Candidate
Admin

Security Engineer — AppSec and Threat Modelling

Seed

AppSec—threat models, code review, and the hard part after ‘scan clean’: staying hard to break in production.

Get directionsDirect message

General

Tagline

AppSec—threat models, code review, and the hard part after ‘scan clean’: staying hard to break in production.

Summary

At a glance

Focus: AppSec—threat models, code review, and the hard part after ‘scan clean’: staying hard to break in production.

Selected wins

  • Drove a secrets rotation program: fewer long-lived keys, and break-glass that is logged and time-limited
  • Partnered with eng on SSRF and auth bugs found in real pen tests, not checkbox scans

What I want next

A security function embedded with platform teams, not a gate the week of release only.

Profile for portal demo. Contact via example.org links only.

Expertise

Skills

AppSecThreat modelingPentestOAuth

Experience

Mid

Preferences

Preferred work mode

Hybrid

Location

Helsinki, Finland

Demo seed

job-portal-seed-v1

6. Mai 2026 sample only, not a real person

Candidate