aka wh1t3r0se
Product Security Engineer II @ DigitalOcean - I embed shift-left security into high-velocity engineering orgs, automate attack-surface defense, and build AI-augmented tooling that scales assurance.
01 - About
Attacker mindset,
engineer discipline.
I am a product security engineer operating at the intersection of offensive security, cloud-native engineering and applied AI - partnering embedded with product teams to deliver secure-by-design outcomes without slowing down shipping.
My playbook is proactive, risk-based and automation-first: continuous attack surface management, threat-informed architecture reviews, DevSecOps guardrails baked straight into CI/CD, and defense-in-depth hardening across cloud estates spanning thousands of projects.
I build leverage through tooling - open-source CAST platforms, cloud resource scanners and agentic AI pentesters with near-zero false positives - and I scale culture too: CTF-style Security Weeks, live hacking events and bug bounty programs that turn developers into security stakeholders.
02 - Selected Work
Work that moves.
03 - Capabilities
What I do best.
Application Security
Cloud Security - GCP
AI for Security
Offensive Security
04 - Experience