“Offensive security engineer who helps enterprises pressure-test AI platforms and cloud infrastructure before attackers find the gaps.”
I'm a cybersecurity engineer who spends most of my day thinking like an attacker, so the companies I work with don't have to learn things the hard way.
Over the past decade, I've built and led offensive security programs at Workday, Walmart, and Salesforce, running penetration testing, bug bounty, and AI security initiatives that protect systems used by tens of millions of people every day.
Lately, my focus has shifted to where offensive security meets AI. I helped build the security framework behind Workday's Illuminate AI platform from scratch, covering things like prompt injection, model inversion, and supply-chain risk in AI agents, well before most companies were thinking about them. Before that, I led the penetration testing program that got Workday's cloud FedRAMP authorized, a process most people outside security never see, but one that's becoming a bigger deal as AI moves into government and regulated industries.
I also ran Workday's global bug bounty program, working directly with independent security researchers to catch vulnerabilities before they became headlines. Earlier in my career, I helped Walmart securely migrate 100+ mission-critical applications to the cloud, and worked on large-scale ad fraud detection systems at Google's scale, through my time at EY.
I like talking about what it actually takes to defend large systems in an AI-first world: the tradeoffs, the near-misses, and the lessons that never make it into a vendor's pitch deck. If your audience cares about cybersecurity, AI risk, cloud security, or what it takes to keep enterprise platforms safe, I'd love to join the conversation.