Skip to content
View mlinarik's full-sized avatar

Block or report mlinarik

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
mlinarik/README.md

πŸ‘‹ Hi, I’m @mlinarik

πŸ›‘οΈ Application Security Product Owner | Cybersecurity Professional | Security Advocate

I lead the charge in building, scaling, and optimizing Application Security programs that protect enterprise applications from code to cloud.
With experience spanning SAST, DAST, SCA, CWPP, WAF, and AI-driven security initiatives, I partner with developers, architects, and leadership to integrate security seamlessly into modern application development lifecycles.


πŸ” What I Do

  • Secure the SDLC – Embedding security from ideation to deployment
  • AppSec Strategy – Aligning security controls with business objectives
  • Tooling Leadership – Managing and scaling platforms like Checkmarx, Snyk, Veracode, NexusIQ, Prisma Cloud
  • Developer Empowerment – Driving security adoption via IDE plugins, CI/CD integration, and gamification
  • Risk Reduction – Leveraging AI, automation, and analytics to identify and mitigate vulnerabilities faster

🧠 My Technical Arsenal

Domain Skills & Tools
Application Security SAST, DAST, SCA, RASP, IAST
DevSecOps GitHub Actions, Azure DevOps, Kubernetes Security
Cloud Security AWS, Azure, Container Security
Programming & Scripting Python, Bash, PowerShell
AI in Security ML-based risk scoring, LLM security research

πŸš€ Current Focus

  • Exploring AI-enhanced vulnerability detection
  • Building frictionless developer security experiences
  • Improving cross-team collaboration for secure delivery
  • Championing β€œshift-left” security culture

πŸ“ˆ Highlights & Achievements

  • Led enterprise rollout of SAST & SCA tooling across 1,000+ repositories
  • Reduced high-severity vulnerabilities in production by 45% within 12 months
  • Presented at internal security summits and led executive AppSec briefings
  • Collaborated with vendors to influence next-gen AI-powered security features

🎯 Professional Philosophy

Security should be an enabler, not a blocker. My mission is to make secure development the easiest path forward.


Fun Fact: I’ve broken more applications in testing than most hackers have in production β€” and I’m proud of it. πŸ˜‰

Popular repositories Loading

  1. steamcmd steamcmd Public

    Forked from CM2Walki/steamcmd

    Dockerfile for automated build of a SteamCMD installation: https://hub.docker.com/r/cm2network/steamcmd/

    Dockerfile 1

  2. ESP32BluetoothJammer ESP32BluetoothJammer Public

    Forked from stuartbnz/ESP32BluetoothJammer

    Code for custom made Bluetooth jamming device

    C++ 1

  3. wrongsecrets wrongsecrets Public

    Forked from OWASP/wrongsecrets

    Vulnerable app with examples showing how to not use secrets

    Java 1

  4. DO288-apps DO288-apps Public

    Forked from RedHatTraining/DO288-apps

    Mustache

  5. docker-minecraft-server docker-minecraft-server Public

    Forked from itzg/docker-minecraft-server

    Docker image that provides a Minecraft Server that will automatically download selected version at startup

    Shell

  6. cloudsploit cloudsploit Public

    Forked from aquasecurity/cloudsploit

    Cloud Security Posture Management (CSPM)

    JavaScript