Jason Haddix

Jason Haddix Email and Phone Number

CEO | Hacker | Trainer at Arcanum Information Security @ Arcanum Information Security
Jason Haddix's Location
Aurora, Colorado, United States, United States
About Jason Haddix

I previously served as the Head of Global Cyber Security for Ubisoft, where I led all efforts in information security. My group protected over 20,000 employees worldwide with a vast scope (see job desc for more)In my previous roles such as Director of Penetration Testing, I led efforts on matters of information security consulting. The gamut stretched from developing penetration testing plans for Fortune 100 companies to competing in "bake-offs" to win business against other top-tier consulting vendors. I have also served as a Director of Operations, leading teams of highly technical Application Security Engineers and Technical Operations staff. In this role, I was an extension of (and advisor to) over 300+ security programs across many industry verticals. Under my direction, my team triaged over 22,000 vulnerabilities in 2018-2019 alone. Personally, I love being in the trenches and performing actual assessments, but I am also adept at handling clients, architecting solutions, designing services, improving business processes, managing technical consultants, training, technical writing, marketing, and delivering solutions. While my strengths are web, network/infrastructural, and mobile security, I have personally performed a myriad of other services and implemented them for a consultancy as a deliverable (mainframe, wireless, cloud assessment, database, OSINT, APT simulation, binary reversing, and static code analysis).In my free time, I write for several information security publications and am a semi-regular capture-the-flag player. I speak regularly at security conferences globally (DEFCON, Blackhat, OWASP, and many more)While I never call myself a "master" of anything, I do have a very particular set of skills; skills I have acquired over a very long career. These skills make me adept at helping businesses, finding security vulnerabilities, and leading a business to a better security posture.

