Tommy Sarkissian
Entrepreneur, Cyber Security Specialist, and Full Stack Developer.
Building things that
matter.
I'm an entrepreneur, cyber security specialist, and full stack developer based in Sydney, Australia. I started my career bridging the gap between business strategy and technical security, and today I protect critical financial infrastructure at the Reserve Bank of Australia.
I hold a Bachelor of Information Technology from UTS, sub-majoring in Networking and Cyber Security, where I graduated with the University Medal and a near-perfect GPA through the selective Co-operative Scholarship Program. I combine that foundation with hands-on engineering experience across cloud security, full-stack development, and artificial intelligence.
Outside the screen, I train Muay Thai and calisthenics - disciplines that sharpen focus, resilience, and the drive to keep levelling up.
Honours & Recognition
A track record of academic excellence and recognition.
Where I've worked
From business analysis to security engineering at Australia's most trusted institutions.
Driving strategic alignment between Security Leadership and the CISO on priorities and roadmap. Assessing the Essential 8 uplift program, architecting automated reporting for real-time risk posture visibility, and owning security program budgets across workstreams.
Led the ACSC Top 37 control assessment, facilitating audits and driving remediation to closure. Built executive dashboards unifying security actions, incidents, and risk assessments. Established governance documentation and mentored junior analysts.
Drove infrastructure security alignment against the 18 CIS Critical Security Controls. Led SIEM log onboarding standardisation, optimised security operations across AWS EKS, Docker, and Kubernetes environments, and managed firewall governance and vulnerability assessments.
Developed automated dashboards for security metrics and risk posture visibility. Supported Essential 8 Maturity Modelling and ISM Mapping for ACSC compliance. Managed endpoint security vendor relationships, authored technical documentation, and optimised firewall rule sets.
Project managed cybersecurity initiatives end-to-end, reporting progress to senior leadership. Developed incident response playbooks and detection engineering improvements. Conducted security control assessments against the 18 CIS Critical Security Controls and designed phishing simulations and security awareness programs.
Discipline carries over.
The same mindset that drives my work fuels my training. Consistency, resilience, and always pushing limits.
Muay Thai
The art of eight limbs. Muay Thai is where I sharpen mental toughness and stay grounded. Every session is a reminder that growth lives on the other side of discomfort - a principle that translates directly to building businesses and solving hard problems.
Calisthenics
Bodyweight mastery is the ultimate test of patience and progressive overload. From levers to muscle-ups, calisthenics teaches you that consistent small improvements compound into serious results - the same approach I take with every project I build.
Things I've built
Auto-synced with GitHub. From security tools to smart contracts - shipping code across the stack.
Technical toolkit
Drag to explore. The technologies, platforms, and frameworks I work with.
Let's connect.
Whether it's a venture, a role, or just a conversation - I'm always open to hearing from good people.