
Owner, Security Objectives
West Palm Beach, Florida Area

Owner, Security Objectives
West Palm Beach, Florida Area
Over a decade of experience as a security specialist. Lay persons may associate portions of my c.v. as "Red Team" style engagements. Having published numerous papers, tools or proof of concept exploit works, has culminated with the founding of Security Objectives Corp. and a determination to unveil our dynamic binary instrumentation (DBI) framework.
Our goal is to release a flaw finding factory, with near total automation, irrefutable test cases are created with various forms of application introspection and steering to deliver factual, objective results which are inherently unique and specific to the application code that is being tested. Coupled with a visualization paradigm that directly aids the identification of fundamental application architectural weaknesses and a long term security information management ability to continually feedback and snowball tactical, and situational information to ensure an evolved institutional ability for actionable and repeatable security measures.
To sum up, we hope to solve system failures due to implementation or architectural design choices, with no false positives and an absolute minimal code churn / developer code changes.
All forms of tactical technical IT security specialization. Proficient in identifying undocumented flaws, weaknesses or vulnerabilities in a systems architecture or implementation. Analysis and comprehension of security event artifacts, malware, trace data, or identified threat vector to isolate or determine root cause failure.
(Privately Held; 1-10 employees; Computer & Network Security industry)
2006 — Present (3 years)
Having worked for others my whole life (besides my paper route), I have recently started to tackel a number of pressing security issues and concerns with software.
(Self-Employed; Myself Only; Computer & Network Security industry)
1996 — 2006 (10 years)
Various contracts
(Privately Held; 10,001 or more employees; Financial Services industry)
2004 — 2005 (1 year)
At Bloombreg I reported directly to the CSO in a new group specifically created to operate and act with advanced security techniques and methods.
(Privately Held; Computer & Network Security industry)
2003 — 2004 (1 year)
@Stake being just down the block from core (2 Wall from 44 Wall st.) When CORE moved headquarters I stayed behind in NYC and worked with @Stake as many of my friends had been thier for some time.
(Privately Held; 51-200 employees; Computer & Network Security industry)
2002 — 2003 (1 year)
Having left IBM to work a startup (sort of) in New York. Sort of a startup in that CORE had been established for some time in South America and was making a push in to the USA.
CORE was a good time, lots of different responsabilities I was able to grow my sales experience and lean many aspects of a growing business
(Public Company; 10,001 or more employees; IBM; Computer & Network Security industry)
1999 — 2002 (3 years)
IBM Global Services
I worked in the Security and Privacy group for several years throughout North America.
IT Security, Hacking, My DOGS, Boxing :)
w00w00, The Honeynet Project, IEEE, NANOG
PWN to OWN (2007) - also with, Dino Dai Zovi (did most the work that time:)
PWN to OWN (2008) - also with, AlexanderSotirov (I did a lot of the work, he made his part look easy)