Podcasts, conference talks, and user-group sessions. The rock band years taught me how to energize a crowd — I've been doing it on technical stages ever since.
On No Password Required, I sit down with hosts Jack Clabby and Kayley Melton to trace the path from the Midwestern metal scene and couch-surfing to hacker cons, to product leadership at Rapid7 — plus a Lifestyle Polygraph and a dream day with Ric Flair.
On Solution Spotlight, I examine the critical use cases driving the adoption of attack surface and exposure management technologies.
Featured in Rapid7 product and partnership announcements.
“Preemptive security goes beyond detecting and responding to threats. Organizations need to continuously understand where risk exists, whether controls are working, and where action is needed before gaps become incidents.”
“Organizations invest heavily in security tools, but many are still left to determine how to validate control effectiveness and demonstrate compliance. Cyber GRC connects fragmented data across assets, exposures, and controls to the attack surface, giving teams a clear view of risk and enabling consistent, evidence-backed outcomes.”
“Rapid7 solutions already deliver unmatched visibility and context, enabling our customers to proactively prevent and detect security incidents. With this collaboration, we are now able to benchmark customers against HITRUST, ultimately reducing both the cost and burden of compliance while also enabling them to achieve continuous assurance against the comprehensive framework for greater protection from threats.”
“Fragmented attack surface is stifling security productivity, efficiency, collaboration, and credibility. The addition of Noetic's solution to our platform positions Rapid7 to deliver the most productive security operations experience while making it more accessible to the teams who need it most.”
“When we defined the Komand mission, there was one goal to which we repeatedly returned as inspiration: help under-resourced security and IT teams better leverage what they have at their disposal. Rapid7 has demonstrated that they share this vision…”
40+ talks across the industry — a selection below.

Rapid7 hosted a Cyber Bay after party event where Deral Heiland and I talked about trends in cybersecurity, attacker behavior, OT research, and took Q/A.

Featured speaker across Rapid7's multi-city Security Days series, presenting on exposure management, attacker trends, and platform strategy to customers and prospects.

Panelist for Comcast's Cybersecurity Awareness Month, covering current attacker trends and defensive strategies.

Shared the stage with AJ Yawn at InfoSec World Orlando during his book tour session to talk about security operations and GRC.
Discover how to identify and mitigate organizational vulnerabilities across human behavior, technical controls, and emerging threats through risk-based assessments. Learn practical strategies for safely integrating AI and emerging technologies, addressing advancing threats such as AI-enhanced attacks and deepfakes, and strengthening identity and access management. This session combines security, compliance, and strategic insights to navigate today's evolving threat landscape.

Hands-on workshop at the university's cybersecurity conference.

Talk on ISLET, the open-source isolated training environment I developed for teaching Linux & security tooling.

Presented on Netsniff-NG as a contributor and primary industry advocate — since adopted as SecurityOnion's default full-packet-capture solution.

My first conference talk, sharing how to implement a custom NSM from the ground up.
A deeper archive of conference sessions and weekly user-group talks I've given over the years — from OpenNSM and the UIUC ACM LUG to the Dubois County LUG.
Panels, keynotes, podcasts, and workshops on cybersecurity, product, and leadership.