Edward Northcutt

northcutted@gmail.com | +1 (618) 541-8770 | https://resume.northcutt.dev | Charleston, Illinois, US | LinkedIn | GitHub
Lead Software Engineer | Platform Engineering | Containers | Software Supply Chain Security

Lead Software Engineer with 9+ years of experience building secure CI/CD and container platforms at enterprise scale. Founding engineer and technical owner of a multi-architecture base-image platform adopted by 700+ applications and used in 100,000+ image builds annually. Specializes in secure-by-default developer infrastructure, software supply chain security, automated vulnerability remediation, AWS, GitLab CI/CD, and Go.

Skills

Experience

Lead Software Engineer II, State Farm (Bloomington, IL / Hybrid-Remote)

Apr 2024 - Present

Promoted to Lead Software Engineer II on the CI/CD platform team in April 2024, then transitioned in early 2025 to become the founding engineer and technical owner of the enterprise container image platform.

Lead Software Engineer, State Farm (Bloomington, IL / Hybrid-Remote)

Dec 2021 - Apr 2024

Technical lead for source control management and CI/CD platform capabilities supporting 10,000+ engineers, with focus on pipeline architecture, service resiliency, infrastructure as code, and developer platform quality.

Software Developer, State Farm (Bloomington, IL)

Jun 2018 - Dec 2021

Full-stack developer maintaining proprietary insurance product design tools, backend security tooling, and platform modernization efforts.

IT/Systems Intern, State Farm (Champaign, IL)

May 2017 - May 2018

Publications

Projects

ClearCutt

Open-source declarative framework (project site) for building hardened, minimal container images from reproducible Nix flakes through a Go governance CLI. Produces development, slim, and distroless runtime tiers and integrates keyless Sigstore/Cosign signing, SBOM generation, provenance workflows, and Kyverno admission policies for Kubernetes and OpenShift.

Nix | Go | Distroless | Kubernetes | OpenShift | Kyverno | Cosign | SLSA | SBOM | Supply Chain Security

PicStrip

Published iOS app (App Store) that removes metadata and redacts PII entirely on-device, with no network calls, analytics, or third-party SDKs. Uses ImageIO, Vision OCR, and face detection to identify 30 categories of sensitive data across four risk tiers. Built in Swift/SwiftUI and released through GitHub Actions and Fastlane, with provenance attestations covering the public release IPA and a build workflow designed to support SLSA Build Level 3.

Swift | SwiftUI | iOS | Vision | ImageIO | Privacy Engineering | OCR | Fastlane | GitHub Actions | SLSA Level 3

dock-docs

Go CLI that generates Dockerfile and container image documentation for platform teams, security reviews, and CI pipelines, with optional Syft, Grype, and Dive integration for SBOM generation, vulnerability scanning, and layer analysis.

Go | Docker | Podman | Syft | Grype | Dive | SBOM | Container Security | CLI | GitHub Actions

Gitleaks Open Source Contribution

Merged contribution to gitleaks adding support for appending repository-specific and user-supplied configuration.

Go | Security | Secrets Detection | Open Source

Education

B.S. in Agricultural and Consumer Economics - Finance in Agribusiness (University of Illinois at Urbana-Champaign)

Aug 2014 - May 2018

Download PDF | Download Word Doc | Download TXT | Download JSON