Hello! I’m Tom Haggath, an experienced professional with a passion for ensuring secure and efficient customer workloads. Over the years, I’ve worked with companies like Amazon Web Services (AWS) and Evidence Talks Ltd, focusing on operational excellence and robust security practices.
Professional Journey
- AWS Managed Services (2019–2024)
Operations Engineer II
Specialized in AWS Security Services with a focus on enhancing security posture through robust monitoring and incident response strategies. Worked closely with enterprise customers to fine-tune observability stacks and ensure rapid, effective handling of security events across cloud environments. - InfoSum Ltd (March 2024 – December 2024)
Information Security Compliance Analyst
Leveraged deep AWS security knowledge to support compliance initiatives and secure data collaboration infrastructures. Applied hands-on experience in cloud-native environments to ensure regulatory alignment while promoting a culture of innovation and security-first thinking. - AWS Managed Services (December 2024 – Present)
Operations Engineer II
Rejoined AMS to lead cloud security initiatives within Public Sector teams, helping to architect and support secure, scalable managed service solutions. As of April 2025, I’ve actively redirected focus toward advanced malware analysis and reverse engineering—rekindling a long-standing passion. My background in CTF challenges and hands-on security tooling has reinforced this pursuit, driving my continuous development in offensive and defensive security domains.
AWS Specializations
Areas of Expertise in AWS Security:
- Threat Detection & Monitoring:
Proficient in configuring and optimizing Amazon GuardDuty and Amazon Macie for continuous threat detection and data security insights. - Observability & Logging:
Skilled in deploying and managing AWS CloudWatch for metrics, logging, and automated alerting to support real-time incident detection and response. - Patch & Vulnerability Management:
Experienced in AWS Patch Manager and maintaining secure, compliant infrastructure through timely patching and vulnerability remediation. - Infrastructure & OS Security:
Deep knowledge of general infrastructure security, with hands-on experience in securing and maintaining EC2, RDS, and EBS resources. Strong background in Linux OS hardening and maintenance. - Security Incident Response:
Well-versed in NIST-based incident response processes, with real-world experience handling EC2 compromises, account takeovers, and cross-service threat remediation.
Blog and Code Snippets
On this site, I’ll be sharing code snippets from my daily work, along with occasional Capture The Flag (CTF) challenges and random discoveries. Feel free to reach out — I’m always up for a chat!
Links: