Skip to content
View ivproduced's full-sized avatar

Highlights

  • Pro

Block or report ivproduced

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
ivproduced/README.md

Hi, I'm Tevin πŸ‘‹

πŸ“ Maryland | πŸ”’ Security & Compliance Engineer | πŸ€– AI-Powered DevSecOps Builder

Python TypeScript JavaScript Node.js OSCAL NIST FedRAMP GitHub Copilot Docker AWS

Building AI-powered tools that bridge the gap between developers and federal compliance β€” turning weeks of security documentation into hours.


πŸš€ Current Projects

  • 🎯 ThreatCanvas β€” AI-powered STRIDE threat modeling with interactive attack surface visualization; describe your architecture in plain English β†’ get risk-ranked findings, kill chain mapping, and mitigation recommendations powered by GitHub Copilot SDK
  • πŸ”„ OSCALFlow β€” GitHub CLI extension that automates OSCAL compliance documentation; generate FedRAMP-ready SSPs from your codebase in seconds
  • πŸ€– D.A.V.E β€” AI-powered compliance automation engine using Google Gemini; analyzes evidence artifacts, maps controls to NIST 800-53, and generates valid OSCAL artifacts
  • πŸ›‘οΈ copilot-cli-security β€” AI-powered security analysis extension for GitHub Copilot CLI; identifies vulnerabilities in code changes and scans dependencies ⭐ 2
  • πŸ–₯️ SYSAdmin-CoPilot β€” Agent-native infrastructure management control plane where GitHub Copilot SDK orchestrates real system operations through secure tool gateways ⭐ 15
  • πŸ“š nist-rag-agent β€” Conversational RAG agent for NIST cybersecurity guidance, powered by 530K+ training examples from 596 NIST publications with LangChain & FAISS
  • 🧭 COMPASS β€” Compliance Mapping and Policy Assessment Speech System; a FedRAMP voice agent powered by Gemini 2.5 Pro Live API β€” describe your architecture out loud β†’ real-time NIST SP 800-53 control mapping, gap analysis, and OSCAL document generation
  • πŸ€– B.O.B.B.I.E β€” Bedrock-Orchestrated Baseline & Behavior Intelligence Engine; hierarchical multi-agent NIST SP 800-53 Rev 5 compliance assessment powered by AWS Bedrock (Amazon Nova) with evidence-driven findings, AI-augmented risk narratives, and OSCAL output

Forks & Contributions


🎯 What I'm Building

  • Automating compliance β€” Turning NIST 800-53, OSCAL, and FedRAMP requirements into developer-friendly tooling
  • AI + Security β€” Leveraging GitHub Copilot, LLMs, and RAG pipelines to bridge the gap between security policy and code
  • Open-source DevSecOps β€” Making federal-grade security accessible to everyone through CLI tools and automation

πŸ† Highlights

  • πŸ“’ Started RFC discussion with NIST on a new OSCAL model for Reference Taxonomy for Classification Schemes
  • πŸ… Built OSCALFlow for the GitHub + MCP Hackathon β€” a native CLI that generates valid OSCAL 1.2.0 JSON
  • πŸ” OSCALFlow detects 50+ control implementations across 8 languages with AI-powered validation via Copilot CLI

πŸŽ“ Certifications

GitHub Copilot Certified CompTIA SecAI+ Certified


πŸ“Š GitHub Activity

GitHub Contribution Graph


πŸ”— Connect

Twitter Website GitHub


Philosophy

"Compliance shouldn't be a barrier to shipping β€” it should be automated into your workflow." I build tools that turn security requirements into code, so developers can focus on building and security teams can focus on strategy.

Random Facts
  • Obsessed with turning compliance jargon into developer-friendly language
  • Believe every federal system deserves automated security documentation
  • Maryland-based, building for the federal tech ecosystem
  • Powered by curiosity and too much coffee β˜•

Popular repositories Loading

  1. SYSAdmin-CoPilot SYSAdmin-CoPilot Public

    Python 37 3

  2. copilot-cli-security copilot-cli-security Public

    TypeScript 3

  3. oscal-content oscal-content Public

    Forked from usnistgov/oscal-content

    NIST SP 800-53 content and other OSCAL content examples

    XSLT 1

  4. vscode-copilot-chat vscode-copilot-chat Public

    Forked from microsoft/vscode-copilot-chat

    Copilot Chat extension for VS Code

    TypeScript 1

  5. nist-rag-agent nist-rag-agent Public

    Python 1

  6. Soc-ops-lab Soc-ops-lab Public

    TypeScript 1