AeroLeads people directory · profile

Ryan Crabb Email & Phone Number

Manager of Digital Forensics at Arete Incident Response
Location: Washington Dc-Baltimore Area, United States 13 work roles 1 school
1 work email found @areteadvisorsinc.com 2 phones found area 703 LinkedIn matched
✓ Verified July 2026 4 data sources Profile completeness 100%

Contact Signals · 1 work email · 2 phones

Work email r****@areteadvisorsinc.com
Direct phone (703) ***-****
LinkedIn Profile matched
3 free lookups remaining · No credit card
Current company
Role
Manager of Digital Forensics
Location
Washington Dc-Baltimore Area, United States
Company size

Who is Ryan Crabb? Overview

A concise factual answer block for searchers comparing this professional profile.

Quick answer

Ryan Crabb is listed as Manager of Digital Forensics at Arete Incident Response, a with 447 employees, based in Washington Dc-Baltimore Area, United States. AeroLeads shows a work email signal at areteadvisorsinc.com, phone signal with area code 703, and a matched LinkedIn profile for Ryan Crabb.

Ryan Crabb previously worked as Director of Digital Forensics at Arete and Associate Director of Forensics at Arete. Ryan Crabb holds Bachelor'S Degree, Information Systems Security from American Public University System.

Company email context

Email format at Arete Incident Response

This section adds company-level context without repeating Ryan Crabb's masked contact details.

{first_initial}{last}@areteadvisorsinc.com
89% confidence

AeroLeads found 1 current-domain work email signal for Ryan Crabb. Compare company email patterns before reaching out.

Profile bio

About Ryan Crabb

Provide digital forensics investigations and incident response to various industries. Investigations performed include but not limited to ransomware/crimeware attacks, business email compromise (BEC), insider threat and trade secret theft. Forensic preservation, triage and analysis of host-based, network and memory artifacts is performed on various system including Windows, Linux, Mac OS, mobile and cloud platforms.

Listed skills include Computer Security, Security, Networking, Incident Response, and 14 others.

Current workplace

Ryan Crabb's current company

Company context helps verify the profile and gives searchers a useful next step.

Arete Incident Response
Arete Incident Response
Manager of Digital Forensics
Washington, DC, US
Employees
447
AeroLeads page
13 roles

Ryan Crabb work experience

A career timeline built from the work history available for this profile.

Director Of Digital Forensics

Current

Boca Raton, Florida, Us

Jan 2024 - Present

Associate Director Of Forensics

Boca Raton, Florida, Us

Jun 2023 - Jan 2024

Manager Of Digital Forensics

Boca Raton, Florida, Us

As Manager of Digital Forensics, I work with the Senior Director of Forensics to help manage and lead engagements for multiple DFIR teams. Oversee client engagements across the squads including management, client deliverable review, and promoting consistency across the squads. Develop client relationships through projects and work to cultivate and build the relationship.• Overlooking the forensics process and quality across multiple squads/teams. This includes but not limited to the forensic data and artifact collection process, quality of the forensic analysis, and the satisfaction of the client, counsel, and carrier.• Ability to investigate sophisticated breaches leveraging unique tactics, techniques, and procedures (TTPs).• Ability to provide forensic expertise and provide support on Scoping Calls and one-on-one calls with client, counsel, and carrier.• Act as a mentor, assisting staff, provide review of all forensic work product to ensure consistency and accuracy, and support based on workload or complexity of matters.• Develop client relationships through the execution of projects across the assigned squads.• Responsible for maintaining target utilization that comes from client billable work including forensicanalysis, participating in client update or forensic scoping and update findings calls, client correspondence related to forensic analysis, data collection, or investigative questions verbally or in writing.• Support Director of Forensics with identifying process and technical improvements, training opportunities, assessing, and onboarding new technologies.• Support Director of Forensics with delegating and managing the squads.• Work with team members to advise various counsel and/or carriers on Arete’s businessmethodology, post-breach and post-IR process, and overall support that Arete can provide.• Contribute to the curation of threat intelligence related to breach investigations.

Jul 2021 - Jun 2023

Forensic Lead

Boca Raton, Florida, Us

The Forensic Lead manages all aspects of the Incident Response engagement, including team’s performance, delivery and client development. Operating as industry leader in Incident Response, and trusted advisor, to the client and breach coach ensuring 100% client success! Forensics Leads provide breach coaches and Insurance Carriers tailored detailed analysis and reports on how unauthorized access and cyber intrusion occurred* The Forensic Lead is responsible for providing their forensic data and artifact collection requests needed for the forensic analysis and ensuring the data is collected, delivered, and processed in accordance with the project SLT.* Supporting the Director, as a Forensic SME for all active forensic analysis for projects assigned to them.* Responsible for maintaining target utilization that comes from client billable work including forensic analysis, participating in client update or forensic scoping and update findings calls, client correspondence related to forensic analysis, data collection, or investigative questions verbally or in writing.* Client facing when needed to assist on forensic update calls to ensure accurate updates are conveyed as they relate to the investigation.* Communicate both verbally and in writing to answer client and counsel questions related to the forensic investigation.* Support the IR Director with delegating and managing the Senior Analysts and Analysts who report to Forensic Lead.* Conduct performance reviews of all forensic analyst direct reports.* Maintain a case load of at least two cases for which we conduct forensic analysis. The case load will be maintained alongside the Forensic Lead’s other responsibilities duties.* Conduct final review of the report from the perspective of the forensic investigator ensuring all possible investigative questions were addressed in the analysis and requesting additional context or analysis when the report requires more work.

