About
I am a pragmatic security leader, currently works on product security, and cloud native security areas. I have created multiple OSS projects including Kubernetes Goat, Hacker Container, tldr.run, etc. I frequently speak & train at events and conferences like DEFCON, Black Hat, SANS, USENIX, OWASP, Nullcon, All Day DevOps, DevSecCon, null, and many others around the globe. My research has found 200+ vulnerabilities in products, and organizations including Google, Microsoft, AT&T, NTOP, Adobe, WordPress, Gitlab, etc. Published author of Security Automation with Ansible2, also a technical reviewer for books, conferences, etc. I contribute to communities like All Day DevOps, null, AWS, OWASP, etc. I also advise startups on building great products, communities, and adding value.
Badges
![Tastemaker](https://ph-files.imgix.net/efa4179e-0d89-47ad-b129-66c3925f6dc6.png?auto=compress&codec=mozjpeg&cs=strip&auto=format&w=44&h=44&fit=max&frame=1)
![Veteran](https://ph-files.imgix.net/fbcfde08-d0c3-40bc-a471-bb6a0b6e8dcc.png?auto=compress&codec=mozjpeg&cs=strip&auto=format&w=44&h=44&fit=max&frame=1)
![Gone streaking](https://ph-files.imgix.net/530e3527-6af6-4929-a85e-28ac24f0f5c4.png?auto=compress&codec=mozjpeg&cs=strip&auto=format&w=44&h=44&fit=max&frame=1)
![Gone streaking 5](https://ph-files.imgix.net/834b4623-1972-4df1-a2b8-0727569a2fc1.png?auto=compress&codec=mozjpeg&cs=strip&auto=format&w=44&h=44&fit=max&frame=1)