Abdullah Siddique
Senior AI Engineer specializing in Cybersecurity — Secure Agentic Systems, LLM Security & AI Governance | OSCP, OSEP
About
Full-stack builder with a rare trajectory: Law → Finance → Cybersecurity → AI Engineer. Ship agentic systems to production — LangGraph multi-agent architectures, LLM platform engineering, AI governance, and hardened security layers: secure agent execution, defense-in-depth authorization, and audit trails. OSCP/OSEP-certified offensive-security practitioner who red-teams the systems he builds — prompt injection defense, agent authorization, and DLP for AI data flows. Founder of Be Human Company and JSWAI Services, based in Vancouver.
Awards and Certifications
CORE Award Winner - December
CORE Award LinkedIn PostOffensive Security Certified Professional (OSCP)OSCPPenetration Testing
Verify CredentialOffensive Security
Offensive Security Experienced Penetration Tester (OSEP)OSEPAdvanced Evasion
Verify CredentialOffensive Security
Work Experience
The Be Human CompanyVancouver, BCPart-time
Co-Founder & CTO / Chief AI Officer
JSWAI ServicesUSA (Remote)Contract-Part Time
Principal AI Engineer
Polymer Runtime Data SecurityNew York, USA (Remote)Contract
Senior Python Developer
OffSecNew York, USA (Remote)Contract-Full Time
Software Engineer L2 – AI Innovation & Development
OffSecUS (Remote)
Student Mentor - Technical Services
Pakistan Stock ExchangeKarachi, PK
Data Vending Officer — Product and Research
Education
Lahore University of Management Sciences
Institute of Business Management
Skills
Projects
AI Governance Audit Framework
Auditor-ready framework for Canadian SMEs: 65 controls over 8 domains in one YAML spine driving both the document kit and a scoring CLI that emits a 0–100 maturity score, domain heatmap, top-10 remediation, and PDF report — plus an ephemeral sandbox that runs a triage agent in isolation and logs its own teardown as deletion evidence.
Monet — Multi-Agent AI Platform
Supervisor agent orchestrating knowledge retrieval, experience creation with human-in-the-loop approval, and Wren-backed natural-language-to-SQL insights for Monetate. Dual-JWT auth with feature-flag capability gating and a LangSmith eval harness.
OffSec Recommendations Engine
LangGraph state machine that converts natural-language queries into team training plans — MCP-sourced account coverage, LLM gap analysis against MITRE ATT&CK, and lab assignment, with post-extraction authorization and account-scoped caching.
OffSec KAI
AI mentor for OffSec learners: routes exercise-specific versus content questions, gives step-by-step lab guidance, answers from course material via Pinecone RAG, and tracks objective progress with Postgres-checkpointed conversations across PEN-200, SEC-100, and SOC-200.
OffSec OSCAR
Generative AI support chatbot for OffSec learners and customers, handling inquiries, orders, registrations, and resource guidance.
AI Gateway
LangGraph-SDK-compatible API server — threads, runs, and assistants endpoints — hosting the KAI tutoring graph with Prisma-backed checkpointing, async run execution, and LangSmith tracing.
Slack QL Agent
Claude-powered Slack bot that answers plain-English questions against production MySQL: read-only SQL generation, chart rendering, CSV export, thread-scoped memory, and a dashboard for tool calls, token usage, and cost.
oh-my-dcode
Multi-agent orchestration layer ported to LangChain Deep Agents — a supervisor that plans, delegates to specialized sub-agents, routes each sub-task to a right-sized model, and verifies results before completion. Published to npm.
TrustCallJS
TypeScript port of trustcall: validated tool calling and extraction with retries. Uses JSONPatch to repair LLM validation errors on deeply nested schemas and to update existing records without information loss. Published to npm.
assistant-ui-vue
Vue 3 port of assistant-ui — composables and components for building AI assistant interfaces, with integrations for the Vercel AI SDK, LangGraph, and custom backends.
Deep Agents (contributor)
Contributor to LangChain's Deep Agents harness — fixed the NestJS async-subagent example's dependencies and runtime so it starts cleanly.
Polymer Runtime Security
Runtime PII detection and anonymization for data flowing through AI systems.
OffSec Hints Bot
Discord bot providing graduated hints for PEN-200 labs and SOC-200 challenges to thousands of students in the OffSec community.
Autopwn Framework
Automated exploitation framework used to test and validate OSCP and OSEP exam infrastructure end to end.
Press ⌘J to open the command menu