Fractional CISO / Security Architect | Solution Compliance Lead, Commonwealth of Massachusetts | LinkedIn Top Voice in Cybersecurity
I help organizations build security programs that actually work. As a fractional CISO, I bring enterprise security architecture and risk leadership to teams that need senior guidance without a full-time hire. At the Commonwealth of Massachusetts, I lead compliance, risk, and security architecture for the Business Enterprise System Transformation (BEST) program.
I write about building AI-powered development workflows that are secure, governed, and practical for the enterprise.
Agentic-Oriented Development — A book series mapping object-oriented principles to AI agent workflows. 9 chapters published, covering the ADLC (Agentic Development Lifecycle), context encapsulation, and governance patterns for agent-assisted development.
| Repo | What It Does |
|---|---|
| tachi | Automated threat modeling toolkit. STRIDE + AI-specific threats in one command. |
| agentic-oriented-development-kit | SDLC Triad governance template for AI agent-assisted development. |
