Tony Delagrange

Tony Delagrange Email and Phone Number

Sr. Tradecraft Engineer @ OnDefend
Jacksonville, FL, US
Tony Delagrange's Location
Jacksonville, Florida, United States, United States
Tony Delagrange's Contact Details

Tony Delagrange work email

Tony Delagrange personal email

n/a

Tony Delagrange phone numbers

About Tony Delagrange

Tony Delagrange is a Sr. Tradecraft Engineer at OnDefend. He possess expertise in information security, security, penetration testing, information security management, business continuity and 45 more skills.

Tony Delagrange's Current Company Details
OnDefend

Ondefend

View
Sr. Tradecraft Engineer
Jacksonville, FL, US
Website:
ondefend.com
Employees:
59
Tony Delagrange Work Experience Details
  • Ondefend
    Sr. Tradecraft Engineer
    Ondefend
    Jacksonville, Fl, Us
  • Ondefend
    Red Team Lead
    Ondefend May 2024 - Present
    Jacksonville, Florida, United States
  • Infor
    Principal Security Engineer
    Infor Jan 2022 - May 2024
    Jacksonville, Florida, United States
    • Supported penetration testing of Infor’s SaaS products and cloud-based network environments by triaging reported findings, ensuring quality, coverage, and accuracy. Developed risk-based scoping guidelines to drive efficiency and RFI process for establishing requirements and qualifying new service providers.• Updated corporate SDLC policy and process to incorporate security requirements early in the development process, including security architecture review, SAST/DAST scanning, and penetration testing.• Started a threat modeling program to assess all Infor products, with a tiered model of requirements based on the maturity level of each product team.• Managed enterprise DAST scanning solution for Infor Government (FedRAMP) SaaS products.• Supported incident response investigations with forensics, root cause analysis, and providing remediation recommendations.• Developed attack simulations to provide “live fire” exercises for the Incident Response team to identify knowledge and process gaps and improve response times and accuracy in execution.• Implemented a password audit program with a cloud-based cracking system and automated weak password notification/reset process, significantly reducing weak passwords.
  • Infor
    Sr. Security Analyst / Penetration Tester
    Infor Mar 2016 - Jan 2022
    Jacksonville, Florida, United States
    • Performed annual application penetration testing of Infor SaaS products, including web, mobile, API, and thick-client applications. Supported development teams reporting findings and provided recommendations for remediation.• Provided internal and external network penetration testing of cloud-based environments on an ad-hoc basis.• Mentored staff on penetration testing and developed educational materials on various tactics, techniques, and tools.
  • Aptive Security
    Founder
    Aptive Security Feb 2016 - May 2024
    Jacksonville, Florida, United States
    Boutique security consulting company that provides penetration testing services for applications, networks, social engineering, phishing campaigns and physical security. Services provided to partner consulting companies and with direct clients.
  • Deutsche Bank
    Vp, Red Team / Offensive Security
    Deutsche Bank Oct 2015 - Jan 2016
    Jacksonville, Florida, United States
    * Developed strategy to implement Sandia's iDART framework to define the Red Team program including detailed services, methodology, processes, performance metrics, and standardized deliverables.* Performed threat enumeration of identified vulnerabilities to determine potential risk and impacts to organization.* Established a lab environment for the Red Team including equipment procurement for security research, performing attacks and cracking passwords
  • Fidelity National Information Services
    Sr. Penetration Tester / Red Team
    Fidelity National Information Services Mar 2013 - Sep 2015
    Jacksonville, Florida Area
    * Performed penetration testing of internal and client-facing web and mobile applications, identifying vulnerabilities, demonstrating exploitability, and communicating risk/impacts to the business.* Developed strategy to mature application penetration testing program, expanding program services, enhancing the engagement model, and implementing projects to increase the efficiency and effectiveness of services provided.* Identified as a team leader and subject matter expert on penetration testing. Mentor junior team members, providing technical expertise on security testing approach, attack methodologies, vulnerability exploitation, and testing tools.* Presented to internal and external clients on FIS security testing capabilities and increase awareness of application security threats and vulnerabilities, as well as provide “in-service” technical training to staff members.* Research new tools, technologies, threats, vulnerabilities and attack methodologies and present findings to the team.* Developed Red Team program to demonstrate adversarial capabilities and advanced persistent threats. Completed a Red Team operation that demonstrated weaknesses in preventative and detective controls to thwart fraudulent activity, and inadequacies in the ability to respond to an attack.
  • Secure Ideas
    Sr. Security Consultant (Penetration Tester)
    Secure Ideas Oct 2011 - Mar 2013
    Jacksonville, Fl
    * Performed security architecture reviews, web application penetration testing, mobile device/application testing, physical penetration tests, social engineering and social network assessments, and wired/wireless network penetration testing, for large and medium-sized client enterprises. Provided clientele with detailed reporting and consultation on discovered vulnerabilities and security flaws, and recommendations for remediation or reducing the risk.* Successfully proposed, managed, and completed two DARPA Cyber Fast Track projects – MobiSec and SH5ARK. Completed the transition of MobiSec and SH5ARK to open source projects. Identified as a project lead on the OWASP Mobile Security Project.* Participated in the development of SANS SEC571 Mobile Device Security course and have provided training to clients on installing and using the MobiSec testing environment. Participated in reviewing and updating both SANS SEC 542 and SEC 642 courseware materials and lab environments.
  • Bank Of America
    Sr. Audit Consultant, Svp
    Bank Of America Apr 2010 - Oct 2011
    Jacksonville, Florida, United States
    * Assigned as lead for Special Testing & Assessment Team (STAT), which performs scenario-based testing, from an adversarial perspective, using a combination of threats and tactics to assess the effectiveness, coverage, and inter- dependencies of controls. Completed assessments of Network Printers, Wikis, Mobile Banking, Endpoint Controls Effectiveness, Rogue Device Detection, and Social Networking Threats.* Presented STAT program to Office of the Comptroller of the Currency (OCC) regulators, identified as unique and innovative IT Audit program within the financial services industry.* Completed technical audits of Text Banking solution, external connectivity with Merchant Services environment, and assessment of the Enterprise Technology & Delivery organization as co-Auditor in Charge.
  • Bank Of America
    Senior Security Architect, Vp
    Bank Of America Sep 2005 - Apr 2010
    Jacksonville, Florida, United States
    * Assigned as lead security architect regarding Voice over IP, Messaging & Collaborative Services, Mobility Devices and Wireless Systems, providing security subject matter expertise to technology partners with enterprise design architecture, establishing documented requirements of security standards, and performing product evaluations and vulnerability/threat assessments of related systems.* Assigned leadership role on Information Security Center of Excellence (IS COE). Completed formalization of COE structure and operations in support of the Enterprise Architecture governance model. Lead virtual team in defining future state for enterprise security architecture, developing reference architecture and driving product standardization, as well as evaluate emerging technologies to ensure compliance with security standards.* Completed definition of Security Architecture Framework for the Enterprise (SAFE) based on ISO27002 standard and established high-level strategy and architectural framework for device security.* Assigned leadership role for successful execution of company transition projects regarding security architecture, technology risk assessments, product standardization, and security policy consolidation, leveraging Six Sigma methodologies. Completed security architecture assessments of high-risk Internet facing web applications for Countrywide and Merrill-Lynch transitions, identifying issues and remediation strategy.
  • Bank Of America
    Information Security Consultant, Vp
    Bank Of America Aug 2000 - Sep 2005
    Jacksonville, Florida, United States
    * Facilitated the design and implementation of cost effective information security solutions to provide an adequate level of control mitigation that addresses confidentiality, integrity, and availability.* Developed and maintained sound working relationships with Information Technology and Business Clients. Participate in a key role in event management of business and technology responses to threats that occur.* Provided consultation in vendor management program regarding contract negotiations of information protection requirements, risk assessments and remediation plans to ensure compliance with corporate and regulatory policies.
  • Netpeformance, Inc.
    Director Of Infrastructure Sevices
    Netpeformance, Inc. Jul 1999 - Jul 2000
    St Petersburg, Florida, United States
    Director of infrastructure consulting services program leading a small team of consultants and managing engagements with medium to small businesses. Responsibilities included scheduling of resources, developing new services, educating sales staff on service offerings, and managing development plans for resources.
  • Barnett Bank
    Systems Engineer Iii
    Barnett Bank Mar 1996 - Jul 1999
    Jacksonville, Florida, United States
    * Managed messaging systems across the enterprise, including system administration, implementation new messaging technologies, and integrating with legacy messaging systems. * Designed and implemented project for integration of Internet email access with the internal messaging environment.* Facilitated the architectural design of the bank’s enterprise Lotus Domino environment including infrastructure design, system configuration standards, messaging architecture, and research of new messaging technologies.* Participated as technical lead on major bank merger migration projects including message platform consolidations and “best practices” identification and implementation.
  • Sarasota Memorial Hospital
    Network Specialist / Physician Liaison
    Sarasota Memorial Hospital 1992 - 1996
    Sarasota, Florida, United States
    * Provide active local area and metropolitan area network management in a healthcare setting.* Participate as a technical lead in the design, implementation, and administration of 1000 plus node network over 20 locations, leveraging site-to-site ISDN connectivity and remote network access solutions.
  • Snelling Staffing
    Pc Programmer Analyst
    Snelling Staffing Aug 1989 - Feb 1992
    Sarasota, Florida, United States
  • Time Tech Inc
    Application Programmer Analyst
    Time Tech Inc Aug 1986 - Aug 1989
    Nokomis, Florida, United States

Tony Delagrange Skills

Information Security Security Penetration Testing Information Security Management Business Continuity Disaster Recovery Vulnerability Assessment Enterprise Architecture Security Architecture Design Cissp Network Security Pci Dss Governance Information Technology Security Audits Cisa Vulnerability Management It Audit Security Awareness Computer Security Risk Management Risk Assessment Iso 27001 It Management Identity Management Application Security Itil Firewalls Computer Forensics Web Application Security Data Security Glba Intrusion Detection Vpn Cism Cobit Encryption Enterprise Risk Management Information Assurance Incident Response Payment Industry Security Management Security Policy Network Architecture Ceh Sas70 Ids Incident Management Pki Risk Analysis

Frequently Asked Questions about Tony Delagrange

What company does Tony Delagrange work for?

Tony Delagrange works for Ondefend

What is Tony Delagrange's role at the current company?

Tony Delagrange's current role is Sr. Tradecraft Engineer.

What is Tony Delagrange's email address?

Tony Delagrange's email address is to****@****nge.org

What is Tony Delagrange's direct phone number?

Tony Delagrange's direct phone number is +190460*****

What skills is Tony Delagrange known for?

Tony Delagrange has skills like Information Security, Security, Penetration Testing, Information Security Management, Business Continuity, Disaster Recovery, Vulnerability Assessment, Enterprise Architecture, Security Architecture Design, Cissp, Network Security, Pci Dss.

Who are Tony Delagrange's colleagues?

Tony Delagrange's colleagues are Arjun Chaudhary, Brian Hare, Alex Guell, Zachary Hardy, Anna Trubenko, Robert O'connor, Amanda Howard.

Not the Tony Delagrange you were looking for?

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.