration, SAP access administration, SSH hardening, TLS/SSL policy
Risk & Compliance: SAST/secret-detection CI/CD gates (OWASP-aligned), vulnerability monitoring &
remediation, encryption, Cloudflare WAF policy
Security Research: HackerOne bug bounty program (hackerone.com/cloud9s)
Monitoring & Audit Trail: Prometheus, Grafana, Loki, ELK stack, structured logging
Technical: Go, Python, Node.js, Docker, Kubernetes, PostgreSQL
Experience
AI Access Intelligence Architect, IDENTRA AIApr 2026 – Present
Hybrid, Ukraine
● Design access-intelligence systems that automate authorization decisions, cutting manual
access-review effort across internal infrastructure.
Arbitration Case Support Specialist, NICELY.GROUPOct 2025 – Nov 2025
Hybrid
● Cut incident-investigation time by implementing auditable logging (Loki) and Prometheus metrics
for instant root-cause traceability.
SAP System Administrator, KindgeekJun 2025 – Sep 2025
Hybrid, Lviv
● Automated SAP access-provisioning with Python/Bash, reducing manual turnaround, and
embedded SAST/secret-detection CI/CD gates aligned with OWASP and baseline ISO 27001
controls.
Junior DevOps Engineer, SoftServeFeb 2025 – May 2025
Remote, Part-time
● Supported CI/CD change-management controls and infrastructure provisioning (Ansible).
Python & Cybersecurity Coach, American Young Coder SchoolNov 2024 – Mar 2025
Remote
● Taught cybersecurity fundamentals and secure coding practices.
Freelance Developer & Security Consultant — Contract, Self-EmployedOngoing
Remote
● Delivered 5.0/5.0-rated projects across Freelancehunt, Kabanchik, Upwork, and Fiverr, incl.
Garuda (commercial all-in-one CRM — authored initial architecture) and SHOK (open-source
VPS/server monitoring tool).
● Hardened client infrastructure with custom Cloudflare WAF rules and encryption, reducing
web-attack exposure for e-commerce/SaaS clients.
Education
B.S. in Cybersecurity — Lviv Polytechnic National University, 2023–2027 (expected)
Cybersecurity and DevOps — SoftServe IT Academy, 2025
Languages
Ukrainian — Native; English — B2 Upper-Intermediate; German, Polish — A2

More resumes of this candidate


Compare your requirements and salary with other companies' jobs: