Edward Northcutt

northcutted@gmail.com | +1 (618) 541-8770 | https://resume.northcutt.dev | Charleston, Illinois, US | LinkedIn | GitHub
Lead Platform Engineer | Software Engineering | Secure Container Infrastructure | CI/CD

Platform engineering lead with 8+ years of experience building secure container, CI/CD, and developer infrastructure at enterprise scale. Founding technical owner of a multi-architecture container image platform adopted by 700+ applications and used in 100,000+ image builds. Specialized in distroless images, software supply chain security, SLSA provenance, SBOM and vulnerability automation, GitLab CI/CD, AWS, OpenShift, and Go-based platform tooling.

Skills

Experience

Lead Software Engineer II, State Farm (Bloomington, IL / Hybrid-Remote)

Apr 2025 - Present

Founding engineer and technical owner of the enterprise container image platform, delivering hardened, production-ready base images and secure CI/CD patterns for containerized workloads.

Lead Software Engineer, State Farm (Bloomington, IL / Hybrid-Remote)

Aug 2020 - Apr 2025

Technical lead for source control management and CI/CD platform capabilities supporting 10,000+ engineers, with focus on pipeline architecture, service resiliency, infrastructure as code, and developer platform quality.

Software Developer, State Farm (Bloomington, IL)

Jun 2018 - Aug 2020

Full-stack developer maintaining proprietary insurance product design tools, backend security tooling, and platform modernization efforts.

Software Developer Intern, State Farm (Champaign, IL)

May 2017 - May 2018

Publications

Projects

dock-docs

Go CLI tool that generates Dockerfile and container image documentation for platform teams, security reviews, and CI pipelines. Parses Dockerfiles and optionally integrates Syft, Grype, and Dive for SBOM generation, vulnerability scanning, and layer analysis.

Go | Docker | Podman | Syft | Grype | Dive | SBOM | Container Security | CLI | GitHub Actions

ClearCutt

Work-in-progress declarative framework (project site) for building hardened, minimal container base images using Nix flakes and a Go governance CLI, compiling language runtimes into reproducible, hermetically sealed closures across dev, slim, and distroless tiers. Layers keyless Sigstore/Cosign signing, SLSA Level 3 provenance, SBOMs, and Kyverno admission policies to enforce signed images from source through Kubernetes and OpenShift deployment.

Nix | Go | Distroless | Kubernetes | OpenShift | Kyverno | Cosign | SLSA Level 3 | SBOM | FIPS 140-3 | Supply Chain Security

PicStrip

Published iOS app (App Store) that strips metadata and redacts PII from photos entirely on-device — no network calls, analytics, or third-party SDKs — using a two-pass ImageIO pipeline plus Vision OCR and face detection that flags 30 categories of sensitive data across four risk tiers. Built in Swift/SwiftUI and shipped through an automated GitHub Actions and Fastlane release pipeline with SLSA Level 3 build provenance attestation.

Swift | SwiftUI | iOS | Vision | ImageIO | Privacy Engineering | OCR | Fastlane | GitHub Actions | SLSA Level 3

Gitleaks Open Source Contribution

Contributed to gitleaks, a widely used open source secrets-detection tool. Added support for appending repository-specific and user-supplied configuration behavior via a merged pull request.

Go | Security | Secrets Detection | Open Source

Education

B.S. in Agricultural and Consumer Economics - Finance in Agribusiness (University of Illinois at Urbana-Champaign)

Aug 2014 - May 2018

Download PDF | Download Word Doc | Download TXT | Download JSON