Brandon J. Trigo
Security+ Certified | IT Professional
"Brando"
Infrastructure & Cloud Security Engineer in Training
> Background
Hard-working IT professional with real-world experience in data center operations,
cybersecurity, and systems engineering. I've racked servers, terminated fiber/copper, configured
Active Directory, built CTF challenges, and troubleshot everything from Layer 1 cabling
to application-level vulnerabilities.
> Philosophy
The mind is man's greatest asset. By letting go of fear and doubt, taking responsibility, and building disciplined habits, we gain the ability to shape our reality as we see fit.
> Current Focus
Building deep expertise in AWS cloud security. Target: Cloud Security Engineer roles
that blend infrastructure, automation, and defense. Learning daily. Building publicly.
Growing intentionally.
> Core Values
Honor | Integrity | Family | Advancement | Legacy
-rwxr-xr-x Recent Graduate | Cyber Security Program @ Adelphi University
-rwxr-xr-x CTF Challenge Developer | SSRD Internship (Jan-May 2025)
Featured Projects
Hands-on security research and CTF development work
OWASP Secure Bank CTF Challenges
Developed 12+ capture the flag challenges targeting real-world vulnerabilities for SSRD's OWASP Secure Bank project. Built Docker-hosted challenge environments for internal testing and public distribution.
- Simulated XSS, SQL injection, RCE, and privilege escalation attacks
- Created PCAP analysis challenges using Wireshark
- Implemented SHA-256 hash cracking scenarios
- Developed root-level cron job exploitation challenges
TryHackMe Labs & Training
Continuous hands-on training through TryHackMe platform, completing various rooms and challenges focusing on penetration testing, web application security, and network analysis.
- Active reconnaissance and vulnerability scanning
- Web application penetration testing
- Privilege escalation techniques
- Network traffic analysis and exploitation
Vulnerability Assessment Toolkit
Custom scripts and automation tools developed during bootcamp and personal projects for security testing and vulnerability assessment workflows.
- Automated reconnaissance scripts
- Network scanning and enumeration tools
- Log parsing and analysis utilities
- PCAP analysis automation
Secure Coding Practices
Full-stack development experience gained through SSRD internship, implementing secure coding practices and understanding common vulnerabilities from both offensive and defensive perspectives.
- Input validation and sanitization
- Authentication and authorization mechanisms
- Secure session management
- OWASP Top 10 vulnerability mitigation
Technical Arsenal
Tools, technologies, and methodologies
Security Tools
Development
Infrastructure
Security Practices
Networking
Soft Skills
Experience
Professional journey and key accomplishments
Security Research & Development Intern
- Developed and deployed 12+ CTF challenges targeting real-world vulnerabilities including XSS, SQL injection, command injection, RCE, and privilege escalation
- Contributed to SSRD's OWASP Secure Bank project by building Docker-hosted challenge environments
- Gained hands-on full-stack development experience using React, Flask, and Python
- Created custom security scenarios involving PCAP analysis, hash cracking, and system exploitation
- Utilized offensive security tools including Burp Suite, Metasploit, Netcat, and Nmap for comprehensive testing
Department Supervisor
- Oversee sales floor, service shop, and rental program operations
- Provide occasional technical support for network-connected devices and endpoints
- Manage inventory systems and conduct regular audits
- Established culture of open communication enhancing team productivity
Data Center Support Technician
- Resolved 50+ remote hands requests involving hardware replacements, system configuration, and connectivity troubleshooting
- Performed racking/stacking of enterprise equipment and terminated structured cabling (CAT5/6, fiber optics)
- Enforced physical security protocols including badge access management and vendor escorts
- Utilized SolarWinds for facility-wide system monitoring and incident logging
- Developed practical knowledge of routing, switching, and load-balancing technologies
- Maintained detailed documentation following Method of Procedures (MOPs)
Certifications
Professional credentials and ongoing education
CompTIA Security+
CompTIA (SY0-701)
Issued: August 2025
Cyber Security
Adelphi University
Issued: July 2024
TryHackMe Training
TryHackMe Platform
Ongoing
Get In Touch
Let's connect and discuss opportunities