
I specialize in practical cybersecurity assessments and guidance, helping organizations gain visibility into their systems, prioritize risk, and build a solid security foundation they can actually maintain.

My work is grounded in both hands-on experience and formal training in computer science and cybersecurity.
I hold a bachelor’s degree in Computer Science, a master’s degree in Digital Forensics and Cybersecurity, and additional education in networking and security. This background supports a practical, systems-focused approach to cybersecurity that emphasizes fundamentals, visibility, and real-world risk.

Outside of work, I enjoy building things, learning, and spending time with family. I value clarity, curiosity, and continuous improvement both professionally and personally.
My career started in software engineering, long before cybersecurity became a buzzword.
For more than nineteen years, I’ve worked hands-on with real systems designing, building, and supporting applications and infrastructure used by public-sector organizations and multi-state programs. Much of that work involved systems that handle sensitive data, operate under regulatory requirements, and need to stay reliable even when things go wrong.
Over time, my role expanded beyond development. I led teams, architected large systems, supported disaster recovery planning, and helped establish formal security practices where none previously existed. That work made one thing very clear: most security problems don’t come from advanced attacks they come from systems growing faster than visibility.
Applications evolve.
New tools get added.
Temporary solutions become permanent.
Eventually, organizations lose a clear picture of what they actually have.
As my responsibilities shifted toward security and risk management, I focused on strengthening fundamentals secure development practices, access control, system visibility, and repeatable processes. That led to formal cybersecurity leadership work, the creation of security programs, and deeper study in digital forensics and cybersecurity.
Today, my work through Cyber Op Source brings all of that together. I help organizations understand their systems as they truly exist, identify real risks, and build practical security foundations that can be maintained over time. My approach is informed by widely adopted best practices like the CIS Critical Security Controls, but it’s always grounded in plain language and real-world constraints.
I believe cybersecurity works best when it’s understandable, achievable, and focused on clarity and not fear or complexity.
I believe cybersecurity works best when it’s grounded in reality. Most organizations don’t need more tools they need clarity.
Security should focus on understanding systems, reducing real risk, and supporting how people actually work. When security becomes overly complex or fear-driven, it often fails.
I typically work with organizations that want to improve security without being overwhelmed especially small and mid-sized teams, public-sector groups, and organizations operating under regulatory or insurance pressure.
I don’t sell security tools, run fear-based assessments, or hand over long reports with no clear next steps. My focus is on practical guidance you can actually act on.
Most engagements start with a conversation and a focused assessment to understand what exists today, where risk shows up, and what makes sense to address first.
My background in software development informs how I approach cybersecurity. Having built and supported real systems, I focus on security practices that fit how applications are actually developed, deployed, and maintained rather than controls that look good on paper but fail in reality.
If this approach resonates, you’re welcome to reach out or explore how we approach assessments and advisory work.

A plain-English cybersecurity guide for small and medium-sized businesses.
We use cookies to analyze website traffic and optimize your website experience. By accepting our use of cookies, your data will be aggregated with all other user data.