<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>James Lerud</title><link>https://jameslerud.com/</link><description>Recent content on James Lerud</description><generator>Hugo</generator><language>en-us</language><atom:link href="https://jameslerud.com/index.xml" rel="self" type="application/rss+xml"/><item><title>About</title><link>https://jameslerud.com/about/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://jameslerud.com/about/</guid><description>&lt;p&gt;I&amp;rsquo;ve spent 19+ years in information security, specializing in security operations,
incident response, and DevSecOps. My through-line has been building and mentoring
high-performing teams, standing up scalable security programs, and integrating
security into how software actually gets built — under the belief that
&lt;strong&gt;security = quality&lt;/strong&gt;.&lt;/p&gt;
&lt;h2 id="where-ive-worked"&gt;Where I&amp;rsquo;ve worked&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Titania Solutions Group&lt;/strong&gt; — &lt;em&gt;ISSO &amp;amp; Cybersecurity SME&lt;/em&gt; (2019–present). Led a
DevSecOps transformation, integrating automated security testing into CI/CD
pipelines across 15+ development teams. Web app penetration testing, threat
modeling, and the metrics to keep application security honest.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Verodin, Inc. (acquired by FireEye)&lt;/strong&gt; — &lt;em&gt;Threat Research Manager&lt;/em&gt; (2016–2018).
Founded and led a threat research team producing detection content and
instrumentation, and built the multi-release roadmaps that helped mature the
product toward acquisition.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Executive Office of the President&lt;/strong&gt; — &lt;em&gt;Chief of Security Operations&lt;/em&gt; (2015–2016).
Directed SOC operations in a high-stakes environment — detection, investigation,
response, and an enterprise security technology transition across agencies.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Defense Intelligence Agency (DCNDC)&lt;/strong&gt; — &lt;em&gt;Defensive Countermeasures Lead&lt;/em&gt;
(2012–2015). Built and led the enterprise countermeasures team responsible for
detection and mitigation content.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;U.S. Cyber Command&lt;/strong&gt; — &lt;em&gt;Countermeasures Developer&lt;/em&gt; (2010–2012). Defense-in-depth
strategies and technical leadership for protecting critical DoD infrastructure.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;National Security Agency (NTOC)&lt;/strong&gt; — &lt;em&gt;Attack Sensing &amp;amp; Warning Section Manager /
Senior Reporting Analyst&lt;/em&gt; (2007–2010). Ran AS&amp;amp;W operations and advanced the
cataloging of attacker TTPs to improve detection fidelity.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="what-i-work-on"&gt;What I work on&lt;/h2&gt;
&lt;p&gt;Detection engineering and intrusion analysis · DevSecOps and security automation
(CI/CD, ZAP, Nuclei) · threat modeling and penetration testing · security
operations and incident response leadership · secure-by-default systems. I build
in Python, Go, and PowerShell, and I&amp;rsquo;m comfortable across Windows, macOS, and Linux.&lt;/p&gt;</description></item></channel></rss>