20 years building and shipping production software, now specialized in securing and governing agentic AI systems.
- AI Governance & Policy-as-Code โ Design and implement policy-driven guardrails for autonomous agents using OPA/Rego, mapped to the OWASP Agentic Top 10, NIST AI RMF, the EU AI Act, and ISO/IEC 42001.
- AI Security & Red Teaming โ Threat-model and adversarially test agentic systems against the OWASP Agentic Top 10 (ASI01โASI10): prompt injection, tool misuse, identity/privilege abuse, and inter-agent communication risks.
- Software & Systems Architecture โ Full-stack and distributed-systems architecture with two decades of SDLC ownership across startups and enterprise (Python/FastAPI, TypeScript/Next.js, React, Node.js, Docker, CI/CD, AWS/Azure/GCP).
- Technical Advisory โ Translate AI risk into terms engineers, executives, and auditors can each act on and verify.
- Microsoft Agent Governance Toolkit โ Authored and merged OWASP Agentic Top 10โmapped starter policy packs (healthcare, financial services, general SaaS) into the upstream project's main branch. (Contribution is public and verifiable in the repository's commit history.)
Independent AI security and governance practice (Jesbur Labs LLC): agentic governance readiness assessments, policy-as-code (OPA/Rego) enforcement mapped to the OWASP Agentic Top 10, and red-teaming of agentic systems. Currently accepting select engagements in AI security auditing and governance architecture.
- LinkedIn: jessicaburnett-tech
- Private Labs: Jesbur Labs, LLC
- Email: jessica.burnett.tech@gmail.com
- Location: Colorado Springs, CO (open to remote)




