A

Andrew Bonstrom

Director of Engineering

New York, New York, United States15 yrs 4 mos experience
Highly Stable

Key Highlights

  • Over 11 years of cybersecurity experience.
  • Led security engineering teams at Amazon.
  • Certified in multiple offensive security disciplines.
Stackforce AI infers this person is a Cybersecurity expert with extensive experience in threat detection and incident response.

Contact

Skills

Other Skills

Active DirectoryAircrack SuiteAnalysisAndroidArchlinuxBurpSuiteComputer HardwareComputer SecurityCustomer ServiceDatabasesHydraInformation SecurityJavaKismetMac OS X

About

Experienced Security Engineering Manager building high performing teams and integrated security programs from scratch to defend businesses against their threats at scale. As a Security Engineering Manager at Amazon, I lead a team of security engineers who are responsible for Threat Hunting, Detection Engineering, and Incident Response for the Payments Security Intelligence team. Our mission is to defend the security of Amazon's payment systems and customers from malicious actors and threats. I have over 11 years of experience in the cybersecurity field, with a background spanning penetration testing, red teaming, threat hunting, detection engineering, and incident response. I have earned multiple certifications, including Offensive Security Certified Professional (OSCP), Offensive Security Wireless Professional (OSWP), Offensive Security Certified Expert (OSCE), and SANS GIAC Reverse Engineering Malware (GREM).

Experience

15 yrs 4 mos
Total Experience
2 yrs
Average Tenure
1 yr
Current Experience

Rippling

Director - SecOps, CorpSec, and Privacy

Jun 2025Present · 1 yr · New York, New York, United States

Amazon

4 roles

Security Engineering Manager, Threat Detection Services

Jun 2024Jun 2025 · 1 yr · New York, New York, United States

Security Engineering Manager, Payments Security: Threat Hunting, Detection, and Response

Promoted

May 2023Jun 2024 · 1 yr 1 mo · New York, New York, United States

  • Managing a team of security engineers responsible for Threat Hunting, Detection Engineering, and Incident Response.

Senior Security Engineer, Payments Security: Threat Hunting, Detection, and Response

Jul 2022May 2023 · 10 mos · New York, New York, United States

  • Tech Lead / Manager focused on Threat Hunting, Detection Engineering, and Incident Response.

Security Engineer II, Payments Security: Threat Hunting, Detection, and Response

May 2021Jul 2022 · 1 yr 2 mos · New York, New York, United States

  • Areas of focus:
  • Threat Intelligence
  • Threat Hunting
  • Detection Engineering
  • Incident Response
  • Threat Deception

Bridgewater associates

2 roles

Tech Lead, Security Testing

Dec 2019May 2021 · 1 yr 5 mos

Security Engineer, Security Testing

Apr 2018Dec 2019 · 1 yr 8 mos

Bank of america

Vice President - Red Team: Specialist

Sep 2016Apr 2018 · 1 yr 7 mos · Greater Minneapolis-St. Paul Area

  • Red Team: Adaptive Threat Simulations - Long-Term Embedded Operations

Ey

Attack & Penetration - Senior Consultant

May 2015Sep 2016 · 1 yr 4 mos · Minneapolis, Minnesota

  • Provided large scale enterprises a diverse offering of offense oriented IT security services using a methodology incorporating both automated and manual analysis. These assessments include:
  • Penetration testing (Web Application/Internal Network/External Network/Wireless)
  • Social engineering (Phone Calls, Email Phishing, Onsite)
  • Red teaming - Objective oriented
  • Purple teaming - Redteam & Blueteam exercises
  • Technical lead helping the A&P team use the latest Tools Tactics and Procedures
  • 3x Bravo award for excellence demonstrated during billable and non-billable projects
  • Actively work with Security Monitoring team to provide Redteam mindset for Purple team oriented engagements
  • Regularly conduct tool research and development to ensure success and efficiency during engagements.