Apr 2020 - Aug 2021

Forensic Examiner

Boca Raton, Florida, Us

Jun 2019 - Apr 2020

Forensic Analyst

Martinsburg, Wv, Us

As a Forensic and Malware Analyst for the Veterans Affairs NSOC, I am responsible for performing post mortem forensic analysis as well as malware reverse engineering. My current job duties include: • Utilize EnCase and 3rd party forensic tools to perform computer forensic services in support of designated cybersecurity investigations, and documentation • Conduct forensic evidence collection and maintain chain of custody for all digital evidence in accordance with NIST, VA and OMB standards • Provide targeted attack detection and analysis, including the development of custom signatures and log queries and analytics for the identification of targeted attacks • Utilize security tools to include Splunk, McAfee ePO and SIEM to correlate and analyze network sensor data with host forensics • Produce technical analysis reports including root cause analysis summarizing analyzed hosts and/or artifacts discovered during incident investigation and research, forensic evidence collected, proof of chain custody adherence, etc. • Maintain and provide operational support for deployment of EnCase Enterprise, and administration and management of components for VA computer forensics laboratories • Perform in-depth dynamic and static file analysis as well as reverse engineering to determine the nature of unknown or potentially malicious files found during investigations • Collect malware artifacts safely for analysis and incident investigations • Perform URL/domain analysis to identify and report any malicious indicators associated with the resource and evaluate associated risks • Manage, operate and maintain the VA malware analysis lab isolated from the network and ensure 100 percent containment • Use Open Source intelligence (OSINT) to research vulnerabilities in support of cyber related incidents • Produce technical analysis reports summarizing malware analysis support provided and recommendations for remediation

Apr 2019 - Jun 2019

Forensic Analyst

Huntsville, Al, Us

As a Forensic and Malware Analyst for the Veterans Affairs NSOC, I am responsible for performing post mortem forensic analysis as well as malware reverse engineering. My current job duties include: • Utilize EnCase and 3rd party forensic tools to perform computer forensic services in support of designated cybersecurity investigations, and documentation • Conduct forensic evidence collection and maintain chain of custody for all digital evidence in accordance with NIST, VA and OMB standards • Provide targeted attack detection and analysis, including the development of custom signatures and log queries and analytics for the identification of targeted attacks • Utilize security tools to include Splunk, McAfee ePO and SIEM to correlate and analyze network sensor data with host forensics • Produce technical analysis reports including root cause analysis summarizing analyzed hosts and/or artifacts discovered during incident investigation and research, forensic evidence collected, proof of chain custody adherence, etc. • Maintain and provide operational support for deployment of EnCase Enterprise, and administration and management of components for VA computer forensics laboratories • Perform in-depth dynamic and static file analysis as well as reverse engineering to determine the nature of unknown or potentially malicious files found during investigations • Collect malware artifacts safely for analysis and incident investigations • Perform URL/domain analysis to identify and report any malicious indicators associated with the resource and evaluate associated risks • Manage, operate and maintain the VA malware analysis lab isolated from the network and ensure 100 percent containment • Use Open Source intelligence (OSINT) to research vulnerabilities in support of cyber related incidents • Produce technical analysis reports summarizing malware analysis support provided and recommendations for remediation

Aug 2017 - Apr 2019

Senior Cyber Security Operations Analyst

Vienna, Virginia, Us

As a senior analyst, I am the primary SME for Splunk and the FireEye suite. My duties are to act as an escalation point to Tier 1, perform network forensics and analysis as well as provide guidance to junior team members. My current job duties include: • Provide in-depth analysis of potential intrusions and of tips forwarded from other security team members, constituents and stakeholders • Utilize internal and third party intelligence to seek threats and intrusions within the network • Perform cyber intel fusion by extracting data from intelligence and synthesizing it into new signatures and alerts • Execute countermeasures such as DNS sinkholes and system quarantining • Provide analysis on forensic artifacts • Perform dynamic malware analysis • Author and implement signatures for IDS/IPS, SIEM and other sensors • Perform in-depth network and memory forensics • Build dashboards based on investigation techniques and operationalize for Tier 1 • Develop standard operating procedures (SOP) and knowledgebase articlesACCOMPLISHMENTS AND PROJECTS • Designed and implemented the NIH Tabletop Exercise • Was acting team lead on two separate occasions. During this time, I have managed a team of 5 and a team of 9 Tier 1 and Tier 2 Security Analysts. • Member of team responsible for restructuring of the NIH Security Operations program • Assisted in the design of the NIH Incident Response framework • Developed training program for Tier 1 Security Analysts • Member of team responsible for deployment of FireEye NX and HX • Assist in the deployment of Palo Alto URL filtering

