Andrii Ptashkohrai

Cybersecurity Engineer & AI Integration Specialist

Business-Centric Cloud Risk Assessment & Disaster Recovery

In enterprise environments, cybersecurity is fundamentally about risk management. This project demonstrates the ability to translate technical vulnerabilities into quantifiable business impacts. I conducted a comprehensive threat modeling and risk assessment for an e-commerce application deployed on Google Cloud Platform (GCP), culminating in the design of robust Disaster Recovery (DRP) and Business Continuity (BCP) plans.

🏗️ Cloud Architecture & Threat Landscape

The assessed infrastructure was a modern, containerized e-commerce platform:

The primary threat landscape included OWASP Top 10 vulnerabilities (XSS, SQLi), volumetric DDoS attacks, cloud misconfigurations, and catastrophic regional outages.

📊 Risk Analysis & Mitigation Strategy

Instead of merely listing vulnerabilities, risks were evaluated based on their probability and potential financial impact on the e-commerce operations.

1. Infrastructure Security & Network Isolation

2. Application Security (AppSec)

3. Availability & DDoS Protection

🔄 Disaster Recovery (DRP) & Business Continuity (BCP)

A security architecture is incomplete without a resilient recovery strategy. I defined critical business metrics and actionable recovery procedures:

📉 Conclusions & Business Value

This assessment bridges the gap between DevOps and executive stakeholders. By implementing Cloud Armor, VPC isolation, and strict DRP metrics, the organization not only secures its infrastructure against advanced threats but also ensures regulatory compliance and guarantees business continuity during critical incidents.