What Is a BCDR Plan and Does Your Business Need One?
This article covers what a BCDR plan is, what goes into building one, and why having one matters more than most businesses realize.
Learn More
Location: Eugene
Services: Application and API Assessment, Cybersecurity Risk Assessments, Incident Readiness, Penetration Testing Services, Red Team Services
Industries: Blockchain & Digital Assets, Financial Services, Nonprofit
Josh started his career building IT systems in 2009 and has nearly a decade of experience working directly with clients on IT security and compliance challenges. Today, he continues this important work by leading BPM’s cutting-edge Cybersecurity Assessment Services team that provides in-depth, rigorous security assessments for organizations of all sizes and industries.
By emulating threat actors through technical TTPs (techniques, tactics, procedures) and social engineering, Josh and his team of IT security professionals provide clients with the insight required to defend their networks and applications against the latest cybersecurity threats.
Leveraging his offensive experience and formal incident response/digital forensic training, he leads a team that assists clients during active cybersecurity breaches and provides forensic support after the fact to review network breaches, email compromise, malicious insiders and digital evidence in forensic accounting cases.
Josh has expertise in cybersecurity assessment, adversarial threat assessment, and digital forensics and incident response. He has personally conducted over 250 client engagements during his career and is a frequent presenter at industry conferences.
Josh applies his technical background to tangible hobbies and rebuilds everything from compression ignition engines to houses.
Computer Information Science – University of Oregon
This article covers what a BCDR plan is, what goes into building one, and why having one matters more than most businesses realize.
Learn More
A cybersecurity risk assessment is a structured process for identifying, analyzing, and prioritizing the vulnerabilities and threats that could compromise your organization’s information systems and sensitive data.
Learn More
If you run or oversee a publicly traded financial institution, the SEC’s cybersecurity disclosure rules deserve your full attention. These rules have fundamentally changed how public companies must communicate cyber risk to investors and regulators.
Learn More