Madison, Wisconsin, United States
I am Chonghyun Seo, currently pursuing a Master of Science in Computer Science at UCLA. My technical skills include Python, Java, C, JavaScript, HTML, Git, and Terraform. I am fluent in Korean, English, and Japanese.
• Designed a Zero Trust–based security architecture for a hybrid work environment covering office, remote-work, and business-travel scenarios. • Defined endpoint, user, and network access policies using device certificates, MDM/UEM posture checks, SSO/MFA, NAC/802.1X, and SASE/ZTNA. • Proposed risk-based conditional access controls that dynamically allow, restrict, quarantine, or block access based on device posture, user identity, location, IP risk, and system sensitivity. • Designed NAC-based internal network access and application-level remote access through SASE/ZTNA, reducing exposure of internal network resources. • Applied VDI/DaaS to sensitive systems such as HR, ERP, and source-code repositories to limit local downloads, clipboard use, and USB-based data transfers. • Referenced NIST SP 800-207 and KISA Zero Trust guidelines to support the proposed security policies and architecture.
Samsung Electronics – AI Center, Security Lab •Built a Python-based automated analysis tool for firewall and network logs, producing structured Excel reports with multi-sheet summaries used by the security operations team. •Developed modules for GSAMS 3.0 policy-ID extraction, IP-based traffic classification, and port/service mapping to streamline internal log-analysis workflows. •Implemented a modular architecture separating log parsing, CIDR/IP lookup, and report generation, improving maintainability and enabling rapid extension of new analytics features. •Collaborated with senior engineers to refine detection logic, enhance policy auditing, and support internal security automation initiatives.
• Researched IaC scanning technologies: Analyzed tools like Terraform and CloudFormation for security vulnerabilities and their compliance with CIS Benchmarks and AWS standards. • Evaluated security automation potential: Compared scanning tools to enhance IaC security and DevSecOps integration. • Developed functional specifications and requirements documentation based on research findings to support the implementation of necessary features.
• Prepared and maintained operational reports, schedules, and official documentation using digital tools • Improved documentation clarity and consistency by organizing templates and workflows