About me
Jon McCoy brings more than 20 years of hands-on experience in software engineering, application
security, live system forensics, infrastructure defense, and custom security tooling. He helps
companies build and secure the back-end systems behind modern AI products, automation
platforms, internal tools, and data-heavy applications.
What makes Jon's work different is that he comes from the engineering side. He knows how
systems get built, where shortcuts happen, how complexity piles up, and how small technical
decisions can turn into real security exposure later. That builder's perspective gives him a sharper
way to test systems. He is not just looking for obvious vulnerabilities. He is looking for the weak
points that appear when architecture, business logic, identity, data flow, and integrations all meet.
Jon specializes in penetration testing, AI infrastructure hardening, secure architecture review, .NET
application security, exploit-path analysis, live system forensics, and custom offensive tool
development. When a standard scanner is not enough, he can build the tools and testing methods
needed to break, validate, and harden a specific environment.
For teams building serious AI or back-end infrastructure, that kind of work matters. The goal is to
find the failure points before attackers do, then turn those findings into stronger systems, safer
deployment patterns, and more defensible infrastructure.
Jon has presented research at Black Hat, DEF CON, OWASP Global AppSec, ToorCon, and NDC
Security.