Corey Neskey

Corey Neskey Email and Phone Number

CTO and Co-Founder at Derive @ Derive
Corey Neskey's Location
Arlington, Virginia, United States, United States
Corey Neskey's Contact Details

Corey Neskey personal email

About Corey Neskey

I’ve been providing analyses, architecting secure environments, and leading security program implementations in IT security and risk since 2011. My career started with solving problems and informing executive decision making with algebraic data analyses for explanation, simulation and attribution (i.e. data driven intelligence analysis, forensics, SOC and CIRT), optimization (i.e. Monte Carlo simulation for risk assessment), descriptive and predictive methods (i.e. machine learning/AI for risk assessment, vulnerability prioritization, and event correlation). My problem-solving toolset has expanded beyond algebraic methods and static probability calculus to using probabilistic programming languages (PPL) like PyMC and Bayesian network models. I’ve packaged these insights into a powerful risk modeling platform, cybersecurity inference engine, and API called Derive that will change the landscape of quantitative risk assessment. I hold a Master of Science in cybersecurity intelligence and forensics, a CISSP, and undergraduate degrees in science and philosophy. Prior to co-founding Derive, I worked as Vice President of Quantitative Risk at Hive Systems, and held cybersecurity engineer and analyst roles at RSA, EMC, HFCU, Dell SecureWorks, Dow Jones, Bloomberg L.P, and NYU.

Corey Neskey's Current Company Details
Derive

Derive

View
CTO and Co-Founder at Derive
Corey Neskey Work Experience Details
  • Derive
    Chief Technology Officer
    Derive May 2023 - Present
    I co-founded and lead development of Derive, a web-based decision support platform for probabilistic risk modeling and management in cybersecurity.- Built TB sized data pipelines to collect data and enrich feature sets for hierarchical analytic and machine learning model development - Created data warehouse architecture model for machine learning model development platform to improve model reusability and reduce development time- Migrated ad-hoc collection pipelines to standardized platform to simplify data model and reduce operational requirements and maintenance costs
  • Hive Systems
    Vice President, Quantitative Risk
    Hive Systems Sep 2021 - May 2023
    Richmond, Virginia, Us
    I help clients model the costs, benefits, and risks that come with their use of information technology and data.Other services I routinely provide to our clients:- Create and drive security roadmap.- Plan and establish ongoing security people, process, and technology required to achieve and maintain SOC 2 ISO and other framework compliance.- Manage compliance automation programs (SOC 2, ISO 27001, HIPAA, etc.)- Manage Bug Bounty Program.- Implement security controls across organization, from infrastructure to CI.- Implement and run manual and automated security practices to mitigate vulnerabilities.- Security reviews, threat modeling, disaster recovery tabletop practice, and code reviews.- Security engineering, ownership and leadership roles, technical project management.- Secure configuration of networking and infrastructure and load balancing, VPNs, Zero Trust, HTTPS etc.- Secure configuration and auditing of multi-tenant cloud environments.- Plan and implement Endpoint Management, XDR, EMR, and SOAR people process and technology.- Programmatic methods for all of the above using common shell scripting languages, Python and R.- Train new staff in all of the above for Hive Systems.- Train new staff in all of the above for clients.
  • New York University - College Of Dentistry
    Assistant Director, Cybersecurity Analytics And Operations
    New York University - College Of Dentistry Dec 2019 - Sep 2021
    New York, Ny, Us
    Lead information system security data collection, analysis, reporting, executive communication, and remediation efforts to cost-effectively achieve and maintain an acceptable level of loss exposure.Provide IT hands-on assistance in reviewing and re-engineering processes i.e. projects, operations, regulatory posture, incident response, and training/awareness.Roles at College of DentistryStrategic roles:- Information security risk analytics architect and program manager- Information security and compliance framework architect and managerOperational roles:- Security data sysadmin- Security operations center (SOC) manager- Information security technical project managerTactical roles:- Information security critical incident response team (CIRT) lead
  • New York University - College Of Dentistry
    Sr. Information Security Analyst
    New York University - College Of Dentistry Jun 2016 - Dec 2019
    New York, Ny, Us
    Lead information system security data collection, quantitative analysis, reporting, executive communication, and remediation efforts to cost-effectively achieve and maintain an acceptable level of loss exposure.Provide IT hands-on assistance in reviewing and re-engineering processes i.e. projects, operations, regulatory posture, incident response, and training/awareness.Develop data collection and analysis scripts and business processes to facilitate the above functions.Roles at College of DentistryStrategic roles:- Information security risk analytics architect and program manager- Information security and compliance framework architect and managerOperational roles:- Security data sysadmin- Security data application developer and database admin- Security operations center (SOC) manager- Information security technical project managerTactical roles:- Information security critical incident response team (CIRT) lead
  • Dell Secureworks
    Sr. Information Security Systems Advisor
    Dell Secureworks Feb 2016 - Apr 2016
    Atlanta, Ga, Us
    - Performed and communicated DFIR to client and advised security program development efforts.- Developed and maintained client asset classification and categorization.- Developed client’s change management processes.- Provided information security technical project management assistance.- Acted as DFIR lead and liaison for client and SecureWorks SOC.
  • Bloomberg Lp
    Cyber Security Operations Center (Soc) Analyst
    Bloomberg Lp Aug 2014 - Dec 2015
    New York, Ny, Us
    Worked on a (fantastic) team of DFIR analysts and engineers analyzing attack, malware, and threat intelligence data to identify threats and improve custom detection technologies.
  • Hanscom Federal Credit Union
    Risk And Information Systems Security Analyst
    Hanscom Federal Credit Union Sep 2012 - Aug 2014
    Hanscom Afb, Ma, Us
    - Provided internal information security consulting, assessment, and research for executive management.- Performed security vendor management and assessment.- Managed internal IT, DR/BCP, and physical security audit projects, relationships, and reporting.- Developed and maintained DFIR SIEM correlation engine, alerting, and response program.- Identified, triaged, and documented investigations of potentially compromised devices.- Performed network and device forensics.- Maintained and enhanced information security program in compliance with FFIEC, GLBA, SoX, PCI-DSS, and multiple state data protection laws.- Operationalized information security guidance (NIST), education, and compliance solutions. - Enhanced vendor management/outsourcing policies, standards, procedures, and databases.- Performed quantitative value-based enterprise risk assessments.- Monitored and recommended controls for complying with emerging legislation, regulatory, and environmental changes.- Maintained and enhanced user education program in information security best practices.- Performed new-hire information security training.- Developed cost-saving security and compliance solutions for internal use.
  • Emc
    It Security Risk Analyst Associate
    Emc May 2011 - Dec 2011
    Round Rock, Texas, Us
    Supported the efforts of the Global Security Organization by providing consultative support and security expertise as part of a team in:Determining risk and impact to EMC of new products and services,Performing enterprise risk assessment and remediation,Developing a project plan to draft EMCs Information Security policies, standards, and procedures,Drafting EMC’s new Information Security policies, standards, and procedures,Dispatching reports of critical incidents to appropriate departments,Assisting in PCI-DSS Compliance recertification for EMC and acquisitions,Collecting and preprocessing data for analysts, consultants, and business, andResponding to concerns presented through community information security inbox.
  • University Of New Hampshire
    Research Assistant - Unh Complex Systems Stable Isotope Lab
    University Of New Hampshire May 2010 - May 2011
    Durham, New Hampshire, Us
    Analyzed isotope ratio data and presented findings to collaborators.Operated mass spectrometer and reduction array laboratory equipment.Solved equipment calibration problems with data validation and calibration testing.Maintained High-Performance Liquid Chromatography (HPLC) machine.Performed Bartlett Experimental Forest - USDA Forest Service mycoforestry field work.
  • University Of New Hampshire
    Information Technology Consultant
    University Of New Hampshire Sep 2009 - May 2011
    Durham, New Hampshire, Us
    Provided service and support to UNH Student, Faculty, and Staff with computer software and networking issues.
  • University Of New Hampshire
    Multimedia Technology Consultant
    University Of New Hampshire Sep 2009 - May 2011
    Durham, New Hampshire, Us
    Analyzed and remedied hardware/software issuesProvided multimedia software, hardware, and filming equipment supportDocumented hardware/software interoperabilityProduced new instruction manuals and searchable database for Media lab and Rental center equipmentImplemented troubleshooting system with uniform format, policy, and archiving methods
  • University Of New Hampshire
    Research Assistant Unh Research Farms
    University Of New Hampshire May 2009 - May 2011
    Durham, New Hampshire, Us
    Woodman Horticultural Research Farm (Research, teaching and outreach on the production of horticultural and ornamental crops.)Worked with team to harrow and maintain University research project farm grounds.Operated medium scale farm equipment (harrowing, cultivating, irrigation etc.)Appreciating nature.

