Australia/Perth
Skills
Certifications & courses
Skill groups
Australia/Perth
English
German

Gina Horch

Full-Stack Developer - TypeScript, Python & AI-Augmented Systems

These are the tools and practices I work with, grouped by what I actually do with them rather than by a self-assigned score. Every skill below is tagged with the strongest evidence behind it: production experience means it is in a system real people use, practical experience means I have built or investigated with it, working knowledge means I can work in it with support, and currently developing means it is active study rather than delivered work.

Certifications & courses

Formal qualifications and completed courses, most recent first. Verification is available on request — certificates issued through an organisation's LinkedIn Learning licence no longer resolve to public URLs once that access ends, so none is linked here rather than linking somewhere broken.
  • Blue Team Level 1 (BTL1) — CertifiedSecurity Blue Team / Centri — six domains, assessed by a 24-hour practical incident response exam · 2026
  • SOC Level 1 Learning Path — Certificate of CompletionTryHackMe — 14 modules, 65 hands-on labs, approximately 65 hours · 2026
  • ICT50220 Diploma of Information Technology (Cyber Security & Business Analysis)EQC Institute (Equinim College, RTO 45758) — nationally recognised training · 2026
  • Master AI-Assisted Development with GitHub CopilotPackt — virtual event, attended · 2026
  • Career Essentials in CybersecurityMicrosoft & LinkedIn · 2024
  • Career Essentials in Software DevelopmentMicrosoft & LinkedIn · 2024
  • Career Essentials in Business AnalysisMicrosoft & LinkedIn · 2024
  • Agile Project Management Professional CertificateAtlassian · 2024

Skill groups

Grouped by capability, with the evidence level shown for each skill. The chart below summarises how that evidence is distributed across groups.
  • Software Development: 20 production experience.
  • AI-Assisted Engineering: 10 production experience, 1 practical experience, 1 working knowledge.
  • Data & Integrations: 12 production experience, 1 practical experience.
  • Cyber Security: 5 production experience, 14 practical experience, 2 working knowledge.
  • Security Operations & Forensics: 22 practical experience, 5 working knowledge.
  • Cloud, Systems & Deployment: 10 production experience, 5 practical experience.
  • Ways of Working: 8 production experience, 2 practical experience.

Software Development

Where most of my work happens: TypeScript across the stack and Python for automation and data work, React and Next.js applications, an Astro site in commercial production, and the HTML, CSS, SQL and Git practice underneath it all.
Production experienceIn a system real people depend on
  • TypeScript
  • JavaScript
  • React
  • Next.js
  • Astro
  • HTML
  • CSS
  • Tailwind CSS
  • Responsive design
  • Accessibility (WCAG)
  • Progressive Web Apps
  • REST APIs
  • SQL
  • PostgreSQL
  • Supabase
  • Python
  • Git
  • GitHub
  • GitHub Actions
  • TanStack Query

AI-Assisted Engineering

AI as a way of engineering rather than a list of tools — persistent project context, explicit constraints, planning before implementation, agent-assisted development, and review and verification against a clear Definition of Done.
Production experienceIn a system real people depend on
  • Claude Code
  • Cursor
  • Replit
  • Context engineering
  • CLAUDE.md project context
  • Agent-assisted development
  • AI-assisted debugging
  • Reviewing generated code
  • Verification & Definition of Done
  • Cross-tool context continuity
Practical experienceBuilt or investigated with it hands-on
  • Reusable AI skills
Working knowledgeCan work in it with support
  • GitHub Copilot

Data & Integrations

PostgreSQL and Supabase work, schema investigation and data reconciliation, identity resolution, and the API, webhook and scheduled-automation integrations that connect applications to the systems around them.
Production experienceIn a system real people depend on
  • PostgreSQL
  • Supabase
  • Data modelling
  • Schema investigation
  • Data reconciliation & repair
  • Identity resolution
  • API integrations
  • Webhooks
  • Stripe integrations
  • Supabase Edge Functions (Deno)
  • Scheduled automation
  • Reporting & exports
Practical experienceBuilt or investigated with it hands-on
  • ELT pipelines (Airbyte, dbt, Dagster)

