Offensive Security Training Labs
Built vulnerable-machine infrastructure and training apps used by thousands of students working toward OSCP, OSWE, OSCE, and OSWP certifications.
8,000+ hrs mentoring · 5+ years
A selection of professional projects, open-source contributions, and things I’ve built along the way.
Built vulnerable-machine infrastructure and training apps used by thousands of students working toward OSCP, OSWE, OSCE, and OSWP certifications.
8,000+ hrs mentoring · 5+ years
Executed complex Ruby (2.7.5 → 3.3.8) and Rails (5 → 7.2) migrations on production apps with zero downtime. Migrated Paperclip to ActiveStorage and added integration coverage.
Minimal disruption · improved test coverage
Guide developers in secure AI and LLM adoption, applying the OWASP LLM Top 10. Patterns for prompt security, evaluation, and safe tool use.
Active program · in production use
Designed Ruby Lambdas and S3-backed ActiveStorage for scalable media pipelines. Custom API endpoints on EC2 behind load balancers.
Production workloads · scalable
Built new features for Braintree and Venmo payment applications at PayPal. Pair programming, strong review culture, high reliability bar.
Payments critical path
Essays and research on web technologies, work-life balance, and the integration of AI into modern software practice.
Ongoing publication
Additional case studies, open-source contributions, and security research write-ups are on the way. In the meantime, the main portfolio has the full work history, and my personal blog covers research and commentary.