Casey
Silver
Security engineer building defenses for software supply chains and AI agents. Currently working on Agent Security at OpenAI.
The best security controls are paved into the path—measurable, enforceable, and difficult to route around.
Building a Cloud Agentic SWE Loop
What an event-driven, test-gated software engineering loop looks like—and what it still needs to become production-ready.
Defending against malware in your software supply chain
A practical control hierarchy for dependencies, builds, credentials, provenance, deployment, and incident response.
The Tool Problem in AppSec
Why more scanners rarely add up to better security—and how to reason about coverage, signal, and operational cost.
Securing Code & Applications in the Age of AI
AI is increasing development velocity and risk at the same time. Security teams can use the same leverage to keep pace.
02 / PUBLISHED WORK
Research that moves from threat model to implementation.
MASTER'S THESIS
Mitigating real-time relay phishing attacks against mobile push notification based two-factor authentication systems
A working reference system, adversarial test, and usability analysis for identifying real-time MFA relay attacks.
Read at JMUPALANTIR / SSCS SERIES
Securing the path from source to deployment.
Work from the software supply-chain security program I led, published as a four-part field guide to threat modeling, source control, provenance, and enforcement.
03 / INVENTIONS
Security systems made concrete.
Listed inventor on four granted U.S. patents and one published application spanning operational technology, control systems, IoT, and software provenance.
04 / EXPERIENCE
A career following the attack surface forward.
- 012026—NOW
OpenAI
Agent Security
Building defenses for increasingly autonomous agents: sandboxing, managed network access, controlled credentials, policy, and agent-aware monitoring.
- 022025—2026
Auger
Security Lead
Built the security program and team for an AI-native supply-chain company, spanning product, infrastructure, incident response, and compliance.
- 032020—2025
Palantir
Application Security Engineer
Led software supply-chain security work across source, build, provenance, deployment, and product threat modeling at enterprise scale.
- 042016—2020
Mission Secure
Founding Engineer / Product Architect
Built security technology for industrial control and operational technology environments, from full-stack systems to product architecture.
05 / BUILDING IN PUBLIC
Code, prototypes, and reference systems.
Public work spans the PushValidator MFA research suite and a decade of full-stack projects across JavaScript, Swift, and C#.
06 / SPEAKING
Making hard security systems legible.
Talks and conversations on agent security, application security, industrial systems, and the software supply chain.