Eric Y.

Senior Software Engineer

Espoo, Finland

Experience

Aug 2023 - Present
2 years 3 months

Senior Software Engineer

AppDrawn Software Development

  • Developed secure, cloud-native full stack applications using .NET, React, and Azure, embedding encryption, authentication, and automated security scanning across CI/CD.
  • Designed AI model testing and monitoring pipelines using Python and Docker to identify vulnerabilities and assess model consistency and ethical compliance.
  • Built automated test harnesses for API and data validation, improving accuracy and reproducibility of AI system evaluations.
  • Implemented container-level hardening and runtime scanning using Docker Bench and Aqua, reducing attack surface by 40%.
  • Collaborated with AI teams to conduct red-teaming of LLMs and RAG pipelines, simulating prompt injection and data exfiltration attacks.
  • Created IaC modules with Terraform/Bicep to deploy secure multi-tier architectures in Azure for model hosting and testing environments.
  • Led internal AI safety audits, producing actionable reports on data privacy, adversarial risks, and compliance alignment.
  • Automated log analysis and vulnerability reporting using Python and Bash scripting, enabling proactive threat detection.
  • Provided mentoring and security training to developers on OWASP Top 10 for LLMs and secure software lifecycle principles.
Feb 2021 - Jul 2023
2 years 6 months

Software Engineer

Devlane

  • Built CI/CD pipelines for AI evaluation workflows, integrating GitHub Actions and Docker containers for reproducible test environments.
  • Conducted penetration tests on APIs and model endpoints, identifying key exposure points in multi-service deployments.
  • Integrated automated unit, fuzz, and performance testing frameworks into AI microservices.
  • Developed Python-based scripts for data validation, prompt testing, and simulated model adversarial inputs.
  • Improved model inference pipelines by optimizing container orchestration and caching mechanisms, increasing efficiency by 25%.
  • Supported DevSecOps initiatives by embedding SAST and DAST tools into continuous delivery workflows.
Nov 2019 - Jan 2021
1 year 3 months

Full Stack Developer

Code Runners

  • Built secure backend APIs and frontends using .NET Core and Angular with multi-factor authentication and encryption.
  • Implemented role-based access control (RBAC) and secure session management for enterprise applications.
  • Deployed containerized services with Docker and Azure App Services, ensuring security compliance and scalability.
  • Automated vulnerability scanning and integrated Snyk and SonarQube checks into build pipelines.
  • Assisted in threat modeling and code reviews, ensuring each release adhered to security best practices.
  • Delivered detailed documentation for secure configuration, deployment, and patch management procedures.
Mar 2016 - Oct 2019
3 years 8 months

Junior Full Stack Developer

KMS Technology

  • Supported development of full stack web applications using C#, ASP.NET, and Angular, focusing on secure design and data protection.
  • Wrote PowerShell and Bash scripts to automate application deployment and log analysis tasks.
  • Implemented input validation, sanitization, and encryption to reduce injection and privilege escalation risks.
  • Participated in Agile sprints with emphasis on test coverage, CI/CD optimization, and documentation accuracy.
  • Conducted basic security testing on internal web apps using Burp Suite and OWASP ZAP.
  • Assisted senior engineers in container setup and monitoring on AWS and Azure test environments.

Summary

Innovative AI and Full Stack Engineer with 8+ years of experience in software engineering, cybersecurity, and automation, combining expertise in Python, .NET, AI/ML security, and DevOps pipelines to build, test, and harden intelligent systems. Skilled at red-teaming AI models, designing secure coding frameworks, and developing CI/CD-driven test automation for cloud-native environments. Passionate about advancing GenAI reliability, model safety, and reasoning performance through rigorous testing and creative adversarial evaluation.

Languages

English
Advanced

Education

Sep 2014 - Apr 2016

University of Liverpool

Master of Computer Science · Computer Science · United Kingdom

Sep 2010 - Mar 2014

Dai Nam University

Bachelor of Computer Science · Computer Science · Viet Nam

Certifications & licenses

Microsoft Certified Azure Security Engineer Associate (AZ-500)

Microsoft

Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions