BlackBoiler
Director of Engineering, Security and Infrastructure
Arlington, VA
2019–Present
Joined as an early employee and co-lead engineering direction with the CTO. My role spans hands-on software and AI development, product engineering, production infrastructure, security, privacy, compliance, and technical strategy.
Software & AI
- Remain deeply hands-on, spending roughly half my time writing code—primarily Python—across production services, backend systems, automation, and product capabilities.
- Built semantic search and RAG for contracts and legal playbooks, including vector/embedding retrieval and dynamic relevance thresholding using gap and Otsu methods for automated contract review and editing.
- Applied unsupervised clustering to contract sentences for rule development and section classification; developed separate data-augmentation methods to expand and diversify ML corpora.
- Extended agentic AI/LLM frameworks by modifying agent routing and orchestration to support new tools, workflows, and execution paths.
- Evaluated and implemented GenAI/LLM infrastructure using MLflow, Bifrost and AWS Bedrock, including model gateways, provider routing, observability, centralized model access, and Bedrock Guardrails.
- Refactored core services to improve document-processing performance and reliability and developed backend services supporting ML/AI-driven document workflows.
Platform, security & operations
- Built, operate, and continue to evolve a multi-region AWS platform spanning five EKS clusters using Kubernetes, Terraform and GitHub Actions, with automated failover, redundancy, monitoring, and >99.95% production uptime.
- Built Python/boto3 deployment automation that reduced client deployment time from approximately one hour to under five minutes.
- Developed a React/Python operational dashboard integrating EKS, AWS, Cloudflare and Sumo Logic data so Customer Success could deploy and triage client environments independently.
- Re-architected and rightsized AWS workloads, reducing cloud infrastructure spend by approximately 25%.
- Embedded security into the SDLC using SonarQube, Snyk, Scout, CrowdStrike and automated compliance controls, moving vulnerability detection earlier and reducing downstream security findings.
- Initiated and lead SOC 2 Type II across multiple audit cycles and serve as Data Protection Officer, owning privacy practices and incident response while enabling enterprise customers that require formal compliance.