Security overhaul at the EPO
Critical security vulnerabilities forced a major Java and Spring Boot upgrade across the platform — cascading updates through dozens of libraries, fixing breaking API changes along the way. I also rebuilt the CI/CD pipelines with GitHub Actions, with dependency security scanning built in.
I rebuilt the pipelines while I was in there.
fun fact: one vulnerable dependency, dozens of libraries to move