> career milestones, side projects, things I broke on purpose
What I Believe
You cannot effectively lead a security organization if you have forgotten how to build one.
I bridge the gap between deep technical defense and executive-level
business growth. From hunting threats in global SOCs to directing
engineering strategy for 300+ enterprise accounts at Microsoft, I have
spent my career proving that security leaders must stay close to the
code.
I am an active speaker and educator, sharing frontline experience at
industry events and as an Associate Instructor at Georgia Tech's
Masters of Cybersecurity program. I believe in technical transparency,
local data ownership, and making security accessible and effective.
Career
2021 – Present
Microsoft
Director, Security EngineeringDec 2025 – Present
Security strategy for U.S. Retail & Financial Services
300+ Tier-1 enterprise accounts
Zero Trust architecture & XDR implementation (Azure Sentinel)
Led Cloud Solution Architects and Customer Engineers to secure 300+ US Enterprise accounts across Retail & Consumer Goods.
2020 – Present
GT
Georgia Tech
Associate Instructor, Masters of Cybersecurity
Created "Man-in-the-Middle" lab for real-world threat hunting
ML & cloud security environments
2014 – 2020
IBM
IBM
Practice Manager, Security Intelligence
Scaled NA Security Intelligence to $10M P&L
Led 20 senior consultants across XDR & SIEM
Global SOC operations — US, Brazil, Poland, Costa Rica
60+ analysts · 30% reduction in response times via AI automation
2009 – 2014
Threat Analyst — Blue Team
Deep-packet analysis & signature tuning
Foundational security plans for high-traffic environments
Projects & Labs
Watchman
I built a Raspberry Pi Zero 2 W that impersonates a USB drive for my Blink Sync Module, intercepts motion clips as they're written, archives them locally, and serves everything through a Flask web UI — no cloud subscription needed.
AI-powered bird feeder camera built with a Raspberry Pi Zero 2W and Sony IMX500. Runs object detection on the sensor chip, identifies species in real time via a local TFLite model with GPT-4o-mini fallback, and serves a live dashboard with a 365-day activity heatmap — no cloud, no subscription.