Testimonials

Services

Priority DM . 3 days reply
5
$5
Popular
Video meeting . 30 mins
5

30 Min Security Assessment Consultation

Security posture assessment and expert recommendations
$200
Video meeting . 60 mins
5

60 Min Security Leadership Mentoring

Career guidance for security professionals and leaders
$400
Video meeting . 15 mins
5
$100
Video meeting . 60 mins
5

1-Hour Executive Security Briefing

Threat intelligence and strategy briefing
$350
Popular

About me

I help security leaders solve their toughest challenges. If you're a CISO, VP of Security, or security leader responsible for your organization's defensive posture, let's talk. I've spent 20+ years in cybersecurity—from building and leading global security teams at Fortune 100 companies to developing comprehensive incident response and threat hunting capabilities that reduced detection times by 60%+ and shortened response windows by 75%. My expertise spans strategic security architecture, threat intelligence operations, incident response planning, and executive risk management. I've worked across penetration testing, red teaming, blue team operations, SOC optimization, and CISO-level advisory work. At Fortune 135 and Fortune 117 companies, I've transformed raw offensive capabilities into effective detection and response strategies. I've developed M&A risk assessment programs, built global incident response capabilities, and established threat hunting programs that identified previously unknown risk vectors. I'm here to help you strengthen your security posture, optimize your team's capabilities, and navigate complex security decisions. I also share security insights through my active Twitch channel and media appearances. Let's schedule a conversation about your specific security challenges.

Frequently asked questions

Is cyber security a good career?

For most people who enjoy problem-solving and continuous learning, yes — it offers strong demand, above-average pay, and real job security, because organizations of every size need people who can defend systems and respond to incidents. It also has many lanes: technical paths like SOC and penetration testing, governance paths like GRC and audit, and leadership tracks that lead to security manager or CISO roles. Be clear-eyed about the trade-offs though — on-call incident work, constant upskilling, and occasional burnout are real. If those don't scare you off, it's one of the more future-proof careers in tech.

Is breaking into cybersecurity hard?

Honestly, yes — landing the first job is the hardest part of the entire career. The entry-level market is competitive, and HR filters tend to screen out candidates who only list coursework with nothing hands-on to show. What makes it manageable is differentiation: a recognized certification, a home lab, documented projects, and referrals put you well ahead of the stack of resumes that look identical. Once you have one to two years of real experience, the equation flips — demand for proven security professionals stays strong and mobility improves dramatically.

How do I break into the cybersecurity field with no experience?

Build fundamentals first — networking, operating systems, and security basics — then earn a respected entry-level certification like CompTIA Security+, set up a home lab, and practice through hands-on labs and CTF-style challenges. Document everything you build so hiring managers see proof of skill, not just a certificate. In parallel, target adjacent roles like IT help desk or junior SOC analyst, because getting in is far easier once you're already inside IT. There's no single playbook for how to break into the cybersecurity field, but people who combine hands-on proof with real conversations with practicing professionals move much faster than those who only collect courses.

Can you get into cybersecurity without a degree?

Yes. Plenty of working analysts, engineers, and even managers were hired on certifications, home labs, and demonstrated skills alone — especially in roles like SOC analyst, IT support with a security focus, and GRC. A degree still helps for some employers and certain government or defense positions, and it can speed up progression later, but it is not the gatekeeper most people assume. If you're figuring out how to break into cybersecurity without a degree, put your energy into a certification path, verifiable projects, and networking your way to a referral — that combination routinely outperforms a diploma with nothing behind it.

Is breaking into cybersecurity for entry level professionals realistic without an IT background?

It's realistic, but you have to be strategic. When people talk about breaking into cybersecurity for entry level professionals, the successful pattern is almost always the same: learn IT fundamentals first, earn one respected entry certification, build a small portfolio of labs or projects, then target genuinely junior roles like tier 1 SOC analyst instead of jumping at "security engineer" postings. Expect the search to take months, not weeks, and use that time to talk to people already working in the field — their insight into what employers in your area actually want is worth more than any generic roadmap.

What are the best career options after cyber security?

