Cyber Security
Securing architectures and cloud: Zero Trust, IAM, detection with SIEM/SOAR and EDR/XDR, risk management.
Cyber Security Analyst
Cyber Security Analyst at Deloitte, in the Enterprise Cloud & AI Security Team. I work on cloud security, infrastructure and AI applied to defense. In my homelab I design, experiment with and document automation, LLM and self-hosted infrastructure solutions.
//What I do
Four areas that intertwine: security, applied AI, automation and cloud.
Securing architectures and cloud: Zero Trust, IAM, detection with SIEM/SOAR and EDR/XDR, risk management.
AI applied to security: RAG, agents, self-hosted LLMs, AI red teaming and MCP.
Workflows and pipelines that remove repetitive work: n8n, Zapier, Make, GitHub Actions, CI/CD.
Multi-provider cloud — Google Cloud, AWS, Azure, OCI — with security baked into the dev cycle.
//stack
Technologies and platforms I work with, in the lab and in the field.
//projects
A selection of projects: problem, solution, stack, outcome.
//articles
Practical security, applied AI/LLM, automation and self-hosting.
The second chapter of the Heretic project: same technique, larger model, GPU rental for €2 — and some unexpected lessons on how it really works…
Over the past few months I worked on a personal project called Infra Agent. The idea wasn't to build “yet another AI assistant”. Great general-purpose agents…
A password manager for Android built with privacy and security as non-negotiable constraints. Developed by Paolo Ronco in collaboration with Claude AI…
I have an AI chatbot built into my site, reachable by anyone visiting paoloronco.it. It isn't a simple Q&A widget: behind the scenes runs a…
Ask away
AI Assistant · self-hosted