Skip to content
About
Who you work with

One operator. Whole system.

I am a multidisciplinary builder working at the intersection of product engineering, growth systems, infrastructure economics, and application security. I design, test, and harden systems that have to survive production, not just look good in a strategy deck or a scanner report.
Document
Operator
Nyxx
Base
Las Vegas, NV
Practice
Build · Secure · Scale
Engagements
Retainer or milestone
Security
practice
Security + vulnerability research

Builder turned breaker.

My security work comes from building production systems first: applications, APIs, authentication, databases, infrastructure, payments, and deployment pipelines. That engineering background shapes how I approach offensive security.

I do not stop at whether a vulnerability can be reproduced. I want to know why the system permitted it, which adjacent components share the same failure mode, how to remediate the root cause, and what control keeps it from returning.

The work includes application-security assessment, vulnerability research, authorized penetration testing, source-assisted review, threat modeling, security architecture, and remediation.

What I do
and what it changes
Approach

I approach engineering like an operator: balancing build velocity with maintainability, and tying technical decisions back to unit economics, retention, and risk. Whether you are preparing to launch, refactoring before growth arrives, or installing the systems needed to scale, the goal is to move faster with fewer expensive mistakes.

Outcomes I drive
  • Scale-ready architecture: Postgres-first, resilient APIs, sane boundaries
  • Cost governance: identify drivers, measure ROI, stop infrastructure bleeding
  • Security posture: assessment, adversarial validation, remediation, hardening
  • Growth systems: events, analytics loops, discovery and ranking inputs
  • Shipping cadence: instrumentation, release playbooks, fast unblocks
How I work
  1. 01
    Discovery

    Goals, traffic expectations, threat model, cost ceiling, timeline.

  2. 02
    Architecture & data plan

    System of record, event model, boundaries, and explicit non-goals.

  3. 03
    Implement & instrument

    Ship in increments with the telemetry to measure performance and cost.

  4. 04
    Harden

    Load testing, query budgets, caching ROI, security sweeps, runbooks.

  5. 05
    Scale

    Add complexity only when the product has earned it.

Contact

Show me the system.

Send a short note with your stage, stack, and what is stuck. I reply with next steps.