AI Security Gateway

OpenAI-compatible reverse proxy: inbound threat detection, reversible DLP, routing, and evals. MSc thesis deposited (pending defense).

AI Security Gateway playground with per-request security controls

Drop-in middleware between apps and any LLM provider. Pipeline: sanitisation and OWASP-style filters, LLM-as-judge in parallel with DistilBERT, bilingual DLP, then LiteLLM routing. Evaluation battery 17/17 PASS; ~175 pytest. Repo: github.com/r4fik1/ai-security-gateway.

Vault Key Ceremony CLI

High-assurance rekey / generate-root as a tested Go product, with GPG and YubiKey human gates.

Enterprise Vault operations that used to live in tribal shell scripts: one cross-platform binary, health and token checks, coverage gate ~95%, SSDLC in CI. Internal Swisscom tooling — no public repo.

Security Transparency

From team-level metrics to a scheduled data product for leadership — without spreadsheet archaeology.

Marcos Martín Marcos Martín

Python pipelines (Parquet, object storage, scheduled BI) covering training, assessments and vulnerability posture. Fail-closed publishes; cloud access via short-lived OIDC, not long-lived keys.