Skip to content

Me

Just a tech.

  • Cybersecurity Governance, Risk, and Compliance (GRC), including strong familiarity with NIST publications and the ISO/IEC 27000 family of standards (all 50+)
  • Enterprise Governance, Risk, and Compliance (GRC)
  • Cloud Security (offensive, defensive, and CSA-aligned enterprise architecture)
  • Infrastructure Security (cloud), including Zero Trust architectures
  • Linux and Windows systems administration
  • Offensive Security, including penetration testing and red teaming
  • Microsoft 365 Security (offensive and defensive techniques)
  • Defensive Security, including threat hunting and system hardening (Windows and Linux)
  • C# web development (ASP.NET, MVC, Minimal APIs, Blazor)
  • Web application security and secure coding reviews
  • .NET Development — Highly proficient in C#, focusing on MVC APIs, Minimal APIs, and Blazor, with a strong emphasis on secure coding practices.
  • Hack The BoxHack The Box Profile. Developed two custom machines: Blazorized and TargetedOps.
  • Book Reviews — Reviewed books for Manning Publications, including:
    • Secure APIs
    • Acing the ISC2 Cybersecurity Certification
    • Learn Docker in a Month of Lunches, 2nd Edition
  • Emerging Tech & Security — Enthusiastic about WebAssembly (WASM) and continuously exploring the latest in web security trends and research.

Below you can find my CV: