~/media

On stage, on mic, and in the room.

Podcasts, conference talks, and user-group sessions. The rock band years taught me how to energize a crowd — I've been doing it on technical stages ever since.

Press & brand assets — grab the brand kit →

★ FEATURED · PODCAST EP. 63

From Heavy Metal to the Front Lines of Cyber Innovation

On No Password Required, I sit down with hosts Jack Clabby and Kayley Melton to trace the path from the Midwestern metal scene and couch-surfing to hacker cons, to product leadership at Rapid7 — plus a Lifestyle Polygraph and a dream day with Ric Flair.

▶ Listen Show notes →

Podcasts & interviews

★ FEATURED · SOLUTION SPOTLIGHT

Meeting the Exposure Management Challenge

On Solution Spotlight, I examine the critical use cases driving the adoption of attack surface and exposure management technologies.

▶ Watch

Press Releases

Featured in Rapid7 product and partnership announcements.

RAPID7 · PRESS RELEASEJuly 28, 2026

Rapid7 Becomes First Major Security Operations Platform to Unite SecOps and GRC

“Preemptive security goes beyond detecting and responding to threats. Organizations need to continuously understand where risk exists, whether controls are working, and where action is needed before gaps become incidents.”

— Corey Thomas, Executive Chairman, Rapid7
read the release →
RAPID7 · PRESS RELEASEMay 12, 2026

Rapid7 Launches Cyber GRC Early Access Program

“Organizations invest heavily in security tools, but many are still left to determine how to validate control effectiveness and demonstrate compliance. Cyber GRC connects fragmented data across assets, exposures, and controls to the attack surface, giving teams a clear view of risk and enabling consistent, evidence-backed outcomes.”

— Jon Schipp
read the release →
RAPID7 · PRESS RELEASEDecember 2, 2025

Rapid7 & HITRUST Partner to Automate Cybersecurity Assurance

“Rapid7 solutions already deliver unmatched visibility and context, enabling our customers to proactively prevent and detect security incidents. With this collaboration, we are now able to benchmark customers against HITRUST, ultimately reducing both the cost and burden of compliance while also enabling them to achieve continuous assurance against the comprehensive framework for greater protection from threats.”

— Jon Schipp
read the release →
RAPID7 · PRESS RELEASEJuly 1, 2024

Rapid7 Acquires Noetic Cyber to Power Surface Command

“Fragmented attack surface is stifling security productivity, efficiency, collaboration, and credibility. The addition of Noetic's solution to our platform positions Rapid7 to deliver the most productive security operations experience while making it more accessible to the teams who need it most.”

— Corey Thomas, Chief Executive Officer, Rapid7
read the release →
RAPID7 · PRESS RELEASEJuly 18, 2017

Rapid7 Acquires Security Orchestration and Automation Company, Komand

“When we defined the Komand mission, there was one goal to which we repeatedly returned as inspiration: help under-resourced security and IT teams better leverage what they have at their disposal. Rapid7 has demonstrated that they share this vision…”

— Jen Andre, Founder & CEO, Komand
read the release →

Speaking & conferences

40+ talks across the industry — a selection below.

Cyber Bay Happy Hour — Rapid7
Tampa Cyber Bay Event2024

Cyber Bay Happy Hour — Rapid7

Rapid7 hosted a Cyber Bay after party event where Deral Heiland and I talked about trends in cybersecurity, attacker behavior, OT research, and took Q/A.

Boston · Chicago · New York · Dallas
Rapid7 Security Days—

Boston · Chicago · New York · Dallas

Featured speaker across Rapid7's multi-city Security Days series, presenting on exposure management, attacker trends, and platform strategy to customers and prospects.

Cyber Awareness Month Panel
Comcast—

Cyber Awareness Month Panel

Panelist for Comcast's Cybersecurity Awareness Month, covering current attacker trends and defensive strategies.

GRC Your Way — InfoSec World Orlando
InfoSec World2025

GRC Your Way — InfoSec World Orlando

Shared the stage with AJ Yawn at InfoSec World Orlando during his book tour session to talk about security operations and GRC.

Public Sector Cyber Summit2026

Massachusetts Public Sector Cyber Summit

Discover how to identify and mitigate organizational vulnerabilities across human behavior, technical controls, and emerging threats through risk-based assessments. Learn practical strategies for safely integrating AI and emerging technologies, addressing advancing threats such as AI-enhanced attacks and deepfakes, and strengthening identity and access management. This session combines security, compliance, and strategic insights to navigate today's evolving threat landscape.

An Introduction to Network Traffic Analysis
Marshall University—

An Introduction to Network Traffic Analysis

Hands-on workshop at the university's cybersecurity conference.

ISLET — Training at Scale
DerbyCon—

ISLET — Training at Scale

Talk on ISLET, the open-source isolated training environment I developed for teaching Linux & security tooling.

The Netsniff-NG Toolkit
DerbyCon—

The Netsniff-NG Toolkit

Presented on Netsniff-NG as a contributor and primary industry advocate — since adopted as SecurityOnion's default full-packet-capture solution.

Building a Custom Network Monitoring System
Hack3rcon2011

Building a Custom Network Monitoring System

My first conference talk, sharing how to implement a custom NSM from the ground up.

Conference & user-group talks

A deeper archive of conference sessions and weekly user-group talks I've given over the years — from OpenNSM and the UIUC ACM LUG to the Dubois County LUG.

