Head of Security Engineering Architecture (SEAR) at Apple. I don’t speak for my employer.

Joined March 2011
5 Photos and videos
🔺NEW: Apple is expanding Private Cloud Compute (PCC) beyond our data centers. PCC on Google Cloud: NVIDIA Confidential Computing, Intel TDX, and Google's Titan chip, with capabilities that go far beyond a traditional confidential computing deployment. security.apple.com/blog/expa…
6
97
509
53,951
🔺NEW: Formally verified post-quantum ML-KEM and ML-DSA in corecrypto, with correctness proven from the FIPS spec down to hand-optimized ARM64 assembly — a world first at multi-billion device scale. And we're releasing our Isabelle libraries, ARM64 model, and Cryptol-to-Isabelle translator to advance the state of the art in verified cryptography! security.apple.com/blog/form…
10
103
438
47,644
🔺NEW: iPhone and iPad are now the first and only generally-available devices to meet the exacting security requirements for handling classified NATO information. apple.com/newsroom/2026/02/i…
18
95
344
47,263
🔺New security-focused developer event on March 5 at Apple Park: featuring sessions on Memory Integrity Enforcement, new tools in Enhanced Security in Xcode, Apple’s defensive security engineering approach, Swift adoption in security-sensitive code, and how to apply all these techniques to protect apps. Sign up: developer.apple.com/events/v…
3
44
139
15,811
19 Dec 2025
🔺This is the first talk I've given in 6 years – featuring formal verification of post-quantum cryptography, the evolution of the Secure Page Table Monitor, a view into Memory Integrity Enforcement, updates to Apple Security Bounty… and a personal note.
19 Dec 2025
The collection is complete! 🎬 We just uploaded @radian's keynote to our YouTube channel youtube.com/watch?v=Du8BbJg2…
4
49
210
60,691
Ivan Krstić retweeted
Great News! 👏 @Apple announced they will be donating 1000 iPhone 17s with the much more secure Memory Integrity Enforcement to high-risk users! Another meaningful step that Apple is taking to protect journalists, activists & dissidents from commercial spyware! 1/
4
9
50
13,038
9 Sep 2025
🔺iPhone models announced today include Memory Integrity Enforcement, the culmination of an unprecedented design and engineering effort that we believe represents the most significant upgrade to memory safety in the history of consumer operating systems. security.apple.com/blog/memo…
54
484
2,670
378,212
24 Oct 2024
🔺New on Apple Security Research blog: a deeply comprehensive Private Cloud Compute security guide, and an unprecedented Virtual Research Environment allowing you to run production PCC software right on your Mac with Apple silicon. And up to a $1M bounty! security.apple.com/blog/pcc-…
12
167
582
100,543
Ivan Krstić retweeted
Are you excited to use the power of safe modern programming languages like Swift to make software more secure? My SPEAR team at Apple is hiring a Swift Software Engineer to do exactly that! jobs.apple.com/en-us/details…

3
24
50
16,653
21 Feb 2024
🔺New on the Apple Security Research blog: introducing PQ3, a groundbreaking post-quantum cryptographic protocol for iMessage. To our knowledge, PQ3 has the strongest security properties of any at-scale messaging protocol in the world. security.apple.com/blog/imes…
7
123
357
60,783
Ivan Krstić retweeted
12 Dec 2023
With iOS 17.2 and macOS 14.2 now released, Contact Key Verification 🔐 is available for everybody to enable. Very proud of the work the team has done to ship this groundbreaking feature and advance the state of iMessage security! security.apple.com/blog/imes…
2
33
93
13,714
Ivan Krstić retweeted
If you are interested in uArch Security, we just opened an internship position at @Apple! The position is focused on offensive research, and you will be contributing to the security of some of our most advanced CPUs in one of the coolest teams. Apply at: jobs.apple.com/en-us/details…

4
26
107
19,102
Ivan Krstić retweeted
28 Oct 2022
I have been beta testing the new ASB submission portal for over a year. Apple did an awesome job with this! You can: ✅see the status of your report ✅typically get more frequent updates ✅see the CVE, bounty, advisory for each case ✅export all to CSV security.apple.com/bounty/
3
13
49
27 Oct 2022
LIVE: Apple Security Research, our new blog and website at security.apple.com! We launch with an update on Apple Security Bounty (security.apple.com/blog/appl…), and a deep dive into some fundamental XNU memory safety improvements with kalloc_type (security.apple.com/blog/towa…). Enjoy!
20
219
591