ADVANCED SECURITY SOLUTIONS PROVIDER

SECURE - PROTECT - SERVE

Focused on building resilient, automated security ecosystems for clients worldwide…securing clients, systems, and networks since 2005.

 profile image

SOLUTIONS & SERVICES

ARCHITECTURE & ENGINEERING

Are you transitioning to a Zero-Trust framework? I provide expert gap analysis and architectural roadmaps for securing complex network environments and migrating critical data to the cloud. From configuring security appliances to tuning SIEM performance, ensure your infrastructure is secure by design.

GOVERNANCE, COMPLIANCE, AND AUDIT

Navigating SOC 2, ISO 27001, PCI-DSS, or HIPAA can be overwhelming, I translate complex regulatory standards into actionable business strategies. Whether you need a comprehensive risk assessment or a high-resolution vulnerability scan, I can help you meet compliance while maintaining operational speed.

PROJECT & ENGAGEMENT LEADERSHIP

Do you have a security initiative that needs to get off the ground? I lead technical projects ranging from IAM/SSO implementations to full SIEM migrations. As an experienced Incident Response Lead, I can provide the strategic oversight and tactical leadership your organization needs to succeed.

ABOUT ME

Sam Jobes is a Senior Information Security Architect and IR Lead with more than 20 years experience securing enterprise systems, networks, and critical business infrastructure.

He specializes in secure architecture, threat detection, and incident response, helping organizations design resilient security programs that protect operations against modern cyber threats.

Through Technosec, LLC, Sam provides consulting services to both enterprise organizations and small-to-medium size businesses. His work focuses on building security into systems from the ground up—moving beyond compliance-driven “checkbox” security to deliver practical, defensible architectures and proactive threat identification.

This site highlights selected projects, research, and perspectives on information security, along with insights from decades of experience in cybersecurity operations.

RESUME/CV
EXPERTISE
  • Incident Response
  • Network and System Forensics
  • Secure Network and Cloud Architectures
  • Security Information Event Management (SIEM)
  • Endpoint Security (EDR, MDR, XDR)
  • Security Configuration and Change Management
  • Vulnerability Assessment and Remediation
  • Data Loss Prevention (DLP)
  • Wireless Penetration Testing
  • Intrusion Detection and Prevention (IDS/IPS)
  • IT Governance and Compliance (GRC)
  • Security Project Management
  • System Hardening
  • Security Audit and Assessment
  • Secure Access Service Edge (SASE)
  • Zero Trust
  • Detection Engineering
  • Security As Code
PLATFORMS AND APPLICATIONS
  • Microsoft Sentinel
  • Microsoft Defender (Identity, Endpoint, Azure)
  • Microsoft Azure
  • Microsoft Active Directory
  • Amazon Web Services
  • CyberArk (PAM)
  • Citrix (DaaS & VDI)
  • RSA (NetWitness)
  • VMWare (ESX, vSphere)
  • McAfee (ESM, ePO)
  • Palo Alto (Next-Gen FW, Panorama)
  • Trend-Micro (ATP, Deep Discovery, IPS)
  • Rapid7 (Insight IDR)
  • Cisco (Firepower, StealthWatch, Umbrella)
  • ZScaler (ZTE, ZIA, ZPA)
  • Tenable (Nessus, EP)
  • SailPoint (Identity, SSO)
  • Visual Studio
  • OpenStack
  • Wireshark

EXPERIENCE

Security Consultant
Technosec | Austin, TX - REMOTE
06/2024 — Present
  • Providing Incident Response consulting for SMBs, specializing in malware eradication, phishing defense, and financial fraud mitigation.
  • Executing Infrastructure Vulnerability Assessments and risk reporting, delivering remediation roadmaps for regulatory compliance.
  • Advising on Architectural Transformations (hardware/software) to harden business processes and facilitate secure organizational growth.
Security Architect & IR Engagement Lead
Dell Technologies, Inc. | Austin, TX - REMOTE
06/2022 — 06/2024
  • Managed IR Engagement Teams of 15+ engineers, restoring business-critical systems for global enterprises within days of high-severity security events.
  • Conducted Initial Damage Scoping for multi-million dollar ransomware incidents, coordinating containment, eradication, and forensics workstreams.
  • Acted as SME in C-suite discussions, securing storage and networking resources to drastically reduce incident recovery time (MTTR).
  • Engineered Automation Tools via Power Platform, reducing manual processing times and standardizing forensic playbooks across various subject areas.
Security Architect and Engineer
Spirit AeroSystems, Inc. | Wichita, KS - REMOTE
06/2021 — 06/2022
  • Orchestrated the deployment of Microsoft Sentinel, Defender for Cloud, and Identity, securing 5,000+ endpoints within Azure GCC-High.
  • Implemented Cisco Umbrella, offloading 100% of global DNS traffic from AD servers to harden the perimeter and improve threat response.
  • Secured OT Manufacturing Systems for Boeing 747+ fuselages using Palo Alto (Panorama), Stealthwatch, and CyberArk PAM.
  • Led the Security Change Board, streamlining legacy firewall rules and ensuring compliance with CMMC (Government Contractor) requirements.
Security Consultant
Technosec | Austin, TX - REMOTE
10/2020 — 05/2021
  • Delivered comprehensive security audits for legal firms, ensuring 100% HIPAA compliance and strengthening data integrity for sensitive client records.
  • Remediated critical infrastructure vulnerabilities and optimized hardware configurations to improve system uptime and reliability.
  • Developed IT Security Policies and third-party provider recommendations, resulting in significant cost savings and reduced supply chain risk.
Security Infrastructure Lead (SIEM)
AT&T Managed Security Services | Austin, TX - REMOTE
10/2019 — 08/2020
  • Led 8 engineers in SIEM Operations for 20+ global multi-tenant clients, serving as the global SME for McAfee SIEM and ePO.
  • Orchestrated the SIEM Migration to AWS from legacy data centers, improving architectural reliability and reducing operational overhead.
  • Supported SOC 2 Type II Certification audits, conducting gap analyses and remediating major vulnerabilities across client environments.
Senior Security Engineer
AT&T Managed Security Services | Austin, TX - Texas DIR - ONSITE
10/2018 — 10/2019
  • Deployed Trend Micro TippingPoint IPS with full 10G inspection across State of Texas perimeter gateways to defend critical infrastructure.
  • Executed Threat Hunting operations, identifying and preventing major security incidents targeting state-level assets.
  • Co-designed Multi-Tap Packet Inspection Architecture, enabling continuous network recording and improving forensic analysis response times.
Developer and Course Author
AdamsArcher, Inc. | Austin, TX - REMOTE
10/2017 — 09/2018
  • Developed the online interface and backend systems for HIPAA Regulatory Compliance training, reaching over 20+ law firms.
  • Produced interactive security education accredited by the State Bar of Texas, facilitating continuing education for thousands of legal professionals.
Senior Technical Solutions Consultant
Trend Micro | Global Support
03/2011 — 09/2017
  • Provided expert network defense guidance for 1,000+ global clients during active attack situations and network-down events.
  • Engineered internal Lab Infrastructure for reproducing complex exploits, facilitating over 20+ proof-of-concept deployments.
  • Authored 50+ Technical Configuration Guides, streamlining support efficiency and reducing resolution times for global customers.
Cyber Security Lead (Americas)
Accenture | North & South America
08/2008 — 12/2010
  • Managed 12 security analysts across the Americas, ensuring 100% compliance with HIPAA, PCI, and SOX for outsourced client data.
  • Led the regional rollout of ISO 27001 certification for Americas Delivery Centers, hardening global infrastructure against emerging threats.
  • Served on the Global Change Review Board, advocating for infrastructure shifts that significantly reduced enterprise-wide security risks.

KEY ACHIEVEMENTS

Incident Response & Resilience: Orchestrated high-stakes IR engagements, successfully restoring business-critical systems for high-profile clients affected by ransomware.
Incident Response Tooling: Operationalizing post-compromise AD recovery via C# development of a GUI for DPAPI Key Management, assuring error-free deployment in complex environments.
AI Security & Enablement: Engineered the integration of LLM-based AI security solutions, focusing on defense mechanisms against prompt injection and model-specific attacks.
Cloud SIEM Transformation: Migrated enterprise SIEM infrastructure from legacy US data centers to AWS for AT&T’s MSSP consultancy.
SOC Operational Efficiency: Optimized security event monitoring workflows, driving improvements in Case Generation rates and Mean Time to Respond (MTTR).
Regulatory Compliance: Achieved compliance with ISO 27001, SOC2, CMMC, and HIPAA through systemic process improvements.
Infrastructure Defense: Secured critical state government infrastructure against 1B+ daily cyber threats by optimizing IPS configuration.
Accredited Course Development: Authored first in a series of security, ethics, and compliance courses accredited by the State Bar of Texas.

RECENT PROJECTS

Operationalizing AD Recovery: A GUI Frontend for DPAPI Key Management
Operationalizing AD Recovery: A GUI Frontend for DPAPI Key Management
The Challenge: Cryptographic Persistence in Active Directory During an Active Directory compromise recovery, rotating the DPAPI Domain Backup Key is a …
Automated Strategic Security Platform
Automated Strategic Security Platform
Project Overview The Automated Strategic Security Platform (ASSP) is a personal research project using an LLM based back-end for system design, …
Quantitative Theory Engine
Quantitative Theory Engine
Project Overview The Quantitative Theory Engine is a personal research project focused on learning quantitative stock analysis and developing …

EDUCATION

Master of Science in Computer Networking
Capella University | Minneapolis, MN (Remote)
2005 - 2007

Advanced coursework focused on enterprise network architecture, protocols, and security implementations (Coursework completed/Incomplete).

Bachelor of Business Administration in Finance
1995 - 1997

Concentrated in quantitative financial analysis and systems, providing the foundational logic for complex risk assessment and architectural modeling in later cybersecurity roles.

PROFESSIONAL CERTIFICATIONS

CISSP | Certified Information Systems Security Professional
ISC² | ID: Verified
2016
CISA | Certified Information Systems Auditor
ISACA | ID: Verified
2012
CompTIA Security+, Network+, & A+
CompTIA
2007

RECENT POSTS

Operationalizing AD Recovery: A GUI Frontend for DPAPI Key Management
March 9, 2026
Operationalizing AD Recovery: A GUI Frontend for DPAPI Key Management
The Challenge: Cryptographic Persistence in Active Directory During an Active Directory compromise recovery, rotating …
The RCCA Imperative: Translating Technical Telemetry into Executive Risk Reduction
March 5, 2026
The RCCA Imperative: Translating Technical Telemetry into Executive Risk Reduction
In my two decades navigating the ever-shifting landscape of information security, I have witnessed countless evolutions …
Mapping the Matrix: Python-Driven Offensive Tooling for MITRE ATT&CK
March 3, 2026
Mapping the Matrix: Python-Driven Offensive Tooling for MITRE ATT&CK
MITRE ATT&CK Framework Reference for Red Team Python Tools Executive Summary This reference outlines Python …

CONTACT ME

First
Last