The Person Behind IndigoINT
20+ years moving between government intelligence operations, enterprise security, and building things that help analysts work smarter.
Background
I started in military intelligence in 2003 — SIGINT analyst work with the Hawaii National Guard, the 732nd Military Intelligence Battalion, and eventually NSA/CSS DET 2 supporting US Army Reserve Command. That foundation in signals intelligence, targeting, and multi-discipline fusion still shapes how I approach threat actor tracking today.
Between military and full-time private sector roles, I also worked as a Senior Reverse Engineer for the Department of Energy, a Malware Analyst and CNO Discovery Analyst for Leidos / DOD / Cyber Command, and held several analytical positions with DIA and INSCOM — including deployment to Afghanistan as an Alternative Targeting Manager in a Multi Fusion Center.
Private Sector
Since 2016 I've worked across the endpoint security and threat research space — Principal Threat Researcher at BlackBerry Cylance, Senior Threat Researcher at Fidelis, Threat Intelligence Lead at Armor, and most recently Senior Threat Intelligence Lead at Menlo Security where I built the CTI program from scratch, designed the RFI process, and ran monthly briefings for the entire organization.
In 2018 I founded IndigoINT to work directly with security teams that need senior-level intel support without adding a full-time headcount. In 2024 I added Bytes' Atelier — a digital studio focused on AI-enhanced tooling, templates, and automation for small businesses and creators.
Career Timeline
Owner / Principal Threat Intelligence Consultant
CTI services, program audits, threat briefings, and custom intel products for enterprise clients.
Senior Threat Intelligence Lead
Built the threat intelligence program, established RFI workflows, led insider threat investigations, ran monthly company-wide briefings.
Threat Intelligence Lead
Threat hunting, malware reverse engineering, open-source tool development, analyst mentorship.
Senior Threat Researcher
YARA/Snort signature development, dark web research, penetration testing, malware analysis with ReversingLabs.
Principal Threat Researcher
Malware and network analysis, OSINT research on TTPs, incident response support, file classification for LLM products.
SIGINT Analyst
NSA/CSS DET 2, 732nd MI Battalion, Hawaii National Guard. Also supported DIA, INSCOM, NGIC, and deployed to Afghanistan.
Education & Credentials
What I Actually Do
These days I split my time between three things: client work (threat intel audits, briefings, and investigations), building tools (like TERM ALPHA and CTI-focused Notion templates), and exploring how AI can make analysts faster without making them dumber. I still reverse engineer malware when I can find the time. I still believe the best intel comes from someone who's willing to dig into the binary, not just read the report.
If that sounds like the kind of person you want in your corner, book a call. If you're not ready for that, grab the free threat feed and see what I produce.