Cybersecurity engineer and U.S. Navy veteran with a Master's in Cybersecurity and a TS/SCI clearance. I specialize in penetration testing, vulnerability assessment, and DevSecOps — bridging the gap between security and development. Currently building AI-powered automation tools at LaySay AI while hunting for vulnerabilities in my spare time.
// offensive security
Penetration testing, vulnerability assessment, exploit development, red team operations, web app testing
// defensive security
SIEM management, IDS/IPS, incident response, risk management framework (RMF), threat hunting
// devsecops
CI/CD pipeline security, container hardening, infrastructure as code scanning, SAST/DAST integration
// cloud & infrastructure
AWS/Azure security, IAM policies, cloud hardening, Docker, Kubernetes, network architecture
// tools
Burp Suite, Nmap, Metasploit, Wireshark, Nessus, Splunk, Kali Linux, Git, Terraform, Ansible
// development
Python, Bash, JavaScript, Go, SQL, REST APIs, FastAPI, React, Serverless
PenTest+
CompTIACySA+
CompTIASSCP
ISC²Security+
CompTIANetwork+
CompTIAProject+
CompTIAA+
CompTIAITILv4
AxelosMSSA
MicrosoftSLA1
TryHackMeLaySay AI
AI-powered receptionist platform for small businesses. Automates appointment booking, customer inquiries, and communications with voice agents and serverless backends.
view project →Hair Peace Voice Agent
AI voice agent for salon appointment management. Handles booking, cancellation, availability checks, and email notifications via conversational AI and serverless webhooks.
Tumbeezy Cookies
Cookie business website with a dynamic weekly menu powered by Google Sheets as a CMS. Features animated UI, responsive design, and real-time flavor rotation.
view project →2024 — Present
Founder & AI Engineer
LaySay AI
- Building AI-powered receptionist platform for small businesses
- Developing conversational AI voice agents with serverless backends and Google APIs
- Full-stack development: React frontends, Python backends, CI/CD pipelines
Mar 2022 — Jun 2025
ICAM / Cybersecurity Engineer
United States Navy — Japan, Guam, Singapore
- Implemented Risk Management Framework (RMF) for Navy information systems
- Led cybersecurity operations across 5 sites
- Managed security compliance and vulnerability remediation
- Held TS/SCI security clearance
Jul 2017 — Mar 2022
Systems Administrator
United States Navy — Oak Harbor, Bahrain, Japan, Italy, Greece, Iceland
- Administered Active Directory Domain Services (AD DS) and Group Policy Objects (GPOs) for 900+ users across classified and unclassified environments
- Designed and implemented role-based delegated administration models, reducing over-privileged access
- Managed identity lifecycle operations (Joiner–Mover–Leaver) ensuring timely provisioning and de-provisioning per least-privilege requirements
- Administered Red Hat Enterprise Linux (RHEL) authentication services with centralized sudo and privilege policies
- Supported security inspections, audits, and access certifications across enterprise systems
- Collaborated with cybersecurity and compliance teams to align directory services with DoD security policies