Career options after cyber security go well beyond the "hacker" roles people imagine. Common entry and mid-level paths include SOC analyst, penetration tester, security engineer, GRC analyst, cloud security engineer, and incident responder, and each branches upward into specialist or management tracks. With experience, you can grow into security architect, security manager, director, or CISO, or pivot into adjacent areas like threat intelligence, privacy, or risk consulting. The smartest move is picking a first role that matches your natural strengths — hands-on technical, analytical, or compliance-oriented — and building depth from there.

What's the best way to get honest cybersecurity career advice?

The most useful cybersecurity career advice comes from people who actually do the work — practicing security engineers, SOC leads, hiring managers, and mentors who review real resumes and understand the current job market. Generic blog content tends to push the same certification checklist at everyone, while a conversation with someone in the field can tell you which path fits your background, which skills your target employers value, and which mistakes to avoid. Communities, professional associations, and 1:1 mentoring sessions are all good sources; the key is getting guidance tailored to your situation instead of one-size-fits-all lists.

Is it worth paying for a cybersecurity career advisor?

It depends on where you're stuck. If you're self-motivated, already in IT, and just need direction, free communities and quality content may be enough. If you're changing careers, sending out applications with no responses, or unsure which security path fits you, a cybersecurity career advisor working one-on-one can compress years of guesswork into a few focused sessions — reviewing your resume, mapping a realistic path, and keeping you accountable. What matters most is choosing someone with real industry experience, ideally someone who has hired or worked in the roles you want, rather than someone reselling recycled information.

Are cybersecurity mentorship programs worth it?

A good one is — the difference is structure. A quality cybersecurity mentorship program pairs you with a working practitioner, sets clear goals (landing a first role, moving into a specialty, or getting promoted), and gives you direct feedback on your resume, projects, and interview approach. What you're really paying for is personalized direction and accountability, which self-paced courses can't provide. Before joining any program, ask who the mentors are, what a typical session covers, and whether past mentees actually reached their goals.

Where can I find free cybersecurity mentorship?

Free options exist if you know where to look: security communities on Discord and Reddit, local chapters of organizations like ISSA or (ISC)², veterans' and workforce-development programs, and industry groups that run mentor matching. The trade-off is that free cybersecurity mentorship is usually informal and inconsistent — a generous professional answering questions when they have time — while paid 1:1 mentoring gives you dedicated, scheduled sessions with someone focused on your specific goals. A sensible approach is to start in free communities to build your base knowledge, then invest in one-on-one sessions when you need targeted help.

How do I find women in cybersecurity mentorship programs?

There are several strong routes. Dedicated organizations and networks for women in security run structured mentorship cohorts, and many local security meetups and conferences have mentoring tracks or online communities where mentees and mentors get matched. When evaluating women in cybersecurity mentorship options, look for a program that matches you with a mentor actually working in the role you're aiming for, sets a clear timeframe, and defines what you want out of it. Being specific about your goal — first SOC job, GRC transition, or a move into leadership — makes any match far more effective.

How do I transition from the military into a cybersecurity career?

It's one of the most achievable transitions in tech, because military experience maps well: discipline, operational experience, and often an existing security clearance are highly valued by employers, especially in defense and government-adjacent roles. Start by translating your military occupational experience into civilian terms, pursue certifications that align with your target role (Security+ is a common first step, since it satisfies baseline requirements for many DoD positions), and explore veteran hiring programs and skill-bridge opportunities. Talking to veterans already working in cybersecurity helps enormously — they can tell you which roles fit your background and how civilian hiring actually works.

How do I move from a hands-on security role into security leadership?

The shift is less about technical depth and more about business fluency. Moving into security leadership requires translating technical risk into terms executives care about — financial exposure, regulatory impact, and business continuity — plus skills in budgeting, team building, incident command, and program management. Deliberately seek stretch responsibilities: lead an incident response, own a security initiative end to end, and present to leadership whenever possible. Many aspiring leaders also work with a mentor who has already sat in a director or CISO seat, because the communication and political skills of executive security work are hard to learn from courses alone.