Cybersecurity Leader | 15+ years establishing early-stage startups
- Cross-discipline Project Leadership
- Identity and Access Management (IAM)
- Risk Management
- Security and System Architecture
- Infrastructure Automation
- Threat Modeling
- AI Governance
- Supply‑Chain Security
- Value‑Based Costing
Note: All recent work is in private corporate repositories; public repos on this profile are archival/stale.
- Role: Security Architect
- Description: Developed agentic Rules and Skills for Claude Code and Cursor to help ensure consistent, auditable, and safer behavior for agentic capabilities.
- Technologies: Claude Code, Cursor (Rules/Skills)
- Outcome: Organization‑wide governance patterns and automated validation that reduced risk around agentic development and deployment.
- Role: Principal Security Architect
- Description: Collaborated across the organization to develop Service Control Policies (AWS), IAM permissions, and Organizational Policies (GCP), establishing guardrails to prevent unnecessary root and administrative access.
- Technologies: AWS Security Controls, IAM, GCP Organizational Policies, Terraform/OpenTofu
- Outcome: Significantly enhanced corporate security posture with defined JIT triage and break‑glass processes, ensuring elevated access is granted only to authorized users while preserving operational effectiveness.
- Role: Principal Security Architect
- Description: Developed and maintained a library of hardened Docker base images with GitHub Actions and ECR for use in development and machine‑learning workflows.
- Technologies: Docker, GitHub Actions, Chainguard Images, ECR
- Outcome: Eliminated the largest source of third‑party vulnerabilities across repositories by standardizing secure base images and integrating them with minimal developer impact.