Career Profile

I’m a staff security engineer focused on designing excellent, human-centered systems through first-principles thinking and iterative execution. I work across teams to help organizations navigate complex security risks, shaping architectures, and enabling others to deliver resilient solutions.

Experience

Staff Security Engineer (ICT5)

2020-06 - 2025-08
Apple

As a founding member of the Apple Services Engineering Security Team, I helped engineers understand and architect around risks to protect billions of users.

Key Accomplishments:

  • Lead the security program for Apple’s internal on-prem and multi-cloud infrastructure platform that provided secure building blocks for developers across Apple with a focus on: IAM services, multi-tenancy, credential management, leadership readouts, and industry benchmarking.
  • Developed the security review program to threat model Apple services and features
  • Built an API to track security criticality and maturity across ~1,000 services - Reviewed hundreds of internal and external services including: Apple Business Essentials, Schoolwork, Vision Pro, iCloud & Developer Console, Passkeys, APNs, XCode Cloud

Senior Product Security Engineer (Principal MTS)

2017-08 - 2020-05
Tableau/Salesforce via acquisition

I drove the security program for Tableau’s customer-facing, production services.

Key Accomplishments:

  • Architected and lead a cross-company production access management redesign
  • Wrote a security “state of the union” report reviewed by C- and VP-level executives that was used as the foundation for creating the Tableau Online security program
  • Represented security on multiple cross-company advisory groups; taught operational security principles at an lead engineers’ offsite; twice spoke at Tableau conference
  • Built a static analysis tool for Terraform to identify security issues in the CI/CD pipeline

Information Security Engineer

2014-12 - 2017-08
Tableau

Within Tableau’s Information Security team I was responsible for operational security. I primarily worked with the teams running our corporate systems to ensure they were adequately secured, and lead security incident response.

Key Accomplishments:

  • Redesigned and implemented the corporate Public Key Infrastructure (PKI)
  • Managed the corporate SSO platform and defined the program for secure AWS usage
  • Built security review, incident response, and risk tracking programs

EC2 Security Engineer

2012-10 - 2014-11
Amazon Web Services (AWS)

As a security engineer for one of the largest cloud providers in the world, I was responsible for improving our incident response capability, implementing projects to make AWS’ Elastic Compute Cloud (EC2) more secure for our customers, and acting as the EC2 point of contact for the AWS Compliance team. I’ve learned to build scale into every process, automating relentlessly.

Key Accomplishments:

  • Represented EC2’s technical controls in four SOC 2 and two PCI audits with no findings
  • Automated a manual review process of privileged commands run by EC2 engineers
  • Committed over 60k lines of code to automate common incident response, reporting, and abuse case tasks
  • Learned and taught my team new log diving techniques leveraging AWS services like Elastic MapReduce using Apache Pig scripts to gain further insight into our environment and to improve our incident response times

Security Consultant

2010-08 - 2012-09
Accenture, Washington D.C.

Working within Accenture’s Identity and Access Management (IAM) Security practice, I designed and implemented enterprise-wide security technologies such as endpoint protection and PKI. I was part of a small group working directly with the CISO of a civilian federal department. Through my time with Accenture, I’ve learned how to quickly build relationships, learn security technologies, and apply them to meet the business and compliance needs of a large organization.

Talks

A selection of public talks I’ve given

  • Securing Tableau Online: Protecting Data as a Service
  • Braxton Ehle, Anir Agarwal
    Tableau Conference 2019
  • Data-driven Security at Tableau
  • Braxton Ehle
    Tableau Conference 2016

    Education

    BS in Informatics

    2007 - 2010
    University of Washington

    Studied the intersection of people, technology, and information with a focus on information security

    Associate in Arts

    2005 - 2007
    Clark College

    Dual enrollment program