Authorship, selected publications, newest first. Older items are grouped by year.
Featured publication
The CISO Playbook
CRC Press • Nov 2024 • Book • ISBN 978-1-032-76207-4
Author
The CISOs first 90 days – A practical agenda for decision advantage
EDP Audit, Control, and Security Newsletter (EDPACS) • Sept 2025 • Article
Security Chaos Engineering for CISOs – The Strategic Edge Against Modern Threats
Cyber Defense Magazine • Sep 2025 • Article
Security Chaos Engineering: Weaponizing chaos for modern CISOs
SC Media • Aug 2025 • Article
Identity Risk Intelligence – The Missing Piece in Continuous Threat Exposure Management (CTEM)
Cyber Defense Magazine • Aug 2025 • Article
The Rise of Identity Risk Intelligence
Cyber Defense Magazine • Jul 2025 • RSAC 2025 Special Edition • Article
The CISO Playbook
CRC Press • Nov 2024 • Book • ISBN 978-1-032-76207-4
Cybersecurity Can Be a Businesses Enabler
BankInfo Security (ISMG) • Jul 2024 • Article
Through the Lens of a CISO
United States Cybersecurity Magazine • Fall 2022 • Article
Protecting Critical Space Assets from Cyber Threats
Education Technology Insights • Aug 2022 • Article
System and methods for automated computer security policy generation and anomaly detection
International Granted Patent • Mar 2021 • WO2020069367A1
Operational technology Security
Elsevier Network Security • Jan 2020 • Article
Method and system for data security via entropy and disinformation based information dispersal
US Published Patent • Mar 2019 • US20200193035A1
A Paradigm Shift in Data Security
United States Cybersecurity Magazine • Fall 2019 • Article
Entropy, disinformation and obfuscation: A paradigm shift to protect your crown jewels
Online • Jul 2019 • Article
Cracking LDAP Salted SHA Hashes
Hakin9 Magazine • Mar 2008 • Article
Fuzzing XML
Hakin9 Magazine • May 2007 • Article (May 2007 issue)
Technical Editor of Webster’s New World Hacker Dictionary
Wiley • Sep 2006 • Book (Technical Editor) • ISBN 978-0-470-04752-1
Professional Pen Testing for Web Applications
Wiley/Wrox Press • Jun 2006 • Book • ISBN 978-0-471-78966-6
Salted Hashes Demystified
Online • Jan 2005 • Article
Contributing Author
97 Things Every Application Security Professional Should Know
O’Reilly Media • Jun 2024 • Book • ISBN 978-1-098-15217-8
Foresight review of cyber security for the Industrial IoT
University of Oxford • Jul 2020 • Report (PDF)
Ground Truth Competency Assessment for Smart Grid Cyber Security
TCIPG • May 2012 • Slides (PDF)