~/writings

From the command-line to the board room.

Writings on product, cybersecurity, M&A, and more — alongside years of hands-on security engineering tutorials. Sharing learnings has always been my north star.

Read on Medium ↗
★ FEATURED SERIES · RAPID7

A Primer to Attack Surface Management

A four-part blog series helping organizations understand attack-surface discovery and the capabilities needed in today's hybrid environments.

Part 1 → Part 2 → Part 3 → Part 4 →
A Primer to Attack Surface Management

Recent writings

on Medium →
Read more articles on Medium ↗

Technical archive

security engineering & incident-response tutorials

Many of these are preserved on the Wayback Machine from sickbits.net and other sites I formerly ran.

01

Network Security Monitoring

— Bro/Zeek, Snort, sensors & detection
02

Packet & Traffic Analysis

— PCAP, capture, sniffers & CTF
03

Monitoring, Logging & Operations

— Nagios, rsyslog, SNMP, resiliency
04

Linux, Containers & Networking

— Kernel, Tor, AIX & infrastructure
05

macOS / OSX

— Admin, security & forensics
06

Defense, Hardening & Fundamentals

— Passwords, bash, detection & theory

Read the latest on Substack.

Newer reflections on leadership, product, and building in cybersecurity.

Subscribe on Substack ↗
Jon Schipp · Tampa, FL Brand kit →