DSDIGITAL SENTRY

About Me

I'm a cybersecurity professional, developer, and educator with over a decade of hands-on experience across security operations, engineering, GRC, and training.

I build practical solutions, automate workflows, break down complex topics, and teach what actually matters.

My work spans offensive and defensive security, software development, networking, infrastructure, AI automation, and technical education. The throughline is the same: take a real problem, understand it, build the smallest thing that solves it, and document it so the next person does not have to start from zero.

What I work on

  • Cybersecurity & Threat Analysis
  • Security Engineering & Automation
  • GRC & Risk Management
  • Network & Cloud Security
  • Software Development
  • Teaching & Content Creation

In Depth

Areas & Topics

A working profile of the areas I have shipped in, written as a list rather than a resume. Each section points to the topics I can speak to in production, in teaching, and in writing.

Cybersecurity Practice

Defensive and offensive work in production: detection, identity, endpoint, email, and the controls that actually hold up under attack.

  • Threat modeling
  • Detection engineering
  • MITRE ATT&CK mapping
  • Identity security
  • Endpoint hardening
  • Email security (DMARC, SPF, DKIM)

Network Engineering

Protocol-level work and network design for environments that need to be both reachable and defensible.

  • OSI / TCP-IP
  • Subnetting
  • Routing
  • VLANs and segmentation
  • DNS deep dive
  • TLS handshake

Linux for Security

Linux from a security and infrastructure operator's perspective: services, permissions, logging, and the packet path.

  • Service management
  • Permissions and ACLs
  • Logging and journald
  • iptables / nftables
  • Performance troubleshooting
  • Package management

Software Engineering

Engineering habits that pay off in security work: small APIs, safe defaults, testable failure modes.

  • API design
  • Auth patterns
  • Logging hygiene
  • Secret management
  • Code review
  • Testing for failure

Cloud Security

Cloud security across AWS, Azure, and the multi-cloud edge cases: identity, network, detection, and cost-aware architecture.

  • IAM in depth
  • Network design
  • Logging and detection
  • Secrets management
  • Container security
  • Cost-aware architecture

Threat Research

Threat intelligence, tradecraft, and case studies: actor profiles, campaign timelines, IOC analysis, and detection work.

  • Actor profiles
  • Campaign timelines
  • IOC analysis
  • TTPs and detection
  • Reporting standards

Teaching

Curriculum, lab design, and assessment for cybersecurity and IT programs: scope, sequence, and what students actually retain.

  • Scope and sequence
  • Lab design
  • Assessment patterns
  • Student engagement
  • Portfolio projects