I build data science and ML systems end to end, then ship them. Feature engineering, calibration, validation, the unglamorous work that decides whether a model is actually useful. By day, I'm a security engineer building Python forensic automation and applied LLM workflows over high-volume operational and behavioral data.
Currently exploring: regime-aware recalibration, LLM grounding, and time-aware validation patterns for production model bundles.
|
MITRE ATT&CK triage Free-text incidents β calibrated triage cards via hybrid classifier + LLM rationale |
RΒ² 0.615 PRA holdout Calibrated regressors, time-aware validation, regime-aware bundles (n_test 43K) |
4 pluggable backends OpenAI Β· Anthropic Β· Hugging Face Β· local llama.cpp β structured extraction & rationale |
π HooplyticsPython Β· scikit-learn Β· pandas Β· Streamlit End-to-end NBA analytics. 60+ leakage-safe features, 8 calibrated regressors, regime-aware playoff bundle swap, live odds, printable PDFs. PRA holdout β RΒ² 0.615 Β· n_test 43K |
π KoNotesPython Β· Streamlit Β· LLMs Β· NLP Local-first AI-assisted knowledge analytics. Converts Kobo and Kindle annotations into structured, queryable insight with explainable, rule-based recommendations. |
π macos-trustPython Β· CLI Context-aware macOS trust assessment. Fast evaluation of apps, launch items, and system controls with low false-positive design. |
| ML / Modeling | scikit-learn, classification, regression, calibration, time-aware validation, residual diagnostics, threshold tuning |
| Python data stack | Python, SQL, pandas, NumPy, statistical reasoning, EDA, reproducible Jupyter workflows |
| Applied AI | LLM summarization, structured extraction, text classification, AI-assisted triage and case reporting |
| Query & detection | SQL (incl. Snowflake), KQL, Splunk SPL, query optimization, detection-as-code (Panther) |
| Security domain | telemetry analysis, forensic automation, investigation analytics, control monitoring |
| Delivery | Streamlit dashboards, Typer CLIs, joblib model artifacts, ReportLab reports, REST APIs |




