Cloud Platform & AI Security Engineer
I make production AI systems secure, and the cloud platforms they run on resilient.
Cloud Platform & AI Security Engineer. My clients already run a live system they can't afford to stop, and most of them have shipped an AI feature into it that nobody has threat modeled yet.
- 🔭 Proof of work: marcobellingeri.dev audits itself. The Security section reads its own response headers back out of the live response, the A+ links to a Mozilla Observatory scan anyone can re-run, and every merge to
maindeploys through CI. - 🤖 AI security is what I do most days: OWASP LLM Top 10 applied to production RAG systems, prompt injection defense for external content flows, LLM-as-a-judge evaluation gates in CI, EU AI Act art. 50 transparency requirements, and MITRE ATLAS as a threat modeling reference.
- 🔐 Every deploy ships a CycloneDX SBOM and a keyless OIDC provenance attestation. Dependencies are pinned by SHA,
zizmorreads the workflows,gitleaksreads the whole history. - 🖥️ There's a hidden CRT terminal on the site.
⌘Kis one way in. There's another.
📅 Book 30 minutes: free, no commitment
🌐 Live right now:
marcobellingeri.dev
vetreriamonferrina.com
running on infrastructure I operate myself
Ten of them, the same ten the site shows and in the same order. They reinforce the same direction: AI security, secure software supply chain, and cloud security practices.
| Certification | Issuer | |
|---|---|---|
| AI Security & Governance | Securiti Education · 2026 | verify |
| Foundations of AI Security | AttackIQ Academy · 2026 | verify |
| Secure AI/ML-Driven Software Development | OpenSSF · Linux Foundation · 2026 | verify |
| Securing Your Software Supply Chain with Sigstore | Linux Foundation · 2026 | verify |
| Automating Supply Chain Security: SBOMs & Signatures | OpenSSF · Linux Foundation · 2026 | verify |
| Understanding the EU Cyber Resilience Act (CRA) | OpenSSF · Linux Foundation · 2026 | verify |
| Introduction to Zero Trust | Linux Foundation · 2026 | verify |
| Anthropic Academy | Anthropic · 15 courses · 2026 | |
| AI, RAG & Security | MongoDB · 8 courses · 2026 | verify |
| GitHub Foundations | GitHub · 2025 | verify |
The other 35 are on Credly. Badges you can click are worth more than badges you can claim.
guest@bellingeri:~$ exit
© Marco Bellingeri, tutti i diritti e nessun bug in produzione (si spera).



