Principal Security Engineer with 9+ years experience focused on:
- learning
- collaboration
- automation
While the work from my job can't be publicly shared, I am constantly trying to learn and some of my open source contributions can be seen below:
- trufflesecurity/trufflehog#4347 - added detectors for two new secret types, wrote unit and integration tests, merge pending based on project maintenance discussions.
- e-m-b-a/emba#1615 - added a feature that improved firmware rescanning time from an avg of two hours to 15 minutes for detecting new CVEs.
- babyraging/yash#39 - while working through Stanford's compiler course, I found and fixed a bug for a VS Code syntax highlighter for Bison/Yacc (now I use neovim btw).
At my job I'm currently working on secrets management for NHI at scale, integrating AppSec tools into CI/CD, and internal tooling written in Go to normalize asset findings for ASPM.
Experience with building and securing internal self-service Containers as a Service (CaaS) platforms on RKE, EKS, and GKE using GitOps, Ansible, Terraform, HashiCorp Vault, PrismaCloud, CrowdStrike, and Kyverno.
OSCP, CKA & CKS certified with several issued patents.