Apr 2017 - Aug 2017

It Security Analyst

Vienna, Virginia, Us

Contractor- National Institutes of HealthAs a Tier 1 analyst, my job is to act as incident response coordinator as well as to monitor alerts obtained from the IDS, third party intelligence and the various institutes that we support. Duties performed include: • Provide initial analysis and triage of security incidents as obtained from tips, incident reports, and requests for CND services from constituents received via phone, email and ticketing system • Review logs for suspicious events and escalate to Tier 2 • Perform static malware analysis on suspicious artifacts • Coordinate incidents for affected constituents to gather further information about an incident, understand its significance, and provide guidance on required actions • Implement countermeasures such as blocking indicators of compromise or host IP at boarder firewall, disabling Active Directory accounts, email and VPN accounts • Escalate investigations/incidents to Tier 2 or Subject Matter Experts • Report lost or stolen equipment as reported by constituents • Answer requests for information from constituents as it relates to CND services

Jan 2015 - Apr 2017

Computer Analyst

Falls Church, Va, Us

Contractor- National Cancer Institute/ National Institute on Drug Abuse• Serve as team lead for the three NIDA Helpdesk technicians. • Act as POC for team and Information Resource Management Branch (IRMB) regarding Mac, Network Access Control, Personal Identity Verification (PIV), Malware Remediation and Tier 3 escalation. • Perform diagnostic tests using various tools. • Support installation, maintenance, and troubleshooting of hardware, software and network issues. • Assisted in the creation and maintenance of the Standard Operating Procedure. • Act as POC to the Infrastructure Team with regards to NIDA’s networking equipment. • Train new NIDA Helpdesk Technicians. • Image and deploy new laptops and desktops

Dec 2013 - Jan 2015

Computer Analyst

Gaithersburg, Maryland, Us

Contractor- National Cancer Institute/ National Institute on Drug Abuse• Performed diagnostics using various tools. • Supported installation, maintenance, and troubleshooting of hardware, software and network issues. • Imaged and deployed new laptops and desktops. • Assisted in the creation and maintenance of the Standard Operating Procedures. • Installed and maintained network-managed devices. • Served as team lead for six-person team at the NCI call center. • Managed employee shift hours. • Approved computer rebuilds upon data verification. • Perform Tier 1 technical support via phone and email. • Led various projects for the call center team. • Acted as POC and operator of the 6116 Executive Blvd Lifecycle Workstation, assisting users with PIV card pin resets, certificate renewals, and PIV card troubleshooting. • Provided phone support to end users, assisting in account-related issues in Active Directory.

Jul 2011 - Dec 2013

Operations Manager/System Administrator/Technical Support

Crabb Financial Strategies

• Performed diagnostics using various tools; support includes but not limited to assisting with print issues, install, maintain, modify and troubleshoot hardware and software systems. • Installation and repair of computer software and hardware. • Provide research and recommendations on software and hardware. • Designed and implemented Information Security Policy compliant with SEC, FINRA, and HIPAA requirements.

Sep 2001 - Dec 2013
Team & coworkers

Colleagues at Arete Incident Response

Other employees you can reach at areteadvisorsinc.com. View company contacts for 447 employees →

1 education record

Ryan Crabb education

  • American Public University System
    American Public University System
    Information Systems Security
FAQ

Frequently asked questions about Ryan Crabb

Quick answers generated from the profile data available on this page.

What company does Ryan Crabb work for?

Ryan Crabb works for Arete Incident Response.

What is Ryan Crabb's role at Arete Incident Response?

Ryan Crabb is listed as Manager of Digital Forensics at Arete Incident Response.

What is Ryan Crabb's email address?

AeroLeads has found 1 work email signal at @areteadvisorsinc.com for Ryan Crabb at Arete Incident Response.

What is Ryan Crabb's phone number?

AeroLeads has found 2 phone signal(s) with area code 703 for Ryan Crabb at Arete Incident Response.

Where is Ryan Crabb based?

Ryan Crabb is based in Washington Dc-Baltimore Area, United States while working with Arete Incident Response.

What companies has Ryan Crabb worked for?

Ryan Crabb has worked for Arete Incident Response, Arete, Maveris, Sentar Inc., and Triumph Enterprises, Inc..

Who are Ryan Crabb's colleagues at Arete Incident Response?

Ryan Crabb's colleagues at Arete Incident Response include Dharmil Badami, Charles O., Bryce Blair, Kevin Perea, and Blake Carr.

How can I contact Ryan Crabb?

You can use AeroLeads to view verified contact signals for Ryan Crabb at Arete Incident Response, including work email, phone, and LinkedIn data when available.

What schools did Ryan Crabb attend?

Ryan Crabb holds Bachelor'S Degree, Information Systems Security from American Public University System.

What skills is Ryan Crabb known for?

Ryan Crabb is listed with skills including Computer Security, Security, Networking, Incident Response, Information Security, Network Security, Troubleshooting, and Information Technology.

Find 750M verified contacts

Search by job title, company, industry, location, and seniority. Export verified B2B contact data when you need it.