Physical AI, Edge Systems & DevSecOps Architect
Hands-on Systems Engineering • Python • Go • C/C++ • Kiosk Fleet Ops • Supply-Chain Security
(Isaiah 40:31)
Principal Engineer and Architect with 27+ years of experience building production systems, zero-trust cybersecurity, and cloud-native architectures across cloud, on-prem, and edge environments.
At LiveX AI (Feb 2026 – Present), I lead security, platform, and edge systems for Physical AI agents—covering security operations across 86 repositories, DevSecOps pipelines, Windows kiosk and fleet management (TeamViewer patch pipeline on 158 endpoints, CrowdStrike Falcon + RTR), SBOM supply-chain security (Anvil → GCS → LiveX Ledger / OWASP Dependency-Track), and Cloud Run Jobs migrations.
Previously at Netskope (Aug – Oct 2025), I architected C++ Secure Web Gateway (SWG) dataplanes for SASE/SSE with GenAI protocol inspection, built containerized ARM64 CI/CD pipelines reducing build times by 95% (4h → 9min), and implemented the C++ Dataplane Event Nexus (DEN) with ZeroMQ & gRPC/Protobuf.
Engineered the central security-operations system processing Vanta, GitHub, GCP, Trivy, Semgrep, tfsec, and Nuclei/ZAP DAST signals into deduplicated Jira issues and Slack alerts across 86 repositories. Deployed TeamViewer Patch Management across 158 Windows kiosk endpoints with zero failures and shipped LiveX Anvil 2.1.0 GA mini-PC bundles with CycloneDX SBOM integration into LiveX Ledger.
Architected C++ SWG dataplane components for SASE/SSE with GenAI protocol inspection. Accelerated ARM64 Docker build pipelines from 4 hours down to 9 minutes (-95%) using GitHub Actions and Artifactory. Built the C++ Dataplane Event Nexus (DEN) over ZeroMQ and gRPC for high-throughput DLP event streaming.
Designed and deployed microservices in Python/Node.js for ransomware detection and full-content analytics across AWS ECS/EKS with Terraform/Terragrunt. Authored 5 patents covering cloud cybersecurity and cross-federation licensing models.
Architected GCP & F5XC cloud-native proxy microservices in Python and Go for Integrated Bot Defense. Migrated SDC build infrastructure to GitLab CI/CD & ArgoCD (-40% deployment time) and integrated HashiCorp Vault secrets management for multi-tenant compliance.
Architected network layer isolation leveraging ISC DHCPD, Secure DNS, and Python. Built secure backend microservices on AWS and GCP using Elasticsearch, MySQL, and Kubernetes.
Software Engineer – Security, Platform & Edge Systems for Physical AI Agents
Palo Alto, CA • Full-time · On-site
Co-Chair & President
Saratoga, CA · Hybrid • viaifoundation.org | viaiforgood.org
Principal Engineer
Santa Clara, CA · On-site
Principal Engineer
San Jose, CA
Principal Engineer
San Jose, CA
Principal Engineer
Santa Clara, CA
Senior Staff / Staff Software Engineer
Santa Clara, CA
Founding Vice President & Director of IT and Information
Lecturer
Hangzhou, China
Researched at the NSF FREEDM Systems Center on FREEDM DGI (Distributed Grid Intelligence), focusing on big-data analytics, embedded Linux systems, network protocols, TCAD power device simulations (ETO), and power system modeling.
Researched IC Physical Design Automation placement algorithms (Sequence Pair methodology), digital/analog integrated circuit design, and EDA tool development.
Studied Microelectronics, Chinese Character Recognition, Digital Map Systems, and IBM Lotus Notes/Domino Systems. Served as President of ZJU Computer Fans Association (3rd Branch).