Skip to content
View dexcopeland's full-sized avatar
  • East Coast
  • 18:53 (UTC -04:00)

Highlights

  • Pro

Block or report dexcopeland

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
dexcopeland/README.md

Hey, I'm Dex πŸ‘‹

12-year Air Force vet. Cloud Security Assessor. GRC engineer who codes. Neurodivergent thinker. Obsessed with making compliance less painful for everyone.

I'm not your typical GRC person who lives in spreadsheets. I build tools to escape them. My work sits at the intersection of compliance automation, AI, and education, with a strong belief that guardrails aren't barriers; they're where creativity begins.


🚧 What I'm Building Right Now

πŸ”¬ OSCAL Assessment Orchestration Platform (Active Development)

A custom assessment platform that leverages OSCAL (Open Security Controls Assessment Language) and MCP (Model Context Protocol) to modernize how we conduct security assessments.

Why it matters: Most organizations still do assessments in Word docs and color-coded spreadsheets. This platform brings machine-readable compliance data, AI-assisted control analysis, and structured evidence collection into one place.

Stack: Python Β· OSCAL Β· MCP Β· AI-assisted workflows
Status: 🟑 In active development β€” follow along or contribute!

"I want to show that GRC practitioners can build the tools that change their own field."


πŸ—‚οΈ Project Portfolio

βš™οΈ GRC & Compliance Tools

Project What It Does Stack
CMMC Level 2 Gap Analyzer Automates NIST 800-171 control tracking, gap identification, POA&M management, and PDF report generation Python Β· Streamlit
OSCAL Assessment Platform (in progress) AI-powered assessment orchestration using OSCAL + MCP Python Β· OSCAL Β· MCP

πŸ› οΈ Utility Tools

Project What It Does Stack
Disabled Veteran Salary Calculator Calculates gross salary needed to hit take-home pay targets, accounting for VA disability comp + fed/state taxes JavaScript
Copeuccino File Transfer Tool Cross-platform GUI tool for efficiently copying files to external drives Python

🧠 What I Care About

Compliance Automation β€” If it can be automated, it should be. I build tools that replace manual, error-prone compliance workflows with structured, repeatable processes.

AI in GRC β€” Not AI replacing GRC practitioners, but AI amplifying what they can accomplish. I'm experimenting with how LLMs + OSCAL can change assessment workflows.

Education & Mentorship β€” I joined the Air Force wanting to be a teacher. That never left me. I'm building content for people breaking into GRC and for veterans in the field who know there's a better way to do things.

Neurodivergent Perspectives β€” My blog focuses on Compliance, AI, and Education through a neurodivergent lens. I think the way we frame problems determines whether we can see the solutions hiding in plain sight.


πŸ… Background & Credentials

  • ☁️ Cloud Security Assessor β€” Maryland Department of Information Technology
  • πŸŽ–οΈ 12-Year U.S. Air Force Veteran β€” Finance, Network/System Ops, Cybersecurity
  • πŸŽ“ WGU B.S. Cybersecurity & Information Assurance β€” Capstone Excellence Award
  • πŸ“œ ISO 42001 Lead Auditor Β· CySA+ Β· PenTest+ Β· Google Professional Cloud Security Engineer

Frameworks I work in: NIST 800-53 Β· NIST CSF Β· NIST RMF Β· NIST AI RMF Β· CMMC Β· IRS Pub 1075 Β· ISO 27001 Β· ISO 42001
Languages & Tools: Python Β· OSCAL


🀝 Open To

I'm available for mentoring, speaking, open-source collaboration, consulting, and freelance work. If you're working on something at the intersection of GRC, AI, or compliance education β€” let's talk.


"Guardrails aren't barriers β€” they're protective freedom. They give us a clear line of where we shouldn't be going, while giving us the freedom to operate within those boundaries."

Popular repositories Loading

  1. cmmc-level-2-control-gap-analyzer cmmc-level-2-control-gap-analyzer Public

    Python 3

  2. spec-to-ship spec-to-ship Public

    A Claude Code project template that takes you from a raw idea to shipped code β€” autonomously. Combines spec-driven development with the Ralph Wiggum agentic coding loop popularized by Ryan Carson. …

    Shell 3 1

  3. disabled-veteran-salary-calculator disabled-veteran-salary-calculator Public

    A comprehensive web application that calculates the gross salary needed to achieve a desired take-home pay, accounting for VA disability compensation, federal, and state taxes.

    TypeScript 2

  4. readwise-content-pipeline readwise-content-pipeline Public

    1

  5. Copeuccino Copeuccino Public

  6. copeuccino-file-transfer-tool copeuccino-file-transfer-tool Public

    A user-friendly cross-platform file transfer tool with GUI for efficiently copying files to external drives.

    Python