Internal networks and identity
Enterprise network controls, Palo Alto, VPN, NAC, segmentation, Active Directory, Entra ID, Group Policy, Intune, and hybrid identity.
Security engineering · Vulnerability research · Offensive security · Automation
Security engineering and vulnerability research grounded in real production environments, with practical offensive testing and custom automation.
I bring defender/operator context to assessment work: exploitability, evidence, production risk, and remediation.
Credibility strip
Focus
Enterprise network controls, Palo Alto, VPN, NAC, segmentation, Active Directory, Entra ID, Group Policy, Intune, and hybrid identity.
Burp Suite, OWASP testing concepts, authentication and access-control analysis, SAST/DAST, secure SDLC context, and responsible disclosure.
Validate exploitability and controls with threat emulation, vulnerability assessment, and Python, PowerShell, Bash, and API-driven automation.
Capabilities
Proof points
Selected work themes
5+ years supporting regulated financial-services environments with distributed enterprise infrastructure and identity.
Independent reporting with safe reproduction, impact boundaries, evidence, and remediation context.
Build repeatable collection, testing, and validation tools instead of relying solely on scanners.
Contact
Appropriate for recruiting, security research follow-up, consulting fit checks, and product-security conversations.