HI, I'm

Lauri Suutari

DevSecOps Engineer @ Remod

Specializing in Azure Security, Compliance & Agentic Coding

Get in touch

About

Security-first thinking, engineer's precision.

Cybersecurity professional and DevSecOps engineer. I build secure systems, audit what others miss, and make compliance something easy to understand.

Currently at Remod — securing Azure environments, implementing secure CI/CD pipelines, and navigating compliance frameworks so clients don't have to. Certified in Security Operations, API Penetration Testing, API Security Fundamentals, and Penetration Testing.

About back
Profile
Hint: touch me ;)
Sound on! (navigation bar)
About front
🇬🇧...
vs
...🇫🇮
50%50%
...

Skills

What I bring to the table.

offensive

  • Penetration Testing
  • API Security
  • Red Team Operations
  • Vulnerability Assessment
  • Threat Hunting
  • Social Engineering

defensive

  • Cloud Security
  • SIEM Management
  • Incident Response & Forensics
  • Threat Modeling
  • Security Monitoring
  • Compliance & Auditing

devsecops

  • Security CI/CD
  • RBAC management
  • Security Automation and Playbooks
  • IaC Security
  • Container Security
  • Software Composition Analysis
  • SAST/DAST Security Testing

tools

  • Burp Suite
  • Microsoft Defender
  • Microsoft Sentinel
  • Azure
  • Terraform
  • Ansible
  • Kubernetes
  • Docker
  • GitHub Actions

03 / Work

Projects & Audits

01

ISO 27001 Certification Project

ComplianceAuditInformation Security
2025
ISO 27001 Certification Project
+

Conducted a full ISO 27001 gap analysis and risk assessment for a SaaS organisation. Defined the Information Security Management System (ISMS) scope, identified control gaps across Annex A, and produced a remediation roadmap that brought the organisation to certification readiness within a single audit cycle.

02

Microsoft Security Operations Analyst (SC-200)

Microsoft SentinelDefender XDRCertification
2026
Microsoft Security Operations Analyst (SC-200)
+

Earned the Microsoft Security Operations Analyst certification, validating expertise with Microsoft Sentinel and Defender XDR. Covered threat detection engineering, incident response workflows, KQL hunting queries, and cross-product investigation across identity, endpoint, email, and cloud workloads.

03

Microsoft Authentication Integration

Azure ADSSOAudit Logging
2024
Microsoft Authentication Integration
+

Designed and implemented a secure Single Sign-On flow using Azure Active Directory and MSAL. Covered token lifecycle management, conditional access policies, and structured audit logging to meet both internal security requirements and external compliance obligations.

04

Google Workspace Backup Solution

Cloud BackupSaaS ProtectionRemod Product
2024
Google Workspace Backup Solution
+

Contributed to the development of a Google Workspace backup product at Remod, covering Gmail, Drive, and Shared Drives. Focused on secure data handling, encryption at rest, and recovery workflows — ensuring organisations can meet data retention and business continuity requirements.

05

Cloud Security Laboratory Platform

EducationIaCPenetration Testing
2024
Cloud Security Laboratory Platform
+

Built a cloud-based security lab environment using Infrastructure as Code (IaC) for hands-on penetration testing and security training. The platform provisions isolated, reproducible attack/defence scenarios — enabling practical learning of offensive and defensive techniques in a safe, controlled environment.

More projects coming soon.

Contact

Let's work together.

contact.card
Oulu, Finland
Open to consulting & exciting projects