My Projects

Security projects and experiments

A place for the practical things I am building, collecting, or turning into reusable learning material.

In progress

Threat Modeling Playbooks

Reusable notes, examples, and review patterns for making threat modeling faster and easier for engineering teams.

Threat ModelingSecure DesignTeaching

Planned

Web Security Learning Lab

A planned collection of offensive and defensive web app security exercises, from insecure APIs to remediation patterns.

Web AppsOffensive SecurityDefensive Security

Collecting ideas

Security Automation Notes

Small utilities, scripts, and writeups that explore how automation can reduce repetitive AppSec work.

AutomationAppSecDevSecOps