I am simultaneously the architect (builder) of and breaker of things (offensive cyber security). I was once the youngest person to receive the CISSP at the age of 19. 18 years of experience in the information security and cybersecurity field in startup and large corporate environments, primarily focusing on software security. Excellent interpersonal and team-building skills. Technical skills and experience across multiple industry verticals including, but not limited to finance, marketing, sales, IT, manufacturing, engineering, and industrial control systems. Exceptional analytical and problem-solving skills along with the ability to communicate with all levels of the business from engineers to C-level executives.Experienced and highly skilled security engineer with the most substantial background in information security and risk management. This is reinforced by in-depth knowledge of many aspects of IT, software development lifecycles (SDLC), and DevSecOps. I have the proven ability to create cost-effective and manageable security solutions that align with the business and its risk appetite.Some things I do day in and day out:• Perform superhuman feats• Bolster corporate security• Protect intellectual property• Limit corporate liability• Safeguard corporate brands, finances, and reputation• Ensure compliance• Give confidence to customers, stakeholders, employees, partners, and government• Find vulnerabilities that others cannotSpecialties: Penetration Tests, Vulnerability Management, Risk Assessments and Management, Threat Modeling, Enterprise Security, Social Engineering, Policy Development, Process Development, Program Management, Contract Negotiations and Review, Industrial Controls Systems, Incident Readiness & Response, Disaster Recovery & Business Continuity Planning, Escalation Procedures, Governance and Privacy Reviews (i.e., NIST, HIPAA, SOC2, PCI, etc.), Information Security Management (i.e. ISO 27001, CobIT, ISM3, CIS benchmarks, etc.), Governance, Risk, and Compliance (GRC), and Application Security (OWASP, BSIMM, SAMM, ASVS, best practices, etc.)