Corey Neskey Skills

Information Security Computer Security Network Security Computer Forensics Information Technology Risk Assessment Malware Analysis Disaster Recovery Enterprise Risk Management Risk Management Incident Response Information Security Management Vendor Management Counterintelligence Social Engineering Business Continuity Vulnerability Management Splunk Leadership Intelligence Analysis Quantitative Risk Analysis R Research Machine Learning Data Science Statistics Python Monte Carlo Simulation Bayesian Networks Artificial Intelligence Quantitative Risk Bayesialab

Corey Neskey Education Details

  • Utica University
    Utica University
    Cybersecurity Intelligence & Forensics
  • University Of New Hampshire
    University Of New Hampshire
    Philosophy
  • Nashua Community College
    Nashua Community College
    General Studies

Frequently Asked Questions about Corey Neskey

What company does Corey Neskey work for?

Corey Neskey works for Derive

What is Corey Neskey's role at the current company?

Corey Neskey's current role is CTO and Co-Founder at Derive.

What is Corey Neskey's email address?

Corey Neskey's email address is cn****@****ail.com

What is Corey Neskey's direct phone number?

Corey Neskey's direct phone number is +184390*****

What schools did Corey Neskey attend?

Corey Neskey attended Utica University, University Of New Hampshire, Nashua Community College.

What skills is Corey Neskey known for?

Corey Neskey has skills like Information Security, Computer Security, Network Security, Computer Forensics, Information Technology, Risk Assessment, Malware Analysis, Disaster Recovery, Enterprise Risk Management, Risk Management, Incident Response, Information Security Management.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.