Absorb the repetition.
Let AI and automation handle high volume triage, enrichment, correlation, investigation support, and routine remediation at machine speed.
25+ years on one problem: keeping attackers out and keeping operations running. From the infrastructure floor to a global AI driven SOC.
AI absorbs the repetitive Tier 1 and Tier 2 work. Humans move up the stack to judgment, advisory, and trust. This is not analyst theory. It is not marketing language. It is the operating model my team runs in production every day.
Let AI and automation handle high volume triage, enrichment, correlation, investigation support, and routine remediation at machine speed.
Move people toward the work that compounds: difficult decisions, threat hunting, customer advisory, leadership, empathy, and earned trust.
Machines take the volume. Humans take the verdict.
A career built across infrastructure, reliability, security, product, DevOps, and global operations. Real defense lives between the boxes on an org chart.
Learned how live infrastructure fails, how incidents cascade, and how disciplined operations keep the business standing.
Spent 13+ years in infrastructure and security leadership, protecting a global e commerce platform, hardening production, sustaining 99.99% availability, and operating under active threat.
A sustained 2008 attack became a four year lesson in coordinated defense, evidence, persistence, and staying with the case through the 2012 prosecution.
Led across product, SOC, and DevOps; scaled the operation 3×; built against PCI DSS, SOC 2, NIST, HIPAA, and GDPR; and helped shape the original XDR vision before the market had a name for it.
Following Barracuda's 2021 acquisition of SKOUT, stepped in to lead global security operations across the Americas, EMEA, and APAC, and to build the modern AI driven SOC.
When Priceline was hit by a sustained DDoS attack in 2008, I worked the case with the FBI through the 2012 prosecution of the attacker, Dmitry Zubakha. The incident made the adversary real. And it proved what defense actually requires: coordination, evidence, patience, and operational follow through.
Defense is not a product you buy. It is an operation you run.
As VP of Global Cyber Security Operations, I lead a 100+ person organization spanning MDR, XDR, threat intelligence, autonomous engineering, and AI driven operations, with 24/7 follow the sun coverage across AMER, EMEA, and APAC. Attackers do not keep business hours. Neither do we.
Analysts, engineers, and threat researchers across three continents.
Security operations at sustained production scale.
Operationalized across detection, hunting, and response.
From 2,000 to 15,000+ customers following the SKOUT acquisition.
The objective is not more alerts, dashboards, or headcount. It is more protection, better decisions, and greater leverage per person.
I share what operating at scale is teaching us: on keynote stages, in boardrooms, with journalists, and with the next generation of defenders.
Operator grounded. No slideware theory. Speaking on AI driven SOC transformation and the future of MDR and XDR. Commentary featured in the Wall Street Journal, Forbes, and NBC News.
Practitioner insights, career paths, playbooks, and honest debriefs for analysts, engineers, and leaders.
Watch the channel →Strategic counsel on AI, security operations, organizational design, and MDR/XDR decisions where the consequences are real.
Explore advisory →Studied Computer Information Systems and Finance. Technology and business as one operating system.
I am a husband and a father of two teenage sons. On weekends, you will find me on the sideline coaching youth football.
> Read the threat. Trust your team. Execute the play.
For keynotes, press commentary, advisory work, and board conversations about AI, MDR, XDR, and the future of security operations. Theory is abundant. Operators are not.