Cyber Security

Security treated as part of engineering rather than a pass at the end: authentication and access control, Row Level Security, privacy and consent, secure configuration and headers in production work — alongside hands-on lab practice from a completed Diploma specialising in cyber security, covering Kali Linux, Nmap, Wireshark, firewalls and access control lists, AWS IAM and encryption, OWASP Top 10 and introductory penetration testing against deliberately vulnerable targets.
Production experienceIn a system real people depend on
  • Authentication & access control
  • Row Level Security
  • Privacy & consent
  • Secure configuration
  • Secrets management
Practical experienceBuilt or investigated with it hands-on
  • Security headers / CSP
  • Identity & access management
  • MFA
  • Application security (OWASP Top 10)
  • Microsoft Defender, Intune & Entra
  • Endpoint security & device compliance
  • Network security & firewalls
  • Linux security fundamentals
  • Nmap & network reconnaissance
  • Wireshark & packet analysis
  • Vulnerability management
  • Encryption
  • Penetration testing fundamentals (lab)
  • Disaster recovery & continuity
Working knowledgeCan work in it with support
  • Security architecture
  • Security baselines & patching

Security Operations & Forensics

Blue-team work: alert triage in Splunk and the Elastic Stack, network and endpoint threat detection, phishing and threat-intelligence analysis, digital forensics — Volatility, Autopsy, FTK Imager, KAPE, PECmd, CyberChef — and incident response through the PICERL lifecycle. This is training rather than production SOC work: 65 hands-on labs across the TryHackMe SOC Level 1 path, and Blue Team Level 1, whose certification is assessed by a 24-hour practical incident response exam rather than a quiz. The investigative method underneath it is the part that isn't new.
Practical experienceBuilt or investigated with it hands-on
  • Alert triage & prioritisation
  • Incident response (PICERL)
  • Incident reporting & documentation
  • SOC case management (TheHive)
  • Splunk
  • Elastic Stack (Kibana)
  • Log correlation & SIEM investigation
  • Sigma detection rules
  • Snort & IDS fundamentals
  • Traffic analysis (NetworkMiner)
  • Network attack detection
  • Web attack & web shell detection
  • Windows & Linux log analysis
  • Endpoint detection (DeepBlueCLI)
  • Windows forensic artefacts
  • Memory analysis (Volatility)
  • Disk forensics (Autopsy, FTK Imager)
  • Evidence handling & chain of custody
  • Phishing analysis (PhishTool)
  • Threat intelligence (MISP, OpenCTI)
  • MITRE ATT&CK
  • Multi-source incident investigation
Working knowledgeCan work in it with support
  • Cyber Kill Chain & Pyramid of Pain
  • Threat intelligence reporting
  • Malware classification
  • Living-off-the-land techniques
  • Static & behavioural malware analysis

Cloud, Systems & Deployment

Getting software into production and keeping it running — Cloudflare, Vercel and Netlify deployment, DNS and TLS, Microsoft 365 and Google Workspace administration, systems migration and production troubleshooting.
Production experienceIn a system real people depend on
  • Cloudflare
  • Cloudflare Workers / Wrangler
  • Vercel
  • Netlify
  • Automation
  • Production troubleshooting
  • Microsoft 365
  • Google Workspace
  • SaaS administration
  • Systems migration
Practical experienceBuilt or investigated with it hands-on
  • DNS & TLS
  • Windows endpoint management
  • Docker
  • AWS (IAM, EC2, S3, VPN, encryption)
  • Virtualisation (UTM, VirtualBox)

Ways of Working

Collaborative, iterative delivery: short feedback loops, stakeholder engagement, requirements analysis, documentation, verification and continuous improvement. Agile, Scrum, Kanban and SAFe describe how I work with teams, not what I do.
Production experienceIn a system real people depend on
  • Iterative delivery
  • Stakeholder collaboration
  • Requirements analysis
  • Technical documentation
  • Testing & verification
  • Continuous improvement
  • Agile
  • Scrum
Practical experienceBuilt or investigated with it hands-on
  • Kanban
  • SAFe