About
Hi! I’m Tony, a security fiend and technology enthusiast.
Over the past seven years I’ve worked from help desk to enterprise infrastructure. Along the way I’ve owned enterprise identity, consolidated fragile server sprawl into highly available clusters, driven security baselines across independent IT units, and built the automation that holds it all together.
I’ve never been especially loyal to one layer of the stack. The problem decides where I work. Some months that’s Conditional Access policy and group design, others it’s a hypervisor cluster, a PowerShell triage script, or an LLM pipeline chewing through honeypot telemetry. What stays constant is how I approach it: secure and reliable systems are not accidental. They’re an exercise in risk management. In practice that means accounting for security from the beginning, automating the boring stuff, fixing fragile designs before they fail, and building environments that can take a hit without causing chaos.
Lately a lot of that energy has gone into DShield Prism, an LLM-assisted attack analysis pipeline I built during an apprenticeship with the SANS Internet Storm Center. It taught me as much about designing hard boundaries around a model as it did about attacker behavior.
I hold the CISSP along with GIAC certifications in public cloud security (GPCS), Python (GPYC), intrusion analysis (GCIA), and incident handling (GCIH), with cloud automation and cloud penetration testing in progress. I serve on the GIAC Advisory Board and I’m finishing a bachelor’s in Applied Cybersecurity at SANS Technology Institute.
But titles and certs only go so far. What really matters to me is real problem solving, real impact, real outcomes. This blog is where I share what I’m building, what I’m (occasionally) breaking, and what I’m learning along the way.
I hope you’ll tag along!