Unclassified // Approved for public release

kristian@homelab:~$ whoami

Kristian
Sigismondi

>  

SCROLL ▼

§ 01 — Identification

About

Headshot of Kristian Sigismondi
FIG. 1 — SUBJECT

"The man who enjoys walking will walk further than the man who enjoys the destination."

Formerly a Cybersecurity Engineer at Lockheed Martin. Currently in the Engineering Leadership Development Program at Lockheed Martin. Previous work involded building secure network architectures, being the lead reviewer for SaaS and software products, building STRIDE-based threat models used across the business, and physical security assessments.

Now, I'm part of the Engineering Leadership Development Program (ELDP), a three-year rotational program across engineering, IT, cybersecurity, and business development. This program is designed to develop well-rounded future engineering leaders who posses a strong understanding of the business and technical domains.

After hours you'll find me deep in my homelab, working on my project cars, listening to Darknet Diaries, or throwing plastic discs at metal chains.

0+
Internal customers using my threat model process
0+
Services running in the homelab
0
Certifications earned
0%
Of this site served from my bedroom

§ 02 — Capabilities

Skills

Where I spend my time. Self-assessed, always under active development.

Threat Modeling (STRIDE)90%
SaaS Security Assessment90%
DevSecOps (Docker / OpenShift)80%
AWS & Cloud Security75%
Network Security & Analysis75%
GRC & Risk Management70%
Virtualization & Homelab Ops80%
Python & Scripting65%

Off-duty interests

🥏Disc Golf
🖥️Homelabbing
🏎️Cars
🎧Podcasts
🎮Gaming
🛡️Cybersecurity
🌐Information Technology
📈Personal Finance & Investing

§ 03 — Credentials

Certifications

EARNED

AWS Cloud Practitioner

Amazon Web Services

Foundational validation of AWS cloud concepts, security, and architecture.

EARNED

CompTIA Security+

CompTIA

Core security operations, risk management, and governance fundamentals.

PLANNED

CISSP

ISC²

Advanced cybersecurity management and risk assessment.

§ 04 — Record

Resume

For a full resume, reach out via the contact section with opportunities.

Professional Experience

Cybersecurity Engineer

2024 — Present

Lockheed Martin · Remote

  • Securing Lockheed Martin Infrastructure

Cloud Apps Engineering Intern

2023

Lockheed Martin

  • Utilized AWS services to save Lockheed Martin a projected $3,000,000+ in 2023.

Education & Leadership

B.S. Computer Science

Graduated Winter 2023

West Chester University of Pennsylvania

  • Founded and led the Cybersecurity Club; planned events, managed operations, and mentored members.
  • Graduated Magna Cum Laude.

Certifications

Ongoing
  • CompTIA Security+.
  • AWS Cloud Practitioner.

§ 05 — Operations

Projects

Things I've built and run — mostly in the lab, where breaking things is a feature.

This Website

Static site served from an nginx LXC on Proxmox through Cloudflare Tunnel — zero open ports, origin IP never exposed, WAF and bot protection at the edge.

nginx · cloudflared · proxmox

Proxmox Cluster

Virtualization host running LXC containers and VMs for every service in the lab, with snapshot-based backups and monitoring via Uptime Kuma.

proxmox · lxc · uptime-kuma

Zero-Trust Edge

Cloudflare Access policies gating private services behind identity-aware proxying — SSO in front of everything, nothing directly reachable.

cloudflare access · zero trust

Overlay Mesh Network

Tailscale mesh with exit-node routing for secure remote access, plus hand-configured WireGuard to understand the cryptography underneath.

tailscale · wireguard

802.1X Network Access Control

FreeRADIUS-backed port authentication on the home network — enterprise NAC patterns scaled down to a house.

freeradius · 802.1x

Endpoint Telemetry Pipeline

Sysmon deployment with tuned configs for process, network, and file telemetry — learning detection engineering from the raw events up.

sysmon · detection

Traffic Analysis Fieldwork

Wireshark packet capture and analysis on public networks (own traffic only) — studying what actually crosses the wire in the wild.

wireshark · nmap

AWS Lab Environment

EC2-based sandbox for certification prep and architecture experiments — IAM policy design, VPC segmentation, cost-conscious teardown automation.

aws · ec2 · iam

STRIDE Threat Model Program

Professional work: designed a repeatable STRIDE-based threat modeling process now used by 30+ internal customer teams for new system reviews.

stride · threat modeling

§ 06 — Field Notes

Writing

Occasional notes on security, homelabbing, and things I broke so you don't have to.

§ 07 — Comms

Contact

Open to conversations about security engineering, GRC, threat modeling, homelabs, or disc golf course recommendations.