Now
What I'm doing now
A snapshot of current focus — learning, building, and research. Updated as things change.
Learning
- Agentic AI for SOC operations — Agent architectures that can triage, enrich, and escalate like a junior analyst.
- AI-assisted penetration testing — Where LLMs genuinely help in offensive workflows — and where they get in the way.
- LangChain application development — Building LLM applications with real tool use and guardrails.
Building
- Security automation — Python tooling that removes repetitive steps from assessment and monitoring workflows.
- Open-source cybersecurity tools — Small, focused tools that solve one security problem well.
Researching
- Offensive security research — Web and API weaknesses, with responsible disclosure.
- AI security — How LLM-powered systems fail, and how to attack and defend them.
Certifications
| CEH | Certified Ethical Hacker | Active |
|---|---|---|
| CISA | Certified Information Systems Auditor | Active |
| eCPPT | eLearnSecurity Certified Professional Penetration Tester | Active |