Fractional CISO / Security Architect | Solution Compliance Lead, Commonwealth of Massachusetts | LinkedIn Top Voice in Cybersecurity
I help organizations build security programs that actually work. As a fractional CISO, I bring enterprise security architecture and risk leadership to teams that need senior guidance without a full-time hire. At the Commonwealth of Massachusetts, I lead compliance, risk, and security architecture for the Business Enterprise System Transformation (BEST) program.
I write about building AI-powered development workflows that are secure, governed, and practical for the enterprise.
Agentic-Oriented Development — A book series mapping object-oriented principles to AI agent workflows. 9 chapters published, covering the ADLC (Agentic Development Lifecycle), context encapsulation, and governance patterns for agent-assisted development.
| Repo | What It Does |
|---|---|
| tachi | Automated threat modeling toolkit. STRIDE + AI-specific threats in one command. |
| Cybersecurity Content | Security Manifesto for AI-assisted development and the Seven Strategic Cybersecurity Posture Domains framework. |
| Repo | What It Does |
|---|---|
| AOD Kit | Agentic Development Lifecycle (ADLC) framework with SDLC Triad governance for AI agent-assisted development. |
| Repo | What It Does |
|---|---|
| GitHubDevOps | SwiftUI app for GitHub CI/CD metrics via GraphQL API. |
| StockWatcher | Swift stock watching application using Alpha Vantage. |





