JA

Security · AI Governance · Crypto Risk

John Abraham

Risk follows technology waves. Every time a new stack ships (web, mobile, cloud, blockchain, now AI), the same thing happens: adoption outruns security, and the gap gets exploited. I've spent my career working inside that gap, usually while the wave was still breaking. Founded, scaled, and exited a web security company. Built consumer mobile apps with millions of downloads. Ran security operations for one of the preeminent blockchain platforms, protecting billions in assets in a 24/7 adversarial environment, through ISO 27001 certification, SOC 2, multiple acquisitions, and the buildout of its AI governance program.

Historical waves

Founded, scaled, and exited a company built around web and company security.

Built consumer apps for iOS and Android, natively and cross-platform, including one with over a million downloads, another used at Apple around privacy initiatives, and a running calculator app that was the most widely used on iOS.

R&D on hardware-based machine vision applications.

Ran security operations for one of the preeminent blockchain platforms, protecting billions in assets in a highly adversarial, 24/7 environment. Included ISO 27001 certification, SOC 2 compliance, multiple acquisitions, and the buildout of the company's AI governance program.

The current wave. I consult on enterprise AI deployment and risk, and build tools, mcprisk and StableScope, to find the failures before they're incidents.

Blue Motion Labs is the practice I'm building around this work: helping companies deploy and secure AI agents and crypto rails. One engagement at a time.

LinkedIn · Medium · GitHub