Skip to content
terminals&coffee

Austin · cloud appsec · labs in public

Terminals & Coffee

Cloud application security, API protection, and detection engineering — learned in public, served with coffee.

Rafael M · writes, builds, and pours from Austin

About

I’m Terminals & Coffee — a builder who sits with how applications really behave, then makes them harder to abuse. Days look like cloud AppSec and API protection; nights look like detection triage with a compliance-minded lens.

Public work is the lab bench: detection-as-code, AI/LLM threat models, cloud automation, architecture notes. Not a highlight reel — learning where the seams show.

What I care about

Cloud AppSec & APIs

How web apps and APIs actually break at the edge — and what holds when traffic gets weird.

Detections that matter

SIEM triage with a compliance-minded eye: fewer false positives, clearer signal, regulated environments.

Labs in public

Reproducible benches — Terraform, detection-as-code, AI/LLM security — seams visible on purpose.

Writing

Notes on cloud, security, Terraform, and AI security that prefer clarity over theater.

Selected work

Public labs on GitHub — open the repo if you want the seams.

Writing

All posts on Medium →

Building secure cloud

Secure Cloud Academy

I build learning paths for people who want cloud security skills they can actually use — attack-and-defend labs, cloud engineering fundamentals, and the habits that keep environments harder to break. Same vibe as Terminals & Coffee: practical, public, no fluff.

Say hello

No résumé chronology here — just the places I publish and ship.