
Senior Security Architect / Penetration Tester
Charleston, South Carolina Area

Senior Security Architect / Penetration Tester
Charleston, South Carolina Area
I have over 37 years experience in Information Technology and have worked in a variety of industries. My current emphasis is penetration testing; application, information, systems, and network security consulting and research; and security architectures. I am also the co-founder and managing director of The Textbook Security Project.
My offensive security consulting covers a wide range of activities, including static analysis, competitive intelligence, vulnerability assessments, penetration testing, ethical hacking, custom exploit development, physical security, social engineering, and other passive and active assessments.
My defensive security consulting emphasizes application, systems and network hardening to reduce exposure, and the deployment of tools to rapidly identify and mitigate security events when they occur. It also includes security policies and procedures, employee awareness training, unified security consulting, threat assessments, intellectual property protection, and other risk reduction consulting.
My expertise includes a diverse range of areas, including: vulnerability assessments, penetration testing, and ethical hacking; secure system architectures; web application and infrastructure hardening; security management consulting; security policy development and deployment; secure programming; security and software security quality assurance; incident response; Unix / Linux systems hardening; high security high availability network architecture, design, and implementation; router, switch, and firewall hardening; intrusion detection; secure remote access; name server hardening; and user and management awareness training.
Vulnerability Assessment
Penetration Testing
Ethical Hacking
Competitive Intelligence
Security Architectures
High Security High Availability Networks
Unix / Linux Security and Hardening
Intellectual Property Security
Industrial Controls (SCADA, PLC, DCS, etc.) Security
Firewalls (Cisco, ASA, iptables, etc.) and Firewall Security Testing
IDS / IPS (Snort, Cisco)
VPNs
Security Awareness Training
Co-Founder and Managing Director: The Textbook Security Project Current Research: The Textbook Security Project Fuzzing and Custom Exploit Creation Automation Attacks against split tunnel VPNs Net flow and NAT based malware detection
Member, International Council on Systems Engineering
Member, Computer Security Institute
Member, Information Systems Security Association
Member, International Council of E-Commerce Consultants
Member, Society of Competitive Intelligence Professionals
Program Co-Chairman, Computer Security Conference 2009
Program Chairman, Computer Security Conference 2010