Lead Application Security Engineer
CurrentResponsible for leading application security for Moodle LMS. Some of my responsibilities include managing the security backlog, setting up and running our current Vulnerability Disclosure Program and past bug bounty program, triaging incoming security reports, assisting with patches, responsible communication/publication of fixed issues, and investigating and implementing security tooling. I also liaise with other teams internally (including leading our Products department’s Application Security Chapter) as well as the wider Moodle community.