// background

Security research shaped by operations.

I moved from enterprise systems and defensive security into the trust boundaries that sit underneath AI applications.

01 / the path

Why infrastructure comes first.

Security research is my current work. The route here ran through operations, enterprise infrastructure, incident response, detection engineering, and environments where every control needs evidence.

AI systems rarely fail inside a neat AI-only boundary. They fail where a model server retrieves media, where a container inherits cloud access, where a parser trusts an archive, or where an SDK forwards credentials to a caller-selected endpoint.

I focus on those handoffs.

My work starts with source and a threat model. I trace data to the security decision, reproduce the behavior in a controlled environment, test the strongest objection, and separate an odd implementation detail from an exploitable boundary failure.

Detection engineering, cloud security, incident response, enterprise infrastructure, and compliance-sensitive work remain part of the foundation. They are context for the research, not the headline.

02 / experience

A direct line from operations to research.

  1. 2025 - present

    Security and Compliance Consultant

    Application and infrastructure assessments across cloud, identity, endpoint, and control surfaces.

  2. 2022 - 2025

    Computer Security Manager

    Enterprise hardening, segmentation, access review, investigation, and incident-response work.

  3. Earlier career

    Business ownership and operations

    Vendor, risk, schedule, and service-delivery ownership across a distributed logistics operation.