Engineering Manager by day · Security researcher & engineer by night
leading teams · researching · building useful for me things
I'm an Engineering Manager with 7+ years in full-stack development and 3+ years leading engineering teams. Previously, I was a Senior Software Engineering Manager at Orca Security.
My work sits where engineering leadership, cloud architecture, and security meet. I build and scale data-intensive systems across AWS, GCP, and Azure, and try to create the kind of engineering culture where people can thrive and innovate freely.
|
|
I write about cloud-security behavior that deserves a closer look:
- The Hidden Risk of GCP Viewer Role: Cross-Project Disk Replication
How an over-permissive legacy role enabled cross-project cloning of CMEK-encrypted disks and effectively stripped their encryption. - Snapshot-based CMEK Bypass
A follow-up to Google's direct-cloning fix: a snapshot path that could still bypass the new validation.
The patch is often where the next investigation begins.
| Project | What it does | Built with |
|---|---|---|
| stratz-mcp | MCP server for Dota 2 analytics through the STRATZ GraphQL API | Go |
| pipack | My Pi configuration, skills, and packages for the harness | TypeScript |
| wake-bot-go | Telegram bot that calculates sleep phases | Go |
$ whoami
Engineering leader with an engineer's curiosity
$ current_mode
Exploring AI agentic security



