Alexander Ager

Software Engineer, AI Security

01

About

Software engineer working at the intersection of AI and security, building agentic security tooling at the London Stock Exchange Group.

I have a strong computer science foundation and a track record of owning complex technical problems end-to-end, with deep experience taking frontier AI from prototype to production in a regulated environment. I work on both sides of security: building agent harnesses that uncover vulnerabilities, and the controls that keep them contained.

02

Experience

Software Engineer, AI Security

London Stock Exchange Group (LSEG)

Sept 2025 - Present
  • AI-driven penetration testing: core engineer across the full stack of an internal platform that uses AI agents to security-test LSEG systems. Built agent orchestration that runs in tightly sandboxed, egress-controlled environments with a full audit trail of every action.
  • Bug bounties: found high-severity vulnerabilities in internal bug-bounty hunts using the platform.
  • Incident response: drove major efficiency gains in agentic dependency audit tooling used during supply-chain incidents - rapidly identifying affected packages at scale, then automating build-log investigation to confirm which versions actually executed.
  • Governance automation: one of the primary engineers automating architecture design review - an agent drafts design documents from a team's own codebase, and Rego policy-as-code flags violations deterministically.
  • Agent platform: architected a greenfield agentic AI platform for the cybersecurity organisation (TypeScript monorepo, custom agent harness, MCP servers) with RBAC and per-session sandboxing.

Won LSEG's flagship graduate project and a prominent internal hackathon; regularly present on AI to audiences of hundreds of senior engineers; selected to reverse-mentor the Executive Committee (ExCo) on AI.

Cybersecurity Intern

Airbus

Sept 2023 - Sept 2024
  • Third-party security assessment: led proof-of-concept testing of three vulnerability scanner vendors in a multi-million pound procurement. Designed functional and non-functional test cases, rebuilt a production-equivalent network environment, and surfaced undocumented flaws, ultimately saving hundreds of thousands of pounds by informing the final selection.
  • Secure multi-party computation: collaborated with Airbus' senior cryptography expert to design and implement MPC protocols using open-source MPC toolkits, enabling privacy-preserving analytics across geographically separated data sets governed by export-control regulations. Learned C++ to deliver the project.
  • Business continuity & compliance: authored a departmental BCP including a full Business Impact Analysis, covering critical function mapping, threat modelling, and regulatory alignment.

Software Engineering Intern

ForceIO - University of Bath

Jun 2022 - Sept 2022
  • Applied inverse kinematics algorithms to program industrial robotic arms, and resolved blocking technical issues. Co-authored a resulting academic paper.
03

Skills & Certifications

Certified Kubernetes Administrator (CKA) ISC2 Certified in Cybersecurity (CC) AWS Certified Cloud Practitioner

Security

Testing & analysis
AI-assisted penetration testing Threat modelling
Response
Incident response Supply-chain security
Controls
RBAC Sandboxing & egress control Policy-as-code (Rego)
Cryptography
Secure multi-party computation (MPC)

Languages

TypeScript Python C++ C Haskell JavaScript Go

Cloud & Infrastructure

AWS - EKS RDS ElastiCache S3 Kubernetes Docker Terraform

Application & AI

Node.js Express Vercel AI SDK MCP REST APIs Agentic system design React Next.js
04

Education

BSc (Hons) Computer Science

University of Bath

First Class · 76% Graduated May 2025

Key modules

Safety Critical Systems Foundations of Computation Machine Learning Functional Programming

Let's talk.

Based in London. Open to conversations about security engineering, AI security and agentic systems.