SecTheory Executive Management

Robert Hansen (CEO, Founder): Mr. Hansen (CISSP) has worked for Digital Island, Exodus Communications and Cable & Wireless in varying roles from Sr. Security Architect and eventually product managing many of the managed security services product lines. He also worked at eBay as a Sr. Global Product Manager of Trust and Safety, focusing on anti-phishing, anti-DHTML malware and anti-virus strategies. Later he worked as a director of product management for Realtor.com. Robert sits on the advisory board for the Intrepidus Group, previously sat on the technical advisory board of ClickForensics and currently contributes to the security strategy of several startup companies.

Mr. Hansen wrote Detecting Malice authors content on O'Reilly and co-authored "XSS Exploits" by Syngress publishing. He sits on the NIST.gov Software Assurance Metrics and Tool Evaluation group focusing on web application security scanners and the Web Application Security Scanners Evaluation Criteria (WASC-WASSEC) group. He also has briefed the DoD at the Pentagon and speaks at SourceBoston, Secure360, GFIRST/US-CERT, CSI, Toorcon, APWG, ISSA, TRISC, World OWASP/WASC conferences, SANS, Microsoft's Bluehat, Blackhat, DefCon, SecTor, Networld+Interop, and has been the keynote speaker at the New York Cyber Security Conference, NITES and OWASP Appsec Asia. Mr. Hansen is a member of Infragard, West Austin Rotary, WASC, IACSP, APWG, he is the Industry Liaison for the Austin ISSA contributed to the OWASP 2.0 guide and is on the OWASP Connections Committee.


James Flom (COO, Co-Founder): Mr. Flom has been working in the computer industry for the past fifteen years and has spent the last eleven heavily involved in computer and network security. As lead operations engineer of Pilot Network Services' security department he researched network and computer threats on a daily basis protecting some of the largest companies and organizations in the world. He designed and implemented what was believed to be at the time, the largest network intrusion detection system in the world, protecting over half a million computers.

Mr. Flom later joined Digital Island (acquired by Cable & Wireless and merged with Exodus), where he created new product offerings for the Security Operations Center he was brought on to build. After the merger with Exodus James joined the Cyber Attack Tiger Team and assisted with the detection and recovery of several global network security compromises. Mr. Flom later became the director of consulting services for Kliosystems before co-founding SecTheory. He is a member of IACSP.



SecTheory Staff

Michael McQuain (Network Engineering): Mr. McQuain (CISSP) came to SecTheory from Savvis Communications where he was the principal designer and engineer for the companies Tier 1 backbone DDoS mitigation product. Specializing in the detection, mitigation and analysis of denial of service mechanisms, Mr. McQuain has consulted several Fortune 500 companies on DDoS mitigation techniques.

During his tenure at Savvis, and prior to that, Cable and Wireless, Mr. McQuain designed and deployed the Managed Virtual Firewall and Managed VPN product lines as well as helped architect the Managed Intrusion Detection services. Mr. McQuain has spent the last fourteen years designing, deploying and assessing the integrity of enterprise and SMB computer security infrastructure.

Mauricio Pineda (Network Engineering): Mr. Pineda has worked in the computer industry for the past 14 years in various network, system and security administration and engineering positions. After spending 4 years at Seagate redesigning and implementing a tiered, segmented and secured network, Mr. Pineda spent several years in private consulting practice designing and implementing various security and network deployments. Mr. Pineda played a significant role migrating the network infrastructure for the headquarters of The Sharper Image, built a 6 site international WAN for Foundation 9 Entertainment and took Loopt, Inc., a startup, from two basic "garage built" networks to enterprise level production and corporate networks. He also wrote, to a large degree, the security and IT policies which allowed the company to become a partner of the major US based cell carriers.

His strengths lie in his in depth understanding of not only network security, but system and physical as well. A paranoid individual at work, Mauricio enjoys entertaining and whipping up all sorts of delicious delicacies from around the world during his time off.

Daniel Herrera (Web Application Security Engineering): Mr. Herrera joined SecTheory from WhiteHat Security. During his time at WhiteHat he participated in the deployment and maintenance of their web application assessment platform. His daily tasks included application penetration testing against a myriad of production and pre-production environments, client interfacing, and education. This experience allowed him to develop a detailed understanding of web application security as it stands today.

Mr. Herrera has been a contributing member of the Web Application Security Consortium (WASC), participating in projects and authored content for the WASC Threat Classification version 2.0. Mr. Herrera has presented content at AHA and is an active member of the Austin OWASP chapter.

Francisco Artes (Forensics): Mr. Artes (CISSP) has worked for Electronic Arts, Choice Hotels International, and Deluxe Entertainment Services Group in varying roles from Director of Information Technology to Vice President and CSO/CTO. He has also worked as a police officer specializing in computer crimes investigations and computer forensics in Central Texas. He has developed curriculums on these topics and actively teaches them to law enforcement to include Texas DPS, Texas Rangers, FBI, and the USSS.

Mr. Artes has keynoted and spoken at numerous Information Security conferences all around the world. He has been the special guest of the Texas State Attorney General symposiums on Cybercrime, a speaker and subject matter expert on Anti Piracy for the United States Attorney General and he has been a panel member for the Critical Information Security Conference held by the Texas State Attorney General and the United States Attorney General.

Jennifer Stephens (Office Manager): Mrs. Stephens handles all of the day to day functions to keep SecTheory up and running smoothly, from accounting functions to Human Resources. Before joining SecTheory Mrs. Stephens worked with Spherion assisting Dell in their hiring process and Christianson A/C as office manager. She has worked in various HR roles from Administrator to Recruiter and has become widely familiar with Human Resource laws and procedures. She is currently seeking her PHR Certification and is a Notary Public.

Orlando Barrera II (Intern): Mr. Orlando Barrera II has worked in communications within the United States Army Signal Corps, 35th Signal Brigade, stationed at Fort Bragg, NC. He has also worked in quality assurance for Aspyr Media. While completing his batchelors of science he worked at the Computer Science Department, Texas State University. Later he worked for NLI Media Group as a web developer. He is currently working as a code monkey and intern for SecTheory. He has presented at AHA and is an active member in the local OWASP chapter.