Jason Haddix's Current Company Details
Arcanum Information Security

Arcanum Information Security

View
CEO | Hacker | Trainer at Arcanum Information Security
Jason Haddix Work Experience Details
  • Arcanum Information Security
    Ceo & Hacker & Trainer
    Arcanum Information Security Jan 2024 - Present
    I am the Founder, CEO, hacker, and trainer for Arcanum Information Security. We offer high tier cybersecurity consulting services and training.
  • Flare
    Field Chief Information Security Officer (Part Time)
    Flare Feb 2024 - Present
    Montreal, Quebec, Ca
  • Bugcrowd
    Strategic Advisor (Part Time)
    Bugcrowd Apr 2024 - Present
    San Francisco, Ca, Us
  • Buddobot
    Chief Information Security Officer
    Buddobot Jan 2023 - Dec 2023
    O'Fallon, Illinois, Us
  • Ubisoft
    Head Of Security And Risk Management
    Ubisoft Jul 2019 - Jan 2023
    Saint-Mandé, Île-De-France, Fr
    Led and managed a global security team tackling: Corporate Security: privacy, compliance, physical security, security awareness, business continuity, disaster recovery, crisis management, identity, fraud, and access management.Application and Infrastructure Security: red team, bug bounty, incident response, threat hunting, security architecture (cloud, enterprise, devsecops, web services)Game Security: production assistance, cheat testing, game security assessment, anti-piracy, anti-cheat.
  • Bugcrowd
    Vp Of Researcher Growth
    Bugcrowd Oct 2018 - Jun 2019
    San Francisco, Ca, Us
  • Bugcrowd
    Vp Of Trust And Security
    Bugcrowd Jan 2018 - Oct 2018
    San Francisco, Ca, Us
    As VP of Trust and Security, I provide leadership and guidance to Bugcrowd and it's customers relating to creating and sustaining high impact crowd-sourced security solutions (bug bounties and disclosure programs). On top of this, I manage a group of Security Engineers and Bug Hunters that leads special projects as well as does all Sales Engineering for Bugcrowd. In 2017 we tackled problems like matching crowds to complex technology stacks, remediation advice, target discovery technology, improved researcher tooling (presented at DEFCON 25), an Improved RFP process, and managing the incoming RFE process for the business. In 2018 our goals are to focus primarily on researcher enablement.
  • Bugcrowd
    Head Of Trust And Security
    Bugcrowd Sep 2016 - Jan 2018
    San Francisco, Ca, Us
    Dedicated to providing value to the global security market and the global security researcher community. I am responsible for providing leadership, strategic guidance, and operational guidelines to Bugcrowd and its clients. I am focused primarily on internal and external security policies, customer enablement, researcher engagement, and edge-case program management. I work with clients and security researchers to create high value, sustainable, and impactful bug bounty and responsible disclosure programs.
  • Bugcrowd
    Director Of Technical Operations
    Bugcrowd May 2015 - Sep 2016
    San Francisco, Ca, Us
    Responsible for managing and training internal analysts. We curate, triage, and validate vulnerability data from over 16,000 researchers including (but not limited to) hardcore vulnerabilities in mobile, web, and IoT applications/devices. We bring this data to enterprise clients to help bolster security operations programs. I also work with Bugcrowd to improve the security industries relations with researchers and work closely with sales, customer success, researcher operations, and marketing.
  • Hp Fortify
    Director Of Penetration Testing
    Hp Fortify Nov 2011 - May 2015
    Houston, Texas, Us
    At HP/Fortify I design methodologies and solutions to the toughest application security problems. Current projects include creating a binary analysis engine for iOS and Android applications, creating a security based asset discovery tool, interviewing/training mobile auditors, and maintaining the web/mobile/binary testing methodologies with cutting edge methods. This is on top of continued application assessments for iOS/Android/web applications and client interactions/pitches.I am also in charge of the following Penetration Testing processes:- Methodology Development- Mobile Application Testing- Infrastructure Testing- Web Application Testing- Social Engineering Testing- Vulnerability Assessment- Security Research- Process Development- Customer Interaction- Engineer Training and Development- Marketing and Industry Presence
  • Hp Fortify
    Sr Security Consultant (Professional Services)
    Hp Fortify Sep 2010 - Nov 2011
    Houston, Texas, Us
    As a Sr Consultant I was counted on to deliver high quality assessments under the HP name to approximately 25% of the Fortune Top 100 list (2012 Rankings) and follow up with concise recommendations for security and application remediation. I was also involved at the Sr level in the following:- Network Penetration Tests and Assessments- Web Application Penetration Testing and Assessments- Mobile Application Penetration Testing and Assessments- Thick/Binary Application Penetration Testing and Assessments- Security Process Development- Methodology Development- Infosec Journalist and Evangelism- RFP Responses- Service Offering Development- Environment building
  • Bugcrowd Inc
    Security Researcher, Leaderboard Position #1
    Bugcrowd Inc Mar 2014 - Oct 2014
    San Francisco, Ca, Us
    Bugcrowd is a crowdsourced security testing platform allowing security researchers to register and participate in security bug bounties. They retain up to 30,700 registered testers and gamify their results by keeping up a "leaderboard". This leaderboard is climbed by finding web and mobile vulnerabilities in bug bounty programs. Every year they recognize the top researcher in that "number one" position during the Blackhat and Defcon Security conferences. In 2014 I earned that title by occupying the #1 position.
  • Redspin, Inc
    Sr. Security Engineer / Lead Penetration Tester
    Redspin, Inc Aug 2009 - Sep 2010
    Austin, Tx, Us
    At Redspin I worked as Sr Engineer augmenting many of the already stellar audit methodologies with new penetration testing modules. I worked closely with other Sr staff to create the web assessment methodology. I also handled the following:- Large Scale External Penetration Tests and Assessments- Web Application Penetration Testing and Assessments- Social Engineering Assessments- Security Process Development- Tool Development- Infosec Journalist and Evangelism- RFP Responses- Service Offering Development- Pre-Sales calls
  • Citrix Online
    It Generalist
    Citrix Online Mar 2007 - Aug 2009
    Fort Lauderdale, Fl, Us
    At Citrix I provided general IT Support to the internal organization. I also worked with development and identified security issues in internal web applications (XSS, session, SQLi, etc).

Jason Haddix Skills

Penetration Testing Vulnerability Assessment Web Application Security Information Security Network Security Application Security Security Computer Security Firewalls Cissp Information Security Management Security Research Vulnerability Management Networking Security Audits Cryptography Intrusion Detection Cloud Computing Cloud Security Security Awareness Linux Computer Forensics Data Security Mobile Security Infrastructure Security Metasploit Internet Security Social Engineering Vulnerability Scanning Ips Iso 27001 Dlp Hacking Hands On Training Auditing Information Assurance Mobile Applications Encryption Pki Training Delivery Pci Dss Nmap Wireless Security Ceh Ids Tcp/ip Online Journalism Methodology Implementation Marketing Strategy Security Architecture Design

Frequently Asked Questions about Jason Haddix

What company does Jason Haddix work for?

Jason Haddix works for Arcanum Information Security

What is Jason Haddix's role at the current company?

Jason Haddix's current role is CEO | Hacker | Trainer at Arcanum Information Security.

What is Jason Haddix's email address?

Jason Haddix's email address is ja****@****oft.com

What is Jason Haddix's direct phone number?

Jason Haddix's direct phone number is +180561*****

What are some of Jason Haddix's interests?

Jason Haddix has interest in Writing, Paintball, Hacking, Gaming, Security, Being A Daddy.

What skills is Jason Haddix known for?

Jason Haddix has skills like Penetration Testing, Vulnerability Assessment, Web Application Security, Information Security, Network Security, Application Security, Security, Computer Security, Firewalls, Cissp, Information Security Management, Security Research.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.