Katie Paxton-Fear

Occasional Bug Bounty Hunter and Educational YouTuber

Talks at YOW! Sydney 2025

I used to make applications as a developer and now, as an ethical hacker and security researcher, I specialize in breaking them. This practical, hands-on experience is the foundation of my work.

Currently, as a Staff Security Advocate at Semgrep, I act as a key technical partner for our sales and marketing team, working directly with prospective customers. Helping customers with their into complex security problems and serving as a trusted advisor, helping organizations understand and solve their security challenges. Whether that be through training programs to help support a developer advocacy program, or chatting with CISOs about their biggest challenges and helping craft their strategy. My goal is always to give good, vendor neutral advice, and turn security into something anyone can get.

Throughout my career I've had the pleasure to: Consult directly with customers to understand their security programs and help them maximize product use. Collaborate with sales teams and prospects to provide technical insights and position security platforms effectively.And led technical demos, created sales enablement materials, and delivered training to some of the largest brands worldwide.

Beyond my day job, I'm passionate about giving back to the security community. I run a successful YouTube channel where I teach others about security in an accessible way. I also actively mentor aspiring professionals, offering tailored advice to help them grow their skills and careers. For me, education and mentorship aren't just hobbies; they are central to my belief in making security open and understandable for everyone.

This passion for clear communication is something I bring to every aspect of my work, whether I'm speaking with a developer, a CISO, or a team evaluating new tools. I love sharing my security expertise publicly to help educate a wider audience. I’ve been featured as a subject matter expert in outlets like the Wall Street Journal, BBC News, and ZDNet, and I’ve even had the opportunity to work with BBC Panorama on one of their investigations. As a regular speaker at major industry events, I enjoy making complex topics accessible, and I was honored that my session, "I’m an API Hacker and Here’s How I Hack Everything from the Military to AI," was voted a top session at RSA.

If you're looking for a technical expert who can act as a bridge between your team and your security vendor, let's connect.