Cloud Platform & AI Security Engineer
I make production AI systems secure, and the cloud platforms they run on resilient.
Cloud Platform & AI Security Engineer. My clients already run a live system they can't afford to stop, and most of them have shipped an AI feature into it that nobody has threat modeled yet.
- π Proof of work: marcobellingeri.dev audits itself. The Security section reads its own response headers back out of the live response, the A+ links to a Mozilla Observatory scan anyone can re-run, and every merge to
maindeploys through CI. - π€ AI security is what I do most days: OWASP LLM Top 10 applied to production RAG systems, prompt injection defense for external content flows, LLM-as-a-judge evaluation gates in CI, EU AI Act art. 50 transparency requirements, and MITRE ATLAS as a threat modeling reference.
- π Every deploy ships a CycloneDX SBOM and a keyless OIDC provenance attestation. Dependencies are pinned by SHA,
zizmorreads the workflows,gitleaksreads the whole history. - π₯οΈ There's a hidden CRT terminal on the site.
βKis one way in. There's another.
π Book 30 minutes: free, no commitment
π Live right now:
marcobellingeri.dev
vetreriamonferrina.com
running on infrastructure I operate myself
Ten of them, the same ten the site shows and in the same order. They reinforce the same direction: AI security, secure software supply chain, and cloud security practices.
| Certification | Issuer | |
|---|---|---|
| AI Security & Governance | Securiti Education Β· 2026 | verify |
| Foundations of AI Security | AttackIQ Academy Β· 2026 | verify |
| Secure AI/ML-Driven Software Development | OpenSSF Β· Linux Foundation Β· 2026 | verify |
| Securing Your Software Supply Chain with Sigstore | Linux Foundation Β· 2026 | verify |
| Automating Supply Chain Security: SBOMs & Signatures | OpenSSF Β· Linux Foundation Β· 2026 | verify |
| Understanding the EU Cyber Resilience Act (CRA) | OpenSSF Β· Linux Foundation Β· 2026 | verify |
| Introduction to Zero Trust | Linux Foundation Β· 2026 | verify |
| Anthropic Academy | Anthropic Β· 15 courses Β· 2026 | |
| AI, RAG & Security | MongoDB Β· 8 courses Β· 2026 | verify |
| GitHub Foundations | GitHub Β· 2025 | verify |
The other 35 are on Credly. Badges you can click are worth more than badges you can claim.
guest@bellingeri:~$ exit
Β© Marco Bellingeri, tutti i diritti e nessun bug in produzione (si spera).



