root/portfolio
secure channel

$ find ./portfolio -type f | head

Selected Operations

Selected highlights from 15+ years of offensive security work.

Operation Highlights

Built Samsara's Offensive Security Program

Program Building2023 - June 2026
  • •Founding member; took the program from concept to mature operations
  • •CISO leadership team member driving strategy and OKRs
  • •Organization-wide red teaming across IoT, cloud, and corporate environments
  • •Identified critical CI/CD vulnerabilities leading to full enterprise compromise scenarios
  • •Built Terraform-based C2 infrastructure reducing deployment time by ~80%

AI/ML Security Pioneer

Emerging Tech2023 - June 2026
  • •Led adversarial testing of AI/ML features before production deployment
  • •Identified critical vulnerabilities in LLM integrations (prompt injection, data exfiltration)
  • •Developed testing methodologies for AI agent security
  • •Active contributor to MCP ecosystem tools

Salesforce M&A Red Team

Red Team2022 - 2023
  • •Led post-acquisition red team assessments evaluating integration risks
  • •Built reusable Terraform automation suites for standardized engagement infrastructure
  • •Purple teaming partnership with Blue Teams for continuous improvement
  • •Custom exploitation tools for diverse cloud/CI/CD stacks

Built Rapid7's IoT Security Practice

Practice Building2016 - 2022
  • •Created the entire IoT/hardware testing service line from inception
  • •Authored testing methodologies and playbooks adopted globally
  • •Managed a team of consultants with full performance oversight
  • •Hardware assessments across LoRaWAN, BLE, Zigbee, JTAG/SWD
  • •Published vulnerability research (R7-2019-57)

Brutespray

Tool DevelopmentOpen Source
  • •Created and maintain Brutespray (2.5k+ GitHub stars)
  • •Integrated into Kali Linux distribution
  • •Rewrote from Python to Go for performance and maintainability
  • •Supports 28+ protocols with Nmap/Nessus/Nexpose parsing