I work on projects in program analysis and adjacent areas, with a special interest in supply-chain security. Much of my recent work has involved combining machine-learning techniques with more traditional approaches.
I joined GitHub in 2019 as part of the acquisition of Semmle, where I previously worked on what's now known as CodeQL.