From hours to under 30 seconds
Built a Python vulnerability-reporting framework that ingested exports across 40+ network segments, mapped findings to MITRE ATT&CK, and produced dual-format output for operators and leadership.
Security engineering · Detection · Response
I help teams cut through alert noise, close real risk, and build the tooling a security program can actually run on.
Overview
Eight years in cybersecurity taught me that the work that matters is rarely the flashiest dashboard — it's the exception that kills a false-positive flood, the report that turns hours into seconds, and the handoff package that keeps a program alive when one person leaves. I work across detection engineering, vulnerability management, incident response, IAM, and GRC — because municipal and MSSP environments don't get to pick one lane.
Featured work
Built a Python vulnerability-reporting framework that ingested exports across 40+ network segments, mapped findings to MITRE ATT&CK, and produced dual-format output for operators and leadership.
Authored a Rapid7 detection exception that ended a fleet-wide false-positive class — stopping an alert flood without giving up coverage for a small security team.
Owned a 25+ domain cybersecurity risk program for a city of 100,000 residents, closing critical work across access controls, endpoints, IR, and network segmentation.
Now