A collection of public speaking engagements, conference presentations, and professional writing.
Representing Google
Burnout: My Invisible AdversaryVideoBlack Hat EU 2023 Community TalkA personal exploration of the psychological toll of high-stakes incident response and strategies for resilience.
Security Weekly - Incident CommandVideoSecurity WeeklyDeep dive into formal Incident Command structures and their application in cybersecurity crises.
Behind the Speculative CurtainVideoBlack Hat USA - Panel on Spectre & MeltdownA high-profile live panel with experts from Google, Microsoft, Red Hat, and CERT-CC discussing the global response to CPU speculative execution vulnerabilities.
CPU Security & Side ChannelsAudioGoogle Cloud Podcast (with Paul Turner)A 30-minute technical breakdown of CPU side-channel vulnerabilities and the complexities of hardware-level mitigation.
"You are the Weakest Link - and that’s OK"SANS DFIR Summit Lightning TalkReframing the "human element" in security: why phishing works and how to build systems that are resilient to human error.
The Remediation Ballet - Incident Response at ScalePDFSANS Threat Hunting & IR Summit (2016), FIRST Summit (2018)Strategies and frameworks for managing massive-scale remediation efforts across global infrastructure.
SANS DFIR Summit War-Games2018, 2019 SummitsCo-designer and facilitator of large-scale incident response simulation exercises.
Forensic Lunch w/ David CowenVideoYouTube / Forensic LunchDiscussion on current trends in digital forensics and incident response.
Representing NASA
NASA Nebula - NASA’s secure by default private cloudSANS Cyber Security Innovation Summit (2013)Designing and securing one of the first and most advanced private cloud deployments in the federal government.
NASA and IPOST: Security automation and gamificationSANS Cyber Security Innovation Summit (2012)Pioneering work in automated security posture assessment and the use of incentives to improve organizational security.
Cloud Security for GovernmentVideoCalifornia CIO Information Security Forum (2010)An early look at the security implications and opportunities of cloud adoption for public sector organizations.
Books & Academic Papers
Building Secure & Reliable SystemsBookO'Reilly Media - Author of Chapter 17: Crisis ManagementAn industry-defining guide to building and operating secure systems at scale.