Filter by capability, evidence status, and delivery context.
Public-safe examples are grouped by the capability they evidence for AI Security Engineering: governance evidence, product security, detection, research synthesis, enterprise delivery, and adjacent origins.
Engagement type
All projects
Projects
32
Companies
21
Featured
3
Company imagery
32
Public-safe
1
Visible now
32
Showing 32 of 32 public-safe examples. Filters preserve the curated evidence order, so the strongest AI security capability signals stay visible first.
Featured evidence
Pinned project anchors
The most public-facing evidence remains pinned even when the rest of the directory is filtered.
A control-architecture and evidence-readiness effort translating FedRAMP Moderate requirements into policy, standards, technical controls, operational procedures, and audit-ready proof.
Supported Cornerstone's FedRAMP Moderate authorization effort by helping turn formal control requirements into security policie…
A flagship research report turning AI security job-market noise into evidence about roles, skills, control gaps, hiring signals, and the emerging AI security engineering discipline.
Designed and authored a flagship 2026 research report on AI security engineering, using a corpus of AI and security job descrip…
EvidenceMap
AI Security EngineeringAI Security ReportLabor Market ResearchCybersecurity Hiring
A practical field handbook for turning AI security from policy language into executable engineering work, control evidence, and operator-ready workflows.
Created a practitioner-oriented AI Security Engineering Handbook that translates AI risk, governance, product-security, and age…
MapDefendEvidenceAttack
AI Security EngineeringAI Product SecurityProduct SecurityApplication Security
A compact methodology for connecting AI inventory, threat modeling, prompt injection, agent permissions, RAG authorization, AI supply chain, evidence, and governance.
Framed AI product security as a product-control problem and translated AI risk categories into evidence, backlog, and governanc…
MapEvidence
AI Product SecurityControl PlaneThreat ModelingPrompt Injection
Clinical and cognitive-assessment technology delivery for Australian Defence Force-linked workflows, emphasizing data integrity, privacy, workflow reliability, evidence, and customer trust.
Contributed to technology delivery in a Cogstate engagement on behalf of the Australian Defence Force, where cognitive-assessme…
MapEvidence
CogstateAustralian Defence ForceHealth TechnologyClinical Research
Technology leadership and ISO 27001 ISMS audit for an iGaming platform, spanning delivery ownership, platform operations, security-aware execution, and certification-readiness consulting.
Served as Deputy Head of Technology for a Pathwwway iGaming engagement before Forescout, guiding technology delivery, platform…
EvidenceMap
PathwwwayiGamingDeputy Head of TechnologyTechnology Leadership
A cyber-workforce research program featured at RSA Conference, bSides NYC, and Infosecurity Europe, translated into a talent-intelligence and ATS workflow layer.
Developed a NIST NICE Cyber Workforce research program focused on role language, workforce taxonomy, and cyber-workforce signal…
Implementing practical AI control evidence for ISO 42001, NIST AI RMF, AIMS, agent identities, permissions, red teaming, privacy, and output evaluation.
Designed a practical AI governance control layer using Garak, NeMo Guardrails, Microsoft Presidio, Promptfoo, agentic identitie…
MapEvidenceAttackDefend
AI GovernanceAI Product SecurityISO 42001NIST AI RMF
A native AI sidecar architecture using Tauri, Rust, MITM proxying, WebSocket bridges, 160+ adapters, Apple-native APIs, VPN/network capabilities, and a dynamic capability mesh across devices and clients.
Designed and built a native AI sidecar platform using Tauri and Rust, combining MITM proxying, WebSocket pub/sub bridges, 164 s…
Large-scale connected-device analytics using Forescout Device Cloud, Elastic, Kibana, and security-research workflows to turn millions of device records into report-ready security evidence.
Built and executed Elastic/Kibana-style analytics workflows over Forescout Device Cloud data to support security research, sect…
A public security research program turning SIEM deployment analysis, cloud detection patterns, architecture innovation, and SOC maturity findings into RSA, Infosecurity Europe, and CloudNativeSecurityCon-ready narratives.
Developed and contributed to Devo security research that converted customer deployment analysis, SIEM maturity patterns, detect…
Linux Foundation / Cloud Native SecurityCon research on enterprise cloud detections, cloud SOC maturity, ATT&CK-aligned motives, and the growing importance of cloud-native telemetry in SIEM programs.
Presented Cloud Native SecurityCon North America 2023 research with Joshua Smith at Devo, analyzing 2,000 enterprise cloud dete…
A security response operating model for urgent product, customer, vulnerability, and research-driven risk events in enterprise device-security environments.
Contributed to Forescout rapid response work by helping coordinate security research, product risk triage, technical validation…
MapEvidence
ForescoutRapid ResponseProduct SecuritySecurity Research
Leading product and engineering for a 2B-page open-source intelligence platform using high-throughput crawling, PostgreSQL-scale ingest, ML, NLP, clustering, search analytics, and graph visualization.
Led product and engineering for Syntryx, an open-source intelligence platform for multi-channel web and behavioral data, managi…
Technical marketing, ML-style multileg itinerary generation, and geographic waypoint and GDS inventory cleanup to support affiliate growth, search demand capture, and travel-content expansion.
Supported affiliate-program growth and technical marketing by developing ML-style methods for generating high-value niche multi…