My full résumé is available by request. Highlights:
Experience
- Own security for a cloud environment handling more than a petabyte of sensitive health data
- Lead a program applying frontier LLMs to secure the output of a ≈250-engineer organization, driving AI-powered discovery and remediation of 100+ high/critical severity vulnerabilities
- Led red team engagements scoped across a major tech company’s infrastructure, products, and services
- Discovered and exploited TEE vulnerabilities, secure boot and code signing bypasses, and URI-to-RCE chains
- Developed novel vulnerabilities, exploits, and tooling, then partnered with blue teams to detect them
- Completed a rotation on a malware reverse engineering team
- Performed design reviews, cryptographic engineering, application security testing, penetration tests, and security consulting for internal teams and Fortune 500 clients
- Assessed platforms including industrial control systems, cloud environments, embedded hardware, and web and native applications
- Mentored early-career engineers on developing their skills and attacker mindset
Skills
- AI/LLM tooling: building coding and vulnerability discovery workflows using the Claude Agent SDK
- Python (primary); C, Java, C#, Bash, x86/ARM assembly, JavaScript, LaTeX
- Embedded security engineering and exploitation, including secure boot, remote attestation, and TrustZone
- Native exploitation techniques, modern exploit mitigations and bypasses, and reverse engineering (Ghidra/IDA)
- Electrical engineering and hardware hacking, including PCB design and layout; licensed amateur radio operator
Achievements
- Two-time DEF CON Black Badge holder: Spy vs Spy and Blacks in Cyber CTFs, with Team pTFS
- 2nd place in the DEF CON Spy vs Spy CTF and 3rd place in Dungeons at DEF CON (Team pTFS)
- 1st place, SANS Core NetWars CTF at RSA Conference (solo)
- Completed the Microcorruption embedded security and reverse engineering CTF
- Regular speaker at internal and external security and technology conferences
- Former member of the DEF CON IoT Village Call for Papers review panel
Certifications & Training
- Offensive Security Certified Expert (OSCE) and Professional (OSCP)
- TEEPwn training on reverse engineering and attacking TrustZone at RingZer0