
I've spent 20 years working across cybersecurity projects and operations, contributing to more than 50 R&D initiatives spanning multiple disciplines from network security, to deception technologies, and security automation. Across those projects, I've worked as coordinator, scientific and technical team lead, risk and quality assurance manager, and evaluator, building a deep understanding of how security technologies need to perform not just in theory but in practice.
Alongside that work, I contribute to the industry standards that define how security teams coordinate and respond. I'm currently a voting member of the OASIS CACAO Technical Committee, a member of the Automation SIG at FIRST.org, and a management board member of the European Cluster for Securing Critical Infrastructures (ECSCI). Previously, I’ve been a contributor to ENISA's Ad Hoc Working Group (AHWG) on SOCs.
I co-founded Cymph to help security teams bridge the gap between how incident response is defined in standards and frameworks, and how it actually operates on the ground.