CV

Below are select highlights from my CV. For more details, see my LinkedIn profile, or contact me using any of my social media profiles linked above.

Work

Principal Purple Team Lead
Microsoft

September 2025 – Present
Built and mentored a high-performing purple team focused on offensive testing and detection validation. Designed and led the execution of adversary emulation campaigns against the full suite of Microsoft Defender products including Cloud, Endpoint, Identity, M365/Office, Vulnerability Management, XDR, and Sentinel, resulting in actionable improvements to the products. Collaborated with red teams, detection engineers, and threat intelligence teams to identify and close detection gaps. Applied generative AI and LLMs to simulate attacker behavior and enhance detection logic. Contributed to internal tooling, automation, and knowledge sharing across the security organization.

Principal Red Team Manager
Microsoft

December 2021 – September 2025
Led a team of 15 offensive security engineers on Microsoft’s internal & dedicated cloud Red Teams. Oversaw the creation of the dedicated federal Red Team and established its vision, objectives, and priorities. Planned penetration tests and security assessments. Ensured team was on track to meet metrics and remain within budget. Presenting risks and results to the CISO and other VPs across the company. Coordinated purple team exercises with blue teams. Mentored team members and trained new hires. Performed people management duties. Contributed to company security standards and policies. Collaborated with managers of red teams in other divisions.

Author: Pentesting Azure Applications & Locksport
No Starch Press

2016 – 2024
Wrote two books. Pentesting Azure Apps focuses on performing security assessments on resources in Azure and how to mitigate common attack methods. It also discusses best practices, and proper use of Azure PowerShell, Azure CLI, and cloud security tools such as Azure Security Center (ASC). Locksport discusses physical security, how locking mechanisms work, and how to get involved in the hobby of competitive lock opening including lockpicking, impressioning, and safe cracking.

Senior Penetration Tester
Microsoft

May 2015 – December 2021
Penetration Tester on the Digital Security and Resilience (DSR) internal Red Team.  Led and participated in live site security assessments on internal services, public-facing sites, and Azure deployments.  Used port scanning, data manipulation & injection, network monitoring, and vulnerability assessment tools.  Performed forensic analysis on captured systems.  Developed hardware and software tools to use in assessments.  Conducted social engineering and phishing exercises.  Examined new devices to look for security issues.  Submitted feedback to product teams and service owners and presented to upper management.

Software Development Engineer II
Microsoft

Feb. 2014 – May 2015
Worked on software projects on MSIT’s Applied Technology and Platforms (ATP) team – a small group focused on innovation, research and development.  Wrote proof of concept tools to demonstrate the feasibility of using new technologies internally at Microsoft.  Projects included voice recognition note capture system (C, C++), diagnostic rule creation and management system (ASP.NET MVC, JavaScript, HTML, CSS), and network monitoring library (C#).

Escalation Engineer
Microsoft
July 2009 – Feb. 2014
Performed debugging, code review, instrumentation development, and reverse engineering for the Platforms Global Escalation Services team.  Led support effort on the most critical issues for large corporations.  Suggested code changes to product groups.  Authored tools and worked on initiatives to improve Windows compatibility, reliability, and sustainability.  Created numerous KB articles, blog posts, and training documents.  Mentored and trained other engineers.

Education

Master of Computer Science
Graduate Certificate in Computer Security

University of Illinois at Urbana-Champaign
2011 – 2014
GPA: 3.87

Bachelor of Science with Highest Honors in Networking, Security, and System Administration
Rochester Institute of Technology
2003 – 2007
Honors Program Graduate, GPA: 3.87​

Certifications

CISM, GXPN, OSCP, GPEN, GWAPT, GCPN, ECRE, CCSK, MCT