B

Ben Rollin

Co-Founder

Tampa, Florida, United States17 yrs 6 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Over 16 years of experience in Information Security.
  • Creator of Offshore Pro Lab for penetration testing.
  • Active contributor to Tampa Bay security community.
Stackforce AI infers this person is a Cybersecurity expert specializing in penetration testing and training development.

Contact

Skills

Core Skills

CybersecurityPenetration TestingTraining DevelopmentRed TeamingRisk ManagementInformation SecurityHands-on TrainingSecurity AssessmentsContinuous Monitoring

Other Skills

Content StrategyLab ScenariosWeb Application AssessmentsVulnerability AssessmentsInformation Security Program ReviewsRisk Scoring MetricsWeb Application SecurityWeb Application Security AssessmentVulnerability AssessmentSecurity AuditInformation AssuranceISO 27001SpanishPortugueseProject Management

About

Trilingual Information Security professional with over 16 years of experience delivering security assessments ranging from IT audit/security controls and configuration management reviews to network and web application penetration testing for large organizations across the globe. I have a heavy interest in Active Directory security and Red Teaming and staying current with/research the latest TTPs and hold various published CVEs. Creator of the Offshore Pro Lab virtual penetration testing lab environment hosted on Hack the Box. I have developed and delivered Active Directory focused capture the flag events and training workshops in Greece, Hong Kong, and Norway. I am heavily involved in the local Tampa Bay information security community, creating and delivering hands-on offensive security related trainings for client internal staff, local colleges and other educational institutions as well as directly through the Tampa Bay chapter of ISC2. Currently hold the following industry certifications : OSCP, OSCE, eWPT, eCPPT, eWPTX, CISSP, CISA, PMP

Experience

Hack the box

6 roles

Head of Information Security

Jan 2023Oct 2024 · 1 yr 9 mos

  • Responsible for HTB’s information security compliance and privacy program, focusing on addressing emerging risks while helping to sustain HTB’s overall growth and success.
Risk ManagementInformation SecurityCybersecurity

Head of Training Development

Promoted

Apr 2021Jan 2023 · 1 yr 9 mos

  • Training Lead at Hack The Box, with overall responsibility for the development, maintenance, and
  • enhancement of training courses and materials.
  • Working with a multinational team of highly skilled practitioners to create practical, hands-on training for internal and external red teams globally with the long term goal of training the next generation of offensive security practitioners.
  • Develop and test training materials and accompanying labs.
  • Deliver on-site training across the globe.
  • Develop, test and maintain lab scenarios.
  • Develop, test and maintain challenges.
Training DevelopmentHands-on TrainingLab Scenarios

Training Lead

May 2020Apr 2021 · 11 mos

  • -Lead for HTB Academy team

Senior Content Developer

Mar 2019Apr 2020 · 1 yr 1 mo

  • Working with Hack the Box to provide practical, hands-on training to internal and external red teams globally with the long term goal of training the next generation of offensive security practitioners.
  • Develop and test training materials and accompanying labs.
  • Deliver on-site training across the globe.
  • Develop, test and maintain lab scenarios.
  • Develop, test and maintain challenges.
Training DevelopmentHands-on Training

Principal Training Developer

Promoted

Feb 2019Present · 7 yrs 1 mo

  • Principal Training Developer with the HTB Academy team, playing a pivotal role in shaping the training content strategy of Academy by introducing cutting-edge, advanced, and niche content that sets new benchmarks in the InfoSec training industry.
  • Design real-world network environments that challenge users to think creatively and apply their technical skills.
  • Author innovative, custom content that pushes the boundaries of traditional training in the areas of Red Teaming Active Directory Penetration Testing.
  • Design and create certification exam lab scenarios.
  • Maintain in-depth and up-to-date knowledge of the evolving threat landscape, with the ability to emulate modern adversaries, ensuring the content remains relevant and reflective of real-world scenarios.
Training DevelopmentContent StrategyRed TeamingPenetration Testing

