# Security & Access Management

> Selected work demonstrating this service.

- [Enhanced data security by implementing 1,000 RBAC rules for developers, application instances, PostgreSQL, MS SQL, and other Linux servers, preventing unauthorized access; documented with Ansible automation.](https://data.engineer.company/portfolio/enhanced-data-security-by-implementing-1-000-rbac-14/)
- [Built the payments and entitlements layer — Stripe alongside Apple and Google in‑app purchase — gating the directory, search and export through an 11‑table access model checked on the server.](https://data.engineer.company/portfolio/built-the-payments-and-entitlements-layer-96/)
- [Wrote a scope rule into the repository after a restructure carried another company's inventory, firewall allowances and prose into it — and kept the quarantined residue under the secret scanner rather than excluding it.](https://data.engineer.company/portfolio/wrote-a-scope-rule-after-a-credential-leak-124/)
- [Audited 644 Rust crates for licence compatibility on every build, and proved the check fires by rewriting one crate's licence and by moving the pinned core revision without regenerating.](https://data.engineer.company/portfolio/audited-644-rust-crates-for-licence-compatibility-163/)

<https://data.engineer.company/services/security-access/>
