Personal Brand · Positioning & Direction

You are not another dev.
You are the one who builds and secures.

Kingsley Olukanni · babakizo420 · prepared for the next season of rooms you walk into.
The Position

In a room full of builders, almost no one thinks about security. That gap is your whole opening. You do not compete as another agency, that lane is crowded. You own the rarer intersection: you build real products and AI agents, you break and secure them with credited CVEs, and you operate multi-agent systems yourself. Three things almost nobody combines. That is the brand.

The One-Liner · pick one, use everywhere
SharpestI build software and AI agents, and I do security research. I have CVEs credited in tools you probably use.
Your voiceI find the bugs that patches leave behind. I also build the products, so I see both sides.
For the dev circleI build like you do, then I secure it. Most teams skip that second part, that is where I live.

When someone asks what you do, lead with ONE of these, not a list of ventures. The ventures come up after, as proof you ship real things.

Three Pillars · your proof

Build

You ship real things
  • Pejji web agency, live client sites for Nigerian SMEs
  • TTA & KIZO brands you run end to end
  • Multi-agent systems you built: an autonomous bug-bounty agent and an intel pipeline

Secure

You have the receipts
  • 5 CVE numbers across 4 findings, credited to babakizo420: Canonical LXD / Incus (High 8.5), File Browser (High 8.2), OpenBao, Gitea
  • Securva: security and NDPA audits for businesses
  • Specialty: incomplete-fix and variant analysis, the residual bug a patch leaves behind
  • Immunefi-cleared smart-contract auditor

AI-Agent Security

The frontier, and you are already on it
  • You build multi-agent systems AND research their security: prompt injection, tool abuse, agent identity, MCP SSRF and credential forwarding
  • An incomplete-fix finding in a major vendor's AI gateway (advisory accepted, pending publication)
  • Almost nobody sits here yet. This is a keynote lane, a consulting lane, and a six-figure-job lane at once.
Your Edge In The Room

Security is the wedge, not a side note.

Every team in that circle ships code with security debt and zero AppSec. NDPA is now law in Nigeria, so every client site they run carries real compliance exposure. And they are all bolting AI agents onto their products with no thought about securing them. You are the one person who can name all of that, and back it with receipts. That circle is not just peers to impress, it is a warm market and referral network for Securva.

How To Show Up · over the season
  1. Play the long game. A weekly team is recurring, low pressure, high trust. Do not chase one big moment. Show up over weeks and quietly become known as the build-and-security guy. That compounds better than any pitch.
  2. Do not sell in the soccer group. That is their space. Be a person there. Let your content live on LinkedIn and babakizo.com where it is discoverable when they look you up.
  3. Lead with what you notice, not what you sell. One sharp security insight when it is natural. Let the CVE receipts talk when it fits.
  4. Have the one-liner ready for when they ask. Sharp, memorable, makes them lean in.
  5. Warm follow-up when you can name people: offer one a free 15-minute look at a client site, your "we audit our own builds" move. Land a first circle client and a case study.
First Content Piece · paste-ready

Tied to the soccer moment. Your voice.

Sat with a group of developers this weekend. Sharp people, real businesses, one runs a 30-person team. We talked shop for an hour and not once did security come up. That is not a knock on them. It is the norm. Most teams ship fast and deal with security after something breaks. Deadlines are real, I get it. But two things quietly changed the math: 1. NDPA is now law in Nigeria. Every client site you run that collects a name or a phone number carries real compliance exposure now, not someday. 2. Everyone is bolting AI agents onto their products, and almost nobody is securing them. Prompt injection, tools an agent can abuse, credentials it forwards where it should not. I have found exactly that class of bug in a major vendor's AI gateway. I sit in a strange spot. I build, agencies, sites, multi-agent systems, and I also do security research, with a handful of CVEs credited in tools a lot of us use, File Browser, Gitea, Incus. So I see both sides. The teams that win the next few years will not be the ones that ship fastest. They will be the ones that ship fast AND can prove it is safe when a serious client asks. If you build, learn to think like the person trying to break it. Or keep someone close who does.
Spent an hour talking shop with a group of devs this weekend. Not one mention of security. NDPA is law now, and everyone is shipping AI agents with zero thought about securing them. I build AND I break, CVEs credited in tools we all use, so I see both sides. Ship fast, sure. But the teams that last are the ones that can prove it is safe when it matters.