Skip to main content

beep boop software security

Senior Product Security Engineer at DigitalOcean

Securing the software supply chain and driving best practices

Activity

Active on:com.publicdomainrelay.temp.compute.config.wif.simplecom.publicdomainrelay.temp.market.bidcom.publicdomainrelay.temp.compute.vm

Loading activity...

View full activity

Career: 8

Senior Product Security Engineer

DigitalOcean

Apr 2025 - Present

Security Platform team lead focusing on security engineering and secure by-default support for engineering teams.

Infrastructure and DevOps Architect

Intel Corporation

May 2022 - Sep 2024

Methodologies for and implementations of mutating workload identity as GenAI tech lead. Contributed to Open Source and internal Software Supply Chain Security specs, code, and roll outs. Saved over 540 million dollars co-leading and participating in the development of CI/CD and InnerSource decisions and implementations during corporate initiative to align methodologies (2020 - 2024).

Cloud Orchestration Software Engineer

Intel Corporation

Apr 2021 - Apr 2022

Contributed to architecture definition and implementation of CI/CD for server platform validation.

Open Source Security Software Engineer

Intel Corporation

Jun 2018 - Dec 2021

Product Security Expert. Security consulting on software architecture. Guides projects through Intel’s Security Development Lifecycle (2017 - present). Security validation for various Intel products. Leads an international team of contributors working on Data Flow Facilitator for Machine Learning. Developed paravirtualized control register protection patchset for Linux and KVM. Applied machine learning to evaluate open source software packages on secure development practices, streamlining dependency review for all of Intel. Co-Maintainer of cve-bin-tool, a tool used to scan binaries for known CVEs. Mentored via Google Summer of Code program for DFFML and CVE Bin Tool (2019 - 2022, 2021).

Open Source Security Intern

Intel Corporation

Jun 2016 - Jun 2018

POC showing leaked addresses allow for bypassing of Kernel Address Space Layout Randomization (KASLR) to achieve privilege escalation in the Linux kernel. Created demo showcasing Intel’s container virtualization to defend against host kernel exploits. Fuzz and penetration testing, integration with OSS Fuzz, of Intel and Open Source projects. Wrote penetration testing documentation and provided guidance to the team on how to perform pentesting.

Android QA Intern

Intel Corporation

Jun 2014 - Jun 2016

Created a PHP + MySQL application to log, track, produce reports, and chart success of test results for Android on Intel Architecture. Developer of Distributed Android Testing system, deployable to many physical hosts using Docker. Allows many devices to be tested at once, logs available across hosts, and physical robot automated or software UIautomator tests execute the same across devices. Updated codebase of the Intel Android Telemetry project to work with Android Marshmallow. Modified client side daemons and applications, server side and database components, and production infrastructure.

Coach

Five Rings Jiu Jitsu and Fitness

2012 - Dec 2015

Coach for Junior and Little Samurai classes 16 to 4 years old. Great gym and great coaches I've been with them for many many years. Fitness classes as well as Jiu Jitsu.

Intern

Bonneville Power Administration

Jun 2013 - Aug 2013

Worked in the IT Project Management Office Centralized Project Management Metrics using excel and SharePoint to ease the process of portfolio manager reviews and identify problem areas in portfolios and projects.

Education: 1

Portland State University

Bachelor's degree

2014 - 2018

Publications: 4

Blog4 articles

Compute Contracts

john.leaflet.pub

May 2026
Sep 2025
Sep 2025

APIs

john.leaflet.pub

Aug 2025

Volunteering: 1

Mentor

Python Software Foundation

Mar 2019 - Present

DFFML has been a suborg under the Python Software Organization during Google's Summer of Code since 2019. We meet every week for a group hands on sessions where mentors provide feedback to students on their work, we work through problems as a group, and plan future work. Outside of meetings mentoring involves reviewing student work, having 1:1's with students, and working to unblock their progress by fixing issues out of student's scope which we're not identified in the proposal phase.

Awards: 1

Member of Urban Honors College at Portland State University

Jun 2014

Currently enrolled in Honors courses at PSU

Languages: 3

English(Native or bilingual)
Danish(Limited working)
Spanish(Elementary)

Skills: 10

Technical

Assembly LanguageCC++DockergolangHTML5JavaScriptPython

Other

Embedded Operating SystemsLinux Server