Research
PhD work on agentic AI for autonomous VAPT in operational technology, plus independent research on AI agent security. Pathfinder AI, Clawbot, and the SLR paper live here.
→ research log// PhD candidate · DevSecOps compliance · agentic AI research
I research autonomous vulnerability assessment in operational technology environments — the unglamorous infrastructure that runs water treatment, power grids, and factory floors. Day to day I work in DevSecOps compliance at Darktrace, translating security frameworks into technical controls that engineering teams can actually ship.
PhD work on agentic AI for autonomous VAPT in operational technology, plus independent research on AI agent security. Pathfinder AI, Clawbot, and the SLR paper live here.
→ research logDevSecOps compliance at Darktrace, MSP security work at Bunker, and digital forensics experience with CFL. GRC fluency across ISO 27001, SOC 2, and Cyber Essentials.
→ track recordIndependent work — a multi-PLC OT testbed, an OpenAI Model Craft Challenge submission (51% loss reduction over baseline), and writing on agentic systems.
→ portfolioAn agentic VAPT framework with the PEER lifecycle and ORDA control loop. Local-first (Ollama + DeepSeek R1 14B), governed and telemetered, verified against a live ICS testbed.
// paperCo-authored systematic analysis. Targeted at Computers & Security.
// researchHow a locally-deployed AI agent becomes an insider threat vector through prompt manipulation alone.