EDITORIAL · STRATEGY · CYBERSEC

I spent five years exposing vulnerabilities as a journalist before moving in-house to lead editorial strategy for Cortex and Unit 42. I translate complex telemetry and product architecture into accessible narratives that help practitioners execute and CISOs make decisions.

Managing Editor @ Palo Alto Networks Ex-TechTarget Senior Reporter Sophos MTR Contributor
10+
YEARS ON THE BEAT
89
BYLINES & CO-AUTHORED
3
OUTLETS / ROLES
DEADLINES MET
git log --career

The strategic path

From breaking news at DEF CON to running editorial for one of the largest portfolios in cybersecurity. Same job, different chair.

commit a7f2c91 (HEAD → main) 2022 → present

Managing Editor, Cortex & Unit 42 @ Palo Alto Networks

Directing editorial standards and strategy across threat intelligence and security operations portfolios. Co-authoring premium research and whitepapers while making dry topics like email security, automation, and attack surface management actually worth reading.

CORTEX XSIAM UNIT 42 PODCAST EP RSA / BLACK HAT
commit 3e89bf4 2021

Editorial Contractor @ Sophos

Embedded with the Managed Threat Response squad. Translated raw forensic telemetry and day-to-day incident chatter into high-pickup MTR casebooks and investigative analyses.

MTR CASEBOOKS RANSOMWARE FORENSICS
commit 1a05d20 (origin/main) 2015 → 2020

Senior Cybersecurity Reporter @ TechTarget SearchSecurity

Exposing vulnerabilities, reporting election security from DEF CON's Voting Village, covering keynotes from Black Hat to RSA, interviewing security leaders, and producing the longform feature on CISO burnout that gets passed around every time the topic comes up.

DEF CON CISO BURNOUT VOTING SECURITY 64+ ARTICLES
cat featured/*.md

Six pieces that show the range

A detective story, a casebook, a longform on burnout, a podcast, an industry report, and yes, a poem about SOAR. Pick the one that doesn't sound like cybersecurity.

// 01 / 06
Palo Alto Networks / Creative Narrative
EXPERIMENT: cybersecurity meets Conan Doyle

The Case Files of Detective Aems: A Study in Digital Deduction

A Sherlock Holmes–style narrative tracking an email security incident, illustrating how AI identifies and mitigates deceptive mail payloads. Proof that you can teach a product story without putting people to sleep.

AUTHOR · FLAGSHIP NARRATIVE Read
// 03
Sophos / Narrative Casebook
FORENSICS: the supply-chain attack, told in scenes

MTR Casebook: SolarWinds Orion Backdoor

Hard-boiled detective framing applied to the forensics behind a backdoor implant in a SolarWinds Orion server. Highest pickup of the casebook series.

AUTHOR Read
// 05
Palo Alto Networks / Research Report
RESEARCH: a year of incidents, one playbook

2024 Unit 42 Incident Response Report

Co-authored flagship study translating Unit 42's incident caseload into actionable intelligence on credential reuse and rapid boundary scanning.

CO-AUTHOR Read
// 06
Palo Alto Networks / Narrative Poem
VERSE: yes, a poem about SOAR

An Ode to SOAR

A narrative limerick — written for National Limerick Day — that explains Security Orchestration, Automation, and Response workflows. Yes really.

AUTHOR Read
ls editorial/scope

Cortex & Unit 42, end to end

As Managing Editor at Palo Alto Networks since 2022, I hold narrative control and editorial quality across all marketing, research, and campaign deliverables.

Oversight spans technical blogs, co-authored research reports, whitepapers, campaign assets, and the major keynote deliverables for RSA, Black Hat, and Symphony.

Also: Executive Producer of Threat Vector, Palo Alto Networks' flagship security podcast, on every episode, two of them as host.

Cortex XSIAM

AI-powered security operations platform transforming legacy SIEM infrastructures.

Cortex XDR

Network, endpoint, and cloud detection & response ecosystem.

Agentix (XSOAR)

Orchestration, automation & response models that streamline incident cycles.

Cortex Xpanse

Attack surface discovery and management, mapping active exposures globally.

Unit 42 Services

Managed threat hunting, incident response, and global threat intelligence.

Cortex Cloud

Centralized cloud security analytics, asset tracking, and vulnerability compliance.

./contact.sh --reply-soon

Let's talk shop.

Open to consulting, freelance commissions, podcast appearances, and the rare full-time conversation. Quick replies guaranteed if the email isn't a press release.