Nicholai
Security researcher and engineer
AuvaLabs is the independent security research and engineering lab through which I build ThreatWatch and RedBlue.
Primary work
project details →Core expertise
about my work →Threat intelligence
Turning public reporting and structured data into useful intelligence with clear evidence and provenance.
Exposure management
Building authorised, scope-aware workflows for understanding an organisation's external attack surface.
Detection engineering
Connecting adversary behaviour to telemetry, testable detections, and measurable coverage gaps.
Selected build notes
view build journal →ThreatWatch Evidence Quality
The latest journal entry focuses on improving evidence quality, collection resilience, and the connection between ThreatWatch findings and RedBlue workflows.
Evidence-Based Vulnerability Triage
ThreatWatch continued improving vulnerability prioritisation by combining severity with exploitation evidence and authoritative catalogues.
AI Security and Changing Threat Economics
Research into automated vulnerability discovery raised new questions about how quickly defensive priorities may need to adapt.