Application security engineer. I break things to find out how they fail, then help teams fix them before someone less friendly finds the same path in.
- 🔍 Four years across client security assessments, web and API penetration testing, and building security into CI/CD
- 🏗️ Building Modiom, continuous artifact-driven threat modeling for systems that change faster than their documentation does
- 🐞 Author of VVMA, a deliberately vulnerable API covering the OWASP API Top 10
- 🏆 Top 5 globally for Wicked6 PlayCyber Women's Global League 2024
- 🤝 Co-founder of The AppSec Network and ShieldXHack
- ✍️ I write at abigailajohn.github.io and on Medium
- 🌱 Currently digging into AI offensive security and secure code review

