Redesigning Policy Management
2025-2026
Redesigning how compliance teams draft, renew, correct, and distribute policies in Rippling while working with the existing models in a live product.
2025-2026
Redesigning how compliance teams draft, renew, correct, and distribute policies in Rippling while working with the existing models in a live product.
2025
Reworking a compliance detection pipeline from write-heavy dependency updates into domain events, enriched payloads, and a maintained read model.
Aug 2025 hackathon
A hackathon prototype that turned plain-English questions into query formulas by constraining an LLM with query-engine context.
2025-2026
Bringing Rippling's identity and access report data into Automated Compliance so provisioning and access-review monitors could use the right source of truth.
2025
Separating compliance-framework content from application releases, with CSV ingestion, schema validation, and tooling for target environments.
2024
Extending a Go-based compliance data bridge so AWS resource evidence could flow through shared extractors instead of one-off ingestion paths.
2024-2025
Wiring Rippling's reporting engine into Automated Compliance so monitors could use report-backed evidence instead of waiting on manual uploads.
2024-2025
Leading monitor-side engineering for compliance evidence: report-backed checks, recurring manual collection, and evaluation paths.
2024
Two engineering-loop projects: decoupling shared detection code from cross-team imports and replacing invalid test setup with preseeded fixtures.
Q4 2023-Q1 2024
Integrating Automated Compliance with company permission profiles so full admins, partial admins, and auditors got predictable access behavior.
2023
Automating translation-key generation and stale-key cleanup so Automated Compliance engineers no longer had to maintain JSON by hand.
2022
Rolled out compromised-password checks across Rippling with a phased migration for existing password-auth users.
2022
Implemented the critical path for adaptive verification at Rippling: targeted risk checks, step-up verification flow, rollout scoping, and cleanup after a two-week first release.
2022
Identity work connecting sign-in detections to audit logs, improving password recovery, and making auth changes easier to test and roll out.