Moderator

Dec 2017Feb 2019 · 1 yr 2 mos

Vilkas cybersecurity

Founder & Lead Information Security Consultant

Oct 2020Present · 5 yrs 5 mos · Greater Tampa Bay Area · Remote

  • Founder of an Information Security consultancy based in Tampa, FL
  • Assist with day-to-day operations, strategy and business development.
  • Lead sales team and a team of technical consultants
  • Lead/participate in a variety of hands-on technical assessments. (Internal/external penetration testing, web application assessments, red team/breach simulation, and social engineering assessments).
Information SecurityCybersecurityPenetration TestingRed Teaming

Guidepoint security

3 roles

Principal Security Consultant

Dec 2017Apr 2019 · 1 yr 4 mos · Tampa/St. Petersburg, Florida Area

Senior Security Consultant

Promoted

Jul 2017Dec 2017 · 5 mos · Tampa/St. Petersburg, Florida Area

  • Member of the Threat & Attack Simulation professional services team.
  • Perform internal/external network penetration testing and web application assessments

Security Consultant

Aug 2015Jul 2017 · 1 yr 11 mos · Tampa/St. Petersburg, Florida Area

Penetration TestingWeb Application Assessments

Pwc

Senior Associate

Feb 2013Aug 2015 · 2 yrs 6 mos · Tampa, Florida

  • Led teams in the completion of security assessments, vulnerability assessments, information security program reviews, and compliance assessments for a variety of Federal government and private sector clients.
  • Led and perform internal/external network penetration tests and web application security assessments.
  • Performed system configuration baseline reviews of a variety of UNIX, Windows, Firewall, IDS/IPS, and Mainframe platforms.
  • Developed audit and assessment work programs, monitor workload of junior team members, and provide feedback on completed work.
  • Reported audit and assessment findings to management and assist in the development and presentation of findings to clients.
  • Mentored junior staff members in both day-to-day firm related activities and their professional development.

Mbl technologies inc.

Information Security Consultant

Nov 2010Feb 2013 · 2 yrs 3 mos · Rockville, MD

  • Developed and managed a near real-time Continuous Monitoring a dashboard for a Federal Agency. This dashboard connects to the backend databases of a suite of security tools and provides real time monitoring as well as risk scoring metrics and historical trending data of the Agency’s security posture.
  • Provided Information Security/Certification and Accreditation (C&A) Support.
  • Developed, implemented and managed all Federal Information Security Management Act (FISMA)
  • compliance and oversight activities for a federal information security and privacy program.
  • Assessed and validated system security controls in accordance with NIST Special Publication (SP) 800-
  • 53, 800-18, 800-30, and Federal Information Processing Standards (FIPS) 199.
  • Drafted security & privacy program documentation including System Security Plans (SSP), Risk Assessments, Contingency Plans/Contingency Plan Tests, Incident Response Plans, and Privacy Impact Assessments (PIAs).
  • Authored and reviewed a variety of security program policy and procedural documents.
  • Responsible for data gathering, reporting, performance measurement, compliance evaluations and
  • communications.
  • Developed Security Awareness and Role Based training materials.
  • Performed real time network scanning and rapid response to network security incidents using Nessus vulnerability scanner.
Security AssessmentsVulnerability AssessmentsInformation Security Program Reviews

Schreiber translations, inc

Project Manager and Information Systems Security Manager

Sep 2008Nov 2010 · 2 yrs 2 mos

  • ·Management of full project life cycle of medium to large scale translation projects for various government and private sector clients
  • ·IT Desktop support, security and troubleshooting
Continuous MonitoringRisk Scoring Metrics

Education

American University - Kogod School of Business

BSBA — Business Administration; Spanish Studies

Jan 2004Jan 2008

Universidad Adolfo Ibáñez

Business Administration

Jan 2007Jan 2007

Stackforce found 100+ more professionals with Cybersecurity & Penetration Testing

Explore similar profiles based on matching skills and experience