Hi there, I'm an Application Security Engineer who works on hands-on security work with automation platforms and programming.
At Bluebeam, I run third-party penetration tests, lead yearly STRIDE threat modeling, and maintain ISO
27001/SOC 2 compliance.
I build Python automation workflows that turn garbled data into vulnerability and remediation dashboards for developers.
In my daily work, I work on vulnerability remediation, threat monitoring, and tune Cloudflare WAF rules to catch threat actors.
In past roles, I built SAST pipelines, cleaned up AWS IAM with Terraform, and
shipped identity automation, turning findings into fast fixes.
Have a project, idea or problem you'd like to discuss?
Let's talk: [email protected]
$ cat /etc/experience.log
Experience
2024.05 — Present
Bluebeam Software, Inc.
Application Security Engineer
Collaborated with security teams on third-party penetration tests
Led security initiatives across engineering and DevOps teams
Worked with DevOps to rapidly remediate vulnerabilities
Increased vulnerability remediation scores across the board
Run STRIDE threat modeling, maintain ISO 27001/SOC 2 compliance
Build Python automation for vulnerability dashboards
Tune Cloudflare WAF rules for threat detection
2023.05 — 2023.08
Rivian Automotive, Inc.
Enterprise Cybersecurity Engineer Intern
2022.05 — 2022.08
Cisco Systems, Inc.
Security Engineer Intern
2023.02 — 2024.05
California State University, Los Angeles
Assistant IT Lab Consultant
$ cat /etc/education.conf
Education
California State University, College of ECST
B.S. Computer Science
Los Angeles, CA
2020 — 2025
GPA: 3.67 / Cum Laude
$ skills --list
Skills
Python
Java
NodeJS
C
PHP
SQL
AWS/GCP
Penetration Testing
$ systemctl status services
Hosted Tools
Self-hosted privacy-focused tools for security professionals and developers