Security & AuthenticationProduction

2021-Current

Reliability / Security / Compliance

A continuous operating track for resilience, remediation, and compliance

Project Overview

A sustained operational-improvement track covering service continuity, compliance response, vulnerability remediation, incident detection, and cost optimization.

Challenge

Service continuity, compliance response, cost optimization, and incident detection all had to be managed continuously while keeping operational quality stable.

Solution

Resilience and compliance operating discipline

Continually maintained service continuity and compliance through ISMS, DR planning, and recurring exercises.

Handled annual ISMS audits
Created and updated DR plan documents annually
Ran DR exercises in real operating environments
Maintained operational quality and compliance discipline

Security, observability, and cost optimization

Operated vulnerability response, incident detection, and cost optimization together so security and operating efficiency improved at the same time.

Responded to vulnerability scans and pen test results
Built metrics/log-based detection and alerting
Scheduled development resources and cleaned up old snapshots
Continued annual cost-optimization work

Tech Stack

ISMS

Audit response and operational standards

DR

DR plans and recurring exercises

Pen Test

Pen test and vulnerability remediation

Observability

Metrics/log-based incident detection

Incident Response

Incident blocking and operational response

Cost Optimization

Resource scheduling and cost reduction

Key Results

Improved 314+ vulnerabilities under FY26 Engineering Excellence and squad expansion standards
Reduced annual AWS cost by about $50,000
Blocked Kakao outage propagation
Maintained operational quality and compliance discipline year over year

Learnings

Operational stability should be treated as one track across security, DR, and observability
Vulnerability remediation must be operated as a standard and flow, not a one-time cleanup
Incident detection is more effective when metrics and logs are used together
Cost optimization must be sustained within guardrails that protect operational quality
Louis Kim - Software Engineer