$ whoami
Cybersecurity professional specializing in threat hunting, incident response, vulnerability management, and NFC security research. THOTCON speaker. Huntress CTF top 100.
Cybersecurity professional with hands-on experience in threat hunting, incident response, vulnerability management, penetration testing, phishing simulation, and MDR monitoring.
Currently functioning as an IT Support Specialist, Level 1 and ad hoc Cybersecurity Analyst within a K-8 school district, having built trust with senior security leadership through demonstrated competence and initiative.
Published NFC security researcher, THOTCON 0xD speaker, self-hosted homelab operator with enterprise-grade network segmentation and SIEM monitoring, and Huntress CTF top 100 finisher.
Previously spent 6 years in finance and operations roles at ALDI USA (Fortune 50), American National, and the US Dept. of the Navy — bringing a rare blend of security acumen and business process optimization.
Original research on MIFARE Classic 1K NFC vulnerabilities. Covered cryptographic key recovery, local data manipulation, and UID spoofing across two rounds of on-site testing. Formalized findings in a peer-accessible whitepaper.
Self-hosted Proxmox VE homelab running Wazuh SIEM/XDR with Docker-orchestrated services. Achieved top 100 finish in the annual Huntress CTF across forensics, malware analysis, and web exploitation.
A step-by-step breakdown of Operation Breadcrumbs from the TCM Security CTF.
Read on LinkedIn →How AI has made phishing nearly undetectable and what defenders can do.
Read on LinkedIn →On professional development, self-investment, and protecting yourself.
Read on LinkedIn →Follow-up NFC research — new exploits and updated attack vectors.
Read on LinkedIn →Original investigation into NFC card vulnerabilities at a driving range.
Read on LinkedIn →NFC cards in public transit — fare enforcement bypasses and offline validation.
Read on LinkedIn →Multi-stage web exploitation challenge chaining HTTP header analysis, IDOR enumeration, Gzip decoding, EXIF metadata extraction, steganography, and XOR cryptanalysis to recover the final flag.
Annual Huntress Capture the Flag competition. Competed across forensics, malware analysis, reverse engineering, and web exploitation categories to achieve a top 100 placement.
Self-hosted, segmented, and monitored. Everything runs on bare metal in a dedicated rack with full network isolation and logging.
Protectli VP2420 running OPNsense with custom firewall rules, IDS/IPS, and multi-WAN failover. Handles all inter-VLAN routing and egress filtering.
Ubiquiti USW-24-G2 (Layer 2) + Cisco 24-port switch. VLAN trunking, port isolation, and PoE for cameras and access points.
Ubiquiti UniFi AP with SSID-to-VLAN mapping. Separate broadcast domains for enterprise users, IoT devices, and guest access.
Four dedicated VLANs: Enterprise (staff/lab), Cameras (isolated NVR stream), IoT (smart devices with egress restrictions), and Guest (captive portal, no LAN access).
HP DL360p Gen8 running Proxmox VE. LXC containers for Docker workloads, dedicated VMs for NVR (Frigate + Coral TPU), and isolated service tiers.
Wazuh SIEM/XDR for endpoint detection and log correlation. Cloudflared tunnels for secure external access. Portainer + Watchtower for container orchestration and automated updates.