Free resources
Resources for teams shipping AI
Practitioner-grade tools you can use today. Most are open, no email required.
OWASP Agentic Top 10 contributor ยท CISSP ยท PhD ยท 15+ years enterprise security
Free, open resources
Checklists, guides, and tools. No login, no email gate.
Agent Security Scorecard
Interactive tool. Score your agent deployment in the browser. No login.
Open โ PDF guideAI Agent Security Field Guide
20+ page guide to securing AI agent systems end to end.
Open โ ChecklistAgent Pre-Deployment Security Checklist
A 5-page checklist to run before you ship an agent to production.
Open โ Checklist5 Ways AI Breaks Threat Modeling
A 6-page checklist for extending threat modeling to AI systems.
Open โ ChecklistAI Agent Identity Readiness Checklist
A 5-page checklist for identity and access in agent systems.
Open โ RubricAI Agent Containment Rubric
A 5-page rubric for scoping what an agent is allowed to do.
Open โWriting
Deep dives on LLM and agentic security, published on my personal blog.
- Most teams deploying AI agents are exposed. Here's the proof.
- 7 AI security checks before production
- The right AI security framework depends on the question you're asking
- How a malicious MCP server can drain your database in 5 steps
- 5 ways AI systems break traditional threat modeling
Want a second set of eyes on your AI system?
A short call is the fastest way to figure out whether I can help.
Book a 30-minute scoping call