Skip to content
View Akhyame's full-sized avatar

Block or report Akhyame

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Akhyame/README.md

Hi, I'm Siham 👋

Cybersecurity Student | Hands-on Security Projects & Labs

I build practical cybersecurity projects focused on infrastructure security, network isolation, cloud-native security, access control, automation, and observability. I use my GitHub profile to document reproducible labs, implementation decisions, validation evidence, and the lessons learned from each project.

Focus Areas

  • Cloud & Kubernetes Security
  • Network Security & Segmentation
  • Identity, RBAC & Least Privilege
  • Linux & Infrastructure Security
  • DevSecOps & GitOps
  • Security Monitoring & Observability

Technical Skills

Platforms & Systems
Linux · Kubernetes · K3s · Docker

Networking & Security
Cilium · NetworkPolicy · CiliumNetworkPolicy · RBAC · Pod Security Admission · TLS/HTTPS

Automation & Delivery
Git · GitHub · Helm · Argo CD

Observability
Prometheus · Grafana · Loki · Grafana Alloy · Cilium Hubble

Featured Project

☸️ Kubernetes Multi-Tenant Security Platform

A security-focused multi-tenant Kubernetes platform designed to isolate tenant workloads, network traffic, API permissions, persistent data, and resource consumption while keeping deployments reproducible through GitOps.

Highlights:

  • Default-deny tenant network isolation with Cilium
  • Least-privilege RBAC and dedicated ServiceAccounts
  • Restricted Pod Security Admission
  • ResourceQuota and LimitRange governance
  • TLS/HTTPS through Traefik and cert-manager
  • Reusable Helm tenant baseline
  • GitOps reconciliation with Argo CD ApplicationSet
  • Metrics, logs, and network-flow visibility
  • Positive and negative security validation tests

View the project repository →

What I Value in a Security Project

I aim to go beyond simply making a system work. My projects emphasize security controls, reproducibility, validation, evidence, and clear technical documentation.

Currently Building

I am progressively turning my hands-on cybersecurity work into a structured technical portfolio, with project documentation, GitHub repositories, security labs, and practical validation evidence.


More cybersecurity projects and labs will be added progressively.

Popular repositories Loading

  1. pfa-kubernetes-multitenant pfa-kubernetes-multitenant Public

    Secure multi-tenant Kubernetes platform with RBAC, Cilium network isolation, Pod Security, TLS, GitOps and observability.

    Shell

  2. phishing-awareness-lab phishing-awareness-lab Public

    Safe local phishing-awareness lab using Gophish and MailHog for SMTP testing, campaign tracking, and security awareness.

  3. Akhyame Akhyame Public