Nate McGrady

Security Engineer

About Me

Security engineer with 9 years of experience in cybersecurity and software engineering. Currently working at Vercel enabling developers to ship more securely. Previously led security engineering on the Detection and Response Team at Twitter before switching to a software engineering role where I built frontend livestreaming features in React. Prior to joining Twitter, I spent six years in the US Navy as a Cyber Warfare Technician, where I led critical incident response operations in support of the National Security Agency.

Projects

Cursor Rule Extension

A Cursor extension that helps you quickly create Cursor project rules (.mdc files) from selected text or terminal output.

Social Calendar

A social calendar app built with React Native and Expo.

Vercel VSCode Theme

A VSCode/Cursor theme inspired by Vercel.

Tech Stacker

A fork of Ray.so used for sharing images of tech stacks.

GitHub Contributions
Job History

Vercel

Security Engineer

Oct 2025 - Present

I work on the Security Engineering team at Vercel, building and maintaining the security tools and processes that help developers ship more securely.

xAI (via X/Twitter)

Senior Software Engineer

Nov 2024 - May 2025

I led development for X's livestreaming product, where I architected and implemented key features including the UI/UX for the livestream experience and x.com/username/live interface. I worked directly with executive leadership and creators to shape the future of live content on X, while also leading successful integrations with third-party streaming solutions.

Senior Security Engineer

Nov 2022 - Nov 2024

Led the Detection and Response Team, developing custom threat detections and conducting incident response investigations. Validated security measures by simulating real-world attack scenarios using modern Tactics, Techniques, and Procedures.

US Navy

Cyber Warfare Technician

Jan 2017 - Jan 2023

Led a 12-person team in incident response across 100k+ endpoint warfighting networks, directing zero-day investigations, threat hunting, and vulnerability analysis. Deployed and maintained Security Tools (EDR, SIEM, etc.), built automations in Python/Bash, and emulated adversary TTPs to strengthen defenses. Authored training that certified 120+ analysts and secured 700+ critical assets across cloud, hybrid, and on-prem environments.

Languages
JavaScript
TypeScript
Python
Security Tools

EDR

  • SentinelOne
  • Endgame
  • CarbonBlack

SIEM

  • Splunk
  • Wazuh
  • Grafana

Cloud

  • AWS
  • GCP

OffSec

  • Metasploit
  • BurpSuite