Penetration Testing
Network and web application assessments that move beyond tool output into exploitability, business impact, and practical remediation guidance.
Offensive Security Specialist
OSCP+ offensive security professional with 6+ years at a critical infrastructure organization, specializing in penetration testing, red team operations, Active Directory attack paths, and security programs that scale.
About
I turn exploitation chains, assessment data, and operational findings into practical risk reduction. My background includes end-to-end red team and penetration testing work across network, web, social engineering, Active Directory, and post-exploitation scenarios.
At Tennessee Valley Authority, I have helped mature offensive security operations, social engineering, vulnerability disclosure, reporting, and security metrics programs. I also bring client-facing consulting experience from NetSPI.
Experience
Enterprise offensive security experience in critical infrastructure, supported by consulting work across client environments.
Tennessee Valley Authority, Chattanooga, TN. Executes red team and penetration testing engagements across network, web, social engineering, Active Directory, and post-exploitation scenarios while supporting leadership-level risk reduction decisions.
NetSPI, Chattanooga, TN. Performed web application and network penetration tests using Burp Suite, CrackMapExec / NetExec, and Metasploit, delivering actionable findings that improved client security posture.
Expertise
Practical offensive security capabilities backed by enterprise delivery, consulting experience, and leadership-ready reporting.
Network and web application assessments that move beyond tool output into exploitability, business impact, and practical remediation guidance.
Adversary emulation covering initial access, C2 infrastructure, lateral movement, post-exploitation, and OPSEC-aware execution.
Validation of credential abuse, Kerberoasting, privilege escalation, lateral movement, and domain compromise scenarios.
Development of repeatable phishing and human-risk assessment programs with methodology, metrics, reporting, and leadership-ready outcomes.
Vulnerability disclosure operations, BAS validation, security metrics, executive reporting, and automation-backed analyst efficiency.
C2 frameworks, redirectors, domain staging, payload delivery paths, traffic shaping, and operational infrastructure built with OPSEC in mind.
Breach and Attack Simulation exercises that test live detection logic, expose alerting gaps, and help defenders improve measurable coverage.
Responsible use of AI tooling to accelerate OSINT enrichment, tooling development, pretext ideation, and repeatable engagement workflows.
Translation of complex exploitation chains into concise business risk, remediation priorities, and leadership-ready security investment decisions.
Projects
A focused project section showing applied engineering, research, and communication beyond day-to-day employment.
Python-based platform for capturing, correlating, and analyzing Bluetooth and Wi-Fi signals, with GPS mapping for passive device identification and movement-pattern analysis.
Interactive reference for offensive security commands, workflows, and field notes designed to make common assessment tasks faster and easier to recall.
View projectPython-based smart scheduling application delivered to the Missile Defense Agency, including backend data storage, algorithm-driven scheduling, and technical documentation.
Certifications
Certifications focused on practical offensive security, assessment methodology, and vulnerability validation.
Offensive Security Certified Professional Plus.
Verify credential Apr 2023Practical Network Penetration Tester.
Verify credentialRisk and Vulnerability Assessment Operator.
Education
Formal computer science education with a cybersecurity concentration.
University of Tennessee at Chattanooga. Computer Science: Cyber Security, GPA 3.52. NSA/DHS National Center of Academic Excellence in Cyber Defense.
Contact
For offensive security, red team, application security, vulnerability research, or consulting discussions, contact me directly.