I ship security tooling, not just findings.
Security Engineer who builds secure, resilient systems and ships security tooling rather than just finding problems. Experienced across application security, detection engineering, cloud, and AI/LLM security, aligned with OWASP, MITRE ATT&CK, and NIST.
Most of what I build answers one question: how do you let an AI system be genuinely useful without letting it be dangerous? That has become a transparent MCP proxy that enforces per-tool policy on every agent call, a red-team suite mapped to the OWASP LLM Top 10, and a SOC assistant that writes incident reports from playbooks and raw logs.
At SecureAIs I ran adversarial testing against production AI platforms and found 20+ critical issues including authentication bypass, prompt injection, and token leakage before any of it shipped, then built the PII detection and redaction pipeline that pushed sensitive-data protection accuracy from 65% to 95%.
At SecureThings I spent a year on the build side: an event-driven scanning platform in Dockerized async Python that cut asset analysis from nine hours to under thirty minutes, backend risk-scoring logic to prioritize what actually mattered, and AWS/Azure hardening across 25+ security gaps.
Off the clock: CTFs with UWB GreyHats, cloud hardening rabbit holes, and writing up what breaks.
Education
University of Washington
M.S. Cybersecurity Engineering
Sep 2024 – Jun 2026
GPA 3.93 / 4.00
Symbiosis Skills and Professional University
B.Tech, CSIT (Cybersecurity)
Aug 2020 – May 2024
GPA 3.65 / 4.00