Security Strategy, GRC & AI Risk
Carnegie Mellon University
Selected as Student Representative for the ISPM cohort at Heinz College. Gather feedback from students, help shape events and programming, and support connection within the cohort to enhance the student experience.
Carnegie Mellon University
Host weekly office hours and manage Canvas LMS including grading and course administration for 40+ graduate students. Provide technical guidance on product management projects and contribute to course improvement initiatives.
CredXO
Coordinated engineering workflows for 12-15 member development team at blockchain-based fintech startup. Enforced security and operational policies including repository access controls and confidential data handling protocols. Supported Shark Tank INDIA pitch preparation.
Hacker Bro Technologies
Completed intensive training in incident response, vulnerability assessment and security event monitoring using SIEM platforms. Practiced penetration testing techniques including network reconnaissance with Nmap, packet analysis using Wireshark and web application security testing with Burp Suite.
GRC Automation
LLM workflows that collect SOC 2 and NIST CSF audit evidence, with guardrails and manager sign off.
Product Security
An OCPP charge point stack tested against 13 ETSI EN 303 645 areas, with 6 gaps mapped to EN 18031.
Vulnerability Intelligence
Connects NVD CVEs to MITRE ATT&CK, NIST 800-53 controls and Sigma detections to rank what to fix first.
AI Safety
An offline AI workflow that grounds HAZMAT decisions in cited 49 CFR regulations.
Research, CyLab / SEI
A two stage self hosted LLM pipeline, benchmarked against SAST on precision, recall and false positives.
AI Governance
38 LLM traces analysed for injection and compromise; 3 vulnerable models kept out of production.
AI Governance
Practical security requirements for agentic AI: oversight, auditability, runtime controls and data protection.
Endpoint Compliance
A macOS app that checks permissions, encryption and updates, and runs AI voice phishing drills.
Supply Chain Security
Preflight checks that block vulnerable dependencies before any XRP Ledger transaction runs.
Threat Intelligence
OSINT-led threat analysis of a Fortune 500 energy company, mapped with MITRE ATT&CK.
Incident Analysis
Root-cause analysis of a $2.3B attack on 15B healthcare transactions, plus the zero-trust plan to prevent it.
LLM Security
An ML framework to detect, isolate and remediate prompt injection in LLMs.