Kumar Ashwin

[email protected]

Senior Security Engineer

Remote

Part of the AI Security pod, securing AI systems and agentic platforms alongside the Base blockchain stack.

  • Led MCP security risk reduction efforts across the organization; authored a comprehensive MCP security review runbook and translated it into an autonomous security review agent for evaluating MCP integrations at scale.
  • Performed security reviews and adversarial testing of internal AI tooling including n8n, LibreChat, AgentCore, and other agentic platforms; led the n8n security posture initiative by building a security roadmap and authoring multiple guardrail auto-enforcement proposals for AI workflows.
  • Built an autonomous security review agent for Glean agents to assess risks in agents being created and shared organization-wide.
  • Authored adversarial security case studies on emerging technologies under evaluation for adoption, identifying critical security gaps and missing guardrails before org-wide rollout.
  • Contributed to the AI AppSec reviewer platform by updating review workflows, developing and maintaining the agent harness, and performing end-to-end security and functional assessment of the platform.
  • Conducted security reviews and threat modeling (STRIDE) for products, platforms, vendor integrations, and features; produced security requirement reports and collaborated with engineering teams on remediation feasibility. Notably, led the security review of the Base unified stack’s offchain components, uncovering critical security issues.
  • Led the audit competition for the Base unified stack release.
  • Partnered with the vulnerability management team to drive reduction of stale security requirements and co-developed an AI-powered automated triage process for security requirement tickets.
  • Built a security review program metrics dashboard to measure program efficiency, effectiveness, and AI-specific cross-cutting metrics.
  • Authored internal technical design documents and maintenance guides now used as paved-path references across engineering teams.