Eric brings more than 20 years of experience across software development, information technology, application architecture, and eCommerce, along with years of focused application security and penetration testing.
Before moving fully into offensive security, he spent more than a decade working in eCommerce, where his responsibilities included software development, database administration, infrastructure architecture, and payment systems. That background gives him a practical understanding of how applications are designed, how developers think, and where security weaknesses tend to emerge.
Today, Eric focuses primarily on web application and API penetration testing, business logic testing, source-assisted analysis, and complex application security issues. His approach combines an attacker’s perspective with the experience of someone who spent years building and supporting the same types of systems he now tests.
Outside of security, Eric is usually cooking something, working on a project, or finding something to put together, take apart, or tinker with.