The work behind the current direction

  1. 2026–present

    AI security research

    Heron AI Security Fellowship · Apart Research · UBC

    My current focus is AI × cyber: applying offensive, defensive, and operational security experience to distributed AI infrastructure and agent security while deepening my machine learning expertise.

    Current work

    • Researching attack surfaces in RDMA, InfiniBand/RoCE, NVIDIA GPUDirect, and distributed-training communication.
    • Studying query-only attacks against long-term AI-agent memory through a UBC graduate course research project.
    • Testing multi-agent behavior and the difference between short-lived behavioral effects and persistent trait change.

    How I define the focus

    I work from concrete systems questions: map the trust boundaries, test the assumptions, and state clearly what the evidence supports.

  2. 2025–present

    Computer science and AI safety

    University of British Columbia

    I returned to school to understand modern AI systems from first principles and connect that foundation to my security experience.

    What I have been learning

    • Rebuilt the mathematical foundation through linear algebra, multivariable calculus, and probability.
    • Studied machine learning, natural language processing, computer vision, and agentic systems.

    AI safety and security programs & community

    How my direction changed

    Mechanistic interpretability initially appealed to the reverse engineer in me: understand a model internally, not only through its outputs. As I learned more, I shifted toward AI × cyber, where my existing experience offers more immediate leverage while I continue investing in the foundations.

  3. 2020–2025

    Head of Information Security

    AIPO Cloud

    I moved from red team to blue team, and from individual contributor to engineering leader, with a clear mandate: build a world-class Security Operations Center for the company operating Apple iCloud services in mainland China. I joined before the data center was operational. The site was literally still a hole in the ground. From there, I led security through buildout, launch, and mature 24/7 operations.

    Selected work and outcomes

    • Built the security function end to end, establishing the people, technology, operating model, and round-the-clock coverage for infrastructure serving more than 200 million users.
    • Built and led the multidisciplinary security engineering organization spanning vulnerability management, detection engineering, incident response, security-tooling development, and site reliability engineering, and directed a $15M+ security program.
    • Owned security architecture, operational readiness, executive risk decisions, procurement, and the MLPS and ISO certification work required to operate in a demanding regulatory environment.

    Why I moved on

    After five years, I had taken the organization from a data center still under construction to a fully operational security center. The mission I had accepted was complete and the team was in good hands. ChatGPT had also made the direction of technology difficult to ignore. Rather than move directly into another leadership role, I chose to step away and build the technical foundation for the next chapter.

  4. 2017–2020

    Offensive Security Engineer Lead

    Amazon

    I joined Amazon because I wanted to learn inside the company setting the standard that the rest of retail and e-commerce measured itself against. I began in internal audit; the security work I pursued there led to an internal move to the red team.

    Selected work and outcomes

    • Led red-team operations that uncovered vulnerabilities with potential financial impact in the tens of millions of dollars.
    • Assessed high-value procurement and physical-security systems and helped drive systemic remediation.
    • Identified monitoring gaps, presented at Amazon Risk Con in the United States and India, and worked with senior leaders on high-risk findings.

    Why I took the next step

    Amazon taught me how to find weaknesses at scale and how much work it takes to turn a finding into lasting change. I next wanted to own the defensive outcome over time: build the team, tooling, and operating model rather than hand over a report. AIPO Cloud offered that opportunity from the ground up.

  5. 2013–2017

    Security analyst intern and IT auditor

    Sears Holdings

    My first enterprise-security experience was a rotational internship across vulnerability management, incident response, compliance, and other parts of the security team. I joined internal audit full-time because it offered an unusually broad view of how a large company worked.

    Selected work and outcomes

    • Identified serious weaknesses across retail, workstation, loyalty, and payroll systems and worked with teams on remediation.
    • Built SOX audit dashboards that improved leadership visibility into audit execution.
    • Worked across PHI and PCI compliance and was named Auditor of the Year in two consecutive years.

    What set the direction

    Audit gave me breadth, but I was consistently drawn to the moments when I could test whether a control actually held up. After four years, I wanted to go deeper in offensive security and learn inside the strongest technology organization in my industry. That led me to Amazon.

Sharing practice across communities.

Education

  • M.S., Information Systems and Operations Management at University of Florida
  • B.C.S., Artificial Intelligence at University of British Columbia
  • B.S., Finance and Animal Science at Northeast Agricultural University

Certifications

  • Offensive Security Certified Professional (OSCP), 2024
  • GIAC Certified Penetration Tester (GPEN), 2019
  • Certified Information Systems Auditor (CISA), top 5% exam performance, 2016
  • Certified Internal Auditor (CIA), 2016

I’m open to AI security roles and research collaborations where systems and security experience can help.