AI Engineer & Architect

Tom Phillips builds dependable AI

Developer, Creator & Technical Innovator

I build secure, reliable generative AI systems that automate risk and compliance workflows—turning complex problems into usable software.

50+
Projects Delivered
10+
AI/automation tools
5+
Years building
Scroll to explore

About Me

AI Engineer & Architect with a cybersecurity backbone—building reliable, secure generative AI systems and automation for real-world risk and compliance workflows.

I specialize in Generative AI, LLMs (RAG, agentic workflows), MLOps, and applied automation. My recent work spans architecting end-to-end genAI products, designing secure RAG pipelines on internal knowledge bases, and delivering agentic flows that automate supplier risk assessments, reporting, and onboarding.

With roots in cybersecurity and GRC (TPRM, FAIR, SIEM), I bridge AI innovation with risk-aware delivery—shipping usable, measurable tools that shorten cycles, raise quality, and keep stakeholders confident.

Featured Projects

Narrate logo Narrate
Narrate Compliance – platform logo
AI Governance Compliance

Narrate — AI Governance & Compliance Platform

Full-suite ISO compliance platform with AI evidence analysis, automated documentation, auditor exports, and multi-tenant security for companies, consultants, and auditors.

Expiry
Expiry App – dashboard screenshot Expiry App – upload contract view Expiry App – list view
SaaS Contracts

Expiry — Contract Renewals & Alerts

Production-ready contract management app with AI scanning, renewal calendar, cost analytics, smart email alerts (cron), and Supabase-powered storage and auth.

Applied AI Projects

Risk Intel
RAG Agents Azure OpenAI

Risk & Compliance Intelligence Agent

Multi-agent workflow that ingests policies, supplier docs, and ISO controls to generate defensible findings, evidence links, and remediation plans with guardrailed responses.

Impact: Cut assessment turnaround from weeks to hours and improved auditability.

Reporting
Automation LLM Dashboards

Executive Risk Briefings

Pipeline that summarizes SIEM, vulnerability, and third-party risk signals into exec-ready briefs with drill-down links and trend visuals.

Impact: Replaced manual weekly reporting with real-time leadership intelligence.

Onboarding
Agent Automation

Automated User Access & Onboarding

Conversational assistant (Dify + Azure OpenAI) validates inputs and performs secure API calls to provision access and notify owners.

Impact: Cut onboarding from 15 minutes to 30 seconds; enabled 24/7 self-service.

Skills & Certifications

AI & Automation

LLMs & RAG Agentic workflows Prompt engineering MLOps Evaluation & guardrails LangChain / LlamaIndex Vector DBs Python

Engineering

TypeScript / JavaScript APIs Node.js React / Next.js SQL / NoSQL Docker CI/CD Cloud (AWS/Azure/GCP)

Security & GRC

TPRM Risk & controls FAIR SIEM / SOAR Vulnerability mgmt Policy & audit

Certifications

AWS Cloud Practitioner Azure Fundamentals AWS Security Specialty (in progress) CompTIA Security+

Latest Blog Posts

January 15, 2026 Development

Building Scalable Web Applications with Modern Architecture

Exploring best practices for architecting web applications that can scale efficiently while maintaining code quality and developer experience.

Read More →
January 8, 2026 Tools

My Developer Productivity Stack in 2026

A comprehensive look at the tools, workflows, and practices that keep me productive and focused in my daily development work.

Read More →
December 28, 2025 Tutorial

Advanced TypeScript Patterns for Better Code

Diving deep into advanced TypeScript patterns, generics, and type manipulation techniques that improve code safety and maintainability.

Read More →

Get In Touch

Have a project in mind or just want to chat? Feel free to reach out. I'm always open to discussing new opportunities and collaborations.