Senior Security Engineer · Google · Mountain View

Andrey
Kovalev

Security research where cloud infrastructure meets AI.

I work on cloud and cloud-native security at Google. Most recently I co-authored a systematization of security vulnerabilities in agentic AI systems, published at ARES 2026.

Andrey Kovalev
  1. 01 · Yandex

    Malware analysis & reverse engineering

  2. 02 · Yandex

    Product security & DevSecOps at scale

  3. 03 · Google

    Vulnerability management (AutoVM)

  4. 04 · Now

    Cloud-native security & agentic AI research

01 / About

From reverse-engineering malware to securing the cloud it runs on.

I am a security researcher and engineer, currently a Senior Security Engineer at Google.

I started at Yandex as a malware researcher doing analysis and reverse engineering, then moved into product security. There I reshaped the DevSecOps approach for Yandex Browser and later scaled it to Yandex Cloud, Market and Yandex Go.

In 2020 I moved to Switzerland to join Google's Vulnerability Management team (AutoVM). Since 2023 I have been based in the US. My current focus is cloud and cloud-native security, and how the same discipline applies to agentic AI systems.

  1. Yandex

    Malware researcher, then product security

    Reshaped DevSecOps for Yandex Browser; scaled the approach to Cloud, Market and Go.

  2. 2020 · Google, Switzerland

    Vulnerability Management (AutoVM)

    Joined the team that finds and tracks vulnerabilities across Google.

  3. 2023 · Mountain View, CA

    Cloud and cloud-native security

    Moved to the US; current focus at Google.

02 / Research

Papers, talks, CVEs and a patent.

10 of 10 entries shown

NewLNCS · Springer
SoKAgentic AI · Security
Paper2026

SoK: Security Vulnerabilities in Agentic AI Systems

A systematization of knowledge on how agentic AI systems can be attacked and where their security guarantees break down. With Shuyi Guan and Li Xie.

ARES 2026 Workshops · Springer LNCS
Talk2024

Secure OSS AI infrastructure with Tsunami Network Scanner

0x0G 2024 · Slides
Patent2019

Method of and server for classifying a web resource

US 10,423,690 B2 · Google Patents
Talk2018

SDL process at Yandex Browser and SAST advantages and disadvantages

NAVER Engineering TV · YouTube
CVE2017

CVE-2017-5081 in Chromium

Chrome Releases · June 2017
CVE2016

CVE-2016-5174 in Chromium

Chrome Releases · September 2016
Talk2016

Browser-based malware: evolution and prevention

Botconf 2016 · with Evgeny Sidorov
Talk2015

Fighting against a Flash 0-day: a hunt for a tainted vector

ZeroNights 2015 · Defensive track
Paper2014

Effusion: a new sophisticated injector for Nginx web servers

Virus Bulletin · January 2014
Paper2014

Mayhem: a hidden threat for *nix web servers

Virus Bulletin · July 2014
Full list on Google Scholar