01
Primary practice
AI Engineering
Designing agentic workflows, retrieval systems, evaluation loops, and model-powered products that move beyond demos.
Dubai · building at the AI × systems boundary
$ whoami
Senior AI Engineer in Security at Deriv
I work across agentic AI, LLM infrastructure, backend architecture, and evaluation—turning promising models into systems that can reason, coordinate, and operate reliably.
01 / ENGINEERING PROFILE
AI is the work. Computer science is the foundation. Security is the constraint that makes the system trustworthy.
01
Primary practice
Designing agentic workflows, retrieval systems, evaluation loops, and model-powered products that move beyond demos.
02
Engineering depth
Building the APIs, data flows, services, and storage layers that make intelligent software dependable at production scale.
03
Applied lens
Applying adversarial thinking, observability, and controls to agent behavior, software boundaries, and real attack surfaces.
$ system.pipeline
02 / SELECTED WORK
Projects that show range across model behavior, systems thinking, developer tooling, and applied security.
A machine-learning security operations platform that turns heterogeneous telemetry into prioritized, explainable investigation context. Source-aware feature and model pipelines preserve the behavior of each signal domain instead of forcing every event through one generic detector.
A host-level policy layer for autonomous agents. LobsterLock attaches to an unmodified OpenClaw gateway at the Node.js runtime boundary, intercepting command execution, network calls, and filesystem access before they cross a risky edge.
A platform for creating AI agents, multi-agent teams, and custom tools from natural language, with one-click deployment and the OpenAI Agents SDK.
An LLM-powered data pipeline for migration, parsing, and natural-language querying with retrieval-augmented generation.
Case study / private buildA multi-agent financial advisory system for portfolio analysis, market-trend reasoning, and personalized recommendations.
Case study / private build02.1 / SECURITY RESEARCH
Published vulnerability research across widely deployed software, handled through coordinated disclosure.
Reported a cache-isolation flaw in Electron’s custom protocol handling. Under affected configurations, an upstream response could be reused across otherwise isolated session partitions.
Discovered a heap-buffer-overread in the IFF decoder involving crafted files with Z-buffer data. The issue was fixed through coordinated disclosure.
02.2 / OPEN SOURCE
Selected public builds and contributions accepted into external codebases.
Security harness
Fixed repository-basename collisions in batch scans by preserving owner and repository identity across checkout, logs, results, and resume state.
View merged PRAgent security observability
Added structured network-egress telemetry with query filters, blocked-call counts, alert surfacing, OpenTelemetry counters, and optional Splunk forwarding.
Model internals
An interactive tool for exploring transformer components, attention mechanisms, and token representations through a lightweight BERT model.
View source03 / EXPERIENCE
A progression through databases, backend engineering, applied ML, and production AI—with security increasingly embedded in the work.
Deriv · Dubai
Joined as an intern and continued across three roles in the security team.
Building agent-security controls, supply-chain defenses, and anomaly detection for internal systems.
Worked across security operations, AI-assisted testing, and data-loss-prevention projects.
JetSynthesys · India
Built NLP systems for brand tonality, created an OpenAI-powered nutritional database with a 95% cost reduction, and researched biomarker applications with MedGemini.
xPERT BPDC Programme
Designed a scalable quizzing-platform architecture using Firebase and Flask.
Cybage Software · India
Prototyped a Spring Data Flow pipeline using Spring, PostgreSQL, RabbitMQ, and REST services.
Force Motors · India
Designed an employee-correspondence database, improved retrieval speed by 35%, and built a Java-based OCR prototype.
04 / SIGNALS
Research, teaching, competition, and open-source work—evidence of curiosity under different constraints.
Research
ChatGPT and the Social Media Echo: A Sentiment Analysis, presented at MoSICom 2023.
Teaching
Returned to BITS Pilani Dubai to speak with an LLM/AI class about codebase-aware AI tools and how software-development workflows are changing.
Building
2nd place · $5K for a natural-language platform that creates and deploys agents, multi-agent teams, and tools.
Computer science
UAE winner · global nominee in the 2023 challenge, among more than 5,500 teams globally.
$ cat competitive-signal.log
Security is one proving ground—not the whole identity.
3rd place · Cyber Security Council
2nd UAE · 12 / 415 across MEA, Türkiye & Africa
Project Nightfall · 122 / 126 challenges · 75,200 points
Rank 56 / 1,539 · 6 of 22 challenges
Rank 294 · three-person team · 83 / 136 challenges
05 / TRAJECTORY
The throughline has always been the same: understand the machine, then build something ambitious with it.
Foundations
Started with small programs and websites, learning how instructions become behavior.
Core CS
Moved into algorithms, object-oriented design, and the architecture behind larger programs.
Data systems
Built fluency in data, storage, backend services, and the pipelines connecting them.
Machine learning
Went from classical AI and CNNs to NLP, deep learning, and model internals.
Now
Engineering agents, tools, evaluation, and safeguards into useful end-to-end systems.
Education
BTech · Computer Science · CGPA 9.11
Away from the keyboard
FIDE-rated competitor, 3rd at the NYU inter-college tournament, and usually one move away from either clarity or panic.
06 / CONTACT
Always happy to compare notes on AI systems, infrastructure, or an interesting engineering problem.
palesharushit@gmail.com