Implementation of an application security scanning solution (SAST) integrated into CI/CD pipelines for an energy-sector client — my first project extending beyond traditional IT infrastructure into application security.
As Project Manager, I coordinated between technical teams and project stakeholders across implementation, testing, risk, and milestone tracking.
Application security tooling touches development workflows directly, which means technical integration (rule sets, CI/CD pipelines) and stakeholder expectations both need active, ongoing coordination — not a one-time handoff between technical and non-technical teams.
I managed the project through implementation, rule set configuration, and testing, keeping milestones visible to stakeholders while coordinating technical execution with the security and engineering teams. Knowledge transfer and handover were planned in as part of delivery, not an afterthought.
Led the project from initiation through the handover phase (January–March 2026), ensuring structured planning, execution, and stakeholder alignment. Achieved 39% project completion with all key milestones on track prior to handover, and established structured tracking and risk monitoring to support continuity after transition.
Standing up a centralized security platform is as much about repeatable process and stakeholder alignment as it is about the technical integration itself — structured tracking and a clear handover are what make a transition sustainable.