Defining the security architecture for a next-generation, Al-driven Data Security platform
Architecting and developing core components of the security-focused Python backend, including data integrations with third-party services
Pioneering techniques in both leveraging Al to improve security posture and architecting robust measures to secure the Al models themselves
Built an information security management system (ISMS) from the ground up and successfully led the organization through the ISO 27001 audits
Architected end-to-end cybersecurity solutions for large-scale distributed systems
Delivered robust product security architectures, focusing on secure-by-design principles and threat modeling for distributed cloud-connected systems
Led the end-to-end security architecture for three mission-critical products, ensuring security was integrated at every stage of the SDLC
Designed CI/CD pipeline to enforce strict, secure separation of dev and prod builds
Designed a secure model to activate debugging in the lab and prevent field misuse
Owned security concepts and architecture for a complex distributed system
Championed and rolled out threat modeling across development teams (shift left)
Designed secure key provisioning and secure endpoint sealing process for mass production
Secured complex hypervisor environments with various guest trust levels
Directed the risk assessment and security concept for a massive cloud-based fleet management platform
Development and roll out of a Secure SDLC, contributed directly to ISO 21434
Architected foundational security concepts for a new generation of products
Acted as the sole security authority and leader for a multi-million dollar project, coaching and guiding approximately six development teams on all security topics.
Convinced stakeholders to buy into security topics and led a dedicated task force to bring up a security module in a tight timeline, preventing a major project delay
Created secure coding guidelines and engaged teams to use them
Spearheaded end-to-end embedded security projects, from conducting TARAs to architecture and implementation of security measures
Developed an automated security testing platform, including a custom network protocol fuzzer
Led penetration tests and risk assessments for cloud infrastructures
Created and delivered a security training for C/C++ developers and architects
Python, C/C++, JavaScript, Bash
ISO 27001, GDPR
Docker, CI/CD, Hypervisors, REST APIs
Defining the security architecture for a next-generation, Al-driven Data Security platform
Architecting and developing core components of the security-focused Python backend, including data integrations with third-party services
Pioneering techniques in both leveraging Al to improve security posture and architecting robust measures to secure the Al models themselves
Built an information security management system (ISMS) from the ground up and successfully led the organization through the ISO 27001 audits
Architected end-to-end cybersecurity solutions for large-scale distributed systems
Delivered robust product security architectures, focusing on secure-by-design principles and threat modeling for distributed cloud-connected systems
Led the end-to-end security architecture for three mission-critical products, ensuring security was integrated at every stage of the SDLC
Designed CI/CD pipeline to enforce strict, secure separation of dev and prod builds
Designed a secure model to activate debugging in the lab and prevent field misuse
Owned security concepts and architecture for a complex distributed system
Championed and rolled out threat modeling across development teams (shift left)
Designed secure key provisioning and secure endpoint sealing process for mass production
Secured complex hypervisor environments with various guest trust levels
Directed the risk assessment and security concept for a massive cloud-based fleet management platform
Development and roll out of a Secure SDLC, contributed directly to ISO 21434
Architected foundational security concepts for a new generation of products
Acted as the sole security authority and leader for a multi-million dollar project, coaching and guiding approximately six development teams on all security topics.
Convinced stakeholders to buy into security topics and led a dedicated task force to bring up a security module in a tight timeline, preventing a major project delay
Created secure coding guidelines and engaged teams to use them
Spearheaded end-to-end embedded security projects, from conducting TARAs to architecture and implementation of security measures
Developed an automated security testing platform, including a custom network protocol fuzzer
Led penetration tests and risk assessments for cloud infrastructures
Created and delivered a security training for C/C++ developers and architects
Python, C/C++, JavaScript, Bash
ISO 27001, GDPR
Docker, CI/CD, Hypervisors, REST APIs