[{"content":"","externalUrl":null,"permalink":"/authors/","section":"Authors","summary":"","title":"Authors","type":"authors"},{"content":"","externalUrl":null,"permalink":"/categories/","section":"Categories","summary":"","title":"Categories","type":"categories"},{"content":"INDEPENDENT AI SECURITY RESEARCH\nSecuring AI Agents. Exploring Zero Trust. Building What\u0026rsquo;s Next.\r#\rI\u0026rsquo;m Bryan Mack, an enterprise technology professional exploring the intersection of artificial intelligence, cybersecurity, and enterprise architecture.\nSecurity Cloud AI is where I document my hands-on research into securing AI agents, large language models, Model Context Protocol (MCP) integrations, and the infrastructure that supports enterprise AI.\nMy focus is on understanding real security risks, testing practical controls, and translating technical findings into meaningful enterprise security strategies.\nWhat I\u0026rsquo;m Working On\r#\rAI Agent and MCP Security\r#\rExploring how AI agents interact with tools, APIs, external data, and enterprise systems. Areas of investigation include prompt injection, MCP tool poisoning, excessive permissions, agent identities, and trust boundaries.\nLocal AI and Model Infrastructure\r#\rExperimenting with local LLM deployment, model performance, orchestration, and routing between local and cloud-hosted AI models.\nZero Trust for AI\r#\rDesigning segmented infrastructure and investigating how identity, least privilege, policy enforcement, and security monitoring apply to AI workloads and autonomous agents.\nTechnologies in My Lab\r#\rCurrently deployed or being configured:\nAI models: Ollama, Qwen3, local LLM inference AI interfaces: Open WebUI Application infrastructure: Docker, Linux, Python, REST APIs Virtualization: Proxmox VE Operating systems: Ubuntu Server, Windows 11 Networking and security: Fortinet FortiGate, UniFi networking, VLAN segmentation Web infrastructure: Nginx, Cloudflare Tunnel, Cloudflare Zero Trust Development: Git, PowerShell, Hugo Planned Research and Lab Expansion\r#\rAgent orchestration: TrueForge and model-routing frameworks Agent identity: Keycloak, OAuth 2.0, OpenID Connect, service identities AI integration security: MCP servers, tool authorization, API gateways Data services: PostgreSQL, vector databases, retrieval-augmented generation (RAG) Monitoring and detection: Wazuh, Suricata, Zeek, centralized logging Infrastructure: Expanded Proxmox environment and 10Gb networking Public research assistant: A restricted AI agent answering questions about published research These projects are evolving as I build, test, and document the environment.\nResearch Direction\r#\rMy current areas of interest include:\nSecuring autonomous AI agents and MCP integrations Zero Trust architecture for AI workloads Identity and authorization for non-human actors Prompt injection and tool misuse RAG security and sensitive data exposure Enterprise AI governance and observability Secure hybrid local/cloud model architectures As experiments progress, I\u0026rsquo;ll publish technical write-ups, architecture diagrams, security findings, and practical recommendations.\nConnect\r#\rI\u0026rsquo;m always interested in exchanging ideas with security architects, AI practitioners, enterprise technology leaders, and organizations exploring secure AI adoption.\nEmail: bmack@security-cloud.ai\nLinkedIn: linkedin.com/in/bryanmack\nIndependent research and personal perspectives. Content does not represent the views or positions of any current or former employer.\n","externalUrl":null,"permalink":"/","section":"Security Cloud AI","summary":"","title":"Security Cloud AI","type":"page"},{"content":"","externalUrl":null,"permalink":"/series/","section":"Series","summary":"","title":"Series","type":"series"},{"content":"","externalUrl":null,"permalink":"/tags/","section":"Tags","summary":"","title":"Tags","type":"tags"}]