About

Who I Am

I'm a U.S. Marine Corps veteran and security-minded IT professional, currently working as a Service Desk Analyst in Microsoft enterprise environments — Azure/Entra ID, Intune, and Microsoft 365. Over the last several years I've built a broad cybersecurity foundation across security operations, identity, and cloud, and I'm now specializing in understanding and investigating real-world adversaries. What pulls me toward threat intelligence is the investigative side of it: taking a single lead and following it through infrastructure, malware, and network behavior until it becomes something a defender can actually act on. I'm pursuing an M.S. in Information Security Engineering at the SANS Technology Institute to go deep on cyber threat intelligence, network forensics, and reverse engineering, and I run a self-built, segmented home lab where I generate attacker behavior and then go look for it in the telemetry it leaves behind.

I don't believe privacy is about having something to hide. It's about having the choice to decide what the world knows about you.

Always Leveling Up

Currently pursuing an M.S. in Information Security Engineering at the SANS Technology Institute, the newest rung on a deliberate, ongoing climb. Every certification below was a stepping stone, not a finish line.

Currently Expanding Into

The target is the full investigative loop: track an adversary from an initial piece of intelligence through their infrastructure and tooling, characterize how they operate, and turn that into detections that hold up in production. The offensive fundamentals I built earlier stay useful here — knowing how an attack is run is what makes its traces recognizable — but the destination is the defensive side of that exchange, not the offensive one.

Open to conversations about SOC, threat intelligence, threat hunting, and detection roles, as well as mentorship and collaborative research. Always happy to connect if you're building in this space.

Currently Reading

Battlefield Cyber book cover Battlefield Cyber Michael McLaughlin
Destination CISSP book cover Destination CISSP Rob Witcher
CISSP Study Guide book cover CISSP Study Guide Mike Chapple
PowerShell for Sysadmins book cover PowerShell for Sysadmins Adam Bertram
Automate the Boring Stuff with Python book cover Automate the Boring Stuff with Python Al Sweigart

Capabilities

Core Skills

Honestly levelled. “Proficient” is reserved for work I do day to day and get paid for — nothing in the threat intelligence, forensics, or malware groups carries it yet, because that is the direction I'm heading, not a claim about where I already am.