JGJEREMY GIROD

CYBERSECURITY LEADER · CHANDLER, ARIZONA

Build stronger
defenses.
Develop better
defenders.

I’m Jeremy Girod. I connect the technical work of cyber defense with the leadership that helps people do it well.

Explore my experience
Jeremy Girod
Operator. Leader. Mentor.Enterprise · Federal · Military
SOC LEADERSHIPINCIDENT RESPONSECYBER DEFENSEPEOPLE DEVELOPMENT

01 / ABOUT

Technical depth.
A people-first
approach.

My career spans enterprise security at Charles Schwab, federal security operations supporting the Department of Homeland Security, and service in both the Army and Air National Guard.

I’ve worked from the service desk and network operations floor through incident response and SOC leadership. That experience shapes how I lead: understand the work, make priorities clear, and give people the training and support to take ownership.

Today, I bring that perspective to security operations, my service as a Warrant Officer, and my work helping military members and first responders connect with the cybersecurity community.

Jeremy Girod Cybersecurity leadership, grounded in operations.

02 / HOW I CONTRIBUTE

Better operations.
Stronger teams.

Practical experience across the systems, processes, and people that make cyber defense effective.

Security operations

Turn alert volume into clear priorities through detection tuning, SIEM and SOAR workflows, cloud monitoring, and response runbooks.

  • SOC strategy and maturity
  • Capacity planning and operational metrics
  • Alert prioritization and automation

Incident response

Connect network and endpoint evidence, investigate root causes, and help teams move from detection to an informed response.

  • Network and host forensics
  • Threat hunting and analysis
  • MITRE ATT&CK-informed procedures

Developing defenders

Build confidence and capability through hands-on mentoring, realistic exercises, clear procedures, and technical leadership.

  • Analyst coaching and development
  • Tabletop and practical training
  • Joint and cross-functional collaboration
77%

Reduction in monthly alert volume through tuning, automation, and stronger runbooks.

~20

Analysts led in a 24/7 enterprise Security Operations Center.

6

Cybersecurity specialists managed and trained in a joint cyber team.

Hands-on experience

Security Onion · KAPE · Velociraptor · Nessus · SIEM / SOAR · Network traffic analysis · NIST RMF

03 / CAREER

A career built
in the work.

From infrastructure and federal operations to leading enterprise cyber defense.

2022 — PRESENTCURRENT

Charles Schwab

SOC Manager

Lead around-the-clock security operations, develop analysts, and connect threat detection and incident response with business priorities.

Built an Alert Priority Matrix, refined runbooks and alert tuning, integrated cloud alerts, and introduced operational metrics and capacity planning. Supported SOC continuity during the TD Ameritrade-to-Schwab transition.

2019 — 2022

Charles Schwab

Information Security Analyst

Investigated security incidents, performed root cause analysis, and served as an escalation point for frontline analysts.

Developed and tuned detection content, analyzed raw security and network logs, and partnered with technology owners on corrective actions and response procedures.

2017 — 2019

Defense Point Security · Supporting DHS / ICE

Security Operations Analyst

Provided Tier 1 and Tier 2 detection and response support for federal security operations.

Analyzed network traffic and intrusion alerts, tracked incidents through remediation, and advised responders on investigation and containment.

2015 — 2017

Phacil · Supporting DHS / ICE

Information Security Analyst

Supported enterprise security systems, patch management, operational documentation, and application troubleshooting.

Worked with security operations and infrastructure teams to sustain endpoint and network security across a large federal environment.

2014 — 2015

Phacil · Supporting DHS / ICE

Network Administrator

Monitored LAN/WAN operations, coordinated outage response, and maintained network operations procedures.

Supported approximately 2,000 network devices and more than 500 voice and data circuits. Trained new employees and strengthened operational documentation.

2013 — 2014

RigNet

Field Engineer

Installed and supported satellite voice and data communications on land-based and offshore facilities.

Commissioned fixed and stabilized satellite systems and provided practical technical guidance to junior field technicians.

2013

Phacil · Supporting DHS / ICE

Service Desk Analyst

Resolved hardware, software, encryption, and network issues for federal end users.

Coordinated with network operations and service providers to restore connectivity and document technical incidents.

2006 — 2012

Vanguard

Processing Associate

Built a foundation in financial services operations, client support, and disciplined execution.

Supported institutional retirement and investment account operations, coordinated across client service teams, and maintained regulatory and organizational standards.

04 / MILITARY SERVICE

Mission focus.
Technical leadership.
Continued service.

Military service has been a parallel thread throughout my career, from tactical communications to joint cyber defense.

WO1
Warrant Officer 1

Arizona Army National Guard

CURRENT CHAPTER

Warrant Officer

The 255S Cyberspace Defense Technician provides technical leadership to protect Army networks and information systems, direct defensive cybersecurity measures, and strengthen mission readiness across enterprise and tactical environments.

JOINT CYBER DEFENSE

Arizona Joint Cyber Task Force

Experience leading and training a team of six cybersecurity specialists supporting state organizations and critical infrastructure partners. Built incident response procedures, delivered practical exercises, and helped connect Army and Air cyber capabilities.

AIR NATIONAL GUARD

Cyber surety & security management

Led cybersecurity, risk assessment, compliance, communications security, and training responsibilities, including work in a Wing Cybersecurity Office.

2008–2015 · ARMY SERVICE

Satellite communications & network leadership

Operated and led tactical communications teams, maintained secure connectivity, and supported a 2011–2012 deployment to Afghanistan. Developed through technical and military leadership education, including the Warrior Leader Course and NCO Academy.

05 / COMMUNITY & CONTRIBUTIONS

Help the next
defender move forward.

JANUARY 2026 — PRESENT

The Ginger Hacker Initiative

Military & First Responder Liaison

Connecting my military and cybersecurity experience with a community focused on education, opportunity, and professional growth. I also support practitioner-led networking and conversations for defenders and technical leaders.

Explore the initiative
INDUSTRY PERSPECTIVE

Hack The Box

Subject-matter contributor

Contribute practitioner perspectives for editorial content, sharing experience from security operations and leadership with the wider cybersecurity community.

See my featured work

06 / EDUCATION & CREDENTIALS

Keep learning.
Keep applying it.

View credentials
ISC2

CISSP

Information systems security

ISC2

CCSP

Cloud security

ISACA

CISM

Information security management

GIAC

GSOM

Security operations management

GIAC

GCFA

Forensic analysis

GIAC

GCFE

Forensic examination

GIAC

GCIH

Incident handling

GIAC

GCIA

Intrusion analysis

GIAC

GNFA

Network forensics

EC-Council

CEH

Ethical hacking

Additional credentials earned across my career include GSEC, GSLC, CompTIA Security+, CCNA, and Microsoft MTA Networking Fundamentals.

ARIZONA STATE UNIVERSITY · 2017

Master of Science
Information Management

W. P. Carey School of Business

ARIZONA STATE UNIVERSITY · 2005

Bachelor of Science
Finance & Management

Graduated cum laude

Keller Graduate School of Management
Graduate coursework in Accounting and Finance · 2007–2010

Mesa Community College
Network and System Administration certificate · 2013–2016

Scottsdale Community College
Associate’s degree, General Studies · 1999–2001

START A CONVERSATION

Good defense
starts with people.

Let’s connect around security operations, incident response, technical leadership, or developing the next generation of cyber defenders.

Connect on LinkedIn