Farhan Mikael Hoesny, AI Engineer

Farhan Mikael Hoesny

AI Engineer, Corvair Pte Ltd

Information security and AI engineer with 7+ years across regulated financial services, crypto exchanges, and emerging AI platforms. Translates technical risk into measurable business outcomes, with deep experience operating under MAS, PDPA, ISO, and SOC regimes.

Role at Corvair

Farhan is AI Engineer at Corvair. He builds and operates the AI safety controls that sit behind Corvair's governance platform: telemetry, guardrails, identity, and incident response for agentic systems running in regulated environments. His mandate is to make sure the platform delivers on its governance promises in production, not just on paper.

He brings a regulated financial institution security perspective to model deployment, drawing on three years inside Singapore banking and crypto operations. He partners with Corvair's engineering and advisory teams to translate MAS, PDPA, EU AI Act, and ISO 27001 requirements into concrete platform controls, and to run the safety SLOs and SOAR runbooks that keep production agents inside their guardrails.

Background

Most recently Farhan was Technical Lead for Information Security and AI at NetGain Systems in Singapore, where he led the company's security and AI safety strategy and translated technical risk into measurable business plans. He delivered an AI safety telemetry platform that cut incident response overhead by 90% and reduced PII violation rates by 98% within six weeks, drove policy-as-code and IAM/RBAC/TLS governance with executive stakeholders, and integrated safety SLO alerts with SOAR runbooks to cut MTTR from 60 to 15 minutes.

Before NetGain, Farhan spent two years as Senior Cybersecurity Engineer and team lead at Crypto.com, delivering a zero-trust and microsegmentation program that cut incident volume by 60% and eliminated 80% of high-risk access paths. He owned SIEM detections and SOAR playbooks mapped to MITRE ATT&CK, ran the threat intelligence and dark web monitoring program, and ensured access controls aligned with MAS licensing and PDPA data governance requirements.

Earlier he served as Assistant Vice President, Security Engineer at United Overseas Bank (UOB), where he transformed SOC operations to meet MAS-TRM requirements, scaled analyst efficiency by 40% without new hires, commanded a live credential-stuffing response that contained the attack within 15 minutes, and authored controls to meet MAS-TRM, ISO 27001, and NIST 800-53 standards across three regulatory reviews with zero exceptions. As Systems Architect at OKLETSGO, he led a zero-trust migration that cut the attack surface by 70% while maintaining 99.9% availability. His earlier work as IT Technician at REVEZ Motion managed endpoint security and patching for 150+ creative workstations across Government and Disney production projects.

Independent Projects

Farhan designed and built an agentic AI Voice Receptionist SaaS targeting Singapore SMBs in salon, aesthetic, dental, and TCM verticals, currently in paid pilot. The end-to-end stack combines Gemini Live, Twilio PSTN telephony, FastAPI, and Pipecat, orchestrating specialised sub-agents for booking (Cal.com), notifications (Twilio WhatsApp), invoicing (Stripe), and calendar sync (Google Calendar) with no third-party receptionist middleware in the path.

He also built a CVE Exploit and Remediation Intelligence Pipeline that ingests NVD, CISA KEV, and OWASP feeds, integrates AI-assisted exploit analysis, and uses Docker-isolated lab environments for safe CVE reproduction and POC validation. Concurrent with his Corvair role, Farhan delivers IBF Level 3-accredited training programs in cybersecurity and generative AI governance at Vertical Institute, building hands-on labs from real incident response scenarios across banking and crypto.

workspace_premiumCertifications
  • CISSP, Certified Information Systems Security Professional
  • CISM, Certified Information Security Manager
  • GCIH, GIAC Certified Incident Handler
  • CCNA, Cisco Certified Network Associate
  • ISO 27001 and NIST 800-53
schoolEducation
  • Diploma in Infocomm and Digital Media, Cybersecurity, Singapore Polytechnic
layersCore Competencies
  • AI and LLM safety governance
  • Security architecture and zero-trust design
  • Risk management and quantification
  • Incident response command and SOAR automation
  • SIEM (Splunk, Defender, ELK), EDR/XDR, WAF, IAM/PAM
  • RAG, vector databases, embeddings
  • DevSecOps: CI/CD, IaC, observability
  • Languages: Python, Java, Bash, PowerShell
publicLocation
  • Singapore
gavelCompliance Fluency
  • MAS-TRM
  • Singapore PDPA and Cybersecurity Act
  • ISO 27001 and NIST 800-53
  • SOC 2
cloudPlatforms
  • Azure, AWS, Government on Commercial Cloud
  • Kubernetes

Work With Farhan

Schedule a briefing to discuss AI safety controls, zero-trust architecture, or regulated-FI compliance for agentic systems.

Schedule a Briefing Meet the Team