Selected systems
Work that can be inspected,
not merely described.
Each project starts with a governance problem and ends with
something usable: a lab, a work queue, a decision model, a control
pipeline, or an accountable intervention.
02IBM i REMEDIATION CURATOR
IBM i Vulnerability Curator
IBM CVE claim → local fix state → reviewable evidence
IBM's CVE_INFO service identifies CVEs affecting a release, but not
whether each correcting fix is applied. The curator resolves IBM
bulletin remedies, supplies an ACS-ready SQL evidence kit, compares
browser-local PTF and Group PTF exports, and packages expected versus
observed evidence. The 5250 path remains available as a closed legacy
fallback. Not a scanner of record or a live partition connection.
Open the curator ↗
03CYBER-LOSS CASEBOOK
INQUISITION
Interrogate the loss story
Examines 34 public cyber incidents through cited evidence,
source-quality labels, transparent loss assumptions, and bounded
FAIR-informed simulation.
Launch INQUISITION ↗
04LIVE DECISION TOOL
IMPACT!
Risk-to-finance modeling engine
Translates cyber and operational risk into financial
language—connecting loss exposure, control investment, and
decision context in one browser-based model.
Launch IMPACT! ↗
05DISCLOSURE WAR ROOM
IMMEDIACY
Every second counts
A disclosure war room for a live ransomware scenario—notice clocks,
evidence confidence, stakeholder pressure, and provisional FAIR loss
ranges under incomplete facts.
Launch IMMEDIACY ↗
06DECISION SYSTEM
Decision-Ready
Risk scenario canvas
A structured canvas for moving from ambiguous technical concern to
decision-ready risk scenario, with assumptions and accountability
kept visible.
Open the canvas ↗
07CONTROL PIPELINE
GRC Engineering Pipeline
Controls that ship with the system
Terraform, OPA/Rego, OSCAL, signed evidence, and CI/CD enforcement
assembled into a verifiable governance pipeline for a regulated
workload.
Inspect the pipeline ↗
08AI GOVERNANCE
AI Fairness Governance Toolkit
From model metric to accountable intervention
A governance-oriented fairness pipeline that frames model
evaluation as a documented decision process—not a single score or
technical checkbox.
View the toolkit ↗
09LONG-HORIZON AI
Inheritance
Who inherits the consequences?
An interactive exploration of long-horizon AI decisions, moral
uncertainty, and how present choices propagate consequences to
future stakeholders.
Launch Inheritance ↗
10+WORKING LAB
More systems in the lab
Security Decision Labs, the CGE-P capstone, five GRC Engineering
Club builds, and new cloud-native evidence experiments.