kyle@sec: ~

Loading security protocols ... OK

Establishing encrypted connection ...

Connected to kyle.day

Session established. Welcome.

Kyle Chau

Application Security Engineer

GitHub LinkedIn Travel Blog FareSight HackTheBox

Hi there, I'm an Application Security Engineer who works on hands-on security work with automation platforms and programming. At Bluebeam, I run third-party penetration tests, lead yearly STRIDE threat modeling, and maintain ISO 27001/SOC 2 compliance. I build Python automation workflows that turn garbled data into vulnerability and remediation dashboards for developers. In my daily work, I work on vulnerability remediation, threat monitoring, and tune Cloudflare WAF rules to catch threat actors. In past roles, I built SAST pipelines, cleaned up AWS IAM with Terraform, and shipped identity automation, turning findings into fast fixes.

Have a project, idea or problem you'd like to discuss? Let's talk: [email protected]

$ cat /etc/experience.log

Experience

2024.05 — Present

Bluebeam Software, Inc.

Application Security Engineer

Collaborated with security teams on third-party penetration tests

Led security initiatives across engineering and DevOps teams

Worked with DevOps to rapidly remediate vulnerabilities

Increased vulnerability remediation scores across the board

Run STRIDE threat modeling, maintain ISO 27001/SOC 2 compliance

Build Python automation for vulnerability dashboards

Tune Cloudflare WAF rules for threat detection

2023.05 — 2023.08

Rivian Automotive, Inc.

Enterprise Cybersecurity Engineer Intern

2022.05 — 2022.08

Cisco Systems, Inc.

Security Engineer Intern

2023.02 — 2024.05

California State University, Los Angeles

Assistant IT Lab Consultant

$ cat /etc/education.conf

Education

California State University, College of ECST

B.S. Computer Science

Los Angeles, CA

2020 — 2025 GPA: 3.67 / Cum Laude
$ skills --list

Skills

Python Java NodeJS C PHP SQL AWS/GCP Penetration Testing
$ systemctl status services

Hosted Tools

Self-hosted privacy-focused tools for security professionals and developers

One Time Secrets Share sensitive information securely with self-destructing encrypted messages → Excalidraw Collaborative whiteboard with end-to-end encryption for diagrams and sketches → CyberChef The Cyber Swiss Army Knife for encoding, decoding, and data analysis →
KC