5+ years defending financial-sector networks — incident response, penetration testing, and security operations for community and regional banks. I build offensive-security tooling to understand how attackers work, then use that to harden the systems I protect.
I'm a cybersecurity specialist based in Cincinnati, Ohio, currently protecting systems and networks in the banking sector. My day-to-day spans incident response, risk assessment, vulnerability management, and security awareness — but my background runs deeper than any single role.
At EAGLE.bank I served as assistant to the CISO, running security audits, penetration tests, and vendor assessments; monitoring events through IDS/SIEM tooling; managing incident response and fraud investigations; and reporting the bank's security posture directly to the board of directors.
Outside of work I build — a lot. From ESP32 firmware and RF testing toolkits to a post-quantum encrypted messenger and a unified OSINT platform, I use hands-on projects to stay sharp on both the offensive and defensive sides of the field. I've been running my own IT and security consultancy, Ingram Technologies, since 2016.
Wireless-security testing firmware for the LilyGO T-Embed CC1101 (ESP32-S3). A full multi-radio toolkit — Sub-GHz spectrum analysis and OOK capture/replay, WiFi recon, BLE HID with a DuckyScript engine, RFID/NFC cloning, NRF24, and IR — all driven from a password-protected WebSocket console.
A Raspberry Pi red-team platform that unifies seven Hak5 devices, a Flipper Zero, and ESP32 hardware under one authenticated dashboard. Aggregates loot, auto-parses NTLM hashes and AD data, supports encrypted DNS/HTTPS exfil, and integrates the Sliver C2 framework.
A post-quantum secure messenger and file-sharing app with a zero-knowledge relay — the server can't read or forge messages. Built on NIST primitives: ML-KEM-768, ML-DSA-65, AES-256-GCM, and HKDF, with E2E group chats, disappearing messages, and fingerprint verification.
A unified intelligence-gathering suite with a professional web GUI wrapping 15+ OSINT tools (Sherlock, Blackbird, SpiderFoot, theHarvester) plus built-in geolocation, WHOIS/DNS, and hash utilities. Security-first: AES-256 key storage, CSRF protection, input validation, and path-traversal defense.
A distributed defensive wireless-recon toolkit: a coordinator dashboard plus three headless ESP32-S3 nodes doing WiFi surveying with GPS, passive 802.11 monitoring with intrusion detection, and BLE/GATT enumeration. Passive-only by design — live capture, watchlist alerting, and CSV export.
A Chrome (Manifest V3) extension that aggregates passive recon for the active tab into one popup: WHOIS/RDAP registration, DNS records, technology fingerprinting, and open ports via Shodan's InternetDB. Streams results progressively using only free, keyless HTTPS services — zero config.
Open to cybersecurity roles and consulting engagements. Whether you're hiring, need an assessment, or want to talk shop about RF hacking and post-quantum crypto — reach out.