I'm Oliver Rivas, Staff Security Engineer at Primer. I run the security engineering function for our AWS and Kubernetes platforms: fleet-wide detection operations, vulnerability management with owner-routed remediation, and compliance evidence workflows in CI.
- Cloud-native EDR and threat detection operations across the EKS fleet
- Vulnerability management: scanning pipelines, severity SLAs, owner-routed reporting
- Policy-as-code gates on infrastructure delivery across multi-account Terraform estates
- Compliance evidence tooling supporting SOC 2, ISO 27001, and FedRAMP (IL5) programs
- Platform engineering: EKS fleet rollouts, IaC at scale, IAM/RBAC least privilege, architecture reviews
- Cloud: AWS (EKS, IAM, Organizations), Azure
- Security: EDR and cloud threat detection, Kubernetes admission control, least privilege
- Pipeline: GitHub Actions, Checkov, Trivy, gitleaks
- Languages: Python, Bash, Terraform
This account is used for private Primer engineering work. Public projects, tools, and writing live at github.com/rivassec.
Security that accelerates engineering.



