
Software Security Consultant at Strong Crypto
Washington D.C. Metro Area

Software Security Consultant at Strong Crypto
Washington D.C. Metro Area
Alexander J. Fry is a published Author, Ethical Hacker, and Security Expert who leads mission-critical projects for organizations of all sizes including Fortune 500 corporations and the US Federal government.
He was a subject matter expert for ISC2 involved in writing and reviewing exam questions for the new CSSLP credential and co-authored, with Ronald L. Krutz, the first test prep guide for the CSSLP, entitled "The CSSLP Prep Guide: Mastering the Certified Secure Software Lifecycle Professional", published by Wiley and available on Amazon.com.
Alexander began programming at a young age. By the time he was a teenager, he was an avid computer hobbyist with experience on several computing platforms. In addition to programming, he was always building things, leading to an interest in engineering.
He was nominated by Senator John Warner to the US Merchant Marine Academy in Kings Point, NY. While at the academy, he studied marine engineering systems and spent half of his sophmore and junior years as an engineering cadet sailing on merchant ships to countries in North/East Africa, Western Europe, and the Mediterranean.
After graduating from the academy, he gained experience as a design and operational engineer and became the youngest Chief Engineer in the fleet of Oil Spill Response Vessels run by DynMarine Services. As the graphical Web came into fruition, he was drawn into computing as a career path and launched his own consultancy. This led to professional software engineering, information technology positions, and the co-founding of an IT security startup in the late 90s.
Web Application Security and Software Security Assurance including Architectural Risk Analysis, Security Testing, Code Review, Strategic Initiatives, Education, and Training.
(Non-Profit; Computer Software industry)
November 2009 — Present (5 months)
http://www.owasp.org/index.php/Global_Industry_Committee
(Computer & Network Security industry)
January 2008 — Present (2 years 3 months)
http://www.nasa.gov/offices/ocio/about/index.html
(Privately Held; Computer & Network Security industry)
November 2006 — Present (3 years 5 months)
Strong Crypto LLC provides software security services and training to organizations with critical applications. We have offices in Northern Virginia and Washington, DC and specialize in working with the US Federal government and Fortune 500 clients in industries such as health care, finance, and real estate.
Since founding Strong Crypto I have led several high profile consulting engagements including security test and evaluation of high baseline and classified systems for the US Federal government.
I have worked with many organizations including:
• National Aeronautics and Space Administration (NASA)
• Department of Commerce (DOC)
• Department of Housing and Urban Development (HUD)
• Internal Revenue Service (IRS)
• Depository Trust and Clearing Corporation (DTCC)
• PricewaterhouseCoopers (PwC)
• Kaiser Permanente
(Information Technology and Services industry)
July 1999 — Present (10 years 9 months)
I participated in the Open Web Application Security Project (OWASP) Summer of Code 2008 (SoC 2008), as a reviewer for the following projects:
*Teachable Static Analysis Workbench
*Source Code Review OWASP Projects
I worked on one software project that has been released under the GPL:
* Hamilton, the first Open Source Java application server (while Senior Software Engineer at Microstate)