Accuvant + fishnet security

Attack & Penetration - Consultant

Aug 2014May 2015 · 9 mos

  • Provide automated and manual Penetration Testing services that include:
  • Internal Network Penetration Testing
  • Perimeter Network Penetration Testing
  • Web Application Penetration Testing
  • Remote Social Engineering
  • Onsite Social Engineering
  • Physical Security Assessment
  • Wireless Security Assessment
  • Vulnerability Scanning
  • PCI Focused Testing

Cliftonlarsonallen

2 roles

Information Security Services Group - Consultant

Oct 2013Aug 2014 · 10 mos · Minneapolis, Minnesota

  • Provide automated and manual Information Security Consulting services that include:
  • Internal Penetration Testing
  • External Penetration Testing
  • Remote Social Engineering
  • Onsite Social Engineering
  • Wireless Penetration Testing
  • Vulnerability Scanning
  • PCI Focused Testing
  • General Control Reviews
  • Odd Jobs - VMWare breakout, Application Testing, Firewall Review, ACL validation, and Operating system hardening
  • Presentations:
  • IT Security Training at various conferences - Presented, setup, and aided attendees
  • Additional Responsibilities
  • Train and mentor junior employees - Train via demonstration and explanation; Supervise and guide work as it progresses
  • Provide management with quality and timely constructive feedback for junior employees
  • Provide workpaper review for fellow employees
  • Create and maintain technical and process oriented documentation
  • Provide fellow employees and management with insight into newly discovered vulnerabilities
  • Serve clients via:
  • Quality, timely, and impactful services
  • Informative meetings upon fieldwork completion
  • Quality deliverables
  • Excellent communication

Information Security Services Group - Intern

Apr 2013Sep 2013 · 5 mos · Minneapolis, Minnesota

  • Provide automated and manual Information Security Consulting services that include:
  • Internal Penetration Testing
  • External Penetration Testing
  • Remote Social Engineering
  • Onsite Social Engineering
  • Vulnerability Scanning
  • PCI Focused Testing
  • General Control Reviews
  • Odd Jobs - VMWare breakout, Application Testing, Firewall Review, and Operating system hardening
  • Presentations:
  • IT Security bootcamp at various conferences - Setup and aided attendees
  • Serve clients via:
  • Quality, timely, and impactful services
  • Informative meetings upon fieldwork completion
  • Quality deliverables
  • Excellent communication

Mankato state university, mankato information technology services

3 roles

Student Director

Promoted

May 2012Apr 2013 · 11 mos

  • Conducted interviewing and hiring process of over 20+ employees
  • Active daily management of group of 12-15 students
  • Conducted end of Semester performance reviews
  • Monitor incident Escalation, Completion, and Information validity
  • Delegate Active Directory user rights via Group Policy Management
  • Update training documentation and procedures via Wiki and handbook
  • Facilitated merger of two different groups entailing 6-7 employees

Campus Support Technician

Promoted

May 2011May 2012 · 1 yr

  • Operated a pivotal role within a brigade of fellow technicians to conduct technical assistance in an onsite capacity.
  • Support involved installation, configuration, removal, data gathering, and troubleshooting of:
  • Network and local printers
  • Non/Enterprise licensed software
  • Mobile devices and network phones
  • State asset tagged computers
  • Active Directory accounts
  • Lab and Office Set up:
  • Network printers
  • Workstations and Laptops
  • Cisco IP Phones
  • Physical Topology for Switches
  • Implemented Software and Physical Security:
  • Ensured Faculty, Student, and Campus Lab systems had the latest up to date Software patches
  • Ensured Campus Lab systems were physically secured to prevent theft
  • Sanitized Faculty, Student, and Campus Lab systems from Malware
  • Aided in the creation of a secure baseline configuration for Campus Workstation Images.

Staging Technician

Jan 2011May 2011 · 4 mos

  • Collaborated with a team to provide in house technical assistance to more than 1600 Faculty & Staff
  • Assistance included:
  • Hardware diagnostics
  • Hardware replacements
  • Operating System re/installations
  • Full data backups
  • Office technology set ups
  • Conducted via scheduled pick-ups and deliveries in conjunction with Right Now Incident reports.
  • Implemented and Validated System Security:
  • Ensured Faculty, Student, and Campus Lab systems had the latest up to date Software patches
  • Sanitized Faculty, Student, and Campus Lab systems from Malware

Education

Minnesota State University, Mankato

Bachelor of Science (BS) — Information Security & Networking

Jan 2010Jan 2013

Stackforce found 100+ more professionals with Active Directory & Aircrack Suite

Explore similar profiles based on matching skills and experience