Senior Cyber Security Engineer @ Aave Labs¶
Current Focus: Web3 Security Architecture & Offensive Operations
At Aave Labs, I lead critical security initiatives for one of the most prominent decentralized finance protocols. My role bridges the gap between traditional infrastructure security and the cutting-edge requirements of Web3.
Key Responsibilities & Achievements¶
- SOC & Defensive Operations: Leading SOC operations by deploying and managing high-fidelity monitoring and response systems using Crowdstrike, Sumo Logic, AWS GuardDuty, and Cloudtrail.
- Web3 Security & Auditing: Conducting deep-dive audits and penetration tests on Web3 applications and smart contracts (EVM) to identify vulnerabilities like reentrancy and cryptographic flaws.
- On-Chain Monitoring: Utilizing solutions like Hypernative and Tenderly to protect the ecosystem and applying mitigations from third-party auditors and bug-bounties.
- AI Security Architecture: Implementing secure architectures for AI Agents (RAG), focusing on secret management (HSM), prompt injection prevention, and secure wallet integration.
- Infrastructure & Compliance: Building robust, Zero-Trust security architectures across AWS and GCP, while ensuring compliance using tools like Vanta.
Technical Stack¶
- Security: CrowdStrike, Sumo Logic, Groundcover, Falco, Hypernative.
- Web3: Solidity, Rust, Smart Contract Auditing, Cryptographic Protocols.
- Cloud & Ops: AWS, GCP, K8s, Docker, ArgoCD.
- Languages: Python, Solidity, Rust.