Summary
Andrew Bernat is a Principal Engineer at Marqeta, shaping the secure software supply chain and developer CI tooling to streamline building, logging, testing, and artifact security, including signed artifacts, vulnerability scanning, and auto OS patching for images. Over a decade of experience across cryptography, distributed SaaS, RESTful services, and rich web UIs, he has led Tellwise product teams and built end-to-end systems using Angular, Bootstrap, JavaScript, Node.js, C#, Java, and AWS. At Salesforce, he designed and shipped a registration authority for PKI that lets teams self-serve domain certificates, significantly improving security posture and speeding approvals while reducing PKI review workload. He also developed deployment services for internal data centers enabling safe, health-mediated auto rollback deployments, cutting manual effort substantially for service teams, and built security apps to issue temporary AWS credentials with peer-approval workflows. Earlier at Microsoft, he contributed to Windows security features around PKI, DPAPI, BitLocker, IIS SSL scalability, and certificate enrollment for non-domain-joined machines, demonstrating deep enterprise PKI and security focus. He holds an MSc in Computer Science from Queen's University and a B.Math in Computer Science from the University of Waterloo, and is based in Bellevue, Washington.
10 years of coding experience
17 years of employment as a software developer
M.Sc, Computer Science, M.Sc, Computer Science at Queen's University
B.Math, Computer Science, B.Math, Computer Science at University of Waterloo
c#