Ceo, Virtual Ciso & Security Evangelist
CurrentEntrepreneur, Inventor & Futurist with a focus on crime, fraud & industrial espionage. Interested in the impacts of technology across these activities.Security & criminal economics researcher with a history of responsible disclosure, rational approaches & substantial findings. World-class experience with ICS/SCADA, utility & critical networks including segmentation, pen-testing, protocol/process weaknesses & incident response. Deep knowledge of fuzzing, honeypots & attacker deception/tampering.Designed security programs & point solutions that saved clients money, resources & risk exposures. Created new approaches for managing risks, threats & vulnerabilities that applied leverage & scope management to create effective & long-term solutions to unique security problems.Designed bleeding edge solutions for Digital Rights Management (DRM), IP protection & data flow assurance on a global scale.Patent on "defensive fuzzing”, a technique for active defense of applications, systems & network environments without human intervention. Second patent on a machine learning method to improve the performance of fuzzing techniques.Performed assessments, penetration testing & security research/consulting for global companies, across a variety of industries. Led the red team penetration testing for all voting systems used in the State of Ohio as a part of Project EVEREST. Google "brent huston", "microsolved" & "lbhuston" for more information.Author of Passys, HoneyPoint™ Security Server, TigerTrax™ Analytics & Machine Learning Platform, ProtoPredator™, SimplePhish, Stolen Data Impact Model, InfoSec 80/20 Rule & many other risk, threat & vulnerability management tools.History of Congressional & public testimony. Former weekly columnist & Site Guide for ITWorld. Speaker at Black Hat, DerbyCon, DEFCON, CUISPA, ISSA, ISACA & various other groups on an international basis. Co-Author of HackProofing Your E-Commerce Site. Blog & podcast at StateOfSecurity.com