I build security-focused software, research security problems, and turn ideas into working tools.
My interests sit at the intersection of security engineering, software development, application security, detection engineering, and automation.
Security Engineering Building practical security tools and systems.
Application Security Reviewing, testing, and hardening software against real-world attack techniques.
Detection Engineering Designing and testing detections against real-world attack behavior and adversarial variations.
Zero Trust & Identity Building access control systems around workload identity, policy enforcement, and cryptographic trust rather than network location.
Linux & eBPF Exploring kernel-level telemetry, system behavior, and Linux security.
Security Automation Using Go and Python to automate security workflows, analysis, and validation.
Offensive Security Interested in vulnerability research, attack simulation, exploit development, and understanding how systems fail.
Resync A distributed SOAR platform demonstrating event-driven security automation with event sourcing, CQRS, Kafka, PostgreSQL, Redis, Go, Java, and React.
Wraith A detection-engineering platform for validating security detections through attack simulation, adversarial testing, and automated evidence generation.
eBPF EDR A Linux endpoint detection project built around eBPF, kernel telemetry, and behavioral detection.
Stream SIEM A real-time security telemetry and detection pipeline built with Go, Kafka, Apache Flink, ClickHouse, and Python.
Zero-Trust-IAP A Zero Trust Identity-Aware Proxy implementing mTLS, SPIFFE/SPIRE workload identity, device posture checks, policy enforcement, and Vault-backed PKI with automated certificate rotation.
Languages
Security
Infrastructure, Cloud & Platforms
I like to understand a problem from the low level up: build the system, test it against realistic conditions, and document what I learn.
Understand → Build → Test → Break → Improve → Document
I'm especially interested in projects where security research becomes practical engineering.
- Application security
- API security
- Web security
- Linux security & eBPF
- Detection engineering
- SIEM & security monitoring
- Threat detection & behavioral analytics
- Zero Trust architecture
- Identity & access management
- Security automation
- CI/CD security
- DevSecOps
- Cloud security
- Cloud-native security
- Container security
- Kubernetes security
- Vulnerability research
- Offensive security
- Exploit development
- Malware analysis
- Network security
- Cryptography