01

Conference & event talks

— XSEDE, DerbyCon, Hack3rcon, BroCon & more
videoISLET: An Attempt to Improve Linux-based Software Training — Hack3rcon (Nov 14, 2014)
pdfISLET: An Attempt to Improve Linux-based Software Training — XSEDE 2015 (Jul 28, 2015)
pdfISLET: An Attempt to Improve Linux-based Software Training — AIDE 2015 (Apr 23, 2015)
pdfISLET: An Attempt to Improve Linux-based Software Training — REN-ISAC (Mar 26, 2015)
pdfISLET: An Attempt to Improve Linux-based Software Training — Information Trust Institute, UIUC (Nov 13, 2014)
pdfBroLive!: Training for the Future — BroCon 14 (Aug 18, 2014)
pdfIntrusion Detection and Packet Analysis: Using Bro to Gain Network Visibility — ITT-Tech, Newburgh IN (Oct 31, 2013)
videoNetsniff-NG Toolkit — Hack3rcon^4 (Oct 20, 2013)
videoNetsniff-NG Toolkit — DerbyCon 2013 (Sep 29, 2013)
slidesA Look at the Netsniff-NG Toolkit — Midwest Open Source Software Conference, U. of Louisville (May 18, 2013)
videoIntro to Network Traffic Analysis — Hacker Hotshots, Concise Courses (Feb 12, 2013)
videoA PCAP Workshop — Hack3rcon^3 Workshop (Oct 19-21, 2012)
videoAn Introduction to Traffic Analysis: A Pragmatic Approach — Marshall University, AIDE Conference (May 2012)
FOSS for Unix Administrators — Vincennes University, Jasper Campus (2011)
videoWhat's Under Your Hood: Implementing a Network Monitoring System — Hack3rcon 2 (Oct 2011)
02

OpenNSM Group

— Open Network Security Monitoring weekly sessions
videoRsyslog Logging Infrastructure (Feb 2, 2015)
ISLET (Oct 20, 2014)
Tcpdump (Sep 29, 2014)
Implementing a Network Monitoring System (Sep 22, 2014)
Bro (Sep 15, 2014)
Trafgen (Sep 8, 2014)
03

UIUC ACM Linux User Group

— Weekly LUG talks at Illinois
videoGNUplot, InfluxDB, Grafana (Apr 16, 2015)
videoGitlab, Puppet (Mar 9, 2015)
videoLinux Kernel Capabilities (Feb 23, 2015)
videostrace (Feb 16, 2015)
videoNmap (Feb 9, 2015)
videoPXE Boot, Vagrant (Feb 9, 2015)
videoDocker, Quiz, Sudo (Jan 26, 2015)
Docker (Sep 2014)
Linux From Scratch series (Mar–May 2014)
Creating Vagrant Environments (Mar 2014)
Introduction to Linux Networking (Feb 2014)
Awk Primer (Feb 2014)
04

Dubois County LUG (DCLUG)

— Years of weekly Unix, networking & security talks
htmlHuntingburg group turning Fourth Street into a WiFi hotspot
Automated Distributed IDS w/ SecurityOnion (May 9, 2013)
X11 Forwarding w/ SSH
XQuartz (X11 replacement) on OSX
MacTeX Distribution on OSX
GeoIP w/ Wireshark
Rpcapd (Windows)
Intro to GitHub
Ewhois-query script
Ninite application updater (Windows)
Mandiant's Redline (Windows forensics)
Cisco — Configure SPAN ports
Wireless Hacking (Feb 3, 2013)
Messing with PCAPs Containing Raw Wireless Traffic
A Look at LaTeX
Writing Security Tools with Bash
A Brief Look at the Linux Network Stack (Nov 4, 2012)
A Detailed, High-Throughput /etc/network/interfaces Configuration on Ubuntu Server
Getting Things Done with awk/gawk (Aug 5, 2012)
Netsniff-NG — a Performant Sniffer
ifpps — Network Stats
vnstat — A Console-Based Traffic Monitor
CPU Affinity and Interrupt Binding on SMP Systems
Primer on Shell Programming with sh/bash
A Look at a Production Sensor/NMS
Interface/Network Stats on Linux (ifpps, tcpstat, atsar) (Jun 3, 2013)
Network Stress Testing on Linux (hping3, trafgen, iperf)
sed primer (Apr 8, 2012)
Bash Editing Modes: vi and emacs
Bash Globbing (expansion)
htop — a better top
A Brief Look at BPF Assembler
Networking with Linux (Dec 4, 2011)
txtMoving Text Files Between Windows and the Unices: newlines, carriage returns, tr, sed, od, hexdump (Nov 16, 2013)
FreeBSD: sockstat
Network Throughput Testing with iperf (Oct 2, 2011)
An Introduction to PF (Sep 4, 2011)
Remote Logging with syslogd
odpHost Intrusion Detection with OSSEC
odpKeeping Time with ntpd (Aug 7, 2011)
(DNS) Transaction Signatures in BIND
txtUsing netstat — A Look into the Networking Subsystem
txtIntro to GPG (Apr 3, 2013)
odpOpenSSH with Pub-Key Authentication
odpPasswords in Depth: Hashing, Salting, Storage, and Attacks (Feb 6, 2011)
odp/home files (Nov 7, 2010)
zipsmbclient / mount.cifs
netcat
zipNetwork Tools (Oct 3, 2010)

Need a speaker who can work the room?

Panels, keynotes, podcasts, and workshops on cybersecurity, product, and leadership.

Book me → Brand kit →
Jon Schipp · Tampa, FL Brand kit →