jimdevsec

Software security, from inside the pipelines.

I'm Jim — Dimitrios, more formally — a DevSecOps and application security engineer. I spend most of my time where security actually has to work: inside CI/CD pipelines, across software supply chains, and in the awkward gap between finding a vulnerability and fixing it.

This is where I write about that work — notes on the things that don't fit neatly into a vendor datasheet.

More of what I build lives at jimpapadimas.com.