Rafi Hashimi
ISSE | Senior Cloud Security & DevSecOps | AWS/Azure GovCloud | RMF | Zero Trust | CI/CD Security | DHS Mission Systems
- Role
- Devsecops Technical Lead Sme - Aws Azure Dhs-hq at CACI International Inc
- Location
- Washington, DC, US
- LinkedIn followers
- 500 followers
About Rafi Hashimi
I’m a Cloud Security & DevSecOps Engineer who specializes in building secure‑by‑design AWS and Azure GovCloud environments for federal mission systems. Over the past decade, I’ve helped DHS organizations modernize legacy platforms, strengthen their security posture, and adopt cloud architectures that balance innovation, risk, and operational reality.My work sits at the intersection of security engineering, architecture, automation, and leadership. I enjoy translating complex requirements into practical, scalable solutions — whether that means designing Zero Trust network models, integrating security into CI/CD pipelines, or guiding ISSOs through RMF and A&A activities.I’m known for being calm under pressure, collaborative with cross‑functional teams, and relentless about improving security without slowing down delivery. I love mentoring engineers, simplifying complexity, and helping organizations make confident, risk‑informed decisions.What drives me: Building systems that are secure, resilient, and mission‑ready — and helping teams adopt modern cloud practices that actually work in real‑world federal environments.
Experience
Devsecops Technical Lead Sme - Aws Azure Dhs-hq
Sep 2022 — Present · Washington, DC, US
I lead cloud security engineering and architecture efforts across DHS AWS and Azure GovCloud environments. My work focuses on secure design, Zero Trust adoption, CI/CD security, and guiding ISSOs and engineering teams through RMF, A&A, and continuous monitoring.Highlights:Designed secure cloud architectures aligned with Zero Trust principles of least privillege elements \"never trust, always verifies\"Conduct threat modeling and security impact assessments for major system and application changes.Lead SCRM evaluations aligned with NIST SP 800‑161 for SaaS, vendors, and cloud services.Built and optimized CI/CD pipelines with integrated SAST/DAST, container scanning, and policy‑as‑code.Automated patching, credential rotation, and configuration baselines for servers.Partner with NOSC/SOC teams to strengthen monitoring, logging, and detection capabilities.Mentor engineers and advise leadership on cloud strategy, modernization, and risk.
Education
The University of Texas at Austin
Postgraduate Degree , The University of Texas at Austin's Post Graduate Program in Cloud Computing (PGP-CC)
Prince George's Community College
Criminal Justice , Cyber Security
2014 — 2017
Skills
- Microsoft Office
- Research
- Sales
- Leadership
- Training
- Public Speaking
- Public Relations
- Strategic